No more typing reviews! Try our Samantha, our new voice AI agent.
Jigar Hirani - PeerSpot reviewer
Splunk Engineer at Data Elicit Solutions Pvt. Ltd.
Real User
Top 5Leaderboard
Mar 30, 2026
Cloud analytics has improved security insights and simplifies proactive performance monitoring
Pros and Cons
  • "Splunk Cloud Platform's ingest and visualization features have helped improve our data reporting, truly the best available in terms of customizability."
  • "In Splunk Cloud Platform particularly, there is nothing specific that I would like to see improved or enhanced, but the cost is currently very high."

What is our primary use case?

I use Splunk Cloud Platform as our overall tool to gain insight from our platform, for our security use cases, and to build a framework that shows what is happening in our organization or what is happening in our applications, the current status, or if we are facing any issues with our systems. I ingest various types of logs from different systems to Splunk Cloud from our forwarders and build dashboards and alerts on top of that. My primary use case is to understand our architecture or our overall environment, including what is happening and whether there are any vulnerabilities, or to conduct analysis on our applications. If there are any performance issues, I can learn about them from the dashboards that we have built and can optimize our architecture or overall application performance.

What is most valuable?

What I like about Splunk Cloud Platform is that it gives me flexibility and freedom in that I do not need to worry about the actual architecture of Splunk. I do not need to install it anywhere manually, and I only need to worry about what data I need to ingest and how I will create a dashboard on top of that. It provides support so I do not need to worry about the platform. It functions as Software as a Service, so I can directly use it and if I am facing any issue, Splunk support is available to help me anytime.

I do not have any limitations with Splunk Cloud Platform. I can access it from my own private network or anywhere, and I can access it from the public network as it is on a cloud. That is also a plus point for me.

In terms of assessing the effectiveness of Splunk Cloud Platform's search capabilities in uncovering operational insights, its storage capability is excellent. Previously, we were managing it at an enterprise level, but it was costly to us because of data redundancy and the availability zones. With Splunk Cloud Platform, we do not need to worry about data backup, which is a very good point.

The alerts have helped us in proactive issue resolution. If we are currently getting any error, we will get notified in the next 15 minutes or 30 minutes according to the schedule of the search.

Splunk Cloud Platform's ingest and visualization features have helped improve our data reporting, truly the best available in terms of customizability. We have two options, classic and Dashboard Studio for dashboard purposes. In classic, we get options to build custom dashboards using custom JavaScript. We can insert our own graphics to provide better visuals where insights to our management team will not be dependent on the numerical base. We have charts to showcase our current situation, which will be really great for management.

In terms of benefits, if we were needing two persons for SAP to analyze if we have any issues, now we just need one person doing multiple tasks. We have built an automation system, or a dashboard, which gives us insight so that we do not need to go and look up every service. Splunk Cloud Platform really impacted our workflow and increased our productivity.

What needs improvement?

In Splunk Cloud Platform particularly, there is nothing specific that I would like to see improved or enhanced, but the cost is currently very high. If that part could get a little bit cheaper, then that would be really great.

In terms of enhancement for Splunk Cloud Platform, I would say if we could create add-ons or if we get the capability to build add-ons directly through cloud, not talking about the add-on builder framework, but something editor-like where we will directly edit our conf files from any specific app or TA provided by Splunk Cloud Platform itself. If we get that feature, it will be really beneficial. Instead of doing configuration from the UI, we would prefer to get access to back-end conf files and do it manually because when we were using enterprise, we had pretty much hands-on experience with that.

For how long have I used the solution?

I have been using Splunk Cloud Platform for around two years.

Buyer's Guide
Splunk Cloud Platform
May 2026
Learn what your peers think about Splunk Cloud Platform. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
896,803 professionals have used our research since 2012.

How are customer service and support?

I would evaluate customer service and technical support of Splunk as really good. They provide on-call support and they reply to cases that we open, so the support is really good and collaborative.

Which solution did I use previously and why did I switch?

We have not previously used a different product. We have tried other tools, but they were very limited to the use cases that we are trying to capture. I chose to go with Splunk Cloud Platform because it has vast capabilities.

How was the initial setup?

The initial setup with Splunk Cloud Platform was really straightforward because, as it is a cloud platform, Splunk provided us the complete package where we do not need to worry about our infrastructure or configuration. If we need any help, they are always available, so it was very straightforward.

