Training & Certification Blog

New Year, New Changes for Splunk Certifications

cskokos_splunk
Splunk Employee
Splunk Employee

As we embrace a new year, we’re making a small but important update to the Splunk Certification program. We’ve introduced a new category called Legacy Certifications — think of these as credentials that still hold value, but won’t be refreshed going forward. 

The following certifications have been reclassified as Legacy Certifications: 

  • Splunk Enterprise Security Certified Admin 
  • Splunk SOAR Certified Automation Developer 
  • Splunk IT Service Intelligence Certified Admin 

 

While these exams won’t be updated with future product releases, they can still be meaningful for professionals working in specific roles or industries. 

If your 2026 goals include sharpening your skills in Enterprise Security or SOAR, now’s a great time to look ahead. We recommend checking out our next-generation cybersecurity certifications: 

These certifications are built around today’s security challenges and reflect the latest tools, techniques, and best practices for defending modern environments with Splunk. For more details check out the FAQs. 

Thank you for being part of the Splunk Certified Community and for continuing to grow your expertise with us. Cheers to what’s next. 

Contributors
Get Updates on the Splunk Community!

Thanks for the Memories: .conf26 Took Learning to New Heights

Thank you, Splunk Community, for making .conf26 in Denver one for the books. From packed Splunk University ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...