From the course: Introduction to SecOps on Google Distributed Cloud (GDC) by Google
Unlock this course with a free trial
Join today to access over 25,400 courses taught by industry experts.
Splunk dashboards - Google Cloud Platform Tutorial
From the course: Introduction to SecOps on Google Distributed Cloud (GDC) by Google
Splunk dashboards
- [Instructor] A dashboard tells a story that analysts can use to guide their decision-making. Dashboards transform complex and diverse data sources into meaningful visualizations. Dashboards guide users through a narrative that reveals insights, trends, and critical information. Through the smart design of dashboards, efficient decision-making and fast actions are made possible. Let's review the most common dashboard charts used in Splunk for the GDC SOC. A line chart represents data points with connected lines, illustrating trends over time. For example, a line chart can be used for the daily count of login failures. This can detect spikes, which can indicate potential brute force attacks, or the trend of malware infections to identify sudden spikes over a specific time period. When time is used for the x axis, the chart is typically referred to as a time chart. Bar and column charts represent data points through…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
(Locked)
Module overview1m 14s
-
(Locked)
Log types in the GDC SOC2m 24s
-
(Locked)
Audit logs5m 51s
-
(Locked)
Audit logs at Cymbal Federal1m 36s
-
(Locked)
Security logs51s
-
(Locked)
Operational logs1m 36s
-
(Locked)
Operational logs at Cymbal Federal46s
-
(Locked)
Review: Logs in Splunk1m 19s
-
(Locked)
Metrics in Splunk1m 27s
-
(Locked)
Baseline metrics4m 34s
-
(Locked)
Security-specific metrics in Splunk1m 47s
-
(Locked)
Using Splunk metrics1m 57s
-
(Locked)
Splunk metrics at Cymbal Federal1m 30s
-
(Locked)
Splunk dashboards5m 32s
-
(Locked)
Alerts in Splunk1m 19s
-
(Locked)
Alerts at Cymbal Federal1m
-
(Locked)
Alert rules1m 55s
-
(Locked)
The alert inventory2m 4s
-
(Locked)
Module review59s
-
(Locked)