Administering Splunk Enterprise Security (ASES)

 

Who should attend

This 13.5-hour course prepares architects and systems administrators to install and configure Splunk Enterprise Security (ES).

Certifications

This course is part of the following Certifications:

Prerequisites

Course Objectives

  • Provide an overview of Splunk Enterprise Security (ES)
  • Customize ES dashboards
  • Examine the ES Risk framework and Risk-based Alerting (RBA)
  • Customize the Investigation Workbench
  • Understand initial ES installation and configuration
  • Manage data intake and normalization for ES
  • Create and tune correlation searches
  • Configure ES lookups
  • Configure Assets & Identities and Threat Intelligence

Course Content

The course covers ES event processing and normalization, deployment requirements, technology add-ons, dashboard dependencies, data models, managing risk, and customizing threat intelligence.

Please note that this class may run over three days, with 4.5 hour sessions each day, to achieve the full nine hours of course content.

Prices & Delivery methods

Online Training

Duration
3 days

Price
  • on request
Classroom Training

Duration
2 days

Price
  • on request

Schedule

English

1 hour difference

Online Training Time zone: Central European Time (CET)
Online Training Time zone: Central European Summer Time (CEST)
Online Training Time zone: Central European Summer Time (CEST)
Online Training Time zone: Central European Time (CET)

7 hours difference

Online Training 2 days Time zone: Eastern Standard Time (EST)
Online Training 2 days Time zone: Eastern Standard Time (EST)
Online Training 2 days Time zone: Central Daylight Time (CDT)
Online Training 2 days Time zone: Central Daylight Time (CDT)
Online Training 2 days Time zone: Eastern Daylight Time (EDT)
Online Training 2 days Time zone: Eastern Daylight Time (EDT)
Online Training 2 days Time zone: Eastern Standard Time (EST)
Online Training 2 days Time zone: Eastern Standard Time (EST)

10 hours difference

Online Training 2 days Time zone: Pacific Daylight Time (PDT)
Online Training 2 days Time zone: Pacific Daylight Time (PDT)
Instructor-led Online Training:   This computer icon in the schedule indicates that this date/time will be conducted as Instructor-Led Online Training.
This is a FLEX course, which is delivered both virtually and in the classroom. All FLEX courses are also Instructor-led Online Trainings (ILO).

Egypt

Cairo
Cairo
Cairo
Cairo
This is a FLEX course, which is delivered both virtually and in the classroom. All FLEX courses are also Instructor-led Online Trainings (ILO).