Seems there is a bug when saving an alert. The search time range is not saved as set in the search.
However you can change the search time range when editing the alert, choose cron schedule and set the 'Earliest' and 'Latest' fields.
This needs to be fixed by the Splunk team though so it is saved correctly and editable for other alert schedule types.
... View more