Splunk Tech Talks
Deep-dives for technical practitioners.

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework and Splunk

WhitneySink
Splunk Employee
Splunk Employee

As AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting to find sneaky and elusive threats. This tech talk shares how the Splunk Threat Hunting team seamlessly integrated the PEAK Threat Hunting Framework into their workflow while leveraging Splunk. See how they also joined forces with the SOC to turn non-hunters into cyber sleuths. Don't have a dedicated hunt team (or even if you do) – explore Splunk’s end-to-end processes with tips and tricks to unleash a pipeline of hunters and turn the PEAK Threat Hunting framework from a concept into a powerful tool in your organization.

Watch Splunk threat hunters Sydney Marrone and Robin Burkett to learn about:  

  • The PEAK threat hunting framework 
  • How you can customize PEAK for your environment 
  • How to enable your SOC analysts to be successful threat hunters
  • Real-world examples of PEAK hunt types for actionable insights

Watch the full Tech Talk here: 

Get Updates on the Splunk Community!

Exciting News: The AppDynamics Community Joins Splunk!

Hello Splunkers,   I’d like to introduce myself—I’m Ryan, the former AppDynamics Community Manager, and I’m ...

The All New Performance Insights for Splunk

Splunk gives you amazing tools to analyze system data and make business-critical decisions, react to issues, ...

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...