Description
This advanced certification exam is a 57-minute, 70-question assessment which evaluates a candidateβs knowledge
and skills in more advanced searching and reporting commands, advanced use cases of knowledge objects, and
best practices for building dashboards and forms. Candidates can expect an additional 3 minutes to review the exam
agreement, for a total seat time of 60 minutes.
In order to be prepared for the certification exam, Splunk recommends completed the following courses:
β Using Fields
β Working with Time
β Comparing Values
β Result Modification
β Leveraging Lookups and Subsearches
β Correlation Analysis
β Multivalue Fields
β Search Optimization
β Creating Knowledge Objects
β Creating Field Extractions
β Enriching Data with Lookups
β Data Models
β Introduction to Dashboards
β Dynamic Dashboards