Try our new research platform with insights from 80,000+ expert users

Splunk Cloud Platform vs Splunk ITSI (IT Service Intelligence) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Cloud Platform
Ranking in IT Alerting and Incident Management
3rd
Average Rating
8.2
Reviews Sentiment
6.0
Number of Reviews
57
Ranking in other categories
Data Visualization (3rd)
Splunk ITSI (IT Service Int...
Ranking in IT Alerting and Incident Management
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
49
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th)
 

Mindshare comparison

As of February 2025, in the IT Alerting and Incident Management category, the mindshare of Splunk Cloud Platform is 1.9%, up from 0.3% compared to the previous year. The mindshare of Splunk ITSI (IT Service Intelligence) is 3.7%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management
 

Featured Reviews

Raul Lapaz - PeerSpot reviewer
Does not require backend maintenance, is easily integrated and utilized
Splunk Cloud Platform helps us with our security incident response. The cloud security logs are integrated with all the cloud providers. The federated search feature enables us to search between Europe and the US, from one Splunk instance to another, all from a single location. This federated search simplifies how we handle data, making it easy to swiftly search for and manage information. We monitor several cloud environments and find it easy to utilize the Splunk Cloud Platform for this purpose. Each cloud provider offers its own prebuilt dashboard, or customers can create their own. The Splunk Cloud Platform offers excellent visibility into multiple environments. In the past, we utilized hybrid integrations, and they seamlessly worked right out of the box. The reporting functionality provided by the Splunk Cloud Platform resembles that of the on-premise platform. It is readily available without requiring integration or the installation of reporting visualizations. From a security standpoint, the Splunk Cloud Platform provides us with comprehensive visibility into all security logs. This enables us to implement security incident responses with great efficiency. Additionally, we have discovered that internal employees, such as product teams, are utilizing the platform as intended for various other use cases. For instance, it has proven valuable in troubleshooting performance issues and monitoring within Kubernetes. As such, we are leveraging a wide array of use cases within the company. Splunk is a highly mature software that has been in the market for many years, which greatly influenced our decision-making process. Another factor was the user-friendly nature of the latest version, making it easy to initiate. We don't require a large workforce for installing components; it's as simple as out-of-the-box. Consequently, minimal time investment is needed for training. The Splunk Cloud Platform assists us in accessing data to meet critical compliance and privacy regulations. For instance, this is particularly important for regulations such as GDPR and HIPAA. We are utilizing Splunk Cloud with a specific focus on HIPAA compliance, allocating extra attention to this aspect. In the case of GDPR, Splunk offers a range of built-in capabilities. For instance, it allows for log masking. Moreover, there are novel features available in Splunk Cloud, such as ingest actions. This feature is exceptionally useful as it enables us to mask the data before it's ingested into Splunk. Consequently, this approach ensures our adherence to compliance regulations, exemplified by GDPR. The Splunk Cloud Platform has had a significant impact on our organization's security posture. It serves as our primary visibility tool and is the main source of trust for all login activities. Without Splunk, we would lose essential visibility and access to security updates. Currently, Splunk stands as one of the primary tools we utilize due to its utmost importance.
Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use Splunk Cloud primarily as a troubleshooting tool, so the most valuable features are the analysis and visualization."
"For my current requirements, the tool theme seems to be meeting my requirements, from a cost and requirements perspective."
"Its monitoring is completely automated."
"Alerts are a huge benefit because we can customize them to each business unit's needs."
"Splunk Cloud Platform's most valuable features are enterprise security and ticketing integration."
"This is a complete log reporting tool."
"In my organization, Splunk Cloud Platform has improved the issue revolving around transactions."
"The most valuable feature of Splunk Cloud Platform is its flexibility and readiness because it's already prebuilt, and everything is click-to-go."
"I particularly appreciate two features of Splunk ITSI: data forwarding and the marketplace."
"Instant usability of gathered event metrics is available. We have metrics data from systems, and we can use that to instantly get system status and trends."
"Splunk ITSI offers a valuable visualization tree that allows us to map and analyze dependencies and co-dependency within our environment."
"We save substantial time on monitoring tasks because we don't have to search for what we need. Everything is packed, so you can drill down to the end values by just doing the kit. We don't spend a lot of time on this. Splunk ITSI is easy to use and not time-consuming."
"The search function is the most valuable. It includes regular expressions and wild card searches. We'll write searches using field and case-sensitive services and use all of these search types to write an alert condition. Splunk ITSI has another feature called Glass Table that offers a visual representation."
"ITSI includes a feature called a glass table."
"We can automate routine tasks. We're able to create alerts, reports, scheduled searches, et cetera. It's helping us to save time."
"The most valuable features are the agility, being able to ingest many data sources with no limitation on capacity."
 

