How to schedule alerts?
A scheduled alert is created by editing the report’s schedule feature. Inside the Alert go to the Edit Schedule option on the Edit.
Simply follow this step-by-step tutorial:
https://www.tutorialspoint.com/splunk/splunk_schedules_and_alerts.htm
And reference the Splunk Docs for more granular options:
https://docs.splunk.com/Documentation/Splunk/latest/Alert/Definescheduledalerts
Open the alert in the Edit Alert screen.
The Alert schedule drop down has several options, including Run Every Hour, Run Every Day, Run Every Week, and Run Every Month. If more granular options are needed you can choose "Run on Cron Schedule" to be able to schedule the alert using a standard CRON schedule string.