SPLK-1005 Verified 2026 Edition

Cloud Certified AdminPractice Test

Master the Splunk Cloud Certified Admin with the official PlanetCert Practice Test. Access real exam questions, professional-grade detailed explanations, and our advanced adaptive simulator. Pass your certification exam on the first attempt.

156 Total Questions
1 Included Version Get all versions for the price of one
English Edition
All-In-One Bundle
$79.99
$75.99
  • Interactive Simulator & AI
  • Detailed Explanations
  • Study, Timed & Flashcard Mode
  • Lifetime Access & Updates

Instant lifetime access • Secure checkout

Why Study with PlanetCert?

The Latest Questions

Practice questions and exam topics aligned with the current exam objectives.

Detailed Explanations

Go beyond the answer. Master the material with comprehensive learning and professional explanations for every concept.

AI

AI-Powered Insights

Personalized preparation guidance that adapts to your performance and identifies weak spots automatically.

Exam Information

Official specifications published by Splunk

Exam Format

75 min
60
Not publicly disclosed
Professional

Registration

$130 USD
Pearson VUE or online proctoring

Validity

2 years
Pass a current Splunk certification exam; Complete Splunk continuing education activities

SPLK-1005 Exam Topics and Domains

SPLK-1005 is organized into 13 weighted domains. Expect to work with Splunk Cloud Platform, inputs.conf, props.conf, Splunk forwarders, and more.

1

Splunk Cloud Overview

5%

Describe Cloud topology

Splunk Cloud architecture components
  • Understand the architecture of Splunk Cloud
  • Identify the components and their roles in cloud topology

Describe tasks managed by the Splunk cloud administrator

Administrator responsibilities
  • Identify tasks that cloud administrators are responsible for
  • Understand limitations compared to on-prem administrators

List the primary differences between Splunk Cloud and Splunk Enterprise

Cloud vs. Enterprise distinctions
  • Compare and contrast Splunk Cloud with Splunk Enterprise
  • Understand key architectural and operational differences

List differences between Self-Service Cloud and Managed Cloud

Self-Service vs. Managed Cloud offerings
  • Distinguish between Self-Service and Managed Cloud offerings
  • Understand when to use each service tier
2

Index Management

5%

Define a Splunk index

Index concepts and structure
  • Define what a Splunk index is
  • Understand the role of indexes in data organization

Create indexes in cloud

Index creation procedures
  • Create new indexes in Splunk Cloud
  • Configure index settings appropriately

Delete data from an index

Data deletion methods
  • Understand how to delete data from indexes
  • Know the implications and limitations of data deletion

Monitor indexing activities

Indexing monitoring and troubleshooting
  • Monitor indexing activities and performance
  • Identify and resolve indexing issues
3

User Authentication and Authorization

5%

Administer Splunk user roles

Role-based access control
  • Create and manage user roles
  • Assign appropriate permissions to roles

Integrate Splunk with LDAP, Active Directory, or SAML

External authentication integration
  • Configure external authentication methods
  • Integrate Splunk Cloud with enterprise identity systems
4

Splunk Configuration Files

5%

Review Splunk configuration files and directories

Configuration file structure
  • Identify key Splunk configuration files
  • Understand the directory structure and organization

Review configuration file precedence

Configuration precedence rules
  • Understand configuration file precedence
  • Resolve configuration conflicts

Review index and search time processes

Data pipeline phases
  • Understand the difference between index-time and search-time processing
  • Know when to apply configurations at each phase
5

Getting Data in Cloud

15%

List Splunk forwarder types

Forwarder types and characteristics
  • Identify different types of Splunk forwarders
  • Understand when to use each forwarder type

Describe the role of forwarders

Forwarder functionality
  • Describe the role of forwarders in data collection
  • Understand forwarder capabilities and features

Configure a forwarder to Splunk Cloud

Forwarder configuration for cloud
  • Configure forwarders to send data to Splunk Cloud
  • Implement secure forwarder connections

Test the forwarder connection

Forwarder connectivity testing
  • Verify forwarder connectivity to Splunk Cloud
  • Troubleshoot connection issues

Describe optional forwarder settings

Advanced forwarder configuration
  • Configure optional forwarder settings
  • Optimize forwarder performance and reliability
6

Forwarder Management

5%

Describe Splunk Deployment Server

Deployment Server architecture
  • Understand the role of the Deployment Server
  • Identify key components and concepts

Explain the use of forwarder management

Centralized forwarder management
  • Explain the benefits of centralized forwarder management
  • Understand forwarder management capabilities

Configure forwarders to be deployment clients

Deployment client configuration
  • Configure forwarders as deployment clients
  • Verify deployment client registration

Managing forwarders using deployment apps

Deployment app creation and management
  • Create and manage deployment apps
  • Target apps to specific forwarders
7

Monitor Inputs

15%

Describe the Splunk process for inputting data

Data input pipeline
  • Describe the Splunk data input process
  • Understand the data pipeline phases

Create file and directory monitor inputs

Monitor input configuration
  • Configure file and directory monitor inputs
  • Understand monitor input options

Use optional settings for monitor inputs

Advanced monitor settings
  • Configure optional monitor input settings
  • Optimize monitor input performance
8

