Gear Up for Boss of the SOC 10 at Splunk GovSummit 2026

Industries Tom Smit

Key takeaways

  1. Boss of the SOC (BOTS) is a team-based cybersecurity competition where participants use Splunk tools to investigate and stop simulated cyberattacks.
  2. The event will take place a day before Splunk GovSummit on April 7, giving attendees a chance to test their skills, learn new techniques, and compete for bragging rights.
  3. Anyone with basic cybersecurity or Splunk knowledge can participate, with hints, coaches, and resources available to help teams succeed.

Fresh off the heels of BOTS10 at .conf25, we’re bringing the ultimate security showdown to GovSummit. Want in? Join us at the Marriott Marquis on April 7,1–5 pm, for an afternoon of connections, bragging rights, and, of course, competition fuel!

What is Boss of the SOC?

Boss of the SOC (BOTS) is a blue-team, Jeopardy!-style capture-the-flag (CTF) competition where participants test their skills and knowledge of Splunk security products to avoid a simulated cyberattack. The questions require competitors to understand both Splunk and open source intelligence (OSINT) to think outside the box and come out on top.

What’s the Situation?

The Frothly team has added a hot dog truck to their growing brewery business that's now being targeted by hungry competitors and cybercriminals alike. An attack by the notorious Angry Alpaca group is brewing. Do you have what it takes to stop them in their tracks?

Use Splunk Enterprise, Splunk Enterprise Security, Splunk SOAR, and Attack Analyzer (plus a few other surprises!) to beat the bad guys. True to form, we’ll also have our easter egg questions where anything goes. It’s time to roll up your sleeves and put those investigative skills to work!

Should I Participate?

Yes! If you know a little about Splunk security solutions and general cybersecurity, this activity is for you. Don’t forget to bring your desire to learn something new and have fun. BOTS is a team sport, so bring your crew along for the ride!

You’ll face questions of all difficulty levels, and each one comes with hints. Have no fear! Coaches are onsite to assist if necessary.

How Can I Prepare?

Have questions? Please reach out to splunkbots@cisco.com. We can’t wait to see you there!

Related Articles

Threat Update DoubleZero Destructor
Security
5 Minute Read

Threat Update DoubleZero Destructor

The Splunk Threat Research Team shares a closer look at a new malicious payload named DoubleZero Destructor (CERT-UA #4243).
Why Security Teams Choose Splunk Enterprise Security: Three Core Benefits That Transform SecOps
Security
4 Minute Read

Why Security Teams Choose Splunk Enterprise Security: Three Core Benefits That Transform SecOps

Discover how Splunk Enterprise Security transforms SecOps with comprehensive visibility, contextual threat detection, and efficient operations. Learn from PeerSpot users how this leading SIEM solution enhances security management and improves threat response.
How Splunk SOAR is Helping Organizations Achieve a More Resilient Approach to Security
Security
3 Minute Read

How Splunk SOAR is Helping Organizations Achieve a More Resilient Approach to Security

We worked with Peerspot to capture some of the ways customers have found success while using Splunk SOAR as part of their security stack.