Try our new research platform with insights from 80,000+ expert users
reviewer2500101 - PeerSpot reviewer
Splunk Administrator at a tech vendor with 1,001-5,000 employees
Real User
No infrastructure maintenance frees up a lot of time and improves efficiency
Pros and Cons
  • "Not having to maintain any infrastructure is valuable. That frees up a lot of time as well."
  • "There are a lot of functionalities that are missing for Splunk Cloud hosted on GCP but they are available on AWS. Adding more IPs to allow lists and many other functionalities are not supported on Splunk Cloud hosted on GCP. One good example is the ingest action which is not there in Splunk Cloud hosted on GCP. I wish they would add these missing features to the GCP platform."

What is our primary use case?

We use it a lot for IT operations. We monitor various services that we manage. 

We do not monitor a multi-cloud environment. We have a single stack. 

How has it helped my organization?

It is very stable. Many things get managed at the backend. The infrastructure is managed by Splunk. We just have to focus on the use cases and the value we can drive from Splunk. Being able to focus only on the outcome of the product is valuable for any organization.

There has not been a significant difference when it comes to the meantime to resolution because it all depends on the use case and how much time it takes to run. However, as an admin, just focusing on giving valuable insights and not having to manage the infrastructure has been the most beneficial. Otherwise, the quality of the use cases is still the same. There is no difference as such.

What is most valuable?

Not having to maintain any infrastructure is valuable. That frees up a lot of time as well.

What needs improvement?

We are on the classic Cloud that is hosted on GCP. There are a lot of functionalities that are missing for Splunk Cloud hosted on GCP but they are available on AWS. Adding more IPs to allow lists and many other functionalities are not supported on Splunk Cloud hosted on GCP. One good example is the ingest action which is not there in Splunk Cloud hosted on GCP. I wish they would add these missing features to the GCP platform.

Buyer's Guide
Splunk Cloud Platform
December 2024
Learn what your peers think about Splunk Cloud Platform. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
831,158 professionals have used our research since 2012.

For how long have I used the solution?

I have been using Splunk Cloud Platform for a year.

What do I think about the stability of the solution?

It is very stable.

What do I think about the scalability of the solution?

We definitely have room to scale. In the future, we might scale our environment. The amount of ingestion is going to increase.

How are customer service and support?

I would rate them a seven out of ten based on my experience. There were many instances where we did not receive proper help, so we had to escalate the issue through our account team and our customer success manager.

After the migration, whenever there was any maintenance, there would be an email saying that it was just maintenance. There were not many details about it. Once we started talking about it and giving feedback, they started adding more information. There are still some gaps in the support or the quality of service. From that perspective, I would rate them a seven out of ten.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We migrated to Splunk Cloud Platform from on-prem Splunk Enterprise a year ago. The main reason was to have no infrastructure management on our side. That was the main reason we shifted from Splunk Enterprise to Splunk Cloud Platform.

How was the initial setup?

It was completely a smooth transition. There was a lot of data that we moved from on-premise to cloud. The transition was definitely smooth. The licensing and pricing were handled by the higher management. I have no idea about it, but the entire process of moving the data over was very smooth.

We are using Splunk Cloud hosted on GCP.

What about the implementation team?

We utilized the professional services from Splunk for the migration, but after the migration, we have been taking care of everything.

Which other solutions did I evaluate?

We did not look into any other solution. We are totally into Splunk. We wanted a no-infrastructure-management environment and a better solution, so we moved to Splunk Cloud Platform.

What other advice do I have?

Splunk's unified platform has not helped consolidate networking, security, and IT observability tools. The only product we use is Splunk Cloud. We are not using any of the other products like ITES, enterprise security, etc. No consolidation is required for us.

I would rate Splunk Cloud Platform an eight out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
PeerSpot user
reviewer2257179 - PeerSpot reviewer
CYBERSECURITY ANALYST at a tech services company with 1-10 employees
Real User
Good visibility and speed with reasonable pricing
Pros and Cons
  • "We only buy the services we need. We don't have to pay for other things we don't."
  • "They need to provide more training options."

What is our primary use case?

Splunk Cloud helps us to combine all our environments. For example, multiple business units can be combined into one even if they are in different geographic locations. 

What is most valuable?

It helps us with hosting from different geographical locations. 