What about the implementation team?

The implementation was done by the Splunk team.

Which other solutions did I evaluate?

We evaluated products like Dynatrace or DataDog, which were very specific. They were providing us only observability-specific tasks. However, we have some VML logs or firewall logs for which we would not get that much analysis from those products. That is why we chose to go with Splunk Cloud Platform.

What other advice do I have?

We use Splunk default alert actions and we have installed third-party integrations, such as ServiceNow integration, where we are creating ServiceNow incidents or ServiceNow tickets from our alerts.

The impact of Splunk Cloud Platform's integrations with third-party tools on our daily operations is very helpful for our overall infrastructure monitoring. We have third-party integrations, such as SAP or Dell Boomi. To ensure that our SAP and site integration are running smoothly and none of its API is getting high or something unusual, we can easily detect that instead of going into SAP and analyzing.

We have our own machine learning logic where we are creating alerts based on our machine learning algorithm. If we are missing any data from the forwarders, then we have a built-in threshold mechanism where if the data from the last seven days is coming around 80 GB, then the next day it should be getting related to that. If we are not getting that, then we will get alerts. I have not particularly used Splunk ML Toolkit.

From the features perspective, I would say if we were getting calls from back two or three months, I was waiting for the Otel feature in Splunk Cloud Platform. Now we have support of Otel in the current latest Splunk version, so we are planning to upgrade Splunk Cloud Platform to the latest. The feature that I was looking for is now currently available, so I do not have anything specific at the moment.

In terms of pricing, the cost is high, but we are getting pretty much value out of what we are paying and what should be available to us in the market. In terms of that, it is really good with no question on that.

My advice to other organizations considering Splunk Cloud Platform is to make sure you use it as much as you can. There is a really big community of Splunk that you can explore to see what data you can ingest. There is a possibility you are already using other services from which you can get logs into Splunk and build analysis on top of that. Do not limit yourself to any specific use cases. I have seen some organizations only ingest specific logs, such as firewall logs or DNS logs. But they have different types of machines and applications running for their infrastructure. They can ingest logs from those as well and build analysis on top of that. There are pre-built add-ons that provide that functionality to them and they do not need to worry about development. So use it as extensively as possible. Overall, I would rate this product a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Last updated: Mar 30, 2026
Flag as inappropriate
PeerSpot user
Devops Intern at Veefin
Real User
Top 5
Apr 19, 2026
Centralized log insights have improved incident response and operational visibility
Pros and Cons
  • "The ROI with Splunk Cloud Platform is on the higher part, as it has improved the efficiency of our overall organization, increased incident response time to any failure by more than 50 percent, and enhanced the overall visibility of the system, architecture, and infrastructure by consolidating all of our data on one platform."
  • "One improvement I would suggest is in the cost part."

What is our primary use case?

In our organization, we use Splunk Cloud Platform for log management, operational visibility, security monitoring, and for ingesting logs and fast data. We focus on creating dashboards and configuring alerts for the overall visibility of our systems and for the monitoring and observability aspect.

What is most valuable?

I appreciate that Splunk Cloud Platform accepts all of my data. All of my data from different firewalls and applications gets to the one platform. Another valuable feature is the SPL query. After my data is centralized, I can use SPL queries for better analyzing and searching my data so I can detect anomalies or threats or for incident response. If any of my deployments fail, I can quickly respond to the incident.

Operational insights are crucial because my application logs are there, my firewall logs are generating there, and any new deployment from the CI/CD is there. This generates logs there. If any deployment has failed or if any application is failing, it increases my overall operational efficiency and helps my team with incidents.

The search capabilities of Splunk Cloud Platform are very powerful and can give me deep analysis of the events. The dashboards and the visual capabilities of Splunk Cloud Platform are also excellent. Dashboard Studio allows me to highly customize and create visually rich dashboards. The infrastructure features such as Smart Store and proactive monitoring help me in my day-to-day operations of the company.

We use Splunk Cloud Platform's alerting mechanism. We have integrated an API with ServiceNow, which works well for us.

The third-party tool integration with Splunk Cloud Platform is beneficial for us. We were using third-party tools before Splunk Cloud Platform. When we introduced Splunk Cloud Platform to our organization, it was very helpful that it could be integrated with third-party tools, so we did not need to change our tools. Splunk Enterprise tools for security and other functions can also be integrated with this platform. That is also a good feature for us.

