Security Onion & Splunk: Alert Analysis Workflow/Examples

Security Onion & Splunk is setup successfully, everything is ingesting and properly alerting but now what? That largely depends on your individual situation, but I can assume you'll see some alerts and need to do an investigation.  So this article will address how to use Security Onion & Splunk to perform an investigation on your

