This document provides an overview and agenda for a Splunk presentation on operational security intelligence. The presentation covers Splunk security capabilities including threat intelligence via lookups, the common information model for normalizing security data from multiple sources, and analyzing advanced Windows attacks via specific event IDs. It also discusses using security-related apps from Splunkbase. The document contains several legal disclaimers about forward-looking statements and roadmap information.