Course Catalog
ECSS - Enhancing Cisco Security Solutions with Splunk v1.0
Code: ECSS 1.0
Duration: 5 Day
$4395 USD

OVERVIEW

The Enhancing Cisco Security Solutions with Splunk (ECSS) training covers intermediate-level knowledge of Splunk, including its fundamentals, key components, and architecture so you can detect, investigate, and respond to security threats effectively. You’ll learn to utilize various Splunk components, including Splunk Enterprise, Splunk SIEM, and Splunk SOAR. You’ll also discover how to use and troubleshoot the Cisco Security Cloud App, Cisco Legacy Apps, and technology add-ons (TAs) for integrating Cisco security solutions with Splunk for enhancing user, cloud, and breach protections.

This training also earns you 32 Continuing Education (CE) credits toward recertification.

DELIVERY FORMAT

This course is available in the following formats:

Virtual Classroom

Duration: 5 Day

CLASS SCHEDULE

Delivery Format: Virtual Classroom
Date: Oct 26 2026 - Oct 30 2026 | 09:00 - 17:00 EDT
Location: Online
Course Length: 5 Day

$ 4395

Delivery Format: Virtual Classroom
Date: Jan 25 2027 - Jan 29 2027 | 08:30 - 16:30 EST
Location: Online
Course Length: 5 Day

$ 4395

Delivery Format: Virtual Classroom
Date: Apr 26 2027 - Apr 30 2027 | 08:30 - 16:30 EDT
Location: Online
Course Length: 5 Day

$ 4395

GOALS

After completing this course, you should be able to:

  • Explain the Splunk Enterprise/Cloud fundamentals
  • Explain the use of SIEM, SOAR as part of the modern SOC architecture to enhance the SOC’s ability to detect, investigate, and respond to security threats effectively
  • Implement Cisco Security Solutions to Splunk Integration using the Cisco Security Cloud App
  • Implement Cisco Security Solutions to Splunk Integration using Cisco Legacy Apps and TAs
  • Illustrate the value of integrating Cisco security solutions with Splunk using real-world use cases
  • Troubleshoot the Cisco Security Cloud App and the Cisco Apps and TAs
OUTLINE


Notice: Undefined variable: classroom in /home/alliancemicro/public_html/content/catalog/public_course_details.php on line 264

Notice: Trying to access array offset on value of type null in /home/alliancemicro/public_html/content/catalog/public_course_details.php on line 264
Will Be Updated Soon!
  • Overview of Splunk Enterprise and Splunk Cloud
  • Splunk Enterprise and Splunk Cloud Components
  • Splunk Enterprise Data Ingestion
  • Splunk Search Programming Language
  • Splunk Dashboards and Reports
  • XDR, SIEM, and SOAR Platforms
  • Cisco XDR, Splunk SIEM, and Splunk SOAR
  • Cisco Security Cloud App
  • Cisco Secure Firewall Integration
  • Cisco Splunk Enterprise Integration
  • Cisco Secure Malware Analytics, Duo, Secure Network Analytics, Email Threat Defense, and Multicloud Defense Integrations
  • Cisco Security Legacy Apps and Technology Add-Ons
  • Cisco ISE Integration
  • Cisco NVM Integration
  • Cisco Security Solutions and Splunk Use Case
  • Cisco Splunk Use Case
  • Troubleshoot General Splunk Issues
  • Troubleshoot Cisco Security Cloud App
  • Troubleshoot Cisco Legacy Apps and Add-ons
LABS


Notice: Undefined variable: classroom in /home/alliancemicro/public_html/content/catalog/public_course_details.php on line 289

Notice: Trying to access array offset on value of type null in /home/alliancemicro/public_html/content/catalog/public_course_details.php on line 289
Will Be Updated Soon!
Will Be Updated Soon!
WHO SHOULD ATTEND
  • System Engineers
  • SOC Engineers
  • Network Architects
PREREQUISITES

There are no prerequisites for this training. However, the knowledge and skills you are recommended to have before attending this training are:

  • Cisco CCNP Security or equivalent knowledge

These skills can be found in the following offering: