Courses for Enterprise Security Customers

Learn to install, configure, manage, and use the Splunk App for Enterprise Security. Two learning paths cover both security analysts and Splunk administrators or architects.

Click on a course below to view a full course description, class schedules, and register.

e-learning
required
recommended
Using Splunk
This 4 1/2 hour course teaches you to search, navigate, and create reports using the Search & Reporting app and Pivot feature. Also available via eLearning.
View topics and register ››
Searching and Reporting
with Splunk
This 9 hour course focuses on Splunk's search and reporting commands. Scenario-based examples and hands-on challenges enable users to create robust searches, reports and charts. Also available via eLearning.
View topics and register ››
Creating Splunk
Knowledge Objects
This 9 hour course teaches you how to create and manage Splunk knowledge objects such as field extractions, tags, event types, alerts, and data models. Also available via eLearning.
View topics and register ››
Advanced Dashboards and Visualizations This 9 hour course is designed for power users who want to create advanced dashboards, forms, and visualizations. Edit simple XML, use tokens, event handlers, drilldowns, custom stylesheets and more.
View topics and register ››
Advanced Searching and Reporting with Splunk This 13 hour course takes the Splunk search language to the next level. Learn powerful advanced commands and lookup methods.
View topics and register ››
Using the Splunk App for Enterprise SecurityThis 3 virtual day course covers the use of Enterprise Security's dashboards, forms, and workflow to identify, find root cause, and resolve security issues.
View topics and register ››
Splunk Enterprise
System Administration
This 2 virtual day course is designed for system administrators who manage a Splunk Enterprise environment. Topics include Splunk license manager, indexers and search heads, configuration, management, and monitoring.
View topics and register ››
Splunk Enterprise
Data Administration
This 3 virtual day course is for data administrators who are responsible for getting data into Splunk. The course provides content about Splunk forwarders and methods to get remote data into Splunk.
View topics and register ››
Building Add-Ons
(e-learning)
This 1 hour course helps you leverage the Splunk Common Information Model to build Splunk Add-ons
View topics and register ››
Architecting and Deploying SplunkThis 9 hour course focuses on large enterprise deployments. Learn best practices for planning, data collection, sizing and documenting a distributed deployment. 
View topics and register ››
Administering the Splunk App for Enterprise Security
This 9 hour course prepares architects and systems administrators to install, configure and manage the Splunk App for Enterprise Security.
View topics and register ››