Skip to content

CyberSecurity Engineer

CyberSecurity Blog

Author: Andres Sarmiento

Cybersecurity Tools – VERIS Incident Model

April 22, 2020April 24, 2020 Andres SarmientoSecurity Policies and Tools

Lack of quality information in Cyber Security and incident response is real, you have too many sources for too many things, and most of the information at reach is not centralized. A couple of years[…]

Continue reading …

Splunk Series II: Knowledge Objects and Managing Fields

April 20, 2020May 5, 2020 Andres SarmientoSplunk - Fundamentals 2

Introduction to Knowledge objects These are tools you use to discover and analyze various aspects of your data * Data Interpretation – Fields and field extractions * Data Classification – Event types * Data Enrichment[…]

Continue reading …

Splunk Series II: Correlating Events

April 20, 2020May 5, 2020 Andres SarmientoSplunk - Fundamentals 2

Introduction to Transactions A transaction is a group of related events that span time. Events can come from multiple applications or hots. For example, One email message can create multiple events as it travels through[…]

Continue reading …

Splunk Series II: Filtering/Formatting Data

April 20, 2020May 5, 2020 Andres SarmientoSplunk - Fundamentals 2

Introduction to Eval Commands The eval commands are great to perform calculations, convert values, road values, format values and even use conditional statements. It is recommended to use search and were commands to filter calculated[…]

Continue reading …

Splunk Series II: Visualizations

April 20, 2020May 5, 2020 Andres SarmientoSplunk - Fundamentals 2

Visualizations When a search returns statistical values, the results can be viewed with different visualization types, some of the Visualization types: Statistical Values Charts: Line, column, pie Single Value Visualizations Maps Charts – Line Chart[…]

Continue reading …

Splunk Series II: Fundamentals II

April 20, 2020May 5, 2020 Andres SarmientoSplunk - Fundamentals 2

SO we got to this point, looking at the Fundamentals 2 section of my training. This training builds on the Fundamentals 1 course. Which is pretty much all tools you can use for searching and[…]

Continue reading …

Splunk Series: Search Language Syntax

April 6, 2020 Andres SarmientoSplunk - Fundamentals 1

How is the syntax used in the Search editor To better explain the syntax of a search is by using the following diagram The components of the Search Search Terms –> What you are looking[…]

Continue reading …

Splunk Series: Field searches

April 6, 2020April 6, 2020 Andres SarmientoSplunk - Fundamentals 1

Fields are searchable key/value pairs in your event data Fields can be searched by their name, for example: area_code=404 action=purchase status=200 When you look for multiple items in the editor an implied AND will be[…]

Continue reading …

Splunk Series: Saving Search Jobs

April 6, 2020April 6, 2020 Andres SarmientoSplunk - Fundamentals 1

Every search is also a job, which can be paused, stopped, saved and exported. Here are some interesting things you need to know about Search jobs: Jobs are available for 10 Minutes (By Default) Jobs[…]

Continue reading …

Splunk Series: Basic Search

April 6, 2020April 6, 2020 Andres SarmientoSplunk - Fundamentals 1

Basic search The search assistant provides a nice way to begin looking up for something in particular. At this stage, you can determine a few different search criteria, such as a term in particular or[…]

Continue reading …

Posts navigation

Older posts
Newer posts

Cybersec Engineer

  • Certifications
  • General CyberSecurity
  • Palo Alto Networks – Certifications
  • Security Policies and Tools
  • Splunk – Fundamentals 1
  • Splunk – Fundamentals 2
  • Splunk – System Admiistrator
  • Training

Social

  • View toteman85’s profile on Facebook
  • View @asarmiento85’s profile on Twitter
  • View asarmiento85’s profile on LinkedIn

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1 other subscriber

Powered by Collaboration Technologies USA | Copyright 2018