Data Models is a Splunk Education course focused on designing and implementing data models that provide a structured, normalized layer over raw Splunk event data.
What You Will Learn
- Design hierarchical data models using the Splunk data model editor
- Define root event objects, child objects, and attribute fields with constraints
- Enable and manage data model acceleration for fast query performance
- Use Pivot to build reports and dashboards against accelerated data models
- Apply and extend the Splunk Common Information Model (CIM) for normalized multi-source analytics
Who Should Attend
Splunk knowledge managers, data architects, and advanced power users responsible for building normalized analytics layers for reporting or security use cases.
Prerequisites
Solid experience with Splunk search and knowledge objects, including saved searches and field extractions.