The speed of the cloud environment is great. 

We only buy the services we need. We don't have to pay for other things we don't. It makes the pricing very economical. 

We use the solution's federated search feature. It's easy for us to use. It helps us search logs, analyze, and manage data.

We are able to monitor multiple cloud environments using our Splunk Cloud dashboards. It makes the process very simple. We just have to maintain different teams for different environments.

The solution is great within hybrid environments. It gives us good visibility across everything. 

It works well for sizable environments. 

The product integrates well with other systems and applications in our environment. We haven't had any issues with integration at all. However, if we ran into issues, we could call Splunk support. Having an issue would be a very rare event. 

Reporting is very good. It's the same for all Splunk solutions. Having multi-cloud instances in one place is great.

We have multiple business units and easily integrate them into the cloud, as well as different infrastructures from different areas. We can deploy a Splunk agent on any cloud - AWS, Google, etc.

The company can access data easily for compliance and privacy regulations. The privacy aspect has been very good.

Having resilience has been very helpful in our organization. 

What needs improvement?

Training should be free of cost. They need to provide more training options. 

There are no missing features at this time. 

For how long have I used the solution?

I've been using the solution for two and a half years. 

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

We have 30 people using the solution in our organization. The product is scalable.

How are customer service and support?

Technical support has been good. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We did also use LogRhythm. It has a very good UI in comparison to Splunk, yet it doesn't have as many capabilities and does have a few more restrictions. That said, it's a good product for creating use cases and automation, which is easier than Splunk. We moved to Splunk as LogRhythm did have some restrictions. 

How was the initial setup?

I have previously done deployments of Splunk. The setup is pretty straightforward. 

Were a system integrator of Splunk. We help clients set up the solution. 

We've had six or seven people setting up the solution. 

The maintenance is pretty manageable. I'd rate maintenance needs seven out of ten. 

What was our ROI?

I'm not sure if we have noted any ROI while using Splunk.

What's my experience with pricing, setup cost, and licensing?

The pricing is reasonable. They provide good options for licensing. 

Which other solutions did I evaluate?

I did not evaluate any other options. 

What other advice do I have?

We are integrators and also users of Splunk. 

We have multiple solutions we use for security, of which Splunk is one of them. So far, it's been very good from a security perspective, although we don't solely rely on it.

I'd recommend users work with Splunk in the cloud environment. I'd recommend the product in general to others. 

I would rate the solution nine out of ten. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Splunk Cloud Platform
December 2024
Learn what your peers think about Splunk Cloud Platform. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
831,158 professionals have used our research since 2012.
it_user1061643 - PeerSpot reviewer
Lead Developer, Solution Analyst at a university with 10,001+ employees
Real User
A flexible and feature-rich product, but the documentation needs to be improved
Pros and Cons
  • "The most valuable feature for me is the flexibility of being able to send the log to the https endpoint."
  • "Although there is documentation available, it is really hard for me to find relevant topics on what it is that I'm searching for."

What is our primary use case?

We have a public URL that allows anyone to authenticate for ADFS. This allows them to connect using Active Directory. 

What is most valuable?

The most valuable feature for me is the flexibility of being able to send the log to the https endpoint. I know that it is possible to export the logs, although it is easier for me to communicate with the endpoints concerning what I am interested in.

This is a feature-rich product.

What needs improvement?

Although there is documentation available, it is really hard for me to find relevant topics on what it is that I'm searching for. For example, when something goes wrong, I can spend hours trying to figure out the problem and have nothing to refer to. I find that it confuses me somewhat, so it is something that can be improved.

I feel that technical support can be improved because it is always done through the use of a support ticket, which is not very convenient.

Setting up and configuring integrations are not easy to do. 

For how long have I used the solution?

We implement this solution within the past year.

What do I think about the stability of the solution?

Splunk Cloud is quite stable. I do not remember having any issues with bugs or glitches.

What do I think about the scalability of the solution?

I would expect that the scalability is quite good, albeit expensive.

How are customer service and technical support?

Technical support is okay, although they are not as quick to respond as I believe they should be. I feel that some of the support processes are not very convenient.

How was the initial setup?

The initial setup is straightforward, although we still revisit it. We started several months ago and are still trying to set it up in a more structured way. Really, we are still in the deployment stage in some regards because we are struggling with exactly how it should be set up.

