






Study with the several resources on Docsity
Earn points by helping other students or get them with a premium plan
Prepare for your exams
Study with the several resources on Docsity
Earn points to download
Earn points by helping other students or get them with a premium plan
A detailed analysis of splunk enterprise security (ses), a data-centric security information event management solution. It outlines the key features and benefits of ses, including advanced analytics, automation, and a user-friendly interface. The document also includes a press release, frequently asked questions, and a comprehensive discussion on the implementation of ses at aspire data collections. Valuable for understanding the importance of data security and the role of ses in protecting sensitive information.
Typology: Assignments
1 / 10
This page cannot be seen from the preview
Don't miss anything!







C768/D339 Task 2 Section A: Executive Summary Vulnerable systems can cause businesses grave damage and potentially cause data leaks to consumers who use the systems the business provides to customers. Our research suggests by using Splunk Enterprise Security (SES), you will no longer need to be concerned about having a vulnerable system. This summary includes a brief description of SES and the benefits of why it should be implemented in your systems. What is Splunk Enterprise Security? SES is a data-centric, modern security information event management solution (SIEM). (SPLUNK INC, 2022) The features SES provides are: evolving security systems that use artificial intelligence, search and reporting analytics, advanced threat detection, and a scalable platform that can manage data in any capacity. The features SES will correspond with a discussion on benefits SES provides. Benefits of SES When implementing SES into your systems, you can ensure data is protected 24/7 through SES’s advanced system. This advanced system can provide the following benefits:
By choosing SES, business leaders no longer need to question the security of the system, due to SES scalability. SES features and benefits outweigh the need for another alternative security SIEM and can accommodate diverse business objectives and goals through ensuring data prioritization through protection is present. Our research advocates for the procurement and implementation of SES at Aspire Data Collections. The features and benefits SES provides make it a valuable system for Aspire Data Collections.
Section B: Press Release Headline: Protect our Data, Launch Splunk Enterprise Security Now! Location: San Diego, CA at Aspire Data Collections HQ Lead-in: Interested in ensuring you can provide your customers with quality protection to their data? Join us to discuss the features and benefits of Splunk Enterprise Security! Body: The most used SIEM product Splunk Enterprise Security contains several unique advantages that can ensure data is protected at the forefront of Aspire Data Collections. These advantages include, but are not limited to:
With the approval of the financial department, you can vote on the purchase of Splunk Enterprise Security to implement into Aspire Data Collections. Contact Information: Michael Scott, Aspire Data Collections Product Liaison [email protected] 1.512.534. B1. Press Release Tone and Diction Because the main audience is business executives and leaders, the diction focuses on common words, and phrases that relate to SES. Key phrases and words such as: customer and business relationship, and business operations serve as reminders that correlate to the need to implement SES. The tone of the press release is informal and intending to convey this product will improve current business operations and protect operations through the SES. B2. Press Release Jargon The press released used internal company jargon, such as “Advanced Analytics” and “customizable data reports”. These phrases are commonly used in security related discussions and briefs, which allow business leaders and executives to make well informed decisions based on the product being offered. I did not use any specialized jargon that is not commonly used in businesses to avoid any potential confusion with the advertisement of the product. B3. Press Release Message Timing, Sensitivity, Classification The best time for the audience of Aspire Data Collections to receive this product is during the first day of the month. This is because in the first day of the month, a new pool of funds is issued by stakeholders of the company, and the finance department can create new budgets for products if deemed necessary. The sensitivity of this message is set to be internal to staff, and there is extreme risk if the product were to be shared across the
business operations. The classification of this message is internally focused, and is directed towards only managers within financial department, business leaders, and the Information technology department.
Section C: Frequently Asked Question (FAQ) Question: Am I able to share reports I create with Splunk Enterprise System? Answer: Yes, all reports can be shared and are accessible via email. Question: How do I access Splunk Enterprise Security? Answer: To access Splunk Enterprise Security, you must have an account created. Upon successful completion of account completion, you will receive a weblink to login to the interface. Question: What happens if I receive an alarm from Splunk Enterprise Security? Answer: If you receive an alarm from Splunk Enterprise Security you will receive an email follow up associated with the alarm. Please refer to the email for guidance. C1. FAQ Tone and Diction The diction used in the FAQs intends focus on guides and events of SES. The tone in the FAQs is formal to mitigate deterrence of the product. By using a formal tone, the audience can confidently put trust towards the system through reading the FAQs. C2. FAQ Jargon To avoid misunderstandings and distractions, this FAQ did not include any jargon than what is common to the audience. C3. FAQ Message Timing, Sensitivity, Classification The timing of this message should be available after the presentation is complete. Because this is only FAQs, message sensitivity is only public internally to the organization, no further action is necessary. There is no classification on this message, and is minimal risk if were shared outside of the organization, as questions here have been answered on multiple websites online.
Section D: Sources BlueVoyant. (2022). Splunk Enterprise Security: Use cases, features, and process. BlueVoyant. Retrieved August 21, 2022, from https://www.bluevoyant.com/knowledge- center/splunk- enterprise-security-use-cases-features-and-process SPLUNK INC. (2022). Splunk Enterprise Security product brief. Splunk Enterprise Security. Retrieved August 22, 2022, from https://www.splunk.com/pdfs/product- briefs/splunk- enterprise-security.pdf