Splunk ES Essentials: Discovery Workshop
Explore how Splunk Enterprise Security (ES) strengthens your threat detection and response.
- Tue, April 28, July 14 and, Oct 20
- 🇬🇧 10:00 AM - 2:00 PM UK
- Virtual, Microsoft Teams
Splunk's Market-Leading SIEM
Join Ben Marrable, Somerford's Splunk Security Strategist (CISSP), to explore the capabilities in Splunk Enterprise Security (ES). Discover where ES fits within Splunk's end-to-end security portfolio, and how it helps strengthen your organisation's detection, investigation, and response workflows.
Splunk Enterprise Security (ES) acts as the central nervous system of the modern Security Operations Centre (SOC), delivering organisation-wide visibility and real-time security intelligence. It enables teams to proactively detect and respond to internal and external threats through improved workflows, advanced risk-based alerting, and data-driven insights. ES streamlines threat management, reduces risk exposure, and provides both security practitioners and executives with actionable context and visibility across the business.
Agenda
- An Overview of the Splunk Platform for Security
- Introduction to Splunk ES and its role within the Splunk Ecosystem
- Comparing ES Essentials Edition vs. ES Premier Edition
- Creating Detections and managing security Findings
- Conducting Investigations Using Splunk ES Mission Control
- Introduction to Risk-Based Alerting (RBA) and Enhanced Threat Detection
Who Should Attend?
- Security professionals looking to elevate their use of Splunk for security analytics
- SOC analysts focused on improving threat detection, investigation, and response workflows
- Security leaders seeking greater visibility into their organisation’s risk posture
- Those who are wanting to learn about Splunk ES for the first time
Additional Information
- To attend this workshop, you should already be a user of Splunk or have attended one of our Defence Service: Splunk Platform for Beginners Workshop.
- We aim to provide a highly interactive experience. Please join us at the start of the session to engage in hands-on labs.
- To get the most from the session, we ask for respectful and focused participation throughout the workshop. Our hosts are here to guide you and answer any questions.
- After completing the workshop and hands-on labs, you will be eligible to receive a certificate of participation.
- If you cannot complete the labs, we offer future sessions to support your certification journey.
If you need any assistance or have questions, please contact us at marketing@somerfordassociates.com.

