<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How does Splunk Enterprise Security work? in Splunk Enterprise Security</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422024#M5252</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Can you tell me if this uses machine learning decision tree techniques specifically? Thanks&lt;/P&gt;</description>
    <pubDate>Tue, 19 Mar 2019 15:51:50 GMT</pubDate>
    <dc:creator>markdennett</dc:creator>
    <dc:date>2019-03-19T15:51:50Z</dc:date>
    <item>
      <title>How does Splunk Enterprise Security work?</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422021#M5249</link>
      <description>&lt;P&gt;hello &lt;/P&gt;

&lt;P&gt;I want to understand the concept of how Splunk security works.&lt;BR /&gt;
I think that it has a database of signatures of threat and when we enter the logs, it does the pattern matching. Is that right?&lt;/P&gt;</description>
      <pubDate>Sat, 25 Aug 2018 20:42:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422021#M5249</guid>
      <dc:creator>neermine</dc:creator>
      <dc:date>2018-08-25T20:42:15Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk Enterprise Security work?</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422022#M5250</link>
      <description>&lt;P&gt;Hi neermine,&lt;/P&gt;

&lt;P&gt;Splunk is a platform for analyzing machine generated data of all kinds from server logs to even metadata about network communications. The analysis can include simple pattern matching, behavioral analytics (spikes and newness), machine learning, and more. &lt;/P&gt;

&lt;P&gt;To get a good sense, I'd recommend you walk through some of our examples that show how Splunk works with Security including:&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/form/the-essential-guide-to-security.html"&gt;The Essential Guide to Security (ebook)&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://www.splunk.com/en_us/solutions/solution-areas/security-and-fraud/security-investigation.html"&gt;Security Investigation Workflow&lt;/A&gt; - click Try Now on that page to get access to a guided workflow showing how Splunk is used by SOCs&lt;/LI&gt;
&lt;LI&gt;&lt;A href="http://live.splunk.com/splunk-security-dataset-project"&gt;Security Datasets Project&lt;/A&gt; - a similar guided walk through advanced datasets.&lt;/LI&gt;
&lt;LI&gt;Or just download it yourself and try with your own data for free. Consider apps like &lt;A href="http://apps.splunk.com/app/3435"&gt;Splunk Security Essentials&lt;/A&gt;.&lt;/LI&gt;
&lt;/UL&gt;

&lt;P&gt;If you ever need more, don't hesitate to &lt;A href="https://www.splunk.com/en_us/talk-to-sales.html"&gt;reach out to our sales org for help&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Aug 2018 18:20:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422022#M5250</guid>
      <dc:creator>David</dc:creator>
      <dc:date>2018-08-27T18:20:58Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk Enterprise Security work?</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422023#M5251</link>
      <description>&lt;P&gt;thanks &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Aug 2018 20:51:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422023#M5251</guid>
      <dc:creator>neermine</dc:creator>
      <dc:date>2018-08-27T20:51:59Z</dc:date>
    </item>
    <item>
      <title>Re: How does Splunk Enterprise Security work?</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422024#M5252</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;Can you tell me if this uses machine learning decision tree techniques specifically? Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 19 Mar 2019 15:51:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/How-does-Splunk-Enterprise-Security-work/m-p/422024#M5252</guid>
      <dc:creator>markdennett</dc:creator>
      <dc:date>2019-03-19T15:51:50Z</dc:date>
    </item>
  </channel>
</rss>

