Description
This advanced certification exam is a 57-minute, 70-question assessment which evaluates a candidate’s knowledge
and skills in more advanced searching and reporting commands, advanced use cases of knowledge objects, and
best practices for building dashboards and forms. Candidates can expect an additional 3 minutes to review the exam
agreement, for a total seat time of 60 minutes.
In order to be prepared for the certification exam, Splunk recommends completed the following courses:
❏ Using Fields
❏ Working with Time
❏ Comparing Values
❏ Result Modification
❏ Leveraging Lookups and Subsearches
❏ Correlation Analysis
❏ Multivalue Fields
❏ Search Optimization
❏ Creating Knowledge Objects
❏ Creating Field Extractions
❏ Enriching Data with Lookups
❏ Data Models
❏ Introduction to Dashboards
❏ Dynamic Dashboards