Overview:
Splunk Phantom allows you to execute actions in seconds, not hours by using multiple data sources -- either pushed into Splunk or pulled from assets in your environment -- to trigger Phantom into action. Gain full visibility into anomalous incidents, threat indicators, vulnerabilities, emails, and more. In addition, users have the capabilities to create Playbooks, ensuring a repeatable and auditable process around your security operations and assets.
Join Splunk Certified Architect, Alex Maier, for this workshop to learn how your organization can:
- Secure your organization more effectively
- Orchestrate security protocols using Playbooks
- Monitor current incident status in real-time using Phantom Mission Control
- Collaborate, respond, and manage breaches across multiple teams with ease
- Integrate with third-party solutions through www.splunkbase.com
Agenda:
The timeline is still being finalized, but each topic listed will be covered during this workshop.