Gear Up for Boss of the SOC 10 at Splunk GovSummit 2026

Industries Tom Smit

Key takeaways

  1. Boss of the SOC (BOTS) is a team-based cybersecurity competition where participants use Splunk tools to investigate and stop simulated cyberattacks.
  2. The event will take place a day before Splunk GovSummit on April 7, giving attendees a chance to test their skills, learn new techniques, and compete for bragging rights.
  3. Anyone with basic cybersecurity or Splunk knowledge can participate, with hints, coaches, and resources available to help teams succeed.

Fresh off the heels of BOTS10 at .conf25, we’re bringing the ultimate security showdown to GovSummit. Want in? Join us at the Marriott Marquis on April 7,1–5 pm, for an afternoon of connections, bragging rights, and, of course, competition fuel!

What is Boss of the SOC?

Boss of the SOC (BOTS) is a blue-team, Jeopardy!-style capture-the-flag (CTF) competition where participants test their skills and knowledge of Splunk security products to avoid a simulated cyberattack. The questions require competitors to understand both Splunk and open source intelligence (OSINT) to think outside the box and come out on top.

What’s the Situation?

The Frothly team has added a hot dog truck to their growing brewery business that's now being targeted by hungry competitors and cybercriminals alike. An attack by the notorious Angry Alpaca group is brewing. Do you have what it takes to stop them in their tracks?

Use Splunk Enterprise, Splunk Enterprise Security, Splunk SOAR, and Attack Analyzer (plus a few other surprises!) to beat the bad guys. True to form, we’ll also have our easter egg questions where anything goes. It’s time to roll up your sleeves and put those investigative skills to work!

Should I Participate?

Yes! If you know a little about Splunk security solutions and general cybersecurity, this activity is for you. Don’t forget to bring your desire to learn something new and have fun. BOTS is a team sport, so bring your crew along for the ride!

You’ll face questions of all difficulty levels, and each one comes with hints. Have no fear! Coaches are onsite to assist if necessary.

How Can I Prepare?

Have questions? Please reach out to splunkbots@cisco.com. We can’t wait to see you there!

Related Articles

Detecting Supernova Malware: SolarWinds Continued
Security
7 Minute Read

Detecting Supernova Malware: SolarWinds Continued

Supernova exposes SolarWinds Orion to attack via an in-memory web shell. It needs to be patched and detections below can help identify adversary actions.
Gone in 52 Seconds…and 42 Minutes: A Comparative Analysis of Ransomware Encryption Speed
Security
4 Minute Read

Gone in 52 Seconds…and 42 Minutes: A Comparative Analysis of Ransomware Encryption Speed

With the release of SURGe's new ransomware research, Splunker Shannon Davis shares a closer look into measuring how fast ransomware encrypts files.
Partner Spotlight: IT-ISAC Members Automate and Simplify Intelligence Sharing with TruSTAR
Security
5 Minute Read

Partner Spotlight: IT-ISAC Members Automate and Simplify Intelligence Sharing with TruSTAR

We recently interviewed IT-ISAC Executive Director Scott Algeier to discuss why the organization chose to partner with TruSTAR, and the benefits its members are experiencing using TruSTAR to simplify integrations, automate data flows and make intel more actionable.