Administering Phantom

Course code: SPLUNKAP

This course prepares IT and security practitioners to install, configure and use a Phantom server in their environment and will prepare developers to attend the playbook development course.

1 000 EUR

1 210 EUR including VAT

Selection of dates
daniel
Do you have a question?
+420 731 175 867 edu@edutrainings.cz

Professional
and certified lecturers

Internationally
recognized certifications

Wide range of technical
and soft skills courses

Great customer
service

Making courses
exactly to measure your needs

Course dates

Starting date: Individual

Type: Individual

Course duration: 9 hours

Language: en

Price without VAT: 1 000 EUR

Register

Starting
date
Place
Type Course
duration
Language Price without VAT
Individual Individual 9 hours en 1 000 EUR Register
G Guaranteed course

Didn't find a suitable date?

Write to us about listing an alternative tailor-made date.

Contact

Course structure

Module 1 – Introduction & Concepts

  • Describe Phantom operating concepts
  • Identify documentation and community resources
  • Identify installation options
  • Perform initial configuration
  • Configure multi tenancy to enable use of Phantom by multiple teams

Module 2 – Installation

  • Deployment planning
  • Pre-installation steps
  • Identify installation options
  • Upgrading Phantom

Module 3 – Initial Configuration

  • Product settings
  • Access control
  • Authentication settings
  • Response settings

Module 4 – Apps and Assets

  • Describe how apps and assets work in Phantom
  • Add and configure new apps
  • Configure assets

Module 5 – Data Ingestion

  • Assets as data sources
  • Configuring data polling
  • Labels and tags
  • Data ingestion management
  • Event settings

Module 6 – Containers and Events

  • Work with the analyst queue
  • Filtering and sorting
  • Using search
  • Container export and import
  • Aggregation settings

Module 7 – Mission Control

  • Use Mission Control to work on events
  • Use indicators to find matching artifacts in multiple events
  • Manually run actions and examine action results
  • Manually run playbooks
  • Use the vault to store related files
  • Using the heads-up display
  • Using notes

Module 8 – Case Management and Workflows

  • Use case management for complex investigations
  • Use case workflows
  • Define new workflows
  • Customize case management

Module 9 – Multi tenancy and Clustering

  • Define clustering best practices
  • Configure multi-server Phantom clusters
  • Configure multi-tenancy

Module 10 – Maintenance and reporting

  • Run reports
  • Use Phantom audit tools
  • Monitor system health

Follow-up courses

Free Splunk Fundamentals 1 en

Vendor: Splunk

Area: Big Data

Price from

0 EUR without VAT

Free Splunk User Behavior Analytics en

Vendor: Splunk

Area: Big Data

Price from

0 EUR without VAT

Advanced Searching and Reporting en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Splunk Infrastructure Overview en

Vendor: Splunk

Area: Big Data

Price from

0 EUR without VAT

Splunk for Analytics and Data Science en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Creating Dashboards with Splunk en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Splunk Cluster Administration en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Splunk Enterprise Data Administration en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Troubleshooting Splunk Enterprise en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Working with Metrics in Splunk en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Implementing Splunk Data Stream Processor (DSP) en

Vendor: Splunk

Area: Big Data

Price from

2 000 EUR without VAT

Splunk Cloud Administration en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Transitioning to Splunk Cloud en

Vendor: Splunk

Area: Big Data

Price from

500 EUR without VAT

Splunk Enterprise System Administration en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Splunk Enterprise System Administration en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Advanced Dashboards and Visualizations en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Building Splunk Apps en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Developing with Splunk’s REST API en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Developing SOAR Playbooks en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Advanced Phantom Implementation en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Administering Splunk Enterprise Security en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Using Splunk Enterprise Security en

Vendor: Splunk

Area: Big Data

Price from

1 500 EUR without VAT

Using Splunk IT Service Intelligence en

Vendor: Splunk

Area: Big Data

Price from

500 EUR without VAT

Implementing Splunk IT Service Intelligence en

Vendor: Splunk

Area: Big Data

Price from

2 000 EUR without VAT

Implementing Splunk SmartStore en

Vendor: Splunk

Area: Big Data

Price from

500 EUR without VAT

Using Splunk Infrastructure Monitoring en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Kubernetes Monitoring with Splunk en

Vendor: Splunk

Area: Big Data

Price from

500 EUR without VAT

Automation Using the REST and SignalFlow APIs en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

Using the Splunk Terraform Provider en

Vendor: Splunk

Area: Big Data

Price from

1 000 EUR without VAT

ComGate payment gateway MasterCard Logo Visa logo