Training

Hier geht es zur Version auf deutsch / link to the German version

You receive the knowledge from real projects and top notch technologies for, e.g., Big Data (e.g. with Apache Spark, PySpark, databricks), Security Incident and Event Management (e.g. with Splunk), Machine Learning and Data Science with Python. Contact training(at)buhlmeier.com for details and competitive pricing.

Courses can be online or on location and are in German or English, slides are mostly in English

SIEM and other applications with Splunk

Splunk Basics day 1

Introduction and expectations
The context of Splunk
Splunk components
Splunk’s GUI basics
Search basics
Search using fields
The search language in more detail
Exercises
Transformations
Pivots

Splunk Basics day 2

Questions & Feedback
Exercises:
Create reports
Lookups
Scheduled reports and alerts
Dashboards
The common information model
Installation assessment (queries that help to check your setup)
Splunk Apps/Add ons, e.g.:
Enterprise Security
Machine Learning Toolkit
Implement your requirements

Dashboard Studio and Dashboard Classic with Splunk (see video in German)

Current Frameworks
Recap XML Dashboards
Classic vs. Dashboard Studio
Using Dasboard Studio
Chain Searches, Maps, ..
Exercise
What are Tokens used for
Token Examples with XML Dashboards and Dasboard Studio
Exercise

Compatibility
Summary



Database data ingestion and visualization with Splunk (see teaser on you tube in German)

Agenda:

Introduction
Prerequisites/Requirements
Configuration

Using DB Connect
Creating Identities
Creating Connections
Creating Database Outputs/Inputs
Creating and managing Database Lookups

Further Functions and Troubleshooting
Using SQL Explorer to make Live Reports
Executing SQL statements and stored procedures with the dbxquery Command
Monitoring Splunk DB Connect Health

Splunk Demonstration