No more typing reviews! Try our Samantha, our new voice AI agent.
reviewer2747775 - PeerSpot reviewer
IT Security Operations Manager at a retailer with 5,001-10,000 employees
Real User
Top 10
Feb 19, 2026
Security monitoring has become proactive with customizable alerts and clear dashboards
Pros and Cons
  • "What I like about Splunk Cloud Platform is the easy reading of the dashboards and finding the data, which brought me the biggest benefits."
  • "Splunk Cloud Platform could improve in how quickly it reacts to users reporting issues."

What is our primary use case?

My major use case for Splunk Cloud Platform is for SOC, SIEM mostly.

What is most valuable?

What I like about Splunk Cloud Platform is the easy reading of the dashboards and finding the data, which brought me the biggest benefits.

The alerting mechanism in Splunk Cloud Platform is customizable, so we could adapt it to our needs and assign the right priorities and based on this, define the action.

Visualization features and ingesting in Splunk Cloud Platform helped to improve my data reporting, but that was also a different team that was providing the log ingestion.

Other features that were really great in Splunk Cloud Platform include real-life monitoring, so we could have logs right away, and parsing was fine, so when it was correctly ingested and Splunk Cloud Platform parsed it correctly, then we had no issues with receiving the correct alerts.

What needs improvement?

Splunk Cloud Platform could improve in how quickly it reacts to users reporting issues.

Splunk Cloud Platform can be complex depending on the log source in terms of deployment.

For how long have I used the solution?

I used Splunk Cloud Platform for seven years.

Buyer's Guide
Splunk Cloud Platform
August 2026
Learn what your peers think about Splunk Cloud Platform. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
912,930 professionals have used our research since 2012.

What do I think about the stability of the solution?

Splunk Cloud Platform was stable, and I did not see any performance issues or downtime, although it happened; the issue was that we had to really fine-tune the log quality so that it would not be ingested too much and handled for nothing.

What do I think about the scalability of the solution?

Regarding the scalability of Splunk Cloud Platform, I would say it is scalable, but maybe the pricing may affect the scalability because it may not be that beneficial to onboard too many log sources if they generate too many false positives and then you reach over the limit of the license.

How are customer service and support?

I would rate the technical support for Splunk Cloud Platform probably a three, because there was some support, but I remember that we were using our proxy company to submit it for us because they were bigger and maybe more convincing to Splunk.

How was the initial setup?

The biggest issue during deployment of Splunk Cloud Platform was correct log parsing.

What about the implementation team?

I can describe the impact of integration with third-party solutions in Splunk Cloud Platform as limited experience since I was the only one on the receiving end of it, and I was not integrating it with any solutions or with any other vendors; we also had the company who was supporting us in the configuration part, so we didn't even have to do it fully by ourselves.

What was our ROI?

I don't see ROI with Splunk Cloud Platform, such as time saving or money saving because I'm security operations, so I don't think in management terms.

What other advice do I have?

I have about the same amount of experience in this domain with SOC solutions, as I haven't worked with SOC SIEM solutions such as Splunk Cloud Platform before, so it's the same. My overall review rating for Splunk Cloud Platform is 8.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Feb 19, 2026
Flag as inappropriate
PeerSpot user
Bhavesh Kadachha - PeerSpot reviewer
Dev Ops Engineer at ProminentPixel
Real User
Top 5
May 29, 2026
Cloud analytics have transformed log insights and automated maintenance for our teams
Pros and Cons
  • "Splunk Cloud Platform is highly scalable, and it is one of the best SIEM tools across the world because it is valuable not only for monitoring but also for security analysis, dashboards, and other features compared to other tools."
  • "For betterment, there is definitely a cost concern."

What is our primary use case?

For Splunk Cloud Platform, we perform analytics with a large scale of data pipelines and log data. We query logs and build dashboards to support our operational and business insights. We mainly work with Splunk Processing Language to query logs, identify patterns, and support troubleshooting and reporting.

We definitely use the ML toolkit for regression and anomaly detection. We also use Splunk Processing Language, and after the recent update, the new AI feature has been introduced that suggests queries to us. This feature has saved us considerable time.

Regarding native models, we only use the ML toolkit. I am unaware of the other models that Splunk provides. Specifically for the ML toolkit, we use it for anomaly detection and regression. In terms of cloud, we only use the ML toolkit.

What is most valuable?

