Courses for Enterprise Security End-Users

This path prepares security practitioners to use Splunk Enterprise Security (ES). Students will use ES to identify and track security incidents, analyze security risks, use predictive analytics, and threat discovery.

Notice: The following courses; Using Splunk, Searching and Reporting with Splunk, Creating Splunk Knowledge Objects, and Splunk Infrastructure Overview are now replaced with Splunk Fundamentals 1 and Splunk Fundamentals 2 (see new learning path below).

If you are a partner or have a subscription, you can continue to take the legacy classes and then take both the Certified User and Certified Power User exam.

Click on a course below to view a full course description, class schedules, and register.

e-learning
required
recommended
Splunk Fundamentals 1
This self-paced course teaches you how to search and navigate in Splunk, use fields, get statics from your data, create reports, dashboards, lookups, and alerts. It will also introduce you to Splunk's datasets features and Pivot interface.
View topics and register ››
Splunk Fundamentals 2This 4 virtual day course focuses on additional SPL commands, using field aliases and calculated fields, creating tags and event types, using macros, creating workflow actions and data models, and normalizing data with the CIM.
View topics and register ››
Advanced Searching and Reporting with Splunk This 3 virtual day course takes the Splunk search language to the next level. Learn powerful advanced commands and lookup methods.
View topics and register ››
Using Splunk
Enterprise Security
This 3 virtual day course prepares security practitioners to use Splunk Enterprise Security (ES). Students will use ES to identify and track security incidents, analyze security risks, use predictive analytics, and threat discovery.
View topics and register ››