ISE Integration with Splunk
Автор: Learn with Cisco
Загружено: 2024-12-03
Просмотров: 1381
Learn how to integrate Cisco ISE with Cisco Splunk as a Security Incident Event Management (SIEM) system to monitor various events, including admin logins, ISE health summary, authentications, authorizations and accounting, etc. You can create rules to report security incidents so that security analysts in the Security Operations Centre (SOC) can analyze them based on predetermined or correlation approaches. Discover other Splunk add-on applications, such as
Splunk add-on for Cisco Identity Services (ISE) and
Cisco Enterprise Networking for Splunk Platform
which provide you with app-based visibility into your enterprise events. Additionally, you will learn about the features of Splunk SOAR (Security Orchestration, Automation, and Response), which give your SOC the ability to quarantine systems in response to security issues more easily.
✨ Subscribe for more tech videos! @CiscoUtube ✨
Learn more about Cisco U. http://cs.co/9001OQthl
Create a Cisco U. Free Account: http://cs.co/9001OQtCx
FOLLOW US ON SOCIAL
X (Formerly Twitter): / learningatcisco
Facebook: / learningatcisco
Instagram: / learningatcisco
LinkedIn: / cisco_training_and_certification
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: