Courses for Splunk Administrators

Whether you're responsible for a single Splunk instance or a massive distributed deployment, our Administrator curriculum teaches you the concepts, tasks, and best practices to keep your Splunk installation happy, healthy, and growing.

Notice: The following courses; Using Splunk, Searching and Reporting with Splunk, Creating Splunk Knowledge Objects, and Splunk Infrastructure Overview are now replaced with Splunk Fundamentals 1 and Splunk Fundamentals 2 (see new learning path below).

If you are a partner or have a subscription, you can continue to take the legacy classes and then take both the Certified User and Certified Power User exam.

Click on a course below to view a full course description, class schedules, and register.

e-learning
required
recommended
Splunk Fundamentals 1
This self-paced course teaches you how to search and navigate in Splunk, use fields, get statics from your data, create reports, dashboards, lookups, and alerts. It will also introduce you to Splunk's datasets features and Pivot interface.
View topics and register ››
Splunk Fundamentals 2This 4 virtual day course focuses on additional SPL commands, using field aliases and calculated fields, creating tags and event types, using macros, creating workflow actions and data models, and normalizing data with the CIM.
View topics and register ››
Splunk Enterprise
System Administration
This 2 virtual day course is designed for system administrators who manage a Splunk Enterprise environment. Topics include Splunk license manager, indexers and search heads, configuration, management, and monitoring.
View topics and register ››
Splunk Enterprise
Data Administration
This 3 virtual day course is for data administrators who are responsible for getting data into Splunk. The course provides content about Splunk forwarders and methods to get remote data into Splunk.
View topics and register ››
Troubleshooting Splunk Enterprise This 2 virtual day course is designed for Splunk administrators. It covers topics and techniques for troubleshooting a standard Splunk distributed deployment using the tools available on Splunk Enterprise.
View topics and register ››
Splunk Enterprise
Cluster Administration
This 3 virtual day course is for advanced Splunk administrators and covers deployment and management of Splunk indexer clusters and search head clusters.
View topics and register ››