Implementing Splunk IT Service Intelligence 4.11
Upcoming Classes
Online
Instructor-led online training
Location | Feb 2023 | Mar 2023 | Apr 2023 | May 2023 | Jun 2023 | Jul 2023 | Aug 2023 |
---|---|---|---|---|---|---|---|
APAC Singapore - Virtual |
Feb 13 – Feb 16 |
Mar 21 – Mar 24 |
Apr 17 – Apr 20 | ||||
AMER Eastern Time - Virtual |
Feb 13 – Feb 16 |
Mar 13 – Mar 16 |
Apr 18 – Apr 21 | ||||
EMEA UK Time - Virtual |
Feb 20 – Feb 23 |
Mar 6 – Mar 9 Mar 20 – Mar 23 |
Apr 3 – Apr 6 Apr 24 – Apr 27 | ||||
APAC Sydney - Virtual |
Feb 21 – Feb 24 | ||||||
AMER Pacific Time - Virtual |
Feb 27 – Mar 2 |
Apr 10 – Apr 13 |

Summary
This 18 hour course is designed for administrator users who will implement Splunk IT Service Intelligence for analysts to use. The first day includes the day of content from Using Splunk IT Service Intelligence.
Description
Description:
- IT Service Intelligence analyst user training
- Deployment and Initial Configuration
- Designing, Implementing Services and Searches
- Defining and Adding Entities
- Defining Service Templates, and User Access
- Using Predictive Analytics
- Customization, Maintenance, Troubleshooting
- Creating and Defining Correlation Searches and Event Aggregation
Objectives
Using Modules 1-4
- 1-Navigating ITSI Cloud and Service Analyzers
- 2-Visualinzing Services with Glass Tables
- 3--Investigate Issues with Deep Dives
- 4-Managing Episodes roles
- Understand IT Service Intelligence licensing
- Describe factors affecting IT Service Intelligence performance
- Identify IT Service Intelligence components
- Configure IT Service Intelligence roles
- Configure IT Service Intelligence modules
- Describe IT Service Intelligence deployment options
- List IT Service Intelligence hardware recommendations
- Describe the installation procedure
- Understand IT Service Intelligence licensing
- Describe factors affecting IT Service Intelligence performance
- Identify IT Service Intelligence components
- Configure IT Service Intelligence roles
- Configure IT Service Intelligence modules
- Giving customer requirements, plan ITSI services
- Design service KPI properties, such as schedules, importance, and thresholds
- Identify entity-oriented KPIs
- Identify dependencies between services
- Analyze a data environment based on implementation requirements
- Identify necessary data sources for KPIs
- Plan data intake for IT Service Intelligence configuration
- Implement base searches to support service design
- Use a service design to implement services in IT Service Intelligence
- Create KPIs using base searches
- Configure basic KPI settings for calculation and aggregation
- Configure KPI lag and backfill
- Set KPI importance
- Calculate service health score
- Configure KPI thresholds
- Use aggregate and entity-level thresholds
- Use static and adaptive thresholds
- Apply time policies to thresholds
- Create custom threshold templates
- Add KPIs to services from modules
- Identify good use cases for entities
- Define entities in services
- Use entities in KPI searches
- Use pseudo entities in KPI searches
- Define service template use cases
- Create service templates
- Create new services from templates
- Create dependencies between services
- Define anomaly detection capabilities
- Configure anomaly detection for KPIs
- Configure predictive analytics for services
- Identify ITSI roles and capabilities
- Describe service level roles and team ownership
- Modify ITSI menu options
- Control access to ITSI views
- Use backup and restore tools
- Install content packs
- Use maintenance mode for services and entities
- Understand the ITSI REST interface
- ITSI troubleshooting
- Define new correlation searches
- Define Multi-KPI alerts
- Manage notable event storage
- Define aggregation policy capabilities
- Modify the default aggregation policy
- Understand Smart Mode
- Create new aggregation policies
- Use aggregation policies to automate notable event response
Module 1 - Deployment and Initial Configuration
Module 2 - Designing Services
Module 3 - Data Audit and Base Searches
Module 4 - Implementing Services
Module 5 - Thresholds and Time Policies
Module 6 - Entities and Modules
Module 7 - Templates and Dependencies
Module 8 - Anomaly Detection and Predictive Analytics
Module 9 - Access Control
Module 10 - Customization, Maintenance, Troubleshooting
Module 11 - Correlation Searches and Multi-KPI Alerts
Module 12 - Aggregation Policies
Prerequisites
-
To be successful, students should have a solid understanding of the following courses
- Splunk Fundamentals 1
- Splunk Fundamentals 2
- Splunk Fundamentals 3
- Advanced Searching and Reporting Or the following single-subject courses
- What is Splunk
- Intro to Splunk
- Using Fields
- Scheduling Reports and Alerts
- Visualizations
- Working with Time
- Leveraging Lookups and Sub-searches
- Correlation Analysis
- Search Under the Hood
- Search Optimization
- Introduction to Knowledge Objects
- Creating Knowledge Objects
- Creating Field Extractions
- Enriching Data with Lookups
- Data Models
- Introduction to Dashboards
- Dynamic Dashboards Students should also have completed the following courses
- Splunk Enterprise System Administration
- Splunk Enterprise Data Administration