Course

Splunk Search Expert 102

Splunk Inc.

Take your Splunk knowledge to the next level with the Splunk Search Expert 102 course. This comprehensive training program focuses on advanced techniques for utilizing time modifiers and commands to filter, process, and correlate data efficiently.

Throughout the course, you will learn how to calculate statistics using transforming commands and evaluate functions, as well as compare, manipulate, and normalize data using a range of commands including the powerful eval command and an array of functions.

Additionally, the course covers enriching results with lookups and subsearches to effectively correlate and filter data from multiple sources. The carefully designed modules provide in-depth insights into working with time, statistical processing, comparing values, result modification, and leveraging lookups and subsearches.

  • Enhance your understanding of time-based data processing and manipulation.
  • Learn to calculate statistics and evaluate functions for efficient data analysis.
  • Explore techniques for comparing, manipulating, and normalizing data effectively.
  • Gain insights into enriching results through lookups and subsearches for improved data correlation.

Certificate Available ✔

Get Started / More Info
Splunk Search Expert 102
Course Modules

Advance your Splunk skills through five comprehensive modules covering time-based data processing, statistical analysis, data comparison, result modification, and leveraging lookups and subsearches.

Working with Time

Delve into the intricacies of working with time, including searching with time, formatting time, using time commands, and working with time zones. Gain a comprehensive understanding of processing time-based data effectively and efficiently.

Statistical Processing

Explore statistical processing techniques such as using the chart command, timechart command, top command, stats command, and transforming commands. Learn to calculate statistics and utilize the powerful eval command and its functions for effective data analysis.

Comparing Values

Discover methods for comparing values through the use of the eval command, evaluation functions, if function, case function, and other comparison-related commands. Gain insights into effectively comparing and validating data values.

Result Modification

Learn about result modification commands including appendpipe, eventstats, streamstats, fillnull, bin, xyseries, untable, and field value modification using eval and its functions. Acquire the skills to modify and manipulate data results efficiently.

Leveraging Lookups & Subsearches

Master the art of leveraging lookups and subsearches, including using lookup commands, inputlookup, outputlookup, adding subsearches, troubleshooting subsearches, and using return command. Enhance your ability to correlate and filter data from multiple sources effectively.

More Security Courses

Cybersecurity Risk Management Framework

Infosec

Gain comprehensive knowledge of NIST cybersecurity fundamentals, RMF process, and NIST 800-171 requirements. Learn to assess and manage cybersecurity risk, implement...

C++ Interacting with the World and Error Handling

Infosec

Explore the specifics of C/C++ languages, their interaction with the world, error handling, and the execution environment in this comprehensive course.

Introduction to Cybersecurity for Business

University of Colorado System

Introduction to Cybersecurity for Business is a practical course designed to provide a comprehensive understanding of computer security, covering topics like risk...

Tools for Security Specialists

Codio

Tools for Security Specialists provides a comprehensive understanding of security strategies from large organizations down to Linux systems.