Gear Up for Boss of the SOC 10 at Splunk GovSummit 2026

Key takeaways

  1. Boss of the SOC (BOTS) is a team-based cybersecurity competition where participants use Splunk tools to investigate and stop simulated cyberattacks.
  2. The event will take place a day before Splunk GovSummit on April 7, giving attendees a chance to test their skills, learn new techniques, and compete for bragging rights.
  3. Anyone with basic cybersecurity or Splunk knowledge can participate, with hints, coaches, and resources available to help teams succeed.

Fresh off the heels of BOTS10 at .conf25, we’re bringing the ultimate security showdown to GovSummit. Want in? Join us at the Marriott Marquis on April 7,1–5 pm, for an afternoon of connections, bragging rights, and, of course, competition fuel!

What is Boss of the SOC?

Boss of the SOC (BOTS) is a blue-team, Jeopardy!-style capture-the-flag (CTF) competition where participants test their skills and knowledge of Splunk security products to avoid a simulated cyberattack. The questions require competitors to understand both Splunk and open source intelligence (OSINT) to think outside the box and come out on top.

What’s the Situation?

The Frothly team has added a hot dog truck to their growing brewery business that's now being targeted by hungry competitors and cybercriminals alike. An attack by the notorious Angry Alpaca group is brewing. Do you have what it takes to stop them in their tracks?

Use Splunk Enterprise, Splunk Enterprise Security, Splunk SOAR, and Attack Analyzer (plus a few other surprises!) to beat the bad guys. True to form, we’ll also have our easter egg questions where anything goes. It’s time to roll up your sleeves and put those investigative skills to work!

Should I Participate?

Yes! If you know a little about Splunk security solutions and general cybersecurity, this activity is for you. Don’t forget to bring your desire to learn something new and have fun. BOTS is a team sport, so bring your crew along for the ride!

You’ll face questions of all difficulty levels, and each one comes with hints. Have no fear! Coaches are onsite to assist if necessary.

How Can I Prepare?

Have questions? Please reach out to splunkbots@cisco.com. We can’t wait to see you there!

Related Articles

Operation Defend the North: What High-Pressure Cyber Exercises Teach Us About Resilience and How OneCisco Elevates It
Security
3 Minute Read

Operation Defend the North: What High-Pressure Cyber Exercises Teach Us About Resilience and How OneCisco Elevates It

The OneCisco approach is not about any single platform or toolset; it's about fusing visibility, analytics, and automation into a shared source of operational truth so that teams can act decisively, even in the fog of crisis.
Staff Picks for Splunk Security Reading February 2023
Security
3 Minute Read

Staff Picks for Splunk Security Reading February 2023

Explore the latest list of presentations, whitepapers, and customer case studies that our Splunk security experts feel are worth a read.
Deep Learning in Security: Text-based Phishing Email Detection with BERT Model
Security
4 Minute Read

Deep Learning in Security: Text-based Phishing Email Detection with BERT Model

We introduced a large language model (LLM)-based phishing email detector integrated into the Splunk DSDL app. We provide details on model training and evaluation, comparisons to other machine learning and deep learning algorithms as well as deployment approaches to Splunk in this blog.