Dashboards & Visualizations

Projects

SplunkerNoob
Loves-to-Learn Lots

Are there any good project ideas. I just started creating dashboard for our network team. I am trying to get more security-based projects and was wondering if there are any good ideas to help me get into security. 

Very new to Splunk!

Tags (1)
0 Karma

deepakc
Builder

Splunk is very security focused and has many apps and various options for data etc....

A couple of tips:
When I first started, I had a play with this App, its a great way to learn about security datamodels and dashboards. Its not Splunk ES SIEM but its still very good to have a play with and learn.

https://splunkbase.splunk.com/app/4240

The other one to install and have a play with is security essentials - this provide so much security content, again good to learn about. (This is not a SIEM or monitoring app)  and its my go to for security use cases.
https://splunkbase.splunk.com/app/3435




0 Karma

renjith_nair
Legend

Its a very generic questions 🙂

You have a plenty of possibilities in network area 

  • Authentication
  • Firewalls
  • Proxy
  • WAF
  • Perimeter securities
  • Loadbalancing and so on

Have a look at  https://www.splunk.com/en_us/blog/learn/network-security.html and https://www.splunk.com/en_us/blog/learn/network-monitoring.html 

and probably you should get something to start with

 

---
What goes around comes around. If it helps, hit it with Karma 🙂
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Developer Spotlight with Denis Gladkikh

From Splunk Engineer to Kubernetes App Builder Denis GladkikhWhat happens when a lifelong developer turns a ...

Governing Enterprise AI, Bringing Cisco Telemetry Home, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...