What needs improvement?

One improvement I would suggest is in the cost part. Splunk Cloud Platform cost is generally generated on high data volume. It can be relatively expensive for a smaller company. Our company is in the mid-term range, but the cost could be improved. Additionally, the learning curve for SPL is a little bit hard for beginners, otherwise it is fine.

For how long have I used the solution?

I have been personally using Splunk Cloud Platform for the last one year, but my company has been using it for the last two to three years. However, I recently joined three months ago.

How are customer service and support?

Technical support for Splunk Cloud Platform is good and proactive. In some cases, the initial responses may not fully address the issue. However, through escalation, the support team usually provides effective solutions and is very helpful.

Which solution did I use previously and why did I switch?

We first used Grafana and Prometheus for the monitoring and observability. We had used open source tools as well. For the security and better visibility, my organization switched to Splunk Cloud Platform.

How was the initial setup?

Splunk Cloud Platform is a public cloud SaaS deployment. The initial setup was very fast and we do not need to maintain any infrastructure or backend infrastructure. This is a huge benefit for us.

Splunk Cloud Platform handles the platform deployment. From the user side, the main task was only to install forwarders and configure data ingestion, which was also quite a simpler task.

What was our ROI?

The ROI with Splunk Cloud Platform is on the higher part. It has improved the efficiency of our overall organization. The incident response time to any failure has increased more than 50 percent. The overall visibility of the system, architecture, and infrastructure has increased. All of our data is going on the one platform. These are all the ROIs which we get from Splunk Cloud Platform.

What other advice do I have?

We have not used Splunk Cloud Platform's machine learning tools yet, but we are planning to use them for threat detection and anomalies, so it can detect that threat by itself through automation. We are planning to use it in the future.

Splunk Cloud Platform has improved the efficiency and reduced the manual effort for us. It has improved faster detection and the response time has decreased significantly. The data pipeline optimization feature reduces the ingestion volume for us. These metrics are very helpful for us, and it also reduces the cost through data pipeline optimization.

My advice would be to fully utilize Splunk Cloud Platform by ingesting as much data as possible and to invest time in learning SPL and best practices for leveraging the Splunk community. My overall rating for this product is 9 out of 10.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Last updated: Apr 19, 2026
Flag as inappropriate
PeerSpot user
Buyer's Guide
Splunk Cloud Platform
May 2026
Learn what your peers think about Splunk Cloud Platform. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
896,803 professionals have used our research since 2012.
Yevheniy Moyko - PeerSpot reviewer
Cyber Security Engineer at Underdefense
Real User
Top 5Leaderboard
Apr 14, 2026
Centralized monitoring has strengthened incident detection and automated alerting for our clients
Pros and Cons
  • "As a certified Splunk Architect, I consider Splunk the best solution when comparing it with competitors including Elastic, Sumo Logic, Datadog, and Microsoft."
  • "One area that has room for improvement in Splunk Cloud Platform is support."

What is our primary use case?

We use both Splunk Cloud Platform and Splunk Enterprise Security. We operate as an MSP and are also a customer for the on-premise solution. We use Splunk Cloud Platform for monitoring purposes, and we use Enterprise Security for the incident monitoring tool, which is a premium solution for both Splunk on-premise and Splunk Cloud.

What is most valuable?

The best features of Splunk Cloud Platform are that you do not have to manage anything and do not have to worry about anything. It is scalable, easy to use, and reliable.

Regarding the machine learning tools in Splunk Cloud Platform, machine learning is great, but it requires specially trained people who understand it and have already worked with machine learning, making it challenging for those who do not have that expertise.

The price of Splunk Cloud Platform is very high, but you get all the advantages when you do not overpay for that. Some customers choose cheaper vendors, but for me, it is a perfect solution with many integrations, ready-to-go rules, and dashboards. It is feature-based.

Regarding the ingestion and visualization features in Splunk Cloud Platform, any device or system that can produce logs can be ingested into Splunk. There is no problem with many different possibilities to ingest the logs, making it a really great tool. Regarding the dashboards, there are also many possibilities to create them. If you know XML, you can write directly in XML and have your own custom dashboards, or you can do it via templates. These are great features.

