I will analyze security logs using splunk and create spl queries
Cybersecurity Analyst Splunk SIEM
About this Gig
Need help analyzing security logs in Splunk or creating SPL queries?
I will analyze your provided security logs and create practical Splunk SPL queries for security monitoring and threat detection.
What I can help with:
- Splunk SPL query creation
- Security log analysis
- Windows Event Log analysis
- Suspicious activity identification
- Basic threat detection
- Detection recommendations
- Security findings documentation
What you will receive:
- Clear and relevant SPL queries
- Analysis of the provided logs
- Key security findings
- Detection recommendations based on your package
- Concise technical documentation for applicable packages
I have hands-on experience building a Splunk SOC detection lab using Windows Event Logs, Sysmon, Splunk Enterprise, SPL, and MITRE ATT&CK-based detection workflows.
Please contact me before ordering if your requirements are complex or involve large datasets.
Only provide data that you are authorized to share and have permission to have analyzed.
Device:
Desktop/Laptop
Operating system:
Windows
Also delivering:
Documentation
My Portfolio
FAQ
What do you need from me to start the analysis?
Please provide the relevant security logs, Splunk data or sample events, your analysis goal, and any specific detection requirements. Only share data you are authorized to provide.
Can you analyze Windows Event Logs and Sysmon data?
Yes. I can analyze provided Windows Event Logs and Sysmon events in Splunk and help identify suspicious activity and relevant detection opportunities.
Will I receive the SPL queries used for the analysis?
Yes. Your package includes the specified number of SPL queries, written for your provided data and analysis requirements.

