Try our new research platform with insights from 80,000+ expert users

Splunk ITSI (IT Service Intelligence) vs Splunk Observability Cloud comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 6, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk ITSI (IT Service Int...
Ranking in Application Performance Monitoring (APM) and Observability
10th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
49
Ranking in other categories
IT Alerting and Incident Management (4th)
Splunk Observability Cloud
Ranking in Application Performance Monitoring (APM) and Observability
11th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
50
Ranking in other categories
IT Infrastructure Monitoring (10th), Cloud Monitoring Software (9th), Container Management (8th)
 

Mindshare comparison

As of March 2025, in the Application Performance Monitoring (APM) and Observability category, the mindshare of Splunk ITSI (IT Service Intelligence) is 0.7%, up from 0.6% compared to the previous year. The mindshare of Splunk Observability Cloud is 1.0%, up from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Performance Monitoring (APM) and Observability
 

Featured Reviews

Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.
Lakshmi Padaga - PeerSpot reviewer
Collaborates performance metrics with log data to pinpoint the exact cause of issues and offers error detection
Splunk APM is a robust tool with many capabilities. There are always areas for potential improvement to enhance its functionality and user experience. For Splunk APM, there could be simplified navigation, like streamlining the user interface to make navigation more intuitive for our users, especially those new to APM, which can enhance usability. We can provide more customization options for dashboards and visualizations to help users tailor the platform to their specific needs. There could be more integration capabilities with a wider range of third-party tools and platforms would also be beneficial. By focusing on these areas, Splunk APM can enhance its value proposition, improve user satisfaction, and better meet the evolving needs of organizations monitoring their application performance.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is event correlation, which ensures that only one ticket is generated per issue, eliminating duplicates and reducing noise from multiple alerts."
"We have a lot of teams using Splunk and they would be blind without it."
"What I like the most is the event correlations. It's a file structure, and ITSI has a correlation layer where you can normalize the events from different sources. Once these events are normalized, you set up rules to aggregate them into different or the same attributes. After the rules are defined, you can automate the process to solve the issue automatically."
"The KPS used to automate the integration policy is the most valuable feature of Splunk ITSI."
"The observability is great and valuable."
"The search function is the most valuable. It includes regular expressions and wild card searches. We'll write searches using field and case-sensitive services and use all of these search types to write an alert condition. Splunk ITSI has another feature called Glass Table that offers a visual representation."
"The most valuable feature of ITSI is the service KPIs. No other tool provides you with the same level of observability and enterprise security or the search and reporting applications."
"In my opinion, Splunk IT Service Intelligence (ITSI) is better than QRadar. With the help of Splunk, we can get results."
"The company has many systems that the customer is paying to access. Splunk APM issued via AppDynamics helps find problems in the feed. It reduces the risk of supervising all the devices. I can supervise the flow and simulate the conditions of the repository across several dashboards to show what's happening at the moment."
"It is a good tool. It allows you to set alerts for application and infrastructure monitoring, and it allows you to create dashboards."
"Great monitoring of network devices."
"Splunk APM has helped us to standardize logging and monitoring procedures."
"The most valuable feature is dashboard creation."
"The vibrant dashboards are valuable."
"The features are pretty much ready out of the box."
"Splunk's dashboards are great."
 

Cons

"The solution should integrate more features in NEAP."
"Splunk ITSI should include ease of integration and more templating."
"It was an intimidating tool for us to jump into at the beginning."
"I believe the refresh time should be faster."
"It could be a little easier to use with the thresholding. We've struggled a little bit with thresholding."
"ITSI could benefit from a security model that would allow operations team members to get involved in model building, KPI implementation, and model maintenance, while maintaining appropriate segregation of duties."
"Some of our customers occasionally require the development of the connectors when there are no native connectors so that we can develop in Python or for customer slash comments as well. If they could adjust that, it would be ideal."
"We experience occasional delays in receiving solutions from Splunk technical support. Splunk's support for P3 cases seems inadequate, as they frequently switch support personnel. For instance, in a single P3 case, we had three different technical support representatives assigned. We were ultimately forced to escalate the issue to our account manager to get it resolved. In essence, we never receive complete support from a single point of contact; instead, the support team keeps changing, necessitating us to explain the problem from scratch each time."
"We currently lack log analysis capabilities in Splunk APM."
"It would be useful if they provided some help pages. If you don't know too much about the tool, there should be more documentation readily available. It would be useful if they had a help button embedded in the solution so you could ask questions and get answers."
"Once you see the issues related to the scalability part, you need to understand that it is a warning triangle. After seeing the warning triangle, you need to realize that you cannot trust any of the numbers you see in the chart because it is not a complete, full data set."
"They can improve the flow system and the keyword language. It has predefined keywords, but they can be improved."
"The monitoring of workloads when using SignalFx could be improved."
"The solution should have more sensors regarding fiber intelligence for security measures."
"The security could be better."
"The implementation can be more user-friendly."
 

Pricing and Cost Advice

"Splunk ITSI is expensive compared to other tools."
"Splunk ITSI is expensive; however, with the appropriate use case, it justifies the cost."
"Pricing has some room for improvement."
"The pricing of Splunk is a bit high."
"Pricing was pretty good, and it is possible to just add on the features we want."
"Splunk ITSI is expensive."
"The licensing is based on data usage."
"Splunk ITSI is a premium application and comes with a premium price tag."
"I would rate the price of Splunk Infrastructure Monitoring as an eight out of ten, with ten being the most expensive."
"It is expensive."
"The solution's pricing is costly."
"The product is a bit expensive considering the competition but the company may negotiate the price."
"Splunk Infrastructure Monitoring is an expensive solution."
"Licensing cost is the biggest argument I get from those divesting from Splunk. There are those within our organization who say we are going to go to other tools since Splunk is too expensive."
"The pricing is based on several factors, including the scale of deployment."
"This is an expensive solution."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
841,164 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
13%
Government
12%
Manufacturing Company
7%
Financial Services Firm
18%
Computer Software Company
15%
Manufacturing Company
9%
Retailer
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What needs improvement with Splunk ITSI (IT Service Intelligence)?
Currently, Glass tables in ITSI only display metrics related to KPIs. I proposed adding an option to show metrics related to entities. This would eliminate the need for custom SPL to achieve this f...
What do you like most about SignalFx?
The most valuable feature is dashboard creation.
What needs improvement with SignalFx?
There is room for improvement in the alerting system, which is complicated and has less documentation available. We sometimes encountered issues in setting up alerts. The custom detector could be m...
What is your primary use case for SignalFx?
The main purpose of using Splunk APM is to optimize our application. We use Splunk APM primarily to understand how the application works, how it uses resources, and its response time in connection ...
 

Also Known As

No data available
Splunk Infrastructure Monitoring
 

Overview

 

Sample Customers

TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Sunrun, Yelp, Onshape, Tapjoy, Symphony Commerce, Chairish, Clever, Grovo, Bazaar Voice, Zenefits, Avalara
Find out what your peers are saying about Splunk ITSI (IT Service Intelligence) vs. Splunk Observability Cloud and other solutions. Updated: March 2025.
841,164 professionals have used our research since 2012.