Try our new research platform with insights from 80,000+ expert users

Splunk ITSI (IT Service Intelligence) vs Splunk Security Essentials comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk ITSI (IT Service Int...
Ranking in IT Alerting and Incident Management
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th)
Splunk Security Essentials
Ranking in IT Alerting and Incident Management
14th
Average Rating
8.0
Reviews Sentiment
8.1
Number of Reviews
2
Ranking in other categories
Data Visualization (20th), Security Incident Response (11th)
 

Mindshare comparison

As of April 2025, in the IT Alerting and Incident Management category, the mindshare of Splunk ITSI (IT Service Intelligence) is 3.9%, up from 1.2% compared to the previous year. The mindshare of Splunk Security Essentials is 0.2%, down from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management
 

Featured Reviews

Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.
Srinivas Prudhivi Reddy - PeerSpot reviewer
Enables us to examine the parameters of the events found and take appropriate actions as necessary
Once we've configured our logs, for example, if we need to monitor processes and IP addresses, we ensure these logs are being ingested into our Splunk instance. The logs gathered from various endpoints are then consolidated into our Splunk platform. Once the data is collected, we can create searches and dashboards to analyze it. With these searches and dashboards, we gain insights into events and can make informed decisions based on them. We'll examine the parameters of these events and take appropriate actions as necessary.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like ITSI's glass tables. They're easy to navigate by clicking through them. The interface isn't that much different from other products I've used. It provides all the information we need in one place."
"We save substantial time on monitoring tasks because we don't have to search for what we need. Everything is packed, so you can drill down to the end values by just doing the kit. We don't spend a lot of time on this. Splunk ITSI is easy to use and not time-consuming."
"The most valuable features are the mapping of the entities, which provides a comprehensive analysis, and the service analyzer for thresholding."
"The feature that stood out to me most from Splunk IT Service Intelligence (ITSI) was automated dashboarding or reporting. The solution lists the severity level of issues, and the response times."
"The solution's most valuable feature is the aggregation of the metrics and the relative ease of getting them away from search."
"Instant usability of gathered event metrics is available. We have metrics data from systems, and we can use that to instantly get system status and trends."
"The most valuable features are the service analyzer and Glass Tables."
"The most valuable feature is the Glass Tables. It gives you a nice, good overview of your KPIs. It's really slick and clean."
"We are focusing on security to ensure incidents are reported efficiently. In addition to that, for reporting purposes, we are utilizing our dashboards or creating new ones. We will be using free visualization tools for this purpose."
"The network monitoring feature is particularly valuable for gathering information about users, login times, and other statistics."
 

Cons

"Splunk ITSI could benefit from including more features that other solutions support, such as vulnerability management modules."
"The dashboard queries should be improved. More queries should be suggested in order to produce better dashboards."
"When we check the service analyzer, and we have custom inputs, there are issues."
"They should make it easier to use. Many people are new to it. It is hard and has a steep learning curve."
"The user interface visualization could be improved."
"The UI could be updated. Some elements of the KPI section aren't where you'd expect. It looks like a website from 2010 or maybe older. You can't change some things, like if it doesn't word-wrap well. For example, if you have a long list of KPIs that exceed a character limit, you need to hover over them and wait for the HTML text to pop up to see which KPI it is."
"It would be good if an interface was included in the next release."
"We're getting alerts with delays of maybe five minutes, however, we'd like to see real-time alerting in the future."
"The price could be improved."
"The reporting feature needs to be more user-friendly."
 

Pricing and Cost Advice

"Splunk ITSI is an expensive tool, and we need to purchase the utility license."
"It would have been good if the product cost was much lower."
"Splunk ITSI is expensive."
"I wouldn't say there's been an issue with the solution's pricing because we went through the AWS marketplace and negotiated directly with Splunk."
"The licensing is based on data usage."
"Splunk is pretty expensive, but it gives you a decent insight into the data. It is easy to learn, and ITSI has a great interface. You can run those queries and pass the data. I"
"Splunk ITSI is a pay-per-use service that is priced fairly based on the amount of data we use."
"Its pricing has been changed as per the market. You get a good support service with it as well. They have 24/7 customer support. There is a portal, and if you are having issues, they are available in order to resolve them. So, its pricing isn't too much."
Information not available
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
846,617 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
14%
Government
11%
Manufacturing Company
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What needs improvement with Splunk ITSI (IT Service Intelligence)?
Currently, Glass tables in ITSI only display metrics related to KPIs. I proposed adding an option to show metrics related to entities. This would eliminate the need for custom SPL to achieve this f...
What is your experience regarding pricing and costs for Splunk Security Essentials?
Pricing and licensing are managed by our vendor management team and are not under my purview.
What needs improvement with Splunk Security Essentials?
The reporting feature needs to be more user-friendly. It would help if it were easier to generate reports similar to other cybersecurity tools. Additionally, more automation in alert systems would ...
What is your primary use case for Splunk Security Essentials?
I use Splunk Security Essentials for monitoring as part of my organization. We use it for our security processes and to gather reports on performance, security, and bottlenecks. It's primarily util...
 

Overview

 

Sample Customers

TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Information Not Available
Find out what your peers are saying about Splunk ITSI (IT Service Intelligence) vs. Splunk Security Essentials and other solutions. Updated: March 2025.
846,617 professionals have used our research since 2012.