Exit SPLK-5002 Splunk Certified Cybersecurity Defense Engineer
Question 3 of 5
0% complete
Q3 Single choice

A company wants to create a dashboard that displays normalized event data from various sources.

Whatapproach should they use?

  • A

    Implement a data model using CIM.

  • B

    Apply search-time field extractions.

  • C

    Use SPL queries to manually extract fields.

  • D

    Configure a summary index.