What needs improvement?

One area that has room for improvement in Splunk Cloud Platform is support. The support knowledge base is the primary concern for me because we had several cases working with support teams, and they could not resolve our problem.

For how long have I used the solution?

I have been using Splunk Cloud Platform for about three years.

What do I think about the stability of the solution?

I rate the stability of Splunk Cloud Platform as ten plus.

What do I think about the scalability of the solution?

I also rate the scalability of Splunk Cloud Platform as ten.

How are customer service and support?

I would rate support for Splunk Cloud Platform about six out of ten.

What other advice do I have?

When assessing the effectiveness of the search capabilities in Splunk Cloud Platform, I notice that searches are slow, which is the main disadvantage of Splunk, but the rest is really great and the most mature. The alerting mechanisms in Splunk Cloud Platform are configured as well as possible, so you can get all the information that you need. They are really great.

As a certified Splunk Architect, I consider Splunk the best solution when comparing it with competitors including Elastic, Sumo Logic, Datadog, and Microsoft.

Regarding integration with third-party tools, Splunk provides federated searches, allowing you to search data even without integrating Splunk with other features such as AWS or data lakes. This is separate pricing, but it is still possible and works really well. However, the downside is that you need to buy additional SOAR if you want to automate certain things such as blocking an IP or user or removing a user or revoking their session.

Approximately thirty to forty people work with Splunk Cloud Platform.

Splunk Cloud Platform is hosted on Splunk Cloud, though this is a tricky question since we also have on-premise Splunk installed in the cloud of client infrastructure. I am discussing only Splunk Cloud Platform here.

My advice for Splunk is that it is the best SIEM solution for me. Based on your needs, you will need a POC. It is good enough for small, medium, or enterprise clients, but you will also need to invest in people who need to learn how to write searches and work with the solution because it is not easy. If you have appropriate people, it will be worth its cost. The learning curve for Splunk Cloud Platform depends on which level you want to achieve, but the downside is that most of their really good trainings are not free, so you will need to invest in learning. I give this review an overall rating of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. MSP
Last updated: Apr 14, 2026
Flag as inappropriate
PeerSpot user
Swati (Mohite)Pawar - PeerSpot reviewer
Splunk Cloud at mp
Real User
Top 5
May 21, 2026
Cloud security projects have been streamlined and incident investigations gain clear visibility
Pros and Cons
  • "Splunk Cloud Platform is the easiest solution we found; every time we worked with Splunk and other IBM solutions, it proved to be reliable."

    What is our primary use case?

    I have been working in cyber security for a significant period. I have completed projects in cyber security as well as IT program management. I have hands-on experience with Splunk Cloud Platform based on my education and practical application.

    My main use cases for Splunk Cloud Platform include log analysis, security monitoring, dashboard creation, and alert management during cybersecurity labs and SIEM related projects. I used it to investigate failed login attempts, monitor suspicious activities, and review security events in SOC style exercises. I also used Splunk Cloud Platform to improve understanding of incident response workflows, centralized logging, and threat detection in cloud and security environments. My experience comes from hands-on cybersecurity training, projects, and practical lab activities over the last two years

    How has it helped my organization?

    Splunk Cloud Platform helped improve visibility into security events and system activity during cybersecurity labs and SIEM training projects. It made log analysis and monitoring more efficient by centralizing data from different sources in one place. The dashboards, alerts, and search functionality helped identify suspicious activities more quickly and made investigations easier to manage. It also improved understanding of SOC workflows, incident response, and threat monitoring in cloud and security environments.

    What is most valuable?

    In my opinion, the best features Splunk Cloud Platform offers are its strong search functionality, dashboards, alerting system, investigation capabilities, and system integration features. Over the last year, I worked on several cybersecurity labs and SIEM related projects utilizing the platform.Splunk Cloud Platform helped with log analysis, security monitoring, dashboard creation, and investigation of suspicious activities. The features I found most valuable include investigation capabilities, dashboard and visual report generation, alert monitoring, centralized log management, and integration with different systems and cloud environments.Splunk Cloud Platform also had a positive impact during incident response exercises where teams worked together in blue team and red team style security scenarios to investigate and respond to simulated cyber threats.

    What needs improvement?

