Splunk Test Blueprint Architect
Splunk Test Blueprint Architect
The Splunk Enterprise Certified Architect exam is the final step towards
completion of the Splunk Enterprise Certified Architect certification.
Exam Content
The following topics are general guidelines for the content likely to be included on the
exam; however, other related topics may also appear on any specific delivery of the
exam. In order to better reflect the contents of the exam and for clarity purposes, the
guidelines below may change at any time without notice.
1.0 Introduction 2%
1.1 Describe a deployment plan
1.2 Define the deployment process
1
4.0 Infrastructure Planning: Resource Planning 7%
4.1 List sizing considerations
4.2 Identify disk storage requirements
4.3 Define hardware requirements for various Splunk components
4.4 Describe ES considerations for sizing and topology
4.5 Describe ITSI considerations for sizing and topology
4.6 Describe security, privacy, and integrity measures
2
10.0 Licensing and Crash Problems 5%
10.1 License issues
10.2 Crash issues
3
17.0 Indexer Cluster Management and Administration 7%
17.1 Indexer cluster storage utilization options
17.2 Peer offline and decommission
17.3 Master app bundles
17.4 Monitoring Console for indexer cluster environment
Exam Preparation
Candidates may reference the Splunk How-To YouTube Channel, Splunk Docs, and
draw from their own Splunk experience to prepare for the exam.
The following is a suggested and non-exhaustive list of training from the Enterprise
Certified Architect Learning Path that may cover topics listed in the above blueprint:
4
Splunk Enterprise Deployment Practical Lab