What about the implementation team?

We had some assistance from a consultant after the initial setup was completed. It worked well for simple uses, but now, we have some help in trying to configure it to meet our needs.

What's my experience with pricing, setup cost, and licensing?

The price is something that people complain about.

What other advice do I have?

My advice to anybody who is implementing Splunk Cloud is to dedicate the time and resources required to learn it and use it. Investigate the features.

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Owner at a reseller with 1-10 employees
Reseller
Quick to set up and the technical support is invaluable
Pros and Cons
  • "The most valuable feature of Splunk Cloud is the quick setup."
  • "The only thing that is missing from Splunk Cloud is the command-line interface."

What is our primary use case?

We are a Splunk reseller and Splunk Cloud is one of the main products that we work with.

Our customers implement this product for log management, application management, application testing, and process management. They also have it for customer service use cases.

What is most valuable?

The most valuable feature of Splunk Cloud is the quick setup.

What needs improvement?

The only thing that is missing compared with Splunk Enterprise is the ability to manually edit all config files. This task is easily handled with support tickets but sometimes is would be nice to experiment directly.

For how long have I used the solution?

I have been selling Splunk products for ten years.

What do I think about the stability of the solution?

We have not heard any complaints about stability. 

What do I think about the scalability of the solution?

Scalability with Splunk is the best because it scales to anything. Their promise to users is scalability and availability. Our customers range in size from very small companies to large ones.

How are customer service and technical support?

Over the past ten years that we have been selling Splunk products, they have been in constant contact for support. I would say that it is invaluable. They have great response time and great skills, and I couldn't compare it with any other software company.

How was the initial setup?

Installing Splunk Cloud, itself, is nothing. The length of time for the total deployment depends on how many log sources that you have. It can be completed in a matter of hours.

What about the implementation team?

Being a cloud-based product, Splunk does all of the maintenance. We don't have to do anything to maintain it.

What's my experience with pricing, setup cost, and licensing?

The licensing costs depend on the data ingest volume. If you weigh the costs and the benefits, the benefits are great and it is money well spent. 

What other advice do I have?

I feel that Splunk Cloud is good as it is. It is the best tool on the market.

My advice to anybody who is considering this solution is to start now and don't wait. Every day that you wait, you can be wasting time and money.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
reviewer945462 - PeerSpot reviewer
Director - Corporate Infrastructure at a tech services company with 10,001+ employees
Real User
Meets our requirements from a cost and requirements perspective
Pros and Cons
  • "For my current requirements, the tool theme seems to be meeting my requirements, from a cost and requirements perspective."
  • "The only thing I would say is an issue is the cost. It matches other products. The costs can be justified for the value that we gain. The entire threat analysis stack should come in a bundle. If the cost was matchable with other products I think Splunk would pick up in the market."

What is our primary use case?

We use it for Log Management and also for another bit of management. It feeds data into Splunk and Splunk writes the rules and based on that, it will pick up incidents. 

It is good from a cost perspective, in terms of the cost of the data you're looking at. There is no cost barrier. 

What is most valuable?

For my current requirements, the tool theme seems to be meeting my requirements, from a cost and requirements perspective.

What needs improvement?

The only thing I would say is an issue is the cost. It matches other products. The costs can be justified for the value that we gain. The entire threat analysis stack should come in a bundle. If the cost was matchable with other products I think Splunk would pick up in the market. 

I did evaluate other products and installations. I can't compare it to Splunk. 

For how long have I used the solution?

I have been using Splunk Cloud for a year. 

What do I think about the scalability of the solution?

There are two people who are part of admin that use Splunk in my company. 

We have a policy where we have to keep the domain controllers on lock with sensitive servers for about 90 days. We look at the controls around once a week to check if they need to be attended to. 

How are customer service and technical support?

We initially contacted their support during the implementation. It was not for a very complex issue. It was more for a consultation. 

Their support is good. 

How was the initial setup?

I was new to Splunk and had a problem with understanding the forwarders and worker safety management.

My team was able to install it themselves. 

In terms of how long it took to deploy, between coding, testing, and other things, it took about four weeks to complete the project to complete the initial installation. Altogether it was four to five weeks. They should improve the customization. 

Which other solutions did I evaluate?