    I believe Splunk Cloud Platform can be improved as this project has helped me understand how the system works. I think Splunk Cloud Platform could be improved by making it easier for beginners to learn and use. More simple tutorials, guided examples, and beginner friendly dashboards would help new users understand the platform faster. It would also help to have easier SPL query suggestions, clearer error messages, and more built in templates for alerts and reports. Overall, Splunk Cloud Platform is very powerful for security monitoring and log analysis, but simplifying some features would make the learning experience better for new users.

    For how long have I used the solution?

    My main use case with Splunk Cloud Platform has been over two years.

    What do I think about the stability of the solution?

    Yes. From my experience in cybersecurity labs and SIEM projects, Splunk Cloud Platform was stable and reliable for log monitoring, dashboards, alerts, and security investigations.

    What do I think about the scalability of the solution?

    From my experience, Splunk Cloud Platform scales well and can handle logs from multiple systems and environments in one centralized platform. It supports cloud, hybrid, and on-premises environments, making it flexible for growing security and SOC operations.

    How are customer service and support?

    I did not directly use Splunk Cloud Platform customer service or technical support because my experience was mainly through cybersecurity training labs and educational projects.

    Which solution did I use previously and why did I switch?

    As part of my cybersecurity training and labs, I also had some exposure to other security and monitoring tools such as Microsoft Sentinel, Wireshark, and basic log monitoring tools. I did not fully switch from another enterprise SIEM solution, but I used Splunk Cloud Platform because it provided strong centralized logging, dashboard visualization, search functionality, and security monitoring features that were very useful for SOC style exercises and cybersecurity projects.

     

    How was the initial setup?

    From my experience in training and lab environments, the initial setup was fairly straightforward. Since it is cloud based, access and basic configuration were easier to manage compared to more complex on-premises setups.

    What about the implementation team?

    No however .Like to work In my case, Splunk Cloud Platform was used mainly in cybersecurity training labs and educational projects, so I did not work directly with an integrator, reseller, or consultant for deployment.

    What was our ROI?

    As an entry level user, I was not directly involved in ROI measurements, but Splunk Cloud Platform helped improve centralized monitoring and faster security investigations during cybersecurity labs and SOC exercises.

    What's my experience with pricing, setup cost, and licensing?

    As an entry level user working mainly in cybersecurity labs and training environments, I did not directly manage pricing or licensing decisions. My experience was mainly focused on using the platform for learning, security monitoring, and SIEM related projects. From my experience, the setup and cloud access were straightforward in the training environment, and the platform provided strong features for log analysis, dashboards, and security investigations.

    Which other solutions did I evaluate?

    Before using Splunk Cloud Platform, I also had some exposure to Microsoft Sentinel during cybersecurity labs and training. From my entry level experience, Splunk stood out because of its strong search features, dashboards, and centralized log analysis. Microsoft Sentinel worked well with Azure, while Splunk felt more flexible for security monitoring and investigations. Learning SPL queries took some time at first, but it became easier with practice.

     

    What other advice do I have?

    I would rate Splunk Cloud Platform an 8 out of 10 based on my hands-on experience in cybersecurity labs and SIEM projects. I found it very useful for log analysis, dashboards, alert monitoring, and security investigations across cloud and on-premises environments. My advice for organizations is to invest in user training, especially for SPL queries and dashboards, because once learned, Splunk becomes a very powerful tool for SOC and security operations.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: May 21, 2026
    Flag as inappropriate
    PeerSpot user
    Andrzej Nienaltowski - PeerSpot reviewer
    Security Specialist at DB Schenker
    Real User
    Top 5
    Apr 29, 2026
    Training lab has improved threat hunting and now speeds up investigations with built-in visuals
    Pros and Cons
    • "The visualization feature in Splunk Cloud Platform is a pretty good feature because I did not need to go to any other vendors, for example, any.run or VirusTotal."
    • "It is worth reconsidering the syntax language and changing it to KQL."

    What is our primary use case?

    I use Splunk Cloud Platform for both IT alerting and incident management in my training.

    I use it to find threats and strange behavior of applications or networking. I mostly use it for networking, strange processes, and behaviors. I use the alerting mechanism.

    What is most valuable?

    I appreciate the syntax that Splunk Cloud Platform uses because it is not KQL.

    The whole product is really good, and I did not have much difficulty using it. The alerting mechanism is good to have, but in my personal training, I did not use it much because I did not need it that much.