I love how everything is handled by Splunk Cloud Platform itself. We do not have to manage migrations, updates, and other maintenance tasks. That is one of the major benefits of using Splunk Cloud Platform.

We definitely contact them and they help us during upgrade times. For example, if we want to upgrade Splunk Forwarder on a cloud instance or a Splunk Indexer in a cloud instance, they definitely assist us.

Splunk Cloud Platform is highly scalable. It is one of the best SIEM tools across the world because it is valuable not only for monitoring but also for security analysis, dashboards, and other features compared to other tools.

What needs improvement?

For betterment, there is definitely a cost concern. The cost is high, so there should be a somewhat lower cost. I am expecting a more competitive pricing structure from Splunk Cloud Platform, but otherwise it is fine.

For how long have I used the solution?

We have been working with this solution for the past 14 months.

What do I think about the stability of the solution?

I experienced stability issues once or twice during an upgrade, but the rest of the time it is fine. It is highly stable and scalable for us.

What do I think about the scalability of the solution?

Splunk Cloud Platform is highly scalable. It is one of the best SIEM tools across the world because it is valuable not only for monitoring but also for security analysis, dashboards, and other features compared to other tools.

How are customer service and support?

The customer service team is quite fast. They take around two to three hours to reply back and they solve our problems.

Which solution did I use previously and why did I switch?

We have not had any issues regarding maintenance because everything has been handled by the Splunk team itself. That is the best aspect of Splunk Cloud Platform, so we have not experienced any problems so far.

How was the initial setup?

The initial setup was easy for us because we took training from Splunk. It was quite easy for us.

What about the implementation team?

The implementation timeline depends on the use case, whether you are a Splunk Admin or a Splunk Power User. For a Power User, it took around three to four months to learn it. For an Admin's use case, it is very hard and took around a year. You also need certification to prove that you are a Splunk Admin.

The implementation process is quite easy because we have created custom applications regarding the upgrade of Splunk Enterprise Platform. We have another application called Splunk Forwarder through which pre-checks and post-checks are performed by our custom-made application. It is quite easy for us.

What other advice do I have?

We also use Splunk SOAR in addition to Splunk Cloud Platform. My overall review rating for this solution is 9 out of 10.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: May 29, 2026
Flag as inappropriate
PeerSpot user
Buyer's Guide
Splunk Cloud Platform
August 2026
Learn what your peers think about Splunk Cloud Platform. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
912,930 professionals have used our research since 2012.
reviewer2830626 - PeerSpot reviewer
Dev Ops And Observability Admin at a tech services company with 11-50 employees
Real User
Top 5
Apr 27, 2026
Managed log analytics has provided real‑time monitoring and improves proactive issue resolution
Pros and Cons
  • "Since Splunk Cloud Platform is a fully managed service, there is no need to handle servers, upgrades, or maintenance."
  • "One aspect I dislike about Splunk Cloud Platform is that cost can become high as data ingestion increases."

What is our primary use case?

In the data and analytics domain, I work with Splunk Cloud Platform where we handle system logs and large scale data. I use Splunk Cloud Platform to monitor applications. I analyze logs and then build dashboards that provide real time insight for our technical team.

What is most valuable?

Splunk Cloud Platform is fully managed, so we do not need to handle infrastructure. The next thing I appreciate is its powerful search using SPL. It is easy to build dashboards in Splunk Cloud Platform and its visualization is also solid.

The alerting mechanisms of Splunk Cloud Platform have definitely helped in proactive issue resolution. Alerting is one of the most prominent features of Splunk Cloud Platform because we have set numerous alerts for daily ingestions. Health monitoring of Splunk dashboards is another valuable feature. We have alerts for thresholds, alerts for users, and alerts for failed logons. For example, if someone is trying to log in more than five times and failing, we have alerts for that as well. This is very useful for us.

Machine learning tools of Splunk Cloud Platform have helped to predict trends in our data. Using machine learning libraries, it is easy for us to analyze data and predict our upcoming data. This makes it pretty straightforward for us in daily operations using the machine learning toolkit.

What needs improvement?

One aspect I dislike about Splunk Cloud Platform is that cost can become high as data ingestion increases. The initial learning curve for SPL and cloud setup is also difficult for some new beginners.

For how long have I used the solution?

I have been using Splunk Cloud Platform for the past one year.

What do I think about the stability of the solution?

Regarding stability, Splunk Cloud Platform does not lag or crash. It is highly scalable and stable for us.

