This course is designed for developers responsible for debugging their own applications, and for SREs responsible for troubleshooting performance issues. Splunk Log Observer is built primarily for DevOps teams working on applications built on modern tech stacks (containerized microservices). However, the course can be taken by anyone who wants to view recent log data in a no-code environment.

This 4.5-hour course describes how to use the tool to work with log data using the no-code user interface. Learn to create, save, and share search filters, and to investigate the shape of your log data. Learn to add log messages to dashboards. Analyze logs with aggregation functions and group by rules. Create rules to manipulate incoming data and generate synthetic metrics from log data.

All concepts are taught using lectures and scenario-based hands-on activities.

Skills Covered

  • View log data
  • Describe how log data is parsed and structured in the tool
  • Create filters for log data; save and reuse these filters
  • Investigate the shape of log data with Log Observer
  • Analyze data with aggregation functions and group by rules
  • Manage the data pipeline using rules
  • Describe ways to get data in

Who Should Attend

Everyone can attend.

Course Curriculum


  • Introduction to Splunk Observability (eLearning)
  • Introduction to Splunk Log Observer (eLearning)
  • Basic knowledge of navigating and visualizing metrics in Splunk Observability Cloud

Download Syllabus

Course Modules

Request More Information

Training Options

Intake: Available Upon Request
Duration: 1 Day
Guaranteed: TBC
Modality: VILT

RM2,350.00Enroll Now