    The visualization feature in Splunk Cloud Platform is a pretty good feature because I did not need to go to any other vendors, for example, any.run or VirusTotal. This speeds the whole investigation up.

    What needs improvement?

    It is worth reconsidering the syntax language and changing it to KQL. The company would benefit from using the KQL language in queries. Pricing would be better.

    For how long have I used the solution?

    My experience with Splunk Cloud Platform is three months.

    What do I think about the stability of the solution?

    I have not heard a lot of problems or disconnections, so I think nine is correct. That is also nine.

    How are customer service and support?

    From what I heard, the technical support is pretty decent, so eight is okay.

    Which solution did I use previously and why did I switch?

    I have tried Elastic, Sentinel, and I think that is all.

    How was the initial setup?

    I cannot tell if the deployment is easy or complex. I cannot tell how long it took to deploy because I did not deploy it. I just started the session, and everything was already prepared for me.

    I had some tasks to find, such as some strange processes. That was one big task to perform on Splunk Cloud Platform system. There were several of these tasks, but that was an example.

    What other advice do I have?

    I have not tried the machine learning tools yet. I did not integrate Splunk Cloud Platform with any tools. In my case, it is just me using the solution, but I know the whole platform because I am using Cyber Defender platform for learning. The whole platform has a lot of people, but in my case, it is only me.

    I cannot tell if it requires any maintenance, but I do not think it is really rough to do it.

    My overall review rating for Splunk Cloud Platform is eight.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Google
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    Last updated: Apr 29, 2026
    Flag as inappropriate
    PeerSpot user
    Software engineer at ProminentPixel
    Real User
    Top 5
    Apr 27, 2026
    Centralized monitoring has improved real-time insights and alerting for daily operations
    Pros and Cons
    • "Overall, Splunk Cloud Platform is cost-efficient for us because we are Splunk partners, and it offers better performance."

      What is our primary use case?

      We have used Splunk Cloud Platform for the past one year. We use Splunk Cloud Platform for system monitoring and alerts, and we have personal dashboards to monitor our activities. We ingest logs and monitor all of our operations. We also use AWS along with Splunk Cloud Platform.

      What is most valuable?

      The powerful search capabilities using SPL are what I appreciate about Splunk Cloud Platform. The second feature we value is its real-time monitoring and alerting.

      The best feature is that Splunk Cloud Platform is handled by the Splunk team itself, including installation and all related tasks. We do not have to touch anything; we simply use it for our case.

      SPL search capability is one of the primary tools we use every day. We have different search queries configured for alerts, dashboards, and all related functions. It is one of the major tools we use in our daily operations.

      Overall, Splunk Cloud Platform is cost-efficient for us because we are Splunk partners, and it offers better performance. It has improved our faster query execution and includes an inbuilt dashboard with better dashboard performance. We gain more meaningful insights using Splunk Cloud Platform compared to other SIEM tools.

      What needs improvement?

      The initial learning curve should be more personalized for new users who just started using Splunk Cloud Platform. Additionally, the documentation should be more beginner-friendly.

      For how long have I used the solution?

      I have been using Splunk Cloud Platform  for the past one year.

      What do I think about the stability of the solution?

      Splunk Cloud Platform is working fine for us; it is superb.

      What do I think about the scalability of the solution?

      It is super scalable for us, whether you consider horizontal or vertical scaling. We are expanding in both directions, so it is highly scalable for us.

      How are customer service and support?

      We have escalated questions regarding Splunk Cloud to Splunk. During the upgrade, we experienced some issues with our forwarders not coming up and some issues with our search head. All of the issues were resolved. We raised support cases and our issues were solved by the Splunk team itself. It has been good for us so far.

      Which solution did I use previously and why did I switch?

      We directly use Splunk Cloud Platform.

      How was the initial setup?

      The initial setup was straightforward.

      What about the implementation team?

      It is super smooth; Splunk Cloud Platform integrates with ServiceNow smoothly. We have experienced no problems so far in that regard.

      What was our ROI?

      We have seen a return on investment with Splunk Cloud Platform at 30 to 40 percent.

      What's my experience with pricing, setup cost, and licensing?

      We are Splunk partners, so in Splunk Cloud Platform, pricing is not an issue. It is balanced, and from a pricing perspective, it is good for us.