Splunk is a leader in its marker. 

Splunk offers more features than its competitors. Other solutions are not on the same level to be able to compare them. 

What other advice do I have?

I would rate Splunk a nine out of ten. 

The queries and pulling out the exact reports is a little challenging. I get complaints about it. I would like to see more reports or default out of the box reports. That would be more useful, useful, and then people can avoid writing inquiries.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1260045 - PeerSpot reviewer
Senior Analyst at a computer software company with 11-50 employees
Real User
It's a good solution that can index a large amount of data in a short time.
Pros and Cons
  • "The Splunk search is powerful compared to similar solutions. We get millions of data points within seconds."
  • "The Splunk interface is on-premises, so we have limited access to Splunk Cloud. Splunk support is not so good on Splunk Cloud. The Splunk side of the Splunk Cloud should also be more customizable. Integrating Splunk UBA, Splunk Phantom, and Splunk Cloud is also a bit difficult."

What is most valuable?

The Splunk search is powerful compared to similar solutions. We get millions of data points within seconds.

What needs improvement?

The Splunk interface is on-premises, so we have limited access to Splunk Cloud. Splunk support is not so good on Splunk Cloud. The Splunk side of the Splunk Cloud should also be more customizable. Integrating Splunk UBA, Splunk Phantom, and Splunk Cloud is also a bit difficult. 

For how long have I used the solution?

I've been using Splunk Cloud for about four years. 

What do I think about the stability of the solution?

Splunk Cloud is reliable. 

What do I think about the scalability of the solution?

Splunk Cloud's scalability is pretty good. 

How are customer service and support?

Splunk support isn't so great. It takes a lot of time for them to respond. 

How was the initial setup?

The initial setup is straightforward. 

What about the implementation team?

We deployed Splunk in-house.

What's my experience with pricing, setup cost, and licensing?

The license costs around 100,000-150,000 rupees. Splunk Cloud is the basic version. It costs extra if you need Splunk interface or Splunk ICSA. Those are premium additions. There are additional costs if you want to use the other premium aspects of Splunk.

What other advice do I have?

I rate Splunk Cloud eight out of 10. It's a good solution that can index data in a short time. That's one advantage of Splunk over other solutions. However, the support isn't good, and you can't customize the Splunk interface. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Technical Lead at a tech services company with 501-1,000 employees
Real User
We use it for login collections, but the documentation available could be improved
Pros and Cons
  • "The initial setup was straightforward."
  • "There is sometimes no documentation or updated documentation available."

What is our primary use case?

Our primary use case for the solution is login collections.

What needs improvement?

The documentation available could be improved as there is sometimes no documentation or updated documentation available. For example, I tried to get the metrics from MongoDB, and there's very low documentation for the module.

For how long have I used the solution?

We have been using this solution for a few months.

What do I think about the scalability of the solution?

We haven't used it enough to comment on its scalability. We have approximately 100 people utilizing the solution.

How are customer service and support?

We don't have experience with customer service and support.

How was the initial setup?

The initial setup was straightforward and took approximately 20 minutes.

What other advice do I have?

I rate the solution a five out of ten. The documentation available could be improved.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1630161 - PeerSpot reviewer
Founder at a marketing services firm with 11-50 employees
Real User
User friendly and very extensive compared to similar tools
Pros and Cons
  • "The solution is user friendly and has extensive uses."
  • "Customization could be simplified."

What is our primary use case?

My primary use case was trying to build a centralized log database and making some logs on my servers. I also use it to install tools in Splunk Forwarder. I'm a company founder.

What is most valuable?

Splunk is a very user-friendly tool and it's very extensive compared to other tools.

What needs improvement?

From my perspective, customization needs to be simplified and I'd like to see a reduction in the cost of the solution.

For how long have I used the solution?


What do I think about the stability of the solution?

It's stable, but if you try to customize it, it will take some time because there's a specific language behind Splunk. Thankfully they have a good community which is a big help.

What do I think about the scalability of the solution?

The solution is scalable.

How was the initial setup?

The initial setup is very straightforward. 

What's my experience with pricing, setup cost, and licensing?


Licensing costs are paid annually and are quite expensive.

What other advice do I have?

I recommend this solution for any company that has the money to buy it and rate it eight out of 10. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user