Course Description

Splunk is a software that helps analysts, operators, programmers and others explore many types of data, including raw machine data. It is an extremely powerful tool that allows organizations to collect, search, explore, analyze and visualize data of all types. It’s a secure way to examine the enormous streams of machine data produced by technology, infrastructure, and IT systems, regardless if the systems are virtual, physical, or in the cloud.

Splunk Essentials is a practical and quick introduction to Splunk that shows students how to collect and analyze their data as well as how to make reports and gain insights from that data. The course starts with an introduction to Splunk Enterprise Software and its capabilities. The course then follows with how to bring in data, which explains indexing and searching in Splunk as well as other data concepts.  The Search Processing Language (SPL) is then covered in detail, as well as Data Models and Pivots using Splunk, data optimization and search acceleration, and how to create Reports, Alerts and Dashboards.

Course Outline

  • Splunk Overview
    • What is Splunk
    • Splunk components
    • Splunk’s User Interface
  • Bringing in Data
    • Splunk and Big Data
    • Splunk Data Sources
    • Creating Indexes
    • Buckets
    • Data Inputs
    • Splunk events and fields
    • Extracting new fields
  • Search Processing Language
    • Basic searches
    • Anatomy of a search
    • Using Fields in Searches
    • Search Language Fundamentals
    • Time Modifiers
    • Filtering search results
    • Search commands
      • stats
      • top
      • rate
      • chart and timechart
      • eval
      • rex
  • Data Models and Pivot
    • Data Models and Pivot
    • Creating a data model
    • Creating a dataset and the Common Information model (CIM)
    • Creating Lookups
    • Data model acceleration
  • Data Optimization, Reports, Alerts, and Accelerating Searches
    • Data classification with event types
    • Data normalization with tags
    • Creating reports
    • Creating alerts
    • Search and report acceleration
  • Dashboards
    • Types of dashboards
    • Creating dashboards
    • Form inputs
      • Time range input
      • Radio Input
      • Dropdown input
    • Static Real-Time dashboard
    • Creating a Choropleths


18 Hours | 3 Days or 6 Nights

Applies Towards the Following Certificates

Enroll Now - Select a section to enroll in
Section Title
Splunk Essentials I
T, Th
Time (Central Time)
6:30PM to 9:30PM
Oct 18, 2022 to Nov 03, 2022
Schedule and Location
# of Course Hours
Delivery Option
Course Fee(s)
Rate non-credit $2,195.00
Potential Discount(s)
Required fields are indicated by .
*Academic Unit eligibility to be determined by college/university in which you are enrolled in a degree seeking program.