      What other advice do I have?

      If you are looking for a SIEM tool that has all the capabilities, you should definitely opt for Splunk Cloud Platform. I would rate this solution a 9 out of 10.

      Which deployment model are you using for this solution?

      Public Cloud

      If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

      Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
      Last updated: Apr 27, 2026
      Flag as inappropriate
      PeerSpot user
      HrishikeshNavkar - PeerSpot reviewer
      Senior Software Engineer at WorldPay US
      Real User
      Top 5
      Feb 4, 2026
      Cloud monitoring has simplified administration and improved integrations for faster operations
      Pros and Cons
      • "Splunk Cloud Platform has greatly improved my daily operations through enhanced integration with third-party tools."
      • "In my opinion, there is room for improvement, as we used to raise multiple issues via the process, but they pick them up slowly, and the response times are not as prompt as we would like."

      What is our primary use case?

      My usual use cases for Splunk Cloud Platform involve being an admin where we used to build Splunk clusters or distributed environments from scratch on the on-premises system, but now we have everything up and running on Splunk Cloud Platform, which operates on AWS. Splunk has developed it on AWS. Currently, as an admin, I just need to maintain and configure it according to our needs. It functions as a software as a service now, meaning we don't configure it from scratch the way we used to do with installation, configuration, and setup of the configs as we required. Now, it is software as a service that we use for both Splunk and Observability.

      How has it helped my organization?

      Splunk Cloud Platform has greatly improved my daily operations through enhanced integration with third-party tools. Earlier integrations from on-premises Splunk to third-party tools were quite difficult, lacking the necessary add-ons or applications that could be directly used from the UI. Now on Splunk Cloud Platform, they have introduced new add-ons and plugins that allow us to utilize and pass credentials directly for integration with third-party applications, making the process very efficient and fast. We have multiple new add-ons that let us connect directly to clouds such as AWS, Azure, and Google, as well as event management applications such as ServiceNow, requiring only the credentials and service accounts and eliminating the need to configure from scratch.

      What is most valuable?

      The features of Splunk Cloud Platform that I have found most valuable and useful relate to licensing. Previously, it was a daily quota that we purchased on-premises, but currently it is based on SVC, or Splunk virtual compute, which is based on CPU and memory utilization of the cloud for billing. There are two license types: Victoria and Base. As we utilize the SVCs, we are charged accordingly, and we have the option to purchase a fixed number of SVCs or pay based on how many we actually use.

      The effectiveness of Splunk Cloud Platform's search capabilities in uncovering operational insights is notable because as an admin or developer, we utilize saved searches that run on schedules that we set. The search capability utilizes the same compute assigned, and compared to on-premises, it is very efficient and fast because on-premises we had fixed compute assigned with limits set for searching per role or application. In the cloud, we find it very easy and fast to use.

      Splunk Cloud Platform helps in proactive issue resolution by allowing us to set alerts based on data flow to find errors or anomalies that need identification. The saved searches run based on these conditions to find errors or identify anything unusual in the data. We get alerts based on the conditions we set, which is quite effective.

      What needs improvement?

      Areas of Splunk Cloud Platform that could be improved or enhanced in the future include data visualization, as the way we use data for security and other purposes could further benefit from enhanced visualization to support monitoring, threat analysis, and other aspects.

      For how long have I used the solution?

      Overall, I would rate Splunk Cloud Platform an eight out of ten as a solution for us.

      What do I think about the stability of the solution?

      Regarding stability and reliability so far, we are not yet live and are still in the migration process, but comparing it to on-premises, it seems promising.

      What do I think about the scalability of the solution?

      My thoughts on the scalability of Splunk Cloud Platform are that it scales up quite well. However, I haven't encountered any specific scenarios to validate it thoroughly yet, but overall, it appears to be good.

      How are customer service and support?

      My opinion on the technical support and customer service of Splunk, based on my cases, is that it is quite good with the credits we have along with the vendor. However, when we don't have credits, they charge us based on time as well as the criticality of the issue.

      How would you rate customer service and support?

      Positive

      What other advice do I have?

      In my opinion, there is room for improvement, as we used to raise multiple issues via the process, but they pick them up slowly, and the response times are not as prompt as we would like.

