100+ Free Elastic Certified Analyst Practice Questions
Pass your Elastic Certified Analyst exam on the first try — instant access, no signup required.
In an anomaly detection job configuration, what does the 'bucket span' parameter control?
Explore More Elastic Certifications
Continue into nearby exams from the same family. Each card keeps practice questions, study guides, flashcards, videos, and articles in one place.
Key Facts: Elastic Certified Analyst Exam
~60
Exam Questions
Elastic
70%
Passing Score
Elastic
60 min
Exam Duration
Elastic
$200
Exam Fee
Elastic
14 days
Retake Wait
Elastic FAQ
2 years
Credential Validity
Elastic
Elastic Certified Analyst is approximately 60 multiple-choice questions in 60 minutes with a 70% passing score, costing $200 USD per attempt. Delivered remotely via TrueAbility and Honorlock. Covers Kibana Discover, KQL, ESQL, Lens, Dashboard, Maps, and alerting. Credential valid for 2 years. 14-day retake wait.
Sample Elastic Certified Analyst Practice Questions
Try these sample questions to test your Elastic Certified Analyst exam readiness. Each question includes a detailed explanation. Start the interactive quiz above for the full 100+ question experience with AI tutoring.
1In Kibana Discover, which field in the search bar allows you to filter documents where the host name matches any value starting with 'web'?
2You want to find all log documents in Discover where the http.response.status_code is either 404 or 500. Which KQL query is correct?
3In Kibana Discover, what does the 'Surrounding documents' feature do?
4Which ES|QL query returns the count of events grouped by service.name for the past hour from the 'logs-*' data stream?
5In ES|QL, which command would you use to rename a field called 'src_ip' to 'source.ip' in the output?
6You need to limit an ES|QL result set to the top 10 rows ordered by event count descending. Which commands accomplish this?
7What is the primary purpose of a Data View (formerly Index Pattern) in Kibana?
8Which setting in a Kibana Data View allows field values to be looked up from a separate index to display human-readable labels?
9In Kibana Lens, you are building a bar chart. You want the Y-axis to show the 95th percentile of response time. Which aggregation should you choose?
10In Kibana Lens, what does the 'Break down by' dimension slot control in a bar chart?
About the Elastic Certified Analyst Exam
The Elastic Certified Analyst exam validates Kibana data analysis and visualization skills. It covers Discover and data views, KQL and ESQL query language, Lens visualizations, dashboards and Canvas, Maps with geo data, and the Kibana alerting framework with rules and connectors.
Questions
60 scored questions
Time Limit
60 minutes
Passing Score
70%
Exam Fee
$200 USD per attempt (Elastic)
Elastic Certified Analyst Exam Content Outline
Kibana Discover and Data Views
Creating and managing data views, index patterns, field filtering, KQL and Lucene query syntax, saved searches, and document-level exploration.
KQL and ESQL
KQL operators (AND, OR, NOT, wildcards, ranges, nested fields), ESQL pipe syntax (FROM, WHERE, STATS BY, EVAL, SORT, LIMIT, KEEP, DROP).
Kibana Lens and Visualizations
Lens drag-and-drop interface, dimension configuration, chart types (bar, line, area, pie, donut, treemap, heatmap), TSVB time series, and metric visualizations.
Dashboards and Canvas
Building multi-panel dashboards, controls, drilldowns, time filter configuration, shared links, and Canvas for custom pixel-perfect reporting.
Kibana Maps
Geo-point and geo-shape data layers, choropleth maps, document layers, cluster layers, spatial filtering, and coordinate map basics.
Alerting and Rules
Kibana alerting framework, rule types (index threshold, ES query, metrics threshold, log threshold), connectors (email, Slack, webhook), and action groups.
How to Pass the Elastic Certified Analyst Exam
What You Need to Know
- Passing score: 70%
- Exam length: 60 questions
- Time limit: 60 minutes
- Exam fee: $200 USD per attempt
Keys to Passing
- Complete 500+ practice questions
- Score 80%+ consistently before scheduling
- Focus on highest-weighted sections
- Use our AI tutor for tough concepts
Elastic Certified Analyst Study Tips from Top Performers
Frequently Asked Questions
What is the Elastic Certified Analyst exam?
The Elastic Certified Analyst exam validates your ability to use Kibana for data analysis and visualization. It tests Discover queries, KQL and ESQL, Lens visualizations, dashboard building, Maps, and the alerting framework — the primary analyst-facing Kibana workflows.
What is ESQL and how is it tested?
ESQL (Elasticsearch Query Language) is a pipe-based query language for analytics in Kibana 8.11+. You write queries like: FROM my-index | WHERE status == "error" | STATS count=COUNT() BY service. The exam tests FROM, WHERE, STATS BY, EVAL, SORT, LIMIT, KEEP, and DROP commands.
How is the Elastic Certified Analyst different from the Engineer exam?
The Analyst exam focuses entirely on Kibana — visualizing, querying, and alerting on data that already exists in Elasticsearch. The Engineer exam is performance-based, testing hands-on Elasticsearch administration including mappings, ingest pipelines, ILM, and cluster management.
What types of visualizations are tested?
The exam covers Lens-based visualizations (bar, line, area, pie, donut, treemap, heatmap, metric), TSVB time series, and choosing the right chart type for a given analytical question. Canvas is tested for custom layout and expression-based reporting.
What are Kibana alerting rules?
Kibana rules define conditions that trigger actions. Common rule types include index threshold (alert when aggregation crosses a value), ES query (alert on custom query results), and metrics threshold. Actions are delivered via connectors: email, Slack, PagerDuty, or webhook.