Cons

"The only thing that is missing from Splunk Cloud is the command-line interface."
"Using basic natural language in English instead of writing a regex expression will be helpful."
"It would be nice to see more comparisons between Splunk and other log management tools. There are some legacy tools that people are often coming off. It will ease the transition if you are coming off a Windows LogViewer or any other logging tool. Splunk could offer more advice on how to transition into it or onboard it."
"Its stability and performance can be better. Very rarely does a day go by when we do not see an error in the console, such as a health check error. Because it is cloud-hosted, we do not have access to the backend to figure it out ourselves. We are reliant on their support to figure it out, and a couple of days later, the error comes back or it is a different error. It is a never-ending cycle of support tickets. Their support is also not great."
"The support from the Splunk team is generally good, but sometimes, there's a lack of coordination between our account reps and the hands-on technical people. This misalignment can lead to issues with getting what we need done and what is happening."
"The training models can only be accessed for 30 days, even if it is paid training."
"Splunk Cloud Platform needs to be made more user-friendly because it's not user-friendly."
"The dashboards should be easier to customize."
"Currently, Glass tables in ITSI only display metrics related to KPIs."
"It would be good if an interface was included in the next release."
"We'd like them to show more inputs on the dashboard."
"Quality-of-life features have room for improvement."
"ITSI currently lacks the capability for automated response, mitigation, and remediation."
"The license cost is expensive."
"We have problems doing upgrades and operating alternate new versions."
"We also faced challenges relating to UI development."
 

Pricing and Cost Advice

"The certifications are costly."
"The lack of transparency around the SVC licensing makes it difficult to explain the costs to our clients."
"We were on ingest. We were on-prem, and when we switched to the cloud, we went to an SVC model, and that has been a huge help. We are now able to ingest more data than before."
"Splunk Cloud Platform fell within our budget so we pulled the trigger and implemented it."
"The pricing was negotiated through Trustwave and for our first contract in three years, we got a good deal."
"I do not personally deal with that side, but from discussions, I know that it is one of the more expensive tools. I do not have anything to compare it with."
"The Splunk Cloud Platform is expensive."
"As far as the pricing goes, it was what was expected. It is a premium product. There were no surprises there."
"Splunk ITSI is a pay-per-use service that is priced fairly based on the amount of data we use."
"Splunk ITSI is expensive."
"I know that it is expensive, but I do not think there is another solution that can do similar things for that price."
"The pricing of Splunk is a bit high."
"It depends on how big an organization is. If we have a lot of resources, the licensing needs to be upgraded. If we have a small environment, the licensing cost is definitely going to be less."
"Splunk ITSI is expensive; however, with the appropriate use case, it justifies the cost."
"Pricing was pretty good, and it is possible to just add on the features we want."
"It is interesting. I am not involved that much lately, but if I recall correctly, you license primarily on the volume of data that you are using in Splunk ITSI, but there is no way Splunk can ever check if that is true, so that is interesting. We are not doing it, but someone can pretend to just use 10%, and it would be super cheap. It is tricky, but it is more tricky for Splunk than for us."
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
832,765 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
26%
Financial Services Firm
11%
University
7%
Educational Organization
5%
Financial Services Firm
20%
Computer Software Company
13%
Government
12%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Splunk Cloud Platform?
Splunk has sped up our response and reduced the time we spend manually monitoring any logs for ticketing tools or servers. It saves us around two hours daily.
What is your experience regarding pricing and costs for Splunk Cloud Platform?
Splunk Cloud is affordable, depending on your license. I don't know how much it costs exactly, but my colleague said it depends on your licensing and which features you use.
What needs improvement with Splunk Cloud Platform?
First-time users may struggle with the user interface. When I first used Splunk, I entered my username and password. After that, we get a dashboard on the left side with apps. At the top, you can c...
What needs improvement with Splunk ITSI (IT Service Intelligence)?
Currently, Glass tables in ITSI only display metrics related to KPIs. I proposed adding an option to show metrics related to entities. This would eliminate the need for custom SPL to achieve this f...
 

Overview

 

Sample Customers

Mindtouch
TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Find out what your peers are saying about Splunk Cloud Platform vs. Splunk ITSI (IT Service Intelligence) and other solutions. Updated: January 2025.
832,765 professionals have used our research since 2012.