Try our new research platform with insights from 80,000+ expert users

Microsoft Purview Audit vs Splunk Cloud Platform comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Microsoft Purview Audit
Average Rating
8.0
Reviews Sentiment
8.1
Number of Reviews
2
Ranking in other categories
Log Management (36th), Microsoft Security Suite (31st)
Splunk Cloud Platform
Average Rating
8.2
Reviews Sentiment
6.0
Number of Reviews
58
Ranking in other categories
Data Visualization (3rd), IT Alerting and Incident Management (2nd)
 

Mindshare comparison

While both are Systems Management solutions, they serve different purposes. Microsoft Purview Audit is designed for Log Management and holds a mindshare of 0.5%, up 0.3% compared to last year.
Splunk Cloud Platform, on the other hand, focuses on Data Visualization, holds 1.2% mindshare, up 0.5% since last year.
Log Management Market Share Distribution
ProductMarket Share (%)
Microsoft Purview Audit0.5%
Wazuh12.2%
Grafana Loki7.9%
Other79.4%
Log Management
Data Visualization Market Share Distribution
ProductMarket Share (%)
Splunk Cloud Platform1.2%
Tableau Enterprise19.2%
Apache Superset9.2%
Other70.4%
Data Visualization
 

Featured Reviews

Nagendra Nekkala - PeerSpot reviewer
Enables us to create a user in the cloud and give them access to resources through a single workflow
The PAM for Active Directory is good. ActiveOps is quite useful as a feature. The One Identity active role enables us to create a user in the cloud and give them access to resources through a single workflow. We can create rules-based access. It helps us control audit management and IT access management. We can decide what people can access and detect job functions. It enables zero trust security with hybrid AD, find delegation, and role-based access control. It provides all certificates and provides secure authentication, call-based access control, et cetera. It's really important for my critical applications. We can see who's using what, whether they are authorized, and other information to decide what access to offer. With the active role console, I can find out the obvious issues and also perform a decent setup. The One Identity active roles enable us to reduce password reset times. We can handle tasks in a matter of a minute. It simplifies AD and Azure AD management, efficiency, and security overall. The password manager is very secure and is a self-service password manager solution. It is considerably decreasing my help desk tasks. Our engineering users can reset forgotten passwords, and it can implement a stronger password. The management around access to enterprise resources keeps my data and systems secure. We're easily saving at least one hour per day using this solution. The migration from AD to Azure AD is very easy. There are simple configurations, and the migration goes rather smoothly. We use the solution support for SaaS apps through Cloud Delivered SCIM connectors. There are controls that can be configured and we can add and set permissions easily.
UzairKhan - PeerSpot reviewer
AI-driven analytics significantly enhance operational decision-making
I am currently working with the solution, but I need to know from which NNTT. The interface is okay; its interface is good, and user interface is good. I would recommend Splunk Cloud Platform to other users and organizations because it adds value to the organization; you can do different things with it because it's a pure analytical tool, not only a SIEM tool. I am mostly focused on Splunk Cloud Platform because I chose this vendor due to the feature set that was offered by Splunk Cloud Platform; it was not being offered by any other vendor. Splunk Cloud Platform is the vendor I am referring to, not NNTT. Maintenance for Splunk Cloud Platform has been done manually, not automatically. Usually, one person takes part in maintenance. Regarding the number of users for Splunk Cloud Platform, it involves discussing the number of organizations or the number of people working in those organizations. In general, I would rate Splunk Cloud Platform a nine.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We're easily saving at least one hour per day using this solution."
"The platform has significantly enhanced our operational insight into the overall Microsoft 365 environment."
"It has end-to-end visibility into our cloud-native environment, which is pretty important for us. About 80% of our infrastructure is on AWS."
"Its interconnectivity with the cloud platforms, such as Azure and AWS, was valuable."
"We use Splunk Cloud primarily as a troubleshooting tool, so the most valuable features are the analysis and visualization."
"The most valuable feature of Splunk Cloud Platform is the alerting feature."
"The most valuable feature is we don't have to deal with any back-end server maintenance because the solution is cloud-based."
"The most valuable feature of Splunk Cloud is the quick setup."
"It has definitely improved our organization by virtue of reducing the amount of overhead we would have had for those environments. Having to implement, maintain, or even update the existing stuff would have been extremely time-consuming. Splunk Cloud handles all of that for us. So it's definitely been helpful from that perspective. It's allowed them to maintain upgrades for far further than they are. Some of the hosts of that environment were still on version 7 so they could get upgraded feature parity."
"I like the Cloud monitoring console feature."
 