What do I think about the scalability of the solution?

Splunk Cloud Platform is very scalable for us because we conduct day-to-day operations in Splunk Cloud Platform itself. We are increasing our team both horizontally and vertically.

How are customer service and support?

The technical support regarding Splunk Cloud Platform is good because they are always helpful. Whenever there is an upgrade, we notify them and they upgrade it for us. Everything is straightforward and simple with them. So far, we have had no issues with them.

What other advice do I have?

Since Splunk Cloud Platform is a fully managed service, there is no need to handle servers, upgrades, or maintenance. Everything is managed by Splunk, which makes it pretty straightforward for us to use and complete every everyday task. There is no infrastructure management required and it enables faster development. It is highly scalable for us.

For new users, my advice is that if you are looking for a SIEM tool and you can afford it, then Splunk Cloud Platform is the best SIEM tool you can use because it is highly scalable and solves our day-to-day operations and use case. Everything is available within a single platform. I would rate this solution a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Apr 27, 2026
Flag as inappropriate
PeerSpot user
Sr Manager at Continued
User
Top 10
Feb 4, 2025
Needs better cybersecurity features but offers robust log ingestion
Pros and Cons
  • "The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs."
  • "Extracting meaningful insights beyond essential log data proves challenging due to the product's reliance on manual processes."
  • "The return on investment with Splunk Cloud Platform has been poor. There is a significant possibility we will be replacing it in the next quarter or two."

What is our primary use case?

I use the Splunk Cloud Platform for security monitoring. My company is a technology company with over 40,000 employees.

How has it helped my organization?

The Splunk Cloud Platform offers easy data ingestion and a user-friendly interface for product teams, particularly for straightforward log shipping.

Splunk Cloud Platform offers easy integration due to its robust and well-documented APIs. These allow seamless integration into existing pipelines and other products and the flexibility to create custom integrations as needed.

Splunk Cloud Platform helps access data for compliance and privacy regulations. While some manual work remains, it assists with meeting compliance and regulatory requirements, especially regarding logging, reporting, and monitoring, solidifying its position as the industry standard.

What is most valuable?

The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs.

What needs improvement?

Splunk Cloud Platform needs improvement in its security offerings, specifically in cybersecurity. It has not kept pace with competitors over recent years, and integration with the Cisco ecosystem after Cisco's acquisition of Splunk has also been slow. The product should incorporate more readily available features, especially in security monitoring.

The federated search feature is costly.

Extracting meaningful insights beyond essential log data proves challenging due to the product's reliance on manual processes. Users must manually configure detections, develop logic for insights, and manage dashboards. While the product boasts numerous out-of-the-box capabilities, these often require extensive modification to align with specific user needs, limiting their practical applicability.

Splunk Cloud Platform doesn't inherently provide visibility as a standalone product. It's a platform for building custom visibility solutions. We need to feed it data and then write logic to define what insights we want to extract. While pre-built solutions might be available in the marketplace, Splunk doesn't offer out-of-the-box visibility. If we know our requirements, we can utilize code and research to create custom dashboards, but it requires effort and expertise.

The pre-built reports in Splunk Cloud Platform are generic and require manual adjustments to extract specific, granular information, which requires the user to be knowledgeable.

For how long have I used the solution?

I have been using the Splunk Cloud Platform for over ten years.

How are customer service and support?

The customer service and support for Splunk Cloud Platform are mediocre and often hit or miss. Premium support is costly and may not always provide a satisfactory experience, as even the support engineers can sometimes be stumped.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup of the Splunk Cloud Platform is straightforward. Professional services are available to assist in deployment, including setting up Splunk forwarders and building data models. With adequate support, full deployment can be efficiently achieved.

Full deployment is a lengthy process, but achieving 50 percent deployment can be achieved within one to two quarters.

What about the implementation team?

Deploying Splunk Cloud may require different resources depending on the size of the data ingested daily. Two to three people may be sufficient for smaller terabyte ingestion, whereas a team of four to five might be needed for larger ingestion.

What was our ROI?

The return on investment with Splunk Cloud Platform has been poor. There is a significant possibility we will be replacing it in the next quarter or two.

What's my experience with pricing, setup cost, and licensing?

Splunk Cloud is considered too expensive, with its two product offerings both being costly. I would rate the cost an eight out of ten, with ten being the most costly.

What other advice do I have?

