CIM & Data Models in Splunk ES

Jun 24, 2021, 12:30 – 2:00 PM (UTC)

Pune Splunk User Group

CIM & Data Models in Splunk ES

About this event

Please join us on Thursday, June 24th, 06:00 PM IST for Pune Splunk User Group meetup. Suman & Team is going to talk about the importance of CIM & Data Models in Splunk Enterprise Security. Below the basic agenda of the meetup:

1. What is CIM

2. Use CIM to Normalize data

3. Which data models are part of CIM

4. Demo on CIM validator

5. Demo on CIM tags & Event types

6. How to tune CIM data models to reduce false positives

Please RSVP to block your calendar and receive future updates/Events by Pune Splunk User Group.

Also, join Splunk User group on Slack using splk.it/slack and find us in #splunk-pune-user-group channel for collaborations and Q&A for Pune Splunk User Group.

Speaker

  • Suman Gajavelly

    bitsIO

    CTO & Co-Founder bitsIO

When

When

Thursday, June 24, 2021
12:30 PM – 2:00 PM (UTC)

Agenda

Soft Start
Session on CIM & Data models

Hosts

  • Rohit Joshi

    TIAA

    Splunk Consultant

  • Gauri Bansode Kulkarni

    Cocus AG

    Splunk Consultant

Organizers

  • Rohit Joshi

    User Group Leader, Splunk Architect

  • Keshab Kumar Jha

    UBS

    User Group Leader

Contact Us