Hemant Seth's Blog Posts

Hemant is a Principal Product Manager at Splunk, leading the Kubernetes Monitoring offering within Splunk Observability Cloud. Prior to this role, he focused on Splunk Observability Platform administration, including identity management and license usage. Hemant brings over a decade of experience in the observability domain and holds a Master’s degree in Electrical Engineering with a specialization in Telecommunications.

TOTAL-REPLAY: The Bridge to Replay Attacks Using the Security Content Metadata
Security
5 Minute Read

TOTAL-REPLAY: The Bridge to Replay Attacks Using the Security Content Metadata

Learn how to use TOTAL-REPLAY to replay Splunk Attack Data logs. Validate detections, tune analytics, and map to MITRE ATT&CK without a full attack lab.
Print, Leak, Repeat: UEBA Insider Threats You Can't Ignore
Security
5 Minute Read

Print, Leak, Repeat: UEBA Insider Threats You Can't Ignore

UEBA excels at identifying small deviations in user and device behavior across authentication, data access, data movement, and privilege usage.
Splunking Isovalent Data: Initial Setup and Overview
Security
5 Minute Read

Splunking Isovalent Data: Initial Setup and Overview

The Splunk Threat Research Team walks through the lab setup, Splunk data ingestion, and initial exploration of Tetragon logs to establish our foundation.
Top 10 Splunk Things To Do at Cisco Live in Amsterdam
Platform
20 Minute Read

Top 10 Splunk Things To Do at Cisco Live in Amsterdam

Cisco Live offers innovation-packed keynotes, technical training, and professional networking.
Integrating Splunk Alerts with Amazon EventBridge: Enhancing Operational Efficiency
Partners
5 Minute Read

Integrating Splunk Alerts with Amazon EventBridge: Enhancing Operational Efficiency

Learn how Splunk alerts integrate with Amazon EventBridge, making it easy to route alerts through AWS services to automate responses, connect with incident management tools, and add AWS context to alerts.
Splunk Security Content for Threat Detection & Response: January Recap
Security
5 Minute Read

Splunk Security Content for Threat Detection & Response: January Recap

In January, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security Content Update (ESCU) app (v5.20).