Splunk Cloud Platform is not impacting a lot of decisions. But if we write very good reports and dashboards, then we can derive insights from them for leadership to make concrete decisions on. So we have to do the legwork to get that output.

While Splunk Cloud Platform may not be a significant factor in decision-making, generating high-quality reports and dashboards can provide valuable insights for leadership to take concrete action. However, we must dedicate ourselves to the necessary work to produce those impactful outputs.

I would rate Splunk Cloud Platform a five out of ten due to its gradual decline over the last few years. While I would have rated it an eight out of ten four years ago, its performance and features have deteriorated, leading to my current lower rating.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
HarshShah2 - PeerSpot reviewer
DevOps Engineer at Veefin Solutions Ltd.
Real User
Top 5Leaderboard
May 6, 2026
Cloud analytics has improved reporting and security visibility across hybrid environments
Pros and Cons
  • "Splunk Cloud Platform's visibility into multiple environments offers excellent monitoring capabilities, whether I am using it in the cloud, on-premises, or in hybrid environments."
  • "What I find challenging about Splunk Cloud Platform is that it occasionally has a steep learning curve for new users."

What is our primary use case?

I have been working in my current field for two years.

My use cases for Splunk Cloud Platform involve various applications that enhance data management and security.

I use it to streamline operations and improve analytics.

What is most valuable?

What I appreciate most about Splunk Cloud Platform is its intuitive user interface, which makes navigation and data analysis efficient.

It has a favorite feature in its reporting capabilities, allowing me to generate insightful reports easily.

What needs improvement?

What I find challenging about Splunk Cloud Platform is that it occasionally has a steep learning curve for new users.

The platform could improve by offering more comprehensive onboarding resources and tutorials.

For how long have I used the solution?

I have been working with Splunk Cloud Platform for six to eight months.

What do I think about the stability of the solution?

Regarding stability, Splunk Cloud Platform performs well with minimal lagging or crashing issues.

What do I think about the scalability of the solution?

Regarding scalability, I find that Splunk Cloud Platform is highly scalable, accommodating growing data needs without major issues.

How are customer service and support?

I have had to contact technical support for Splunk Cloud Platform before, and my experience was quite positive.

If I were to put the technical support on a scale from one to ten, I would rate it an eight for the support.

How was the initial setup?

The initial deployment of Splunk Cloud Platform was somewhat challenging but manageable.

It had complexities that required careful configuration.

Which other solutions did I evaluate?

As for alternatives, I have used other data analytics tools before, but none quite match the capabilities of Splunk Cloud Platform.

I definitely prefer Splunk Cloud Platform more due to its superior features and support.

What other advice do I have?

I think the app ecosystem for Splunk Cloud Platform is robust, and managing updates within this app ecosystem is relatively easy.

Splunk Cloud Platform's visibility into multiple environments offers excellent monitoring capabilities, whether I am using it in the cloud, on-premises, or in hybrid environments.

I leverage it primarily for cloud infrastructure.

Regarding Splunk Cloud Platform's zero-setup feature for AI models, my impression is that it is truly innovative and simplifies the integration of AI into my workflow, although I have not used it extensively.

Regarding the pricing, I think Splunk Cloud Platform is on the higher end, but the value it provides justifies the cost.

I would rate this product an eight overall.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: May 6, 2026
Flag as inappropriate
PeerSpot user
reviewer2826867 - PeerSpot reviewer
Dev Ops Engineer at a tech services company with 11-50 employees
Real User
Top 10
Jul 16, 2026
Daily analytics have transformed how I monitor searches, alerts, and integrations at scale
Pros and Cons
  • "Splunk Cloud Platform is really way ahead, providing everything required."
  • "The pricing of Splunk Cloud Platform is a concern for me; it is very costly, making it hard for small to medium vendors to afford."

What is our primary use case?

My use case for Splunk Cloud Platform involves working in an organization that provides a daily full dashboard showing daily searches, daily ingestion, daily alerts, and more.

What is most valuable?

I really appreciate the ingestion features of Splunk Cloud Platform, which allow us to ingest data in various ways such as through an HEC token or Splunk Heavy Forwarder. Creating dashboards is very easy; currently, they provide two ways: a drag-and-drop grid layout or the traditional coding method.

I find the search capabilities effective because SPL, Splunk Query Language, is very easy to use. They are currently providing SPL2 with AI enhancing features that make searching really easy.