Cons

"We do have a Denial of Access happening."
"Areas for product improvement include enhancing customization options and integrating more comprehensive compliance features."
"They can offer more self-service capability to their customers. Currently, most of the things happen behind the Splunk Cloud Platform. As a customer, I do not have an opportunity to see my platform. If they can offer more self-service to see the health of my endpoints and stack, it would be appreciated."
"It would be nice to see more comparisons between Splunk and other log management tools. There are some legacy tools that people are often coming off. It will ease the transition if you are coming off a Windows LogViewer or any other logging tool. Splunk could offer more advice on how to transition into it or onboard it."
"There could be better searches, but mainly, it needs to improve the performance with a vast amount of data. That will make it better and easier to use."
"Splunk should increase the frequency of new feature releases, particularly those related to real-time operational flow monitoring and analytics reporting."
"First-time users may struggle with the user interface. When I first used Splunk, I entered my username and password. After that, we get a dashboard on the left side with apps. At the top, you can click the gear icon to view the settings. Within those settings, there's a distributed console option with several settings. It's a bit overwhelming for a beginner. The user knows what they want and can search for it in the search bar. If I see several apps, my first instinct is to scroll down to find the app, or perhaps you will find that search and report. That bugged me when I was learning."
"The on-premises version of Splunk includes all the integrations, while the Cloud platform lacks certain integrations and is limited in terms of the number of supported apps."
"Extracting meaningful insights beyond essential log data proves challenging due to the product's reliance on manual processes."
"There can be more modules and more integration with other areas in the cloud and on-prem. I am not sure whether it includes network devices and things like that."
 

Pricing and Cost Advice

Information not available
"Splunk Cloud Platform fell within our budget so we pulled the trigger and implemented it."
"The cost of the Splunk Cloud Platform is high, and in addition to the standard licensing fee, we also have a premium support fee."
"I am familiar with the pricing and licensing model a little bit. I am not sure about the particulars of the actual price that we have, but I do like the idea of going towards a more CPU-based approach rather than the ingest approach because it allows us the ability to ingest more data if we need it."
"The lack of transparency around the SVC licensing makes it difficult to explain the costs to our clients."
"Splunk Cloud Platform's pricing is a little on the higher end."
"It is a touchy subject because we are locked into it. That goes back to the rehydrating data. We cannot have the retention that we want to store for legal and compliance purposes because that is seven years' worth of data for some of the indexes, so we ship them off into S3 buckets and install them there, at which point they are invisible to Splunk, so we have to rehydrate them, but we cannot rehydrate those pockets into Splunk Cloud. We have to rehydrate them into a self-hosted version of Splunk, which can take days to set up and get going. I would not call Splunk's licensing and pricing predatory, but they have made it very difficult to maintain the independence of your own data."
"The pricing was negotiated through Trustwave and for our first contract in three years, we got a good deal."
"We were involved in the renewal process, and our organization does reviews of all our partnerships that we have every two to three years to ensure they are meeting our needs, there isn't a better solution out there, and we won't save money by going somewhere else."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
868,787 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Computer Software Company
14%
Manufacturing Company
6%
Educational Organization
6%
Computer Software Company
31%
Financial Services Firm
10%
Manufacturing Company
5%
Comms Service Provider
4%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise6
Large Enterprise42
 

Questions from the Community

What needs improvement with Microsoft Purview Audit?
Areas for product improvement include enhancing customization options and integrating more comprehensive compliance features.
What is your primary use case for Microsoft Purview Audit?
We utilize Microsoft Purview Audit for monitoring security and compliance aspects.
What do you like most about Splunk Cloud Platform?
Splunk has sped up our response and reduced the time we spend manually monitoring any logs for ticketing tools or servers. It saves us around two hours daily.
What is your experience regarding pricing and costs for Splunk Cloud Platform?
If I were to rate the price for the product from 1 to 10, I would rate it nine.
What needs improvement with Splunk Cloud Platform?
The disadvantage of Splunk Cloud Platform is that its integration process should be improved. The challenges I have encountered while integrating Splunk Cloud Platform include that integration is a...
 

Overview

 

Sample Customers

Information Not Available
Mindtouch
Find out what your peers are saying about Wazuh, Splunk, Grafana Labs and others in Log Management. Updated: August 2025.
868,787 professionals have used our research since 2012.