First you need Log Server to capture your Network traffic , You can use Syslog or SNMP Configurations and then use the data for information and analysis and then Data Mining if you want !
You need the following Knowledge :
Network (Net+, CCNA , CCNP, MCITP, MTCNA, ….)
DataBases (Mysql, MongoDB, SQL Server, ….)
Use Tavak Card 4 to HELP