Splunk Certified Enterprise Security Admin - Ingeniq Splunk Training
16565
page-template-default,page,page-id-16565,page-child,parent-pageid-13133,ajax_fade,page_not_loaded,,qode-theme-ver-1.5,wpb-js-composer js-comp-ver-4.3.5,vc_responsive

Splunk Certified Enterprise Security Admin

Splunk Certified Enterprise Security Admin manages a Splunk Enterprise Security environment, including ES event processing and normalization, deployment requirements, technology add-ons, settings, risk analysis settings, threat intelligence and protocol intelligence configuration, and customizations. This certification demonstrates an individual’s ability to install, configure, and manage a Splunk Enterprise Security deployment.

Please note: There are two approved coursework paths for this certification track. Candidates may complete either Splunk Enterprise System Administration and Splunk Enterprise Data Administration or Splunk Cloud Administration as part of this certification track.

Learning Path

Click on a course below to view a course description, class schedules, and register.

Splunk Enterprise System Administration

This virtual 9 hour course (9am to 1.30pm over 2 days) is designed for system administrators who are responsible for managing the Splunk Enterprise environment. The course provides the fundamental knowledge of Splunk license manager, indexers and search heads. It covers configuration, management, and monitoring core Splunk Enterprise components.

Splunk Enterprise Data Administration

This virtual 13.5 hour course (9am to 1.30pm over 3 days) is designed for system administrators who are responsible for getting data into Splunk Indexers. The course provides the fundamental knowledge of Splunk forwarders and methods to get remote data into Splunk indexers. It covers installation, configuration, management, monitoring, and troubleshooting of Splunk forwarders and Splunk Deployment Server components.

Splunk Cloud Administration

This 3 virtual day course prepares administrators to manage users and get data in to Splunk Cloud. Topics include data inputs and forwarder configuration, data management, user accounts, and basic monitoring.

https://www.splunk.com/en_us/training/certification-track/splunk-es-certified-admin/splunk-cloud-administration.html

Administering Enterprise Security

This 3 virtual day course prepares architects and systems administrators to install, configure and manage the Splunk App for Enterprise Security.

Certification Exam

Note: this exam is being launched in its beta phase. This means that that candidates who complete the exam will not immediately receive pass/fail results. Our targeted date for announcing results to individuals who complete this exam is January 11, 2019, but this is dependent on getting a sufficient number of exam registrants to analyze performance data.

How to register for your exam

There are three ways to purchase a PearsonVUE registration voucher:

1) Directly from PearsonVUE

This is the most streamlined approach. Follow the steps for account creation and exam registration provided at www.pearsonvue.com/splunk

Payment will be collected at the time of registration.

2) From Splunk (as an individual) *COMING SOON*

Log into your existing account at Splunk.com/Education to purchase a registration code. Payment can be made via credit card or existing Splunk Education credits. Splunk will email you a unique registration code, which can be used for registration at www.pearsonvue.com/splunk . * Note – this feature has not yet been launched. Individual candidates should purchase vouchers via Option 1 until further notice.

3) From Splunk (as an account)

Your Splunk Sales Rep can add certification exams to any deal. Once the number of vouchers has been requested, Splunk will email your unique registration codes, which can be used for registration at www.pearsonvue.com/splunk

All scheduled exams are subject to a minimum 24-hour cancellation and/or rescheduling policy. Failure to cancel or reschedule an exam within this timeframe results in forfeiture of registration fee.