I want to know which Splunk alerts have fired off in X amount of time. What are my options for doing this? Thanks!
There are a number of ways, including looking in the monitoring console (settings -> monitoring console -> search -> scheduled search history).
To look at alerts that have fired/triggered, try
index=_internal earliest=-{inputNumberOfHours}h result_count>0
| stats count by savedsearch_id
Nice - how do I find the savedsearch_id?
See Activity->Triggered Alerts
I like this however its not showing all fired alerts. I selected "All" for App, Owner, Severity, and Alert. I noticed that under the alert drop down there are only 10 alerts listed. I have built a lot more than 10. Permissions issue possibly?
If you built them then you should have permissions to view them. Are you sure the others fired?