Splunk SPLK-1002 Practice Exams
Last updated on Oct 06,2026- Exam Code: SPLK-1002
- Exam Name: Splunk Core Certified Power User
- Certification Provider: Splunk
- Latest update: Oct 06,2026
Question #111
What commands can be used to group events from one or more data sources?
- A . eval, coalesce
- B . transaction, stats
- C . stats, format
- D . top, rare
Question #112
A data model can consist of what three types of datasets?
- A . Pivot, searches, and events.
- B . Pivot, events, and transactions.
- C . Searches, transactions, and pivot.
- D . Events, searches, and transactions.
Question #113
Using the export function, you can export search results as __________.( Select all that apply)
- A . Xml
- B . Json
- C . Html
- D . A php file
Question #114
Question #115
What information must be included when using the datamodel command?
- A . status field
- B . Multiple indexes
- C . Data model field name.
- D . Data model dataset name.
Question #116
When using timechart, how many fields can be listed after a by clause?
- A . because timechart doesn’t support using a by clause.
- B . because _time is already implied as the x-axis.
- C . because one field would represent the x-axis and the other would represent the y-axis.
- D . There is no limit specific to timechart.
Question #117
Which of the following commands support the same set of functions?
- A . stats, eval, table
- B . search, where, eval
- C . stats, chart, timechart
- D . transaction, chart, timechart
Question #118
Complete the search, …. | _____ failure>successes
- A . Search
- B . Where
- C . If
- D . Any of the above
Question #119
Which of the following can be saved as an event type?
- A . index=server_496 sourcetype=BETA_534 code=610
- B . index=server_49c sourcetype=BETA_534 code=610 | stats count by code
- C . index=server_496 sourcetype=BETA_534 code=610 | where code > 200
- D . index=server_496 sourcetype=BETA_534 code=610 [| inputlookup append=t servercode.csv]
Question #120
Which of the following searches would return a report of sales by product-name?
- A . chart sales by product_name
- B . chart sum(price) as sales by product_name
- C . stats sum(price) as sales over product_name
- D . timechart list(sales), values(product_name)