Gear Up for Boss of the SOC 10 at Splunk GovSummit 2026

Key takeaways

  1. Boss of the SOC (BOTS) is a team-based cybersecurity competition where participants use Splunk tools to investigate and stop simulated cyberattacks.
  2. The event will take place a day before Splunk GovSummit on April 7, giving attendees a chance to test their skills, learn new techniques, and compete for bragging rights.
  3. Anyone with basic cybersecurity or Splunk knowledge can participate, with hints, coaches, and resources available to help teams succeed.

Fresh off the heels of BOTS10 at .conf25, we’re bringing the ultimate security showdown to GovSummit. Want in? Join us at the Marriott Marquis on April 7,1–5 pm, for an afternoon of connections, bragging rights, and, of course, competition fuel!

What is Boss of the SOC?

Boss of the SOC (BOTS) is a blue-team, Jeopardy!-style capture-the-flag (CTF) competition where participants test their skills and knowledge of Splunk security products to avoid a simulated cyberattack. The questions require competitors to understand both Splunk and open source intelligence (OSINT) to think outside the box and come out on top.

What’s the Situation?

The Frothly team has added a hot dog truck to their growing brewery business that's now being targeted by hungry competitors and cybercriminals alike. An attack by the notorious Angry Alpaca group is brewing. Do you have what it takes to stop them in their tracks?

Use Splunk Enterprise, Splunk Enterprise Security, Splunk SOAR, and Attack Analyzer (plus a few other surprises!) to beat the bad guys. True to form, we’ll also have our easter egg questions where anything goes. It’s time to roll up your sleeves and put those investigative skills to work!

Should I Participate?

Yes! If you know a little about Splunk security solutions and general cybersecurity, this activity is for you. Don’t forget to bring your desire to learn something new and have fun. BOTS is a team sport, so bring your crew along for the ride!

You’ll face questions of all difficulty levels, and each one comes with hints. Have no fear! Coaches are onsite to assist if necessary.

How Can I Prepare?

Have questions? Please reach out to splunkbots@cisco.com. We can’t wait to see you there!

Related Articles

Monitor for, Investigate, and Respond to Phishing Payloads with Splunk Enterprise Security Content Update
Security
4 Minute Read

Monitor for, Investigate, and Respond to Phishing Payloads with Splunk Enterprise Security Content Update

Detect, investigate, and defend signs of phishing payloads in your environment with Splunk Enterprise Security Content Update (ESCU)
Machine Learning in Splunk Enterprise Security: Unleashing Hidden Detection Power
Security
15 Minute Read

Machine Learning in Splunk Enterprise Security: Unleashing Hidden Detection Power

Discover how Splunk Enterprise Security 8.0 revamps machine learning, spots hidden threats, simplifies anomaly detection, and turbocharges your SOC.
Dark Crystal RAT Agent Deep Dive
Security
9 Minute Read

Dark Crystal RAT Agent Deep Dive

The Splunk Threat Research Team (STRT) analyzed and developed Splunk analytics for this RAT to help defenders identify signs of compromise within their networks.