This is the first of a two part series on implementing Box Plots in Splunk for security use cases.Analyzing complex data is difficult, which is why people use Splunk. Sometimes patterns in data are not obvious, so it takes various ways of looking at aggregate reports and multiple charts to ascertain the important information buried in the data. A common tool in a data analyst's arsenal is a box plot. A box plot, also called a box and whisker plot, is a visual method to quickly ascertain the variability and skew of data, as well as the median. For more about using and reading box plots, read the excellent and succinct post by Nathan Yau of the Flowing Data ...
Splunk is a California-based analytics-driven SIEM platform that collects and analyzes machine data generated by websites, applications, servers, networks, and mobile devices.