SOC Analyst Level 1: TryHackMe: Incident handling with Splunk
Task 1: Introduction: Incident handling This room covers an incident-handling scenario using Splunk. Splunk is a leading SIEM solution in the market that can collect, analyze, and correlate network and machine logs in real time. On the other hand, a security incident is any event or action that negatively impacts the security of a user,