I use the alerting mechanisms with Splunk queries, having created multiple alerts that can send emails or display in the dashboard, making the alerting mechanism very helpful.

In terms of visualization features, creating dashboards on Splunk Cloud Platform is really easy, especially with the grid platform for drag-and-drop. The dashboard analytics feature is very helpful and fun to use.

I would describe the impact of integrations with third-party tools as powerful. We use add-ons like AWS CloudWatch, and integrating with any app on Splunk Cloud Platform is very easy.

What needs improvement?

Splunk Cloud Platform has room for improvement because managing the architecture for a newcomer, such as an intern, can be hard. They could provide better documentation and videos to help with learning.

I find the documentation of Splunk Cloud Platform fine in what I have learned, but having more visual videos to accompany the documents would be helpful for learners.

For how long have I used the solution?

I have been using Splunk Cloud Platform for six months in my training as well as in production, learning about creating apps, creating custom commands, and creating dashboards and analytical capabilities.

What's my experience with pricing, setup cost, and licensing?

The pricing of Splunk Cloud Platform is a concern for me; it is very costly, making it hard for small to medium vendors to afford.

Splunk does not actually save resources for us because it only helps with security. We have to buy more computational power for advanced usage.

Which other solutions did I evaluate?

I compare Splunk Cloud Platform with others like CrowdStrike and NG-SIEMs. While they are similar, Splunk is really way ahead, providing everything required.

For small and middle-class organizations, I would not recommend Splunk Cloud Platform because there are cheaper tools available. However, I would recommend it for very large organizations.

What other advice do I have?

Time-wise, Splunk Cloud Platform does save me time because if I am ingesting daily 2TB of data, I create the dashboard one time, and it updates automatically, allowing me to do data analytics more easily. I would rate this product a 9.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. partner
Last updated: Jul 16, 2026
Flag as inappropriate
PeerSpot user
Ary Azevedo - PeerSpot reviewer
Analista De Segurança Cibernética Sênior at a financial services firm with 10,001+ employees
Real User
Sep 14, 2026
Advanced automation has boosted threat detection and supports faster malware incident response
Pros and Cons
  • "Splunk Cloud Platform has positively impacted my organization by enhancing the observability of the environment, allowing us to detect threats faster."
  • "One way Splunk Cloud Platform can be improved is in usability, as the platform is difficult to navigate, and it can be hard to find all features."

What is our primary use case?

My main use case for Splunk Cloud Platform is to detect malware and respond to incidents.

What is most valuable?

The best features Splunk Cloud Platform offers include Splunk SOAR, the automation, and playbooks.

Splunk Cloud Platform has positively impacted my organization by enhancing the observability of the environment, allowing us to detect threats faster.

What needs improvement?

One way Splunk Cloud Platform can be improved is in usability, as the platform is difficult to navigate, and it can be hard to find all features.

For how long have I used the solution?

I have been using Splunk Cloud Platform for one year.

What other advice do I have?

There are no other improvements I think Splunk Cloud Platform needs; it is excellent.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Sep 14, 2026
Flag as inappropriate
PeerSpot user
UzairKhan - PeerSpot reviewer
Business General Manager at Mutex Systems
Reseller
Top 5
May 9, 2025
AI-driven analytics significantly enhance operational decision-making
Pros and Cons
  • "The real-time search capability of this product enhances operational decision-making, and it's very convincing."
  • "The disadvantage of Splunk Cloud Platform is that its integration process should be improved."

What is our primary use case?

Currently, I am working with Splunk Cloud Platform and other things for my clients.

I have been working with Splunk Cloud Platform for around 2 years now while integrating it.

What is most valuable?

What I appreciate about Splunk Cloud Platform is that it's an AI-driven SIEM platform, and for data fusion stock, we require Splunk Cloud Platform because none other than Splunk Cloud Platform can have this data-driven stock implemented; it allows you to get into the data repository.

The real-time search capability of this product enhances operational decision-making, and it's very convincing; this aspect is very convincing from Splunk Cloud Platform's side.

What needs improvement?

The disadvantage of Splunk Cloud Platform is that its integration process should be improved.

The challenges I have encountered while integrating Splunk Cloud Platform include that integration is a bit difficult due to the coding required for the integrations.

For how long have I used the solution?

I have been working with Splunk Cloud Platform for around 2 years now while integrating it.

What was my experience with deployment of the solution?

