

Splunk Observability Cloud and Microsoft Defender for Cloud compete in the observability and security categories. Splunk Observability Cloud seems to have the upper hand in comprehensive monitoring and scalability, whereas Microsoft Defender for Cloud excels in integration within the Microsoft ecosystem and threat detection features.
Features: Splunk Observability Cloud offers real-time metrics, application performance monitoring, and scalability, making it effective for complex workflows and large data volumes. Its capabilities in comprehensive monitoring and real-time insights contribute to its robustness. Conversely, Microsoft Defender for Cloud provides effective threat detection and compliance management within the Microsoft ecosystem. It enhances security postures, particularly in Azure-centric environments.
Room for Improvement: Splunk Observability Cloud could improve cost transparency, log management, and user interface intuitiveness. Users highlight the need for better search performance and smarter alerting. Microsoft Defender for Cloud may enhance integration with third-party services, improve UI clarity, and offer better control over security alerts and recommendations. Enhanced attack path mapping and support for more cloud resources are also desired.
Ease of Deployment and Customer Service: Splunk Observability Cloud is commonly deployed in public and hybrid clouds, receiving general positive feedback on customer support. However, support is sometimes seen as inconsistent, with room for faster resolution. Predominantly public cloud-oriented, Microsoft Defender for Cloud benefits from comprehensive support due to its integration within the Microsoft ecosystem, offering responsive assistance and useful documentation.
Pricing and ROI: Splunk Observability Cloud pricing is higher but aligned with its feature-rich offerings, providing significant ROI through streamlined operations and improved visibility despite licensing cost concerns. Microsoft Defender for Cloud is considered expensive, particularly for smaller organizations, yet flexibility in licensing allows module selection based on needs, contributing to ROI, although clearer cost transparency would enhance user satisfaction.
Defender proactively indexes and analyzes documents, identifying potential threats even when inactive, enhancing preventative security.
Identifying potential vulnerabilities has helped us avoid costly data losses.
Compared to not having Microsoft Defender for Cloud in place, we definitely saw an advantage by not having downtime due to a security threat.
Using Splunk has saved my organization about 30% of our budget compared to using multiple different monitoring products.
Anyone working in front-end management should recognize the market price to see the true value of end-user monitoring.
I have definitely seen a return on investment with Splunk Observability Cloud, particularly through how fast it has grown and how comfortable other teams are in relying on its outputs for monitoring and observability.
Since security is critical, we prefer a quicker response time.
The support team was very responsive to queries.
They understand their product, but much like us, they struggle with the finer details, especially with new features.
On a scale of 1 to 10, the customer service and technical support deserve a 10.
They have consistently helped us resolve any issues we've encountered.
They often require multiple questions, with five or six emails to get a response.
As we have reduced our on-premises infrastructure, it is about how we can migrate workloads to the cloud to make it easier, and then having everything fully encompassed and secured within that area makes it much easier for us to scale as needed and grow.
We are using infrastructure as a code, so we do not have any scalability issues with Microsoft Defender for Cloud implementation because our cloud automatically does it.
It has multiple licenses and features, covering infrastructures from a hundred to five hundred virtual machines, without any issues.
We've used the solution across more than 250 people, including engineers.
As we are a growing company transitioning all our applications to the cloud, and with the increasing number of cloud-native applications, Splunk Observability Cloud will help us achieve digital resiliency and reduce our mean time to resolution.
I would rate its scalability a nine out of ten.
Defender's stability has been flawless for us.
I have not experienced any crashes or downtime.
Microsoft Defender for Cloud is very stable.
When downtime occurs, it raises concerns about how we measure and receive alerts, as everything needs to be in place.
I would rate its stability a nine out of ten.
We rarely have problems accessing the dashboard or the page.
Microsoft, in general, could significantly improve its communication and support.
It would be beneficial to streamline recommendations to avoid unnecessary alerts and to refine the severity of alerts based on specific environments or environmental attributes.
