SIEM / Log analytics

There are a number of ways to get experience of SIEM products both open source and 'free' trials of enterprise products.

Splunk

Splunk is a very expensive enterprise product but they offer free trials both of their Cloud and on prem versions.


Note that this is the log analytics product, not the full Enterprise Security product, however you can install their 'Security Essentials' app.

https://www.splunk.com/en_us/download.html


They also offer free training

https://www.splunk.com/en_us/training/free-courses/overview.html

Elasticsearch

The Elastic stack is free and open source

https://www.elastic.co/downloads/

Qradar

IBM's Qradar is pretty legacy as a SIEM but there are lots of deployments out there. They offer a 'free' Community Edition

https://www.ibm.com/community/qradar/ce/