Splunk Security Certification with ITKraftz

Joseph Sibychen

profile
Upcoming

Splunk Security Certification

profile

What you'll get

Oct
3
Sat 3 Oct
2:00PM GMT+5:30 | 120mins
Session 1
Oct
4
Sun 4 Oct
2:00PM GMT+5:30 | 120mins
Session 2

About this session

🛡️ SPLUNK SECURITY CERTIFICATION

15-Day Splunk for SOC Analysts Masterclass

From Raw Telemetry to Defensible Detections & Incident Response

Trainer Name : Akshay Jain

Senior Cloud Security Analyst | Azure Solution Architect | Red Hat OpenShift Administrator | DevOps & Cloud Security Expert

Akshay Jain is a Senior Cloud Security Manger and Cloud Infrastructure professional with expertise spanning Cloud Security, Azure Architecture, DevOps, Infrastructure Automation, Hybrid Cloud, Cybersecurity, and VAPT.

🚀 Build Practical Splunk & SOC Skills Through Hands-On Labs

🎯 What You Will Learn

🔹 Splunk Architecture & Data Ingestion

  • Understand Forwarders, Indexers & Search Heads
  • Explore data ingestion and indexing
  • Work with source types, metadata and CIM

🔹 SPL – Search Processing Language

  • Build tactical SPL searches
  • Filtering, stats, eval, lookups and subsearches
  • Time-based investigation and event correlation

🔹 SOC Detection Engineering

  • Analyze Windows & Active Directory events
  • Investigate Sysmon telemetry
  • Detect suspicious PowerShell and command execution
  • Build correlation searches and risk-based detections

🔹 Threat Hunting

  • Hypothesis-driven threat hunting
  • MITRE ATT&CK-aligned investigations
  • Endpoint, network and identity threat hunting

🔹 Cloud & Identity Security

  • AWS CloudTrail investigation
  • Microsoft Entra ID sign-in analysis
  • Detect impossible travel, password spraying and privilege escalation

🔹 Incident Response & Forensics

  • Identify Patient Zero
  • Reconstruct attack timelines
  • Investigate lateral movement
  • Correlate firewall, endpoint and authentication evidence

🔹 Splunk SOAR & Automated Response

  • Alert tuning and false-positive reduction
  • Threat enrichment
  • Automated response workflows
  • Incident documentation and handoff

🧪 Hands-On Labs

✔ Windows Event Log Investigation

✔ Palo Alto Traffic Analysis

✔ Authentication & AD Investigation

✔ Sysmon Malware Investigation

✔ DNS Exfiltration Detection

✔ Suspicious PowerShell Detection

✔ Threat Hunting with MITRE ATT&CK

✔ Cloud Privilege Escalation Investigation

✔ Lateral Movement Analysis

✔ Automated SOC Response

🏆 CAPSTONE CHALLENGE

Defend a complete attack chain involving:

Phishing → Execution → Lateral Movement → Data Staging → C2

You will investigate real-world log captures, identify IOCs, trace Patient Zero, contain the threat and prepare an executive-level incident report.

👨‍💻 Who Should Enroll?

• SOC Analysts

• Cybersecurity Students

• Security Engineers

• SIEM Analysts

• Threat Hunters

• Incident Responders

• Cybersecurity Professionals

• IT Professionals moving into SOC roles

📅 Duration

15-Day Practical Masterclass

Outcome: Build operational fluency to triage, investigate, hunt and develop production-ready detections using Splunk in an enterprise SOC.

🎓 Certification

Complete the training and capstone requirements to progress toward the Splunk Security Certification pathway.

📩 Enroll Now & Reserve Your Seat

Learn → Practice → Investigate → Detect → Respond

What are people saying

its an amazing session
Manija Borkar
Sep 2026
Good
Anonymous
Sep 2026
₹12,500