Interactive Security Information and Event Management Training
Watch logs flow from various sources into the SIEM collector
Build and test Splunk-style queries against simulated log data
Paste raw logs to see how SIEM parses them into structured fields
Create correlation rules to detect security threats
Triggers when: Failed login count > 5 in 5 minutes
Severity: High
Create visualizations for your security operations center
Design your SIEM deployment architecture by connecting components