Try our new research platform with insights from 80,000+ expert users

Splunk Cloud Platform vs Splunk ITSI (IT Service Intelligence) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Cloud Platform
Ranking in IT Alerting and Incident Management
3rd
Average Rating
8.2
Reviews Sentiment
6.0
Number of Reviews
57
Ranking in other categories
Data Visualization (3rd)
Splunk ITSI (IT Service Int...
Ranking in IT Alerting and Incident Management
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
49
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th)
 

Mindshare comparison

As of March 2025, in the IT Alerting and Incident Management category, the mindshare of Splunk Cloud Platform is 2.1%, up from 0.5% compared to the previous year. The mindshare of Splunk ITSI (IT Service Intelligence) is 4.2%, up from 1.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management
 

Featured Reviews

Ian Gatundu - PeerSpot reviewer
It improves our visibility and decision-making while helping us meet compliance standards
The Cloud Platform interface is cleaner than Splunk Enterprise's monitoring console. You can easily understand what's happening with your indexes. It's more refined than Splunk Enterprise's console, but they have the same feel and function. It's easy to monitor multiple cloud environments because you can create custom dashboards for any use case you may have. It offers good visibility because it integrates with the ITSI app, providing a clear overview of your environment. Integrating Splunk with other components on the cloud and network resources is effortless because it can collect data from various sources, including stored data from long-term storage. Splunk's reporting offers a good visualization of your data. You can visualize the statistics based on your searches. It produces some helpful graphs that enable you to easily compare what's happening in your search. It's very comprehensive.
Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The cloud is very fast."
"There is definitely the ease of the infrastructure administration. It frees up a lot of time."
"The most valuable features are reliability and logging. It's in the cloud so it has more stability and easy maintenance."
"The Splunk Cloud Platform has reduced our mean time to resolve. It has easily saved 20 to 30 minutes every time someone gets locked out. We get 10 or 15 instances per day where people get locked out. It definitely saves a few hours per day."
"The most valuable feature of Splunk Cloud Platform is its flexibility and readiness because it's already prebuilt, and everything is click-to-go."
"Everything is maintained by the Splunk support team. Users do not have to maintain any physical servers. They do not have to maintain indexes and searches. It reduces a lot of work on the user side."
"The most valuable feature for me is the flexibility of being able to send the log to the https endpoint."
"Index manager is most valuable because we do not have to bother about internal storage. It is all managed by the Splunk team."
"We have a lot of teams using Splunk and they would be blind without it."
"The most valuable feature of ITSI is the service KPIs. No other tool provides you with the same level of observability and enterprise security or the search and reporting applications."
"I like ITSI's glass tables. They're easy to navigate by clicking through them. The interface isn't that much different from other products I've used. It provides all the information we need in one place."
"Splunk ITSI helps us secure our environment by allowing us to create automatons that run when alerts are triggered."
"The most valuable feature is the Glass Tables. It gives you a nice, good overview of your KPIs. It's really slick and clean."
"Instant usability of gathered event metrics is available. We have metrics data from systems, and we can use that to instantly get system status and trends."
"Alerts and episodes are valuable to me."
"Splunk Episodes are valuable because it correlates and aggregates all the information, and you do not have one million events to look at and triage, so it is quite convenient."
 

