1. Home
  2. Splunk
  3. SPLK-1002 Exam Syllabus

Splunk SPLK-1002 Exam Syllabus

Start Free SPLK-1002 Exam Practice After Reviewing the Topics

Before starting your SPLK-1002 exam preparation, it is recommended to review the complete Splunk Core Certified Power User exam syllabus and carefully go through the exam objectives listed below. Once you understand the exam structure and objectives, you should practice using our free SPLK-1002 questions. We also provide premium SPLK-1002 practice test, fully updated according to the latest exam objectives, to help you accurately assess your preparedness for the actual exam.

Splunk
Vendor
SPLK-1002
Exam Code
297
Total Questions
10
Total Exam Domains

START FREE SPLK-1002 EXAM PRACTICE

NO SIGNUP REQUIRED  •  100% FREE TO START

SPLK-1002 EXAM QUESTIONS

Splunk SPLK-1002 Exam Objectives

Section 1: 1.0 Using Transforming Commands for Visualizations
Weight:
5%
1.1 Use the chart command
1.2 Use the timechart command
Section 2: 2.0 Filtering and Formatting Results
Weight:
10%
2.1 The eval command
2.2 Use the search and where commands to filter results
2.3 The fillnull command
Section 3: 3.0 Correlating Events
Weight:
15%
3.1 Identify transactions
3.2 Group events using fields
3.3 Group events using fields and time
3.4 Search with transactions
3.5 Report on transactions
3.6 Determine when to use transactions vs. stats
Section 4: 4.0 Creating and Managing Fields
Weight:
10%
4.1 Perform regex field extractions using the Field Extractor (FX)
4.2 Perform delimiter field extractions using the FX
Section 5: 5.0 Creating Field Aliases and Calculated Fields
Weight:
10%
5.1 Describe, create, and use field aliases
5.2 Describe, create, and use calculated fields
Section 6: 6.0 Creating Tags and Event Types
Weight:
10%
6.1 Create and use tags
6.2 Describe event types and their uses
6.3 Create an event type
Section 7: 7.0 Creating and Using Macros
Weight:
10%
7.1 Describe macros
7.2 Create and use a basic macro
7.3 Define arguments and variables for a macro
7.4 Add and use arguments with a macro
Section 8: 8.0 Creating and Using Workflow Actions
Weight:
10%
8.1 Describe the function of GET, POST, and Search workflow actions
8.2 Create a GET workflow action
8.3 Create a POST workflow action
8.4 Create a Search workflow action
Section 9: 9.0 Creating Data Models
Weight:
10%
9.1 Describe the relationship between data models and pivot
9.2 Identify data model attributes
9.3 Create a data model
Section 10: 10.0 Using the Common Information Model (CIM) Add-On
Weight:
10%
10.1 Describe the Splunk CIM
10.2 List the knowledge objects included with the Splunk CIM Add-On
10.3 Use the CIM Add-On to normalize data
Info