BigHugger
sk Skill · mukul975

performing-log-source-onboarding-in-siem

Perform structured log source onboarding into SIEM platforms (Splunk, Elastic, Sentinel, QRadar, or similar) by prioritizing sources with a tiered value framework, configuring collectors, building parsers, normalizing fields to a common schema (e.g. CIM), and validating data quality. Use when planning or executing the integration of new log sources — such as Active Directory, firewalls, EDR, VPN, DNS, or cloud audit…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
confsocjsonnormalizationPythonparsingdata-ingestionlog-managementlog-onboardingsplsiem
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python