Splunk · Official Blueprint
SPLK-1002 Exam Domains & Blueprint
The official Splunk SPLK-1002 exam covers 5 domains. Domain weights tell you exactly how much of the exam each topic represents — and where to invest your study time.
SPLK-1002 Domain Weight Summary
Detailed Domain Breakdown
Domain 1: Splunk Components and Searching
Covers the core concepts, terminology, and skills tested under the Splunk Components and Searching section of the official exam blueprint.
Domain 2: Using Fields
Covers the core concepts, terminology, and skills tested under the Using Fields section of the official exam blueprint.
Domain 3: Search Language Fundamentals
Covers the core concepts, terminology, and skills tested under the Search Language Fundamentals section of the official exam blueprint.
Domain 4: Creating Reports and Dashboards
Covers the core concepts, terminology, and skills tested under the Creating Reports and Dashboards section of the official exam blueprint.
Domain 5: Datasets and the Common Information Model
Covers the core concepts, terminology, and skills tested under the Datasets and the Common Information Model section of the official exam blueprint.
How to Use Domain Weights in Your Study Plan
The heaviest domain on the SPLK-1002 is "Splunk Components and Searching" at null%. Start here and return to it regularly.
Allocate study time proportional to domain weight — a 25% domain deserves roughly 25% of your prep hours.
Never skip a low-weight domain. A 10% domain still represents 5–7 exam questions — enough to make the difference between pass and fail.
Use JT Exams domain analytics to track your accuracy per domain automatically. The system routes extra questions to your weak areas.
Practice every SPLK-1002 domain
JT Exams tracks your accuracy per domain automatically and routes you toward your weakest areas — no manual configuration needed.
No credit card · Cancel anytime