Cons

"Its stability and performance can be better. Very rarely does a day go by when we do not see an error in the console, such as a health check error. Because it is cloud-hosted, we do not have access to the backend to figure it out ourselves. We are reliant on their support to figure it out, and a couple of days later, the error comes back or it is a different error. It is a never-ending cycle of support tickets. Their support is also not great."
"The dashboards should be easier to customize."
"The Splunk interface is on-premises, so we have limited access to Splunk Cloud. Splunk support is not so good on Splunk Cloud. The Splunk side of the Splunk Cloud should also be more customizable. Integrating Splunk UBA, Splunk Phantom, and Splunk Cloud is also a bit difficult."
"Customization could be simplified."
"They can streamline the process of creating custom apps."
"The administration could use improvement. We have to rely on support more often than we're used to."
"Splunk should offer various options for real-time monitoring."
"When it comes to the integrations with the other platforms, there is a little bit of a lag in the observability part, making it an area where improvements are required."
"Predictive analytics, in terms of preventing incidents before they occur, still needs time to mature."
"ITSI currently lacks the capability for automated response, mitigation, and remediation."
"While integrating services and KPIs in ITSI is straightforward, I found it challenging to analyze them with the service analyzers; specifically, using the deep dive feature to pinpoint the exact source and time of an issue proved difficult."
"They should make it easier to use. Many people are new to it. It is hard and has a steep learning curve."
"There should be entity conflict resolution, specifically regarding duplicate entities. There should be case sensitivity for various keys amongst entities, specifically host names. We need IT metrics-based indexes and more content packs. I know they are coming out with these features"
"It could be a little easier to use with the thresholding. We've struggled a little bit with thresholding."
"We had issues with support that took a long time to resolve."
"They should make it easier to use. Many people are new to it. It is hard and has a steep learning curve."
 

Pricing and Cost Advice

"Splunk Cloud Platform's pricing is a little on the higher end."
"The licensing costs depend on the state of your environment and the fees are paid on a monthly basis."
"There are additional features that you would need to purchase depending on your use case."
"We were on ingest. We were on-prem, and when we switched to the cloud, we went to an SVC model, and that has been a huge help. We are now able to ingest more data than before."
"We were involved in the renewal process, and our organization does reviews of all our partnerships that we have every two to three years to ensure they are meeting our needs, there isn't a better solution out there, and we won't save money by going somewhere else."
"Splunk is a bit more expensive than some solutions, but customers can derive more value from it due to the features it has."
"The cost of the Splunk Cloud Platform is high, and in addition to the standard licensing fee, we also have a premium support fee."
"The lack of transparency around the SVC licensing makes it difficult to explain the costs to our clients."
"The cost of the modules is a bit high for non-global companies, making it difficult for them to afford Splunk ITSI."
"I would prefer that the price be reduced, as it would be easier to implement it and to sell it."
"I know that it is expensive, but I do not think there is another solution that can do similar things for that price."
"The licensing is based on data usage."
"Splunk ITSI is expensive."
"Splunk ITSI is a pay-per-use service that is priced fairly based on the amount of data we use."
"It is interesting. I am not involved that much lately, but if I recall correctly, you license primarily on the volume of data that you are using in Splunk ITSI, but there is no way Splunk can ever check if that is true, so that is interesting. We are not doing it, but someone can pretend to just use 10%, and it would be super cheap. It is tricky, but it is more tricky for Splunk than for us."
"Pricing has some room for improvement."
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
841,714 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
28%
Financial Services Firm
11%
Comms Service Provider
6%
Retailer
5%
Financial Services Firm
21%
Computer Software Company
13%
Government
12%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Splunk Cloud Platform?
Splunk has sped up our response and reduced the time we spend manually monitoring any logs for ticketing tools or servers. It saves us around two hours daily.
What is your experience regarding pricing and costs for Splunk Cloud Platform?
Splunk Cloud is considered too expensive, with its two product offerings both being costly. I would rate the cost an eight out of ten, with ten being the most costly.
What needs improvement with Splunk Cloud Platform?
Splunk Cloud Platform needs improvement in its security offerings, specifically in cybersecurity. It has not kept pace with competitors over recent years, and integration with the Cisco ecosystem a...
What needs improvement with Splunk ITSI (IT Service Intelligence)?
Currently, Glass tables in ITSI only display metrics related to KPIs. I proposed adding an option to show metrics related to entities. This would eliminate the need for custom SPL to achieve this f...
 

Overview

 

Sample Customers

Mindtouch
TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Find out what your peers are saying about Splunk Cloud Platform vs. Splunk ITSI (IT Service Intelligence) and other solutions. Updated: March 2025.
841,714 professionals have used our research since 2012.