What is a private app?
At what point in the indexing pipeline set is SEDCMD applied to data?

Which of the following tasks is the responsibility of a Splunk Cloud administrator?
Windows Input types are collected in Splunk via a script which is configurable using the GUI. What is this type of input called?
Where is the recommended place to deploy input apps that are not permitted on Splunk Cloud?
What syntax is required in inputs.conf to ingest data from files or directories?
Which of the following are default Splunk Cloud user roles?
For the following data, what would be the correct attribute/value oair to use to successfully extract the correct timestamp from all the events?

What information is identified during the input phase of the ingestion process?
A Splunk Cloud administrator is looking to allow a new group of Splunk users in the marketing department to access the Splunk environment and view a dashboard with relevant data. These users need to access marketing data (stored in the marketing_data index), but shouldn't be able to access other data, such as events related to security or operations.
Which approach would be the best way to accomplish these requirements?