The Complete Splunk Beginner Course
4.4 (7,099 ratings)
Course Ratings are calculated from individual students’ ratings and a variety of other signals, like age of rating and reliability, to ensure that they reflect course quality fairly and accurately.
32,171 students enrolled

The Complete Splunk Beginner Course

LEARN SPLUNK from this best-selling course. Become the IT HERO, with real exercises and data sets!
4.4 (7,091 ratings)
Course Ratings are calculated from individual students’ ratings and a variety of other signals, like age of rating and reliability, to ensure that they reflect course quality fairly and accurately.
32,155 students enrolled
Created by Adam Frisbee
Last updated 2/2020
English [Auto], French [Auto], 6 more
  • German [Auto]
  • Indonesian [Auto]
  • Italian [Auto]
  • Polish [Auto]
  • Portuguese [Auto]
  • Spanish [Auto]
Current price: $20.99 Original price: $29.99 Discount: 30% off
5 hours left at this price!
30-Day Money-Back Guarantee
This course includes
  • 2.5 hours on-demand video
  • 4 articles
  • 22 downloadable resources
  • Full lifetime access
  • Access on mobile and TV
  • Certificate of Completion
Training 5 or more people?

Get your team access to 4,000+ top Udemy courses anytime, anywhere.

Try Udemy for Business
What you'll learn
  • Set up a working Splunk environment.
  • Understand the basics of SPL (Search Processing Language).
  • Create meaningful reports and dashboards in Splunk.
  • Become an IT HERO with Splunk.
  • Install software in a Windows or Linux environment.
  • Understand basic Linux and Windows concepts.
  • Linux bash command experience helpful but not required.
  • Understand basic networking concepts.



One of my students, who gave me permission to post this, says:


"Rated you 5 stars! Your course was amazing. I bought your course, got started on Saturday, went through all the videos and exercises. Then re-watched it again on Sunday at 1.5 speed...and got a job Monday working with Splunk! Every technical question they threw at me I was able to answer including example SPL. This was an amazing life changing decision to take this course." - Neil


  • Course updated for Splunk 8.x!  As Splunk updates their software, I'll update this course content, and you don't have to purchase anything else!

  • Lifetime access

  • Lots of downloadable content

    • All slides available for download

    • Custom, helpful documents made just for you!

The best course for learning Splunk, the leader in real-time monitoring, operational intelligence, log management, and SIEM (security information and event management). Your instructor is Adam Frisbee, a university instructor, a Splunk Certified Administrator and a Splunk geek.    

Do you want to be an IT Hero? This course is for you!

In this course we will go through Splunk architecture, setting up your own Splunk instance, searching and reporting with Splunk, creating cool visualizations in Splunk, and much more!

Don't buy poor quality courses! This course is high quality, with hours and hours of video content, downloadable slide decks for every lecture, practice problems and data sets, and quizzes that really test your knowledge after each section.

*Some of the demos might be using a slightly older version of Splunk. I am working on updating these.

Who this course is for:
  • Have you been tasked with setting up Splunk but aren't sure where to start?
  • Do you want real practice exercises in Splunk?
  • Have you heard about the power of having Splunk on your resume?
  • Do you want to participate in the big data and machine learning boom?
  • Do you want to pass the Splunk certification exams?
Course content
Expand all 35 lectures 02:40:25
+ Introduction
3 lectures 07:51

I'm glad you have decided to enroll in this, the most popular Splunk course ever created. In the resources for this lecture, I have included all of the course resources: slides, datasets, and helpful documents, in one convenient .zip file. Download here!

Preview 02:56

Resources for when you get stuck.

Getting Help

A few questions to get the ball rolling. Once you pass with 100%, you can feel confident in moving on to Section 2.

Introduction Quiz
9 questions
+ Planning Your Splunk Deployment
5 lectures 23:57

Learn about some of the different deployment models for Splunk.

Preview 07:55
How Splunk Stores Data

Maps to 2.1 Identify license types

Maps to 2.2 Understand license violations

Understanding Licensing

Apps are one of the things that set Splunk apart from other log management tools.

Splunk Apps
Demo: apps
+ Installing Splunk
4 lectures 08:15
Demo: Provision a Splunk Cloud instance
Demo: Download and Install Splunk on Linux
Download and Install Splunk on Windows

After you pass this quiz (100%), you will be ready to move on to section 3 "Getting Data In."

Installing Splunk Quiz
10 questions

For the first homework assignment, please see the available .pdf.

Homework 1: Install Splunk
+ Getting data In
5 lectures 15:34

Learn how you can get data into Splunk.

Getting Data In

Forwarders are the most popular way to get data into Splunk. Universal forwarders are the most popular (and easiest to deploy) type of forwarder.

Demo (1/2): Get Data In to Splunk
Demo (2/2): Get Data In to Splunk

For the second homework assignment, please see the available .pdf.

Homework 2: Install forwarders.

Once you've passed this quiz with 100%, you're ready to move on to Section 4: Searching and Reporting. You're half-way done with the course! 

Getting Data In Quiz
10 questions
+ Searching and Reporting
6 lectures 49:23

The Search app is the starting place for many Splunk functions.

The Search App

Understand how Splunk interprets your search commands.

The Search Pipeline

The basics of SPL. Key value pairs, comparisons, phrases, wildcards, booleans 

Basic Searching

Time is arguably the most valuable property of a Splunk search.

Dealing with Time

Understand how Splunk detects fields, and how you can define your own fields.

Search Modes, Fields, and Field Discovery

Add functions to your search: stats, rare, top.

Intermediate Searching

Test your knowledge with SPL!

SPL Quiz
10 questions
+ Visualizing Your Data
5 lectures 29:43

One of the most powerful features of Splunk is the data model.

Data Models

Learn to use Splunk's visualization builder to build your own dashboards and reports.

Using Pivot to Build Basic Visualizations

Build visualizations using SPL.

The Chart and Timechart Commands

Learn how to create and schedule reports and alerts.

Reporting and Alerting

For the fourth homework assignment, we're going to import a data set and do some searches against it using SPL, then create a cool dashboard.

  • You'll need to download and import the homeworkdataset.csv file.
  • The assignment is described in the homework 3.pdf file.
Homework 3: Combining your SPL knowledge with your visualization knowledge.
+ Advanced Splunk Concepts
7 lectures 25:42
Deployment Servers and Forwarder Management

Understand how Splunk handles users, roles, and authentication--both internal and external.

Users, Roles, and Authentication

Configuration files are the "atoms" of Splunk--the stuff Splunk is made out of.

Configuration Files

Learn about the power of knowledge objects: tags, fields, lookups, eventtypes

Knowledge Objects

This is the end of this course, but it is only the beginning of your Splunk journey!

The Beginning (The End of This Course)

Watch this video to learn about Splunk's cloud offering and how you can get a free trial!

Homework 4 - Splunk in the Cloud

Welcome to this comprehensive final exam. As you are answering these questions, reflect back on how much you now know about Splunk.

Final Exam
20 questions