<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Support on testing Splunk Enterprise as a SIEM in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442519#M74050</link>
    <description>&lt;P&gt;Ok, thnks. I'll do it. But one of the most important thing is get tutorial data for make some studies of security. Do you know where I can get it?&lt;BR /&gt;
Thanks in advance for your support&lt;/P&gt;</description>
    <pubDate>Sat, 10 Aug 2019 08:04:05 GMT</pubDate>
    <dc:creator>Lisardo</dc:creator>
    <dc:date>2019-08-10T08:04:05Z</dc:date>
    <item>
      <title>Support on testing Splunk Enterprise as a SIEM</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442517#M74048</link>
      <description>&lt;P&gt;I have just installed Splunk Enterprise 60 day trial version and I want to test it for Cybersecurity purposes, I would like some support on do this as fast as possible, for that I would appreciate your support on:&lt;BR /&gt;
- Does it exist any free add-on that I&lt;BR /&gt;
  can use?&lt;BR /&gt;
- Does it exist any tutorial data for&lt;BR /&gt;
  test security events?&lt;BR /&gt;
- Can I get any recipes from a cookbook&lt;BR /&gt;
  that allow me to apply some rules or&lt;BR /&gt;
  some dashboards?&lt;BR /&gt;
- Can I get any step-by-step examples to&lt;BR /&gt;
  follow?&lt;BR /&gt;
Thanks in advance for your support&lt;BR /&gt;
Regards&lt;/P&gt;</description>
      <pubDate>Fri, 09 Aug 2019 19:40:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442517#M74048</guid>
      <dc:creator>Lisardo</dc:creator>
      <dc:date>2019-08-09T19:40:28Z</dc:date>
    </item>
    <item>
      <title>Re: Support on testing Splunk Enterprise as a SIEM</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442518#M74049</link>
      <description>&lt;P&gt;Almost all Splunk add-ons are free.  See &lt;A href="https://apps.splunk.com"&gt;https://apps.splunk.com&lt;/A&gt;&lt;BR /&gt;
Be sure to try the Splunk Security Essentials app.  It has lots of examples.&lt;/P&gt;

&lt;P&gt;Take half a day for the free Splunk Fundamentals 1 on-line class.&lt;/P&gt;</description>
      <pubDate>Fri, 09 Aug 2019 21:54:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442518#M74049</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2019-08-09T21:54:56Z</dc:date>
    </item>
    <item>
      <title>Re: Support on testing Splunk Enterprise as a SIEM</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442519#M74050</link>
      <description>&lt;P&gt;Ok, thnks. I'll do it. But one of the most important thing is get tutorial data for make some studies of security. Do you know where I can get it?&lt;BR /&gt;
Thanks in advance for your support&lt;/P&gt;</description>
      <pubDate>Sat, 10 Aug 2019 08:04:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442519#M74050</guid>
      <dc:creator>Lisardo</dc:creator>
      <dc:date>2019-08-10T08:04:05Z</dc:date>
    </item>
    <item>
      <title>Re: Support on testing Splunk Enterprise as a SIEM</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442520#M74051</link>
      <description>&lt;P&gt;Ok Thanks but where can I get tutorial data for security tests? or How to connect splunk to my local machine windows security logs?&lt;BR /&gt;
Thank in advance for your support&lt;BR /&gt;
Regards&lt;/P&gt;</description>
      <pubDate>Sat, 10 Aug 2019 10:19:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442520#M74051</guid>
      <dc:creator>Lisardo</dc:creator>
      <dc:date>2019-08-10T10:19:32Z</dc:date>
    </item>
    <item>
      <title>Re: Support on testing Splunk Enterprise as a SIEM</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442521#M74052</link>
      <description>&lt;P&gt;@lisardo, &lt;/P&gt;

&lt;P&gt;The up and downside to Splunk is it's highly customizable, which also means it's a little complex. Your pre-sales engineers will work with you on demo's and some basic POCs. &lt;/P&gt;

&lt;P&gt;Splunk success as a SIEM in the industry isn't just the product, (which is good). It's the vendor-customer relationships process they have built to connect you to experts and building experts in your company. &lt;/P&gt;

&lt;P&gt;Generally speaking once a contract is signed most deals will include sending 2-3 admins to a variety of bootcamps to get them to speed and you will be partnered with a sales support engineer and SIEM experts to build your use case portfolio. You can expect to spend a ~month in classes and ~100 days working with sales engineers and SIEM SME's to get your internal teams going. &lt;/P&gt;</description>
      <pubDate>Sat, 10 Aug 2019 16:27:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442521#M74052</guid>
      <dc:creator>daniel333</dc:creator>
      <dc:date>2019-08-10T16:27:57Z</dc:date>
    </item>
    <item>
      <title>Re: Support on testing Splunk Enterprise as a SIEM</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442522#M74053</link>
      <description>&lt;P&gt;Learning Splunk on your own for a POC? In either event there some intro training, but none match the vendor partnering I mentioned above. &lt;/P&gt;

&lt;P&gt;&lt;A href="https://www.pluralsight.com/search?q=splunk"&gt;https://www.pluralsight.com/search?q=splunk&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 10 Aug 2019 16:29:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Support-on-testing-Splunk-Enterprise-as-a-SIEM/m-p/442522#M74053</guid>
      <dc:creator>daniel333</dc:creator>
      <dc:date>2019-08-10T16:29:14Z</dc:date>
    </item>
  </channel>
</rss>

