Home
Join the Community
Getting Started
Welcome
Be a Splunk Champion
SplunkTrust
Super User Program
Tell us what you think
Splunk Love
Community Feedback
Learn Splunk
Learning Paths
Training & Certification
Training + Certification Discussions
Training & Certification Blog
AppDynamics Knowledge Base
Share a Tip
Find Answers
Splunk Administration
Getting Data In
Deployment Architecture
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Platform
Splunk Enterprise
Splunk Cloud Platform
Splunk AppDynamics
Apps & Add-ons
Splunk Development
All Apps and Add-ons
Premium Solutions
Splunk Enterprise Security
Splunk Observability Cloud
Splunk ITSI
Splunk SOAR
News & Events
Blog & Announcements
Community Blog
Product News & Announcements
Events and Contests
Tech Talks: Technical Deep Dives
Office Hours: Ask the Experts
User Groups
Resources
.conf25
SplunkBase
Developers
Documentation
Splunk Ideas
Splunk Events
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
Community Office Hours
Community Office Hours
All community
This category
Events
Knowledge base
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
Ask a Question
News & Events
:
Events and Contests
:
Office Hours: Ask the Experts
:
Community Office Hours
Options
Subscribe
Add Events to Calendar
Mark all as New
Mark all as Read
Community Office Hours
View:
In Progress
Upcoming
Past
Status: In progress
Status: Upcoming
Security: SOAR
Thursday, April 24, 2025
[Register Here ] This thread is for the Community Office Hours session on Security: SOAR on Thur, April 24, 2025 at 1pm PT / 4pm ET. (It is the updated schedule for our event~) This is your opportunity to ask questions related to your specific Splunk SOAR product, and use cases, including: What are the latest features of SOAR that I should know about? How do Splunk SOAR Playbooks and Actions integrate with Splunk Enterprise Security? How can I leverage the Automation Rules feature to assign playbooks to detections and automate the process? What are the best practices for developing playbooks, workbooks, and process workflows? How do I implement Guided Automation to further optimize the playbook-building process? What are the best practices for setting up prompts in SOAR? Anything else you’d like to learn! Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here). Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants. Look forward to connecting!
Labels
(1)
Labels
Labels:
Upcoming Office Hours
0 attending
0
2
Data Management in Observability Cloud
Tuesday, May 20, 2025
Registration coming soon. This thread is for the Community Office Hours session on Data Management in Observability Cloud on Tues, May 20, 2025 at 1pm PT / 4pm ET. Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics. What can I ask in this AMA? - What capabilities does Splunk have to balance costs and data volume? - How does the Splunk Distribution of the OpenTelemetry Collector help filter out data to reduce ingestion costs? - What are some ways that I can scale confidently without breaking the bank? - How can I filter, aggregate, and archive data for optimal storage and analytics? - Anything else you'd like to learn about! Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here). Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants. Look forward to connecting!
Labels
(2)
Labels
Labels:
Observability
Upcoming Office Hours
0 attending
0
0
Platform: Splunk + Cisco Integrations
Thursday, May 22, 2025
Register here. This thread is for the Community Office Hours session on Splunk + Cisco Integrations on Thurs, May 22, 2025 at 1pm PT / 4pm ET. Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics. What can I ask in this AMA? What Splunk and Cisco integrations are available today? What tools/TAs can I use to integrate my Splunk and Cisco data? How can we ingest ASA, IOS, Meraki, or ThousandEyes data? How can I view and analyze incidents within Splunk ES using Cisco XDR as a data source? How do AppDynamics and Splunk Observability Cloud work together? Anything else you’d like to learn! Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here). Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants. Look forward to connecting!
Labels
(2)
Labels
Labels:
Platform
Upcoming Office Hours
0 attending
0
0
Observability: Splunk Infrastructure Monitoring
Tuesday, June 17, 2025
Registration coming soon. This thread is for the Community Office Hours session on Data Management in Observability Cloud on Tues, June 17, 2025 at 1pm PT / 4pm ET. Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics. What can I ask in this AMA? - What are some enhancements to the Kubernetes Monitoring experience in Splunk IM? - How do I use and customize Kubernetes navigators? - What are best practices for optimizing Kubernetes alerts and troubleshooting workflows? - Is there a way to view Kubernetes logs correlated with metrics? - What are some top services that I should be monitoring? - Anything else you'd like to learn about! Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here). Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants. Look forward to connecting!
Labels
(2)
Labels
Labels:
Observability
Upcoming Office Hours
0 attending
0
0
Platform: Federated Data Management
Thursday, June 19, 2025
Register here. This thread is for the Community Office Hours session on Platform: Federated Data Management on Thurs, June 19, 2025 at 1pm PT / 4pm ET. Ask the experts at Community Office Hours! An ongoing series where technical Splunk experts answer questions and provide how-to guidance on various Splunk product and use case topics. What can I ask in this AMA? How do Data Management, Federated Search, and Federated Analytics work together? Can I get a demo? How can I optimize my data design according to its use case (detection, investigation, threat hunting, compliance, etc.)? How does Splunk enable data federation across Amazon Security Lake and S3? What tools are available to me? How can I onboard data from any data store or end points? How can I start filtering and routing data with Edge Processor or Ingest Processor? How can I optimize my Edge Processor or Ingest Processor pipelines? Anything else you’d like to learn! Please submit your questions at registration. You can also head to the #office-hours user Slack channel to ask questions (request access here). Pre-submitted questions will be prioritized. After that, we will open the floor up to live Q&A with meeting participants. Look forward to connecting!
Labels
(2)
Labels
Labels:
Platform
Upcoming Office Hours
0 attending
0
0