Network and Other Inputs

10%

Create network (TCP and UDP) inputs

Network input configuration
  • Configure TCP and UDP network inputs
  • Understand network input use cases

Create a basic scripted input

Scripted input configuration
  • Configure scripted inputs
  • Schedule script execution

Describe optional settings for network inputs

Advanced network input settings
  • Configure optional network input settings
  • Optimize network input configuration

Identify Windows input types and uses

Windows-specific inputs
  • Identify Windows-specific input types
  • Configure Windows inputs

Use the HTTP Event Collector (HEC) to get data into Splunk

HEC configuration and usage
  • Configure HTTP Event Collector
  • Send data using HEC
9

Fine-tuning Inputs

5%

Describe the default processing that occurs during the input phase

Input phase processing
  • Understand default input phase processing
  • Identify metadata assigned during input

Configure input phase options, such as sourcetype fine-tuning and character set encoding

Input phase configuration
  • Configure input phase options
  • Override default metadata assignments
10

Parsing Phase and Data Preview

10%

Describe the default processing that occurs during parsing

Parsing phase operations
  • Understand parsing phase processing
  • Identify default parsing operations

Optimize and configure event line breaking

Event breaking configuration
  • Configure event line breaking
  • Optimize event boundary detection

Explain how timestamps and time zones are extracted or assigned to events

Timestamp extraction
  • Configure timestamp extraction
  • Handle timezone variations

Use Data Preview to validate event creation during the parsing phase

Data Preview tool usage
  • Use Data Preview to validate parsing
  • Test parsing configuration before deployment
11

Manipulating Raw Data

10%

Explain how data transformations are defined and invoked

Transformation configuration
  • Define data transformations
  • Understand how transformations are invoked

Use transformations with props.conf and transforms.conf to modify raw data

Data transformation techniques
  • Configure data transformations
  • Modify raw data using transformations

Use SEDCMD to modify raw data

SEDCMD configuration
  • Use SEDCMD to modify raw data
  • Apply regular expressions for data transformation
12

Installing and Managing Apps

5%

Review the process for installing apps

App installation procedures
  • Install apps in Splunk Cloud
  • Understand cloud-specific app installation requirements

Describe private apps

Private app concepts
  • Understand private apps
  • Install and manage private apps

Describe how apps are managed

App management procedures
  • Manage apps in Splunk Cloud
  • Update and remove apps
13

Working with Splunk Cloud Support

5%

Isolate problems before contacting Splunk Cloud Support

Problem isolation techniques
  • Isolate problems before contacting support
  • Gather relevant troubleshooting information

Define the process for working with Splunk Cloud Support

Support engagement process
  • Engage with Splunk Cloud Support effectively
  • Understand support processes and requirements

How do I earn this certification?

Passing SPLK-1005 earns the Splunk Cloud Certified Admin certification. It sits in the Cloud Administration track.

Next Level Options
Alternative Paths

Practice with Precision

The PlanetCert Simulator mirrors the real exam environment with authentic questions and timed pressure.

Launch Simulator

How to study for this exam?

The most effective way to prepare for SPLK-1005 is by using the PlanetCert Simulator to practice questions and review detailed explanations.

What's changed on this exam?

Current Status
  • ACTIVE
  • Last content update: 2024-12-01
Updates
  • HTTP Event Collector (HEC) Enhanced in 9.2 Updated HEC capabilities covered in Domain 8 • Release date: 2024-10-20
  • Deployment Server 9.2 Enhanced forwarder management features in Domain 6 • Release date: 2024-10-20
  • Data Preview Enhanced UI in 9.2 Updated interface for Domain 10 topics • Release date: 2024-10-20
  • SAML Authentication Enhanced in 9.2 New security features relevant to Domain 3 • Release date: 2024-10-20

Who should take this exam?

This exam is typically taken by Splunk Cloud administrators and Platform administrators migrating to cloud.

Splunk Core Certified Power User
  • Hands-on experience with Splunk Cloud Platform
  • Understanding of data input and forwarder management
  • Familiarity with Splunk configuration files

Your Complete Exam Solution

Best-In-Class Practice Tests

Authentic, regularly updated questions that mirror the real exam. Verified, current material — not recycled dumps.

Topical Breakdown

Study by domain, pinpoint weak areas, and focus your time where it matters most. Every topic mapped to the official syllabus.

Flashcard Mode

Rapid-fire review to reinforce key concepts. Flip through questions and answers at your own pace before exam day.

See How You Compare Against Yourself

✕
✕
✕

Other Exam Prep

  • Outdated question dumpsRecycled, often inaccurate material
  • No explanationsMemorize answers without understanding
  • Static PDF filesNo interactive practice or feedback
  • Subscription feesRecurring charges, access expires
✓
✓
✓

PlanetCert

  • Verified, current questionsUpdated weekly to match live exam objectives
  • Expert-written rationalesUnderstand every concept, not just the answer
  • Session tracking & exam progressTrack every attempt, see your growth over time
  • Lifetime access, one pricePay once — updates included forever
CERTIFIEDSPLK-1005

Study Naturally, Study Responsibly

Join thousands of certified professionals who trusted PlanetCert to pass on the first attempt.

Try Free Demo
Secure Checkout Lifetime Access Money-back Guarantee