Overview:

Splunk Phantom allows you to execute actions in seconds, not hours by using multiple data sources -- either pushed into Splunk or pulled from assets in your environment -- to trigger Phantom into action. Gain full visibility into anomalous incidents, threat indicators, vulnerabilities, emails, and more. In addition, users have the capabilities to create Playbooks, ensuring a repeatable and auditable process around your security operations and assets.

Join Splunk Certified Architect, Alex Maier, for this workshop to learn how your organization can:

  • Secure your organization more effectively
  • Orchestrate security protocols using Playbooks
  • Monitor current incident status in real-time using Phantom Mission Control
  • Collaborate, respond, and manage breaches across multiple teams with ease
  • Integrate with third-party solutions through www.splunkbase.com
Agenda:

Screen Shot 2020-02-10 at 7.04.43 PM