The artificial intelligence features could be expanded to allow the system to autonomously manage security issues without needing intervention from admins.
The out-of-the-box customizable dashboards in Splunk Observability Cloud are very effective in showcasing IT performance to business leaders.
The next release of Splunk Observability Cloud should include a feature that makes it so that when looking at charts and dashboards, and also looking at one environment regardless of the product feature that you're in, APM, infrastructure, RUM, the environment that is chosen in the first location when you sign into Splunk Observability Cloud needs to stay persistent all the way through.
There should be a solution to update OTeL agents from Splunk Observability Cloud itself.
Security has essentially no cost when compared to the cost of a breach.
Every time we consider expanding usage, we carefully evaluate the necessity due to cost concerns.
We appreciate the licensing approach based on employee count rather than a big enterprise license.
Splunk is a bit expensive since it charges based on the indexing rate of data.
It is expensive, especially when there are other vendors that offer something similar for much cheaper.
I can confidently say our availability improved by forty percent, and downtime was reduced by approximately seventy to eighty percent.
The most valuable feature for me is the variety of APIs available.
This feature significantly aids in threat detection and enhances the user experience by streamlining security management.
The most valuable feature is the recommendations provided on how to improve security.
Splunk provides advanced notifications of roadblocks in the application, which helps us to improve and avoid impacts during high-volume days.
For troubleshooting, we can detect problems in seconds, which is particularly helpful for digital teams.
It offers unified visibility for logs, metrics, and traces.
| Product | Mindshare (%) |
|---|---|
| Splunk Observability Cloud | 1.0% |
| Microsoft Defender for Cloud | 3.1% |
| Other | 95.9% |

| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 12 |
| Large Enterprise | 49 |
| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 10 |
| Large Enterprise | 53 |
Microsoft Defender for Cloud is a comprehensive security platform offering integration with Microsoft services, multi-cloud capability, AI-driven threat detection, compliance, and unified visibility for improved security operations.
Microsoft Defender for Cloud manages security operations by integrating with Microsoft services and supporting multi-cloud environments. Its features include AI-driven threat detection, compliance oversight, and advanced threat protection. It simplifies processes with unified visibility, threat intelligence, and automated workflows, enhancing security posture across various workloads. Despite its robust capabilities, improvements are needed in third-party tool integration, comprehensive AI-driven remediation, and a more intuitive dashboard. Users report complexity in licensing, inadequate documentation, and high costs, with room for enhancements in compliance reporting and multi-cloud support.
What are the key features of Microsoft Defender for Cloud?Industries leverage Microsoft Defender for Cloud for security posture management and endpoint protection. Many companies integrate it with Office 365 for enhanced functionality. It provides comprehensive security overviews by monitoring cloud vulnerabilities, limiting unauthorized access, and replacing existing tools with its extensive capabilities from network security to compliance checks, securing Azure infrastructure, and enhancing client security.
Splunk Observability Cloud offers sophisticated log searching, data integration, and customizable dashboards. With rapid deployment and ease of use, this cloud service enhances monitoring capabilities across IT infrastructures for comprehensive end-to-end visibility.
Focused on enhancing performance management and security, Splunk Observability Cloud supports environments through its data visualization and analysis tools. Users appreciate its robust application performance monitoring and troubleshooting insights. However, improvements in integrations, interface customization, scalability, and automation are needed. Users find value in its capabilities for infrastructure and network monitoring, as well as log analytics, albeit cost considerations and better documentation are desired. Enhancements in real-time monitoring and network protection are also noted as areas for development.
What are the key features?In industries, Splunk Observability Cloud is implemented for security management by analyzing logs from detection systems, offering real-time alerts and troubleshooting for cloud-native applications. It is leveraged for machine data analysis, improving infrastructure visibility and supporting network and application performance management efforts.
We monitor all Container Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.