-
Notifications
You must be signed in to change notification settings - Fork 0
PrinceCloudOps/sentinel-splunk-siem-lab
Folders and files
| Name | Name | Last commit message | Last commit date | |
|---|---|---|---|---|
About
Simulated suspicious process activity in Splunk and visualized it on a KPI dashboard. Sentinel alert for failed sign-ins, end-to-end SIEM detection, KQL queries, and automated alerting.