Try our new research platform with insights from 80,000+ expert users

Splunk ITSI (IT Service Intelligence) vs Sumo Logic Observability comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 24, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
8.0
Splunk ITSI quickly delivers ROI by enhancing visibility, reducing costs, and improving performance with centralized data and efficient analytics.
Sentiment score
7.0
Sumo Logic Observability improved operational efficiency, reduced downtime, and provided better issue resolution, visibility, stability, and proactive IT management.
 

Customer Service

Sentiment score
6.5
Splunk ITSI support is generally good, but experiences vary by company size and issue, with occasional delays reported.
Sentiment score
7.8
Sumo Logic Observability's customer service is highly rated, with quick responses and helpful support, particularly for advanced and OpenTelemetry issues.
The technical support is excellent, and I would rate it at ten.
 

Scalability Issues

Sentiment score
7.9
Splunk ITSI efficiently scales with clustering and machine learning, handling large data volumes and scoring high in scalability ratings.
Sentiment score
7.3
Sumo Logic Observability scales efficiently for diverse users, handling peak records with ease, supported by Fluent Bit and OpenTelemetry.
Splunk is highly scalable, with the ability to expand efficiently.
 

Stability Issues

Sentiment score
7.9
Splunk ITSI offers high reliability and stability, especially in cloud deployments, with minor issues related to infrastructure and data consistency.
Sentiment score
8.8
Sumo Logic Observability is highly reliable, with users experiencing no issues and rating its reliability a perfect ten for enterprises.
The setup, however, must be done correctly as incorrect deployment can lead to issues.
 

Room For Improvement

Splunk ITSI needs better integration, user interface, predictive analytics, machine learning, real-time alerting, automated response, and user support.
The system requires efficiency improvements in data usage, cost management, enrichment, search interface, query speed, and pre-built dashboards.
Splunk ITSI could benefit from including more features that other solutions support, such as vulnerability management modules.
 

Setup Cost

Splunk ITSI is a costly but comprehensive tool, valued for its observability despite complex licensing and high pricing.
<p>Sumo Logic Observability provides flexible, competitive pricing for enterprises, but additional costs may apply for advanced features and high data volumes.</p>
Splunk ITSI tends to be more expensive compared to some open-source solutions.
 

Valuable Features

Splunk IT Service Intelligence enhances incident management with agile data handling, advanced analytics, and effective troubleshooting features for quick issue resolution.
Sumo Logic Observability offers real-time alerting, apps, team collaboration, easy integration, and a flexible query language, boosting incident resolution.
Splunk ITSI allows for integration with threat intelligence, enabling my organization to correlate more than two events for generating alerts.
 

Categories and Ranking

Splunk ITSI (IT Service Int...
Ranking in Application Performance Monitoring (APM) and Observability
10th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
50
Ranking in other categories
IT Alerting and Incident Management (4th)
Sumo Logic Observability
Ranking in Application Performance Monitoring (APM) and Observability
20th
Average Rating
7.8
Reviews Sentiment
7.2
Number of Reviews
6
Ranking in other categories
Cloud Monitoring Software (21st), AIOps (10th)
 

Mindshare comparison

As of April 2025, in the Application Performance Monitoring (APM) and Observability category, the mindshare of Splunk ITSI (IT Service Intelligence) is 0.7%, up from 0.6% compared to the previous year. The mindshare of Sumo Logic Observability is 0.2%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Performance Monitoring (APM) and Observability
 

Featured Reviews

Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.
Shamshir Nangla - PeerSpot reviewer
Getting up and running is easy, even for a newbie but management of searches definitely needs improvement
Operational effectiveness with regards to when there's an issue, when there's a reactive issue, people are able to, or as well as proactively, actually, because we use their PagerDuty integrations. We use queries in Sumo Logic to trigger alerts based on logging. That allows us to proactively identify issues as they're happening. With those same alerts, obviously, with that platform, you can use it to reactively start looking at troubleshooting issues as they're happening right then and there or incidents. So it's been very, very good for alerting and for troubleshooting issues. For predicting issues before they happen, it is not very good. They have a feature called anomaly detection, but I think it's quite premature compared to other stuff out there. So it's good for alerts and for troubleshooting operational effectiveness. When your operations are down or segregated, it's perfect because it will help you diagnose the issues.
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
846,617 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
14%
Government
11%
Manufacturing Company
7%
Financial Services Firm
16%
Computer Software Company
14%
Manufacturing Company
10%
Transportation Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What needs improvement with Splunk ITSI (IT Service Intelligence)?
Currently, Glass tables in ITSI only display metrics related to KPIs. I proposed adding an option to show metrics related to entities. This would eliminate the need for custom SPL to achieve this f...
What needs improvement with Sumo Logic Observability?
The speed of queries could be improved. When using more advanced functions, especially with large datasets like the 90-day log retention we had, queries could be slow, sometimes taking up to five m...
What is your primary use case for Sumo Logic Observability?
We used it for log observability – log aggregation specifically.
 

Overview

 

Sample Customers

TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Information Not Available
Find out what your peers are saying about Splunk ITSI (IT Service Intelligence) vs. Sumo Logic Observability and other solutions. Updated: April 2025.
846,617 professionals have used our research since 2012.