Hello to all who may view this and happy holidays. new splunkie here with no tech background or experience. just passed comptia cybersecurity 701exam. i have been fascinated with data and Seim tools. ive heard try hack me and some others are great to start with but i want to jump right in to this. fast learner. iam looking to start off as a soc. if my tiny message echoes to you please dont hesitate to respond with some friendly guidence!
Once you have started to get to grip with some of the basics in Splunk it would definately be useful to see if you can get on the likes of the Instructor Led Training (ILT) for System Administration and Data Administration.
Hi @wreadToad
If you want to start having a play with Splunk and to get familiar without having to install it locally then a Splunk Cloud trial can be a good place to start. For more info on that check out https://www.splunk.com/en_us/download/splunk-cloud.html
In terms of other resources - there are a bunch of free training courses at https://www.splunk.com/en_us/training/free-courses/overview.html which is definitely the best place to start learning how to use Splunk.
If you want to learn more about *running* Splunk then it would be worthwhile installing it locally so that you can understand the process etc, but the above would be where I'd start.
For your first project you might like to try out the Search Tutorial at https://help.splunk.com/en/splunk-enterprise/get-started/search-tutorial/10.0/introduction/about-the... which goes through uploading and searching some data.
🌟 Did this answer help you? If so, please consider:
Your feedback encourages the volunteers in this community to continue contributing