      Regarding how Splunk Cloud Platform's ingest and visualization features help improve my data reporting, I have some insights on dashboards, but from a fully comprehensive perspective of data flow and ingestion, I haven't been hands-on that much. As an admin, I have worked on the infrastructure side of it, so I am unable to provide thorough feedback on that.

      I would rate Splunk Cloud Platform an eight out of ten overall as a solution for our organization.

      Which deployment model are you using for this solution?

      Public Cloud

      If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

      Amazon Web Services (AWS)
      Disclosure: My company does not have a business relationship with this vendor other than being a customer.
      Last updated: Feb 4, 2026
      Flag as inappropriate
      PeerSpot user
      Ritesh Vishwakarma - PeerSpot reviewer
      Project Manager at Crest Data Systems
      Real User
      Top 5
      Apr 8, 2026
      Data visualization has provided rich insights and simplifies complex reporting tasks
      Pros and Cons
      • "The best features of Splunk Cloud Platform include its powerful analytics and intuitive user interface, and I particularly appreciate how it simplifies complex data operations."
      • "I believe there are a few areas of Splunk Cloud Platform that have room for improvement, particularly in user customization and documentation clarity."

      What is our primary use case?

      Splunk Cloud Platform is primarily used for data visualization, as it allows us to gain insightful perspectives on our data.

      What is most valuable?

      The best features of Splunk Cloud Platform include its powerful analytics and intuitive user interface. I particularly appreciate how it simplifies complex data operations.

      The ingestion and visualization features of Splunk Cloud Platform are integral to our data reporting, as they help transform raw data into meaningful visual formats effortlessly.

      What needs improvement?

      I believe there are a few areas of Splunk Cloud Platform that have room for improvement, particularly in user customization and documentation clarity.

      For how long have I used the solution?

      I have been using Splunk Cloud Platform for quite some time.

      What do I think about the stability of the solution?

      The stability of Splunk Cloud Platform is commendable, and I would rate it a nine from one to ten.

      What do I think about the scalability of the solution?

      Regarding scalability, I find Splunk Cloud Platform to be highly scalable; I would rate it an eight from one to ten, as it meets our growing needs efficiently.

      How are customer service and support?

      From one to ten, with ten being the best, I would rate the technical support of Splunk Cloud Platform as a solid eight.

      How was the initial setup?

      The deployment of Splunk Cloud Platform itself is straightforward; I would categorize it as easy, with minimal challenges along the way.

      What about the implementation team?

      We have approximately one hundred users using Splunk Cloud Platform across various teams in our organization.

      What was our ROI?

      Overall, I would rate Splunk Cloud Platform a solid eight from one to ten, as it meets a wide range of our business requirements effectively.

      What's my experience with pricing, setup cost, and licensing?

      When it comes to the cost of Splunk Cloud Platform, I would rate it a five from one to ten, with one being cheap and ten being expensive.

      Which other solutions did I evaluate?

      In comparison to other solutions such as DataDog, Microsoft, and Sumo, I find Splunk Cloud Platform to be quite competitive, offering unique capabilities that are valuable to our operations.

      What other advice do I have?

      My advice for others looking into Splunk Cloud Platform would be to take full advantage of its versatile features and ensure proper training for your team.

      I have Splunk Cloud Platform deployed in the cloud, and I utilize AWS as my cloud provider.

      Regarding machine learning tools, I find them to be quite impressive in their ability to enhance data analysis and predictive insights.

      My thoughts on the alerting mechanisms in Splunk Cloud Platform are positive; they work effectively to notify us of important changes or issues in our data.

      I assess the effectiveness of the search capabilities in uncovering operational insights as quite robust, as they provide detailed results swiftly and efficiently.

      My thoughts on the integration with third-party providers is that it generally is seamless, allowing us to synchronize various tools with Splunk Cloud Platform easily.

      Overall, I would rate this review an eight from one to ten.

      Which deployment model are you using for this solution?

      Cloud

      If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

      AWS
      Disclosure: My company does not have a business relationship with this vendor other than being a customer.
      Last updated: Apr 8, 2026
      Flag as inappropriate
      PeerSpot user
      Buyer's Guide
      Download our free Splunk Cloud Platform Report and get advice and tips from experienced pros sharing their opinions.
      Updated: May 2026
      Buyer's Guide
      Download our free Splunk Cloud Platform Report and get advice and tips from experienced pros sharing their opinions.