I would say that it was a bit difficult to deploy Splunk Cloud Platform; the user interface is easy, but deployment is difficult because it needs coding to integrate things.

What do I think about the scalability of the solution?

I think it's a scalable solution; it's pretty much scalable.

How are customer service and support?

I can rate the technical support of Splunk Cloud Platform as eight; they are quite helpful.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We are system integrators, but the client chose another vendor instead of NNTT.

How was the initial setup?

The deployment took around 3 to 4 months.

What about the implementation team?

Three people took part in deployment from my side.

It was indeed a huge deployment; it was one of the banks in Pakistan, so we required three resources to get it done.

What was our ROI?

Splunk Cloud Platform has impacted operational costs; it's a bit expensive, but it provides value for money.

What's my experience with pricing, setup cost, and licensing?

If I were to rate the price for the product from 1 to 10, I would rate it nine.

What other advice do I have?

I am currently working with the solution, but I need to know from which NNTT.

The interface is okay; its interface is good, and user interface is good.

I would recommend Splunk Cloud Platform to other users and organizations because it adds value to the organization; you can do different things with it because it's a pure analytical tool, not only a SIEM tool.

I am mostly focused on Splunk Cloud Platform because I chose this vendor due to the feature set that was offered by Splunk Cloud Platform; it was not being offered by any other vendor.

Splunk Cloud Platform is the vendor I am referring to, not NNTT.

Maintenance for Splunk Cloud Platform has been done manually, not automatically.

Usually, one person takes part in maintenance.

Regarding the number of users for Splunk Cloud Platform, it involves discussing the number of organizations or the number of people working in those organizations.

In general, I would rate Splunk Cloud Platform a nine.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
Chief Executive Officer at ENAD
Real User
Top 5
Feb 26, 2026
Security monitoring has improved and provides timely alerts for cyber threats
Pros and Cons
  • "Splunk Cloud Platform's ingest and visualization features help with data reporting, and the platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks."
  • "I think that Splunk Cloud Platform is good, and I rate it seven or eight."

What is our primary use case?

Splunk Cloud Platform is used as a way for companies to enhance their cybersecurity and ensure security. In cybersecurity, it is important to protect against all malwares, and the platform is effective in searching vulnerabilities or searching threats.

What is most valuable?

Splunk Cloud Platform's ingest and visualization features help with data reporting. The platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks. Splunk Cloud Platform is used as a way for companies to enhance their cybersecurity as a question of security to ensure the security.

What needs improvement?

I think that Splunk Cloud Platform is good, and I rate it seven or eight.

For how long have I used the solution?

We have worked with Splunk Cloud Platform for approximately three years. We have also been working with Splunk Observability Cloud for approximately three years.

What do I think about the stability of the solution?

Splunk Cloud Platform is a good platform for us.

How are customer service and support?

The technical support of Splunk is good as well, and they are helpful.

How would you rate customer service and support?

Positive

What was our ROI?

Implementation has some benefit for the company.

What's my experience with pricing, setup cost, and licensing?

We think that the price of the product is quite reasonable.

What other advice do I have?

We have clients that use Splunk, but we do not use Splunk ourselves. As a person with deployment experience, I find it difficult to answer the question about implementation because we are obliged to have a platform. There are many platforms, and the implementation is not simple, but we have no special difficulties with Splunk. We think that integration of Splunk Cloud Platform with third-party tools is easy to implement. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
Last updated: Feb 26, 2026
Flag as inappropriate
PeerSpot user
Ritesh Vishwakarma - PeerSpot reviewer
Project Manager at Crest Data Systems
Real User
Top 20
Sep 11, 2024
Gives us better buffering performance and lower latency if we use the right components
Pros and Cons
  • "In an enterprise, you need a universal or heavy forwarder. If you don't have that, you need an HSE token or API request call and all the different components. In Splunk Cloud, you just have one instance to search all the data in your index. You don't need to manage it because Splunk handles that."
  • "First-time users may struggle with the user interface. When I first used Splunk, I entered my username and password. After that, we get a dashboard on the left side with apps. At the top, you can click the gear icon to view the settings. Within those settings, there's a distributed console option with several settings. It's a bit overwhelming for a beginner. The user knows what they want and can search for it in the search bar. If I see several apps, my first instinct is to scroll down to find the app, or perhaps you will find that search and report. That bugged me when I was learning."

What is our primary use case?

