Using Splunk Mission Control 2.0

Using Splunk Mission Control 2.0

Upcoming Classes


Instructor-led online training

Location May 2022 Jun 2022 Jul 2022 Aug 2022 Sep 2022 Oct 2022 Nov 2022
APAC Singapore - Virtual Jul 8
AMER Eastern Time - Virtual Jul 18


Splunk Mission Control is a cloud-based, unified security operations platform. It brings together security data, analytics, and operations so that security teams can manage incidents across the entire event lifecycle. This 1-day hands-on course introduces Mission Control and illustrates its benefits to security teams. You will learn how to triage, investigate, and respond to security incidents. You will also learn how to create new response plans and build customized dashboards to gain further insights into your data.


  • Mission Control overview and architecture
  • Features, capabilities, and benefits
  • Triage notables in the analyst queue
  • Start a notable investigation
  • Use and create new response templates
  • Analyze security data using dashboards


4.5 hours


Module 1 – Splunk Mission Control Overview

  • Introduce Splunk Mission Control
  • Discuss features and capabilities
  • Identify benefits to security teams
  • Review the overall architecture

Module 2 – Triage, Investigate, & Respond

  • Review the analyst queue
  • Search for notables and filter the analyst queue
  • Use response templates in a notable investigation
  • Add notes, files, artifacts, and critical evidence to a notable

Module 3 – Response Templates

  • Select and apply a response template for a particular use case
  • Modify the template to fit the notable investigation use case
  • Edit and delete the phases and tasks of the template
  • Create a new response template

Module 4 – Dashboards

  • Review how to manage and create dashboards
  • Configure ad-hoc and on-premises searches
  • Build visualizations and utilize user inputs
  • Save and export dashboards

  • Prerequisites

    • Using Splunk Enterprise Security

    Onsite Training

    For groups of three or more

    Request Quote

    Public Training

    APAC Singapore - Virtual

    • Confirmed
      9:00 AM - 1:30 PM SGT
      $ 500.00 USD

    AMER Eastern Time - Virtual

    • Confirmed
      9:00 AM - 1:30 PM EDT
      $ 500.00 USD

    Don't see a date that works for you?

    Request Class