Splunk SPL
Search Processing Language, the query language used in Splunk to search, transform, and visualize event data. A widely used SIEM query language alongside KQL.
Concept Neighborhood
Explore this concept’s connections in the groups below.
Start here
Kusto Query Language
A related concept to explore, covered by 5 lessons.
Kusto Query LanguageStart here
5
lessons
Query Performance
5
lessons
Query Tuning
5
lessons
SIEM
5
lessons
SIEM Data Models
5
lessons
Sigma Rules
1
lesson
Show 2 more connections
Related Lessons
5 lessons cover this conceptSIEM Data Models and Log Normalization
SOC Analyst
Aggregation and Statistical Analysis for Threat Detection
SOC Analyst
Time-Series Analysis and Multi-Source Correlation
SOC Analyst
Query Tuning, Lookup Tables, and Production Operations
SOC Analyst
Designing a Detection Program with SIEM Queries
SOC Analyst
Sign in to open lesson content directly.
