DiscoverSplunk [Business Flow] 2019 .conf Videos w/ SlidesSupercharge Your Security Operations Center with Splunk and MITRE [Splunk Enterprise, Splunk Business Flow]
Supercharge Your Security Operations Center with Splunk and MITRE [Splunk Enterprise, Splunk Business Flow]

Supercharge Your Security Operations Center with Splunk and MITRE [Splunk Enterprise, Splunk Business Flow]

Update: 2019-12-21
Share

Description

DATEV provides information services to ~2.5 million payrolling, accounting, and tax clients. Given the sensitivity of the personal and financial data that our clients process, DATAEV decided to establish a SOC to secure our clients' information, and we put Splunk at the core of its operations. In this session we will discuss four key elements relevant to building a successful SOC with Splunk. We'll first discuss how we formed our SOC and orchestrated its activities internally. We'll then discuss how we use MITRE's ATT&CK™ framework to prioritize activities, how we spread our SOC's security knowledge to all relevant groups at DATEV, and how we use Splunk to create real-time situational awareness for different SOC customers, for stakeholders, and for management.


Speaker(s)
Sebastian Schmerl, Head of Cyber Defense, Computacenter
Christian Heger, SOC Architect / Technical Head of SOC & Analyst, DATEV eG



Slides PDF link - https://conf.splunk.com/files/2019/slides/SEC1411.pdf?podcast=1576909580


Product: Splunk Enterprise, Splunk Business Flow


Level: Good for all skill levels

Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Supercharge Your Security Operations Center with Splunk and MITRE [Splunk Enterprise, Splunk Business Flow]

Supercharge Your Security Operations Center with Splunk and MITRE [Splunk Enterprise, Splunk Business Flow]

Splunk