One client wanted their data in a readable format. He was in the UK, but his data center was in the US, so he tried to forward his data to the indexer. Because of the time zones, he faced some time stamping issues. They reached out to us to open a case that got assigned to me.

I learned which US time zone the data center was in and set the time stamps in the future. We changed the preferences to convert it into GMT so that whenever the data is onboarded to the indexes via universal or heavy forwarder, we can fetch the data in real-time.

We primarily use virtualization and deploy in Docker containers. We seldom use any physical servers. It's mostly deployed in a cloud environment or a virtual machine. It's typically Docker but sometimes Azure.

How has it helped my organization?

Splunk Cloud saved us a lot of money because we're working with databases like MongoDB and Oracle and using Splunk as a sync tool. It has its own indexes that cut costs by 15 to 20 percent. 

It also improves our decision-making process. In one scenario, we compared the client's data from last year to this April and saw the year-on-year profit and loss. We could see which projects were successful. Compared to another SIEM or monitoring tool, it saved us time because the data is presented in a clean, customizable dashboard. 

What is most valuable?

In an enterprise, you need a universal or heavy forwarder. If you don't have that, you need an HSE token or API request call and all the different components. In Splunk Cloud, you just have one instance to search all the data in your index. You don't need to manage it because Splunk handles that. 

If you are using Splunk Enterprise, you need to understand, from A to Z, how the indexes and searches work and where the data is coming from. Splunk Cloud has a beautiful, user-friendly UI that lets you navigate all the settings.

It doesn't matter where the data comes from for integration. The dashboard gives you a brief overview. 

When we're onboarding all that data using heavy forwarders, Splunk gives us better buffering performance and lower latency if we use the right components. If I use a light or universal forwarder, it often doesn't parse on the other end. Our projects use heavy forwarders and put those data into the index services while defining which indexes they should index. We are also micromanaging where that data should be. 

The reporting is good so far. Sometimes, I help my clients improve their user experience. As an engineer, I would suggest that if a solution has back-end compatibility, clients should get out of their comfort zone and customize another app to create a dashboard or something else.

What needs improvement?

First-time users may struggle with the user interface. When I first used Splunk, I entered my username and password. After that, we get a dashboard on the left side with apps. At the top, you can click the gear icon to view the settings. Within those settings, there's a distributed console option with several settings. It's a bit overwhelming for a beginner. The user knows what they want and can search for it in the search bar. If I see several apps, my first instinct is to scroll down to find the app, or perhaps you will find that search and report. That bugged me when I was learning.

Application support is another problem. We created a custom Palo Alto app that isn't fully supported by the latest version of Splunk. We had to downgrade to older versions to use the custom app properly. That was one problem we faced daily with one client. 

For how long have I used the solution?

I have been using the Splunk Cloud Platform for two years.

What do I think about the stability of the solution?

I rate Splunk Cloud seven out of 10 for stability. 

What do I think about the scalability of the solution?

I rate Splunk Cloud eight out of 10 for scalability.

How are customer service and support?

I rate Splunk support six out of 10. They're knowledgeable, but their response times are sometimes slow. 

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We have Prometheus, but that only monitors Grafana and shows you a dashboard. Splunk is not just monitoring or grabbing data you search for. I've worked with cloud and enterprise. When we started using Splunk Cloud, we used it more like a dashboard to search data. Based on my understanding, I could create applications. 

After moving into the enterprise side, I understood Splunk even more, including its components, bucket lifecycles, and how the indexes and configurations work. It's not simply transferring data from one to another. I can grab data from any system that consists of raw data. Splunk can also identify those data in the timestamp index form. We don't have any other vendors to compare it to. 

How was the initial setup?

Deploying Splunk Cloud Platform is straightforward unless you use an automation tool like Ansible, Puppet, or Chef. It takes four to five hours. Installation can take a day in some cases, but it typically can be completed in less than five hours unless you're dealing with more complex data.

What's my experience with pricing, setup cost, and licensing?

Splunk Cloud is affordable, depending on your license. I don't know how much it costs exactly, but my colleague said it depends on your licensing and which features you use. 

What other advice do I have?

I rate Splunk Cloud Platform eight out of 10. I would recommend this product. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. partner (consultant)
PeerSpot user
Buyer's Guide
Download our free Splunk Cloud Platform Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2026
Buyer's Guide
Download our free Splunk Cloud Platform Report and get advice and tips from experienced pros sharing their opinions.