Splunk Tech Talks
Deep-dives for technical practitioners.

Mastering Threat Hunting

WhitneySink
Splunk Employee
Splunk Employee

Watch an insightful talk where we dive into the world of threat hunting, exploring the key differences between indicator-based and behavior-based approaches.

Screenshot 2024-10-25 at 8.42.48 AM.png

We'll break down the fundamental concepts behind each method, highlighting their strengths and use cases. Additionally, we'll showcase how you can leverage the power of Recorded Future's threat intelligence within Splunk to execute both indicator and behavior-based threat hunts. Whether you're refining your threat detection strategies or just starting your journey, this session will equip you with practical insights and hands-on techniques to enhance your security operations.

Watch this Tech Talk to learn…

  • Approaches to Threat Detection and Threat Hunting
  • How to identify potentially malicious activity in your own logs that you may have otherwise missed
  • How to mature your SOC practices

Watch Full Tech Talk here:

Tags (1)
Get Updates on the Splunk Community!

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...

See your relevant APM services, dashboards, and alerts in one place with the updated ...

As a Splunk Observability user, you have a lot of data you have to manage, prioritize, and troubleshoot on a ...

Splunk App for Anomaly Detection End of Life Announcement

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...