EVENT

AMER Hands-on Workshops

Multiple Dates  |  9 AM PT / 12 PM ET

Build practical Splunk skills in a live, guided lab

Learn by doing with Splunk experts. Hands-On Workshops are live virtual sessions that help you build practical skills through guided exercises, realistic scenarios, and hands-on work in a Splunk environment.

Choose from beginner, intermediate, and advanced topics across Splunk Platform, Security, Observability, dashboards, automation, machine learning, and AI resilience. Register for the session that fits your current experience—or select more than one to create your own learning path.

What to expect
  • Approximately three hours of live, interactive instruction.
  • A hosted Splunk environment for guided exercises, where applicable.
  • Opportunities to learn from Splunk subject matter experts and other practitioners.
  • Practical skills and workflows you can carry into your own environment.

Before your session

Hands-on reminder: Join from a computer or laptop with reliable internet access. Two monitors—or a second device—are recommended so you can follow the instructor while working in the lab, but they are not required.

Review the session descriptions below, choose your preferred date from the registration options, and reserve your place.

Security

Security

  • Splunk4Rookies - Security
  • Splunk Workshop - InfoSec
  • Splunk Enterprise Security 8.3
  • Splunk4Ninjas - ML Security
  • Splunk SOAR

 

Observability

Observability

  • Splunk4Rookies - Observability
  • Splunk4Ninjas Observability

 

Platform AI

Platform/AI

  • Splunk4Rookies - Platform
  • Splunk4Rookies - Dashboard Studio
  • Splunk AI for Resilience

 

Workshops

Workshop Title Topic Level
Splunk4Rookies - Platform Workshop Platform Beginner
Learn More
Get hands-on with the Splunk platform in a supportive, guided environment. Through practical exercises, you will ingest data, create a Splunk app, run searches, and build an interactive dashboard. Along the way, you will explore how the same core platform supports use cases across IT operations, Security, DevOps, and business analytics.

What you’ll learn

  • Ingest and explore data in Splunk
  • Create an app and build useful searches
  • Turn results into an interactive dashboard
Splunk4Rookies - Security Workshop Security Beginner
Learn More
Learn the fundamentals of security analytics by working with realistic security data in a hosted Splunk environment. You will search for suspicious behavior, investigate activity, and build dashboards that turn raw data into useful security insights. The guided scenario introduces the analytical approach behind hands-on experiences such as Boss of the SOC.

What you’ll learn

  • Explore and interpret security data
  • Identify indicators of malicious behavior
  • Visualize findings in an interactive dashboard
Splunk4Rookies - Observability Workshop Observability Beginner
Learn More
Get hands-on with Splunk Observability Cloud and learn how modern teams use metrics, traces, and logs to understand application and infrastructure health. In a guided troubleshooting scenario, you will work with real-time telemetry generated from browser sessions, visualize performance, and identify the source of issues across digital experiences.

What you’ll learn

  • Ingest and explore observability data
  • Monitor applications and infrastructure in real time
  • Use telemetry to investigate performance issues
Splunk Workshop - InfoSec Security Beginner
Learn More
Build a practical security monitoring foundation with the InfoSec App and Splunk Security Essentials. Through guided exercises, you will connect common security data sources, work with technology add-ons, accelerate data models, refine SPL for specific requirements, and tailor dashboards to priority use cases. The goal is to help your team gain useful security insight faster.

What you’ll learn

  • Prepare and normalize common security data
  • Refine searches and data models for monitoring use cases
  • Customize out-of-the-box dashboards and detections
Splunk Enterprise Security 8.3 Workshop Security Intermediate
Learn More
Go deeper into Splunk Enterprise Security 8.3 through a realistic analyst workflow. You will navigate the redesigned experience, manage notable events, author detections, and investigate adversary activity with and without automation. The lab follows the incident lifecycle from initial detection through investigation and response, including integrated SOAR capabilities.

What you’ll learn

  • Navigate the ES 8.3 analyst workflow
  • Create and manage detections and notable events
  • Investigate incidents and apply automation where it adds value
Splunk4Ninjas - ML Security Workshop Security Intermediate
Learn More
Apply machine learning to security problems in a workshop that balances core concepts with practical work. You will progress from simple statistics to Splunk AI Toolkit capabilities, solve realistic ML challenges, explore out-of-the-box content, and build dashboards that communicate your findings in a Splunk environment.

What you’ll learn

  • Frame security questions for statistical and ML analysis
  • Use Splunk AI Toolkit content to explore suspicious activity
  • Build visualizations that make model findings actionable
Splunk4Rookies - Dashboard Studio Workshop Platform Advanced
Learn More
Move beyond basic dashboarding and learn how to create clear, interactive data experiences in Dashboard Studio. You will build effective searches, configure foundational interactions, and apply practical design principles to create a functional dashboard from the ground up. The workshop focuses on turning results into a story users can understand and explore.

What you’ll learn

  • Create searches that support dashboard use cases
  • Add useful interactions and visual structure
  • Build a complete Dashboard Studio experience
Splunk SOAR Workshop Security Advanced
Learn More
Experience how Splunk SOAR can streamline the incident lifecycle through orchestration and automation. Using a realistic scenario, you will work with incidents, cases, and artifacts; enrich alerts automatically; and apply standard operating procedures from initial notable event through resolution. The lab emphasizes where automation can improve consistency and analyst speed.

What you’ll learn

  • Manage incidents, cases, and artifacts in Splunk SOAR
  • Automate alert enrichment and repeatable procedures
  • Connect orchestration to investigation and resolution workflows
Splunk4Ninjas Observability Workshop Observability Advanced
Learn More
Take your observability practice beyond foundational monitoring. Through expert-led scenarios, you will explore AI-assisted troubleshooting, more complex instrumentation, data pipeline optimization, and infrastructure scaling. The workshop is designed to build confidence with advanced patterns used to resolve difficult performance issues in high-scale production environments.

What you’ll learn

  • Apply advanced troubleshooting and instrumentation approaches
  • Optimize telemetry pipelines and configurations
  • Investigate complex performance issues at scale
Splunk AI for Resilience Workshop AI Advanced
Learn More
Explore AI from both sides of the resilience challenge: using AI to accelerate work in Splunk and using Splunk to monitor and secure AI-powered systems. In guided exercises, you will build Model Context Protocol connections, use AI assistance to accelerate SPL development, and examine the operational and security practices required for responsible AI deployment.

What you’ll learn

  • Connect AI tools and Splunk through MCP
  • Use AI assistance to accelerate SPL workflows
  • Apply observability and security thinking to AI workloads