Try our new research platform with insights from 80,000+ expert users

Palantir Foundry vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Palantir Foundry
Ranking in IT Operations Analytics
10th
Average Rating
7.8
Reviews Sentiment
7.0
Number of Reviews
18
Ranking in other categories
Data Integration (12th), Supply Chain Analytics (1st), Cloud Data Integration (11th), Data Migration Appliances (3rd), Data Management Platforms (DMP) (1st), Data and Analytics Service Providers (1st)
Splunk Enterprise Security
Ranking in IT Operations Analytics
1st
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
381
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st)
 

Mindshare comparison

As of March 2026, in the IT Operations Analytics category, the mindshare of Palantir Foundry is 4.2%, up from 2.5% compared to the previous year. The mindshare of Splunk Enterprise Security is 14.4%, down from 26.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Operations Analytics Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security14.4%
Palantir Foundry4.2%
Other81.4%
IT Operations Analytics
 

Featured Reviews

BA
Associate Vice President at a insurance company with 10,001+ employees
Unified data workflows have empowered collaborative analytics and streamlined AI development
Regarding points for improvement for Palantir Foundry, I see that they are improving day by day. In the last one to two years, I have seen many improvements compared to the two years that I have worked on Palantir Foundry. There are many things that come up, but a few things are not intuitive enough. Now that we are in this AI phase, Palantir Foundry has created some wrappers around the models, allowing us to create using a no-code application, chatbots, and LLM functions. The problem is that interaction with outside applications can be difficult with the current setup that Palantir Foundry has. There are ways to do that, but it is not that intuitive, which is what I feel.
Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Encapsulates all the components without the requirement to integrate or check compatibility."
"It's scalable."
"The solution provides an end-to-end integrated tech stack that takes care of all utility/infrastructure topics for you."
"The predictive analytics capability within Palantir Foundry impacts financial forecasting strategies through its AIP functionality, which includes numerous pre-built models, LLMs, and data science application libraries."
"The AI engine that comes with Palantir Foundry is quite interesting."
"It is easy to map out a workflow and run trigger-based scripts without having to deploy to another server."
"The interface is really user-friendly."
"Palantir Foundry is a robust platform that has really strong plugin connectors and provides features for real-time integration."
"I can create dashboards to collect and view information in a tabular, graphical format. This feature is important because it helps me understand time-series data over one or two hours."
"Its alerting is most valuable. We have alerts set up in our environment for certain attacks, such as an SQL injection attempt. We have a front-facing server for the website. It is out there, and anybody can access it. When those SQL injection attempts come in, we are able to detect that with the alert."
"The solution's newly developed dashboard is pretty amazing."
"It definitely does help with both auditing and as well as regular monitoring. SOC does more monitoring, but ES also gives you other features that are auditing-related. The dashboards are also beneficial."
"Capability to expand the functionality through custom code for data inputs, commands, visualization, alerts, and machine learning."
"I really like the user interface and how it works."
"We are satisfied with Splunk Enterprise Security, and it comes with a wide number of out-of-the-box applications which do help us to fix the problems."
"The correlation searches are most valuable just because we are able to do things like RBA."
 

Cons

"If you want to create new models on specific data sets, computing that is quite costly."
"Cost of this solution is quite high."
"The major hindrance with Palantir Foundry is that being a very closed product, the cost optimization and costing are not exposed to the end users."
"There is not a wide user base for the solution's online documentation so it is sometimes difficult to find answers."
"The workflow could be improved."
"It requires a lot of manual work and is very time-consuming to get to a functional point."
"The solution’s data security could be improved."
"It would be helpful to build applications based on Azure functions or web apps in Palantir Foundry."
"It needs more formatting control without having to be an admin."
"Splunk Enterprise Security can be improved by having more focus on the data health monitoring aspect, which will definitely be helpful."
"The biggest problem is data compression. Splunk is an outstanding product, but it is a resource hog. There should be better data compression for being able to maintain our data repositories. We end up having to buy lots of additional storage just to house our Splunk data. This is my only complaint about it."
"I didn't face any major issues with Splunk Enterprise Security. There were only one or two issues related to the user account, but nothing major."
"Splunk Enterprise Security incurs a significant cost because of the amount of data we send, but we are fine with the value we're getting for that price."
"The Web Application Firewall will send you too much information because it's more dedicated to security than a normal firewall."
"Endpoint access is the only issue I can think to mention, even though the endpoint access we have with Cisco is fine."
"We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy."
 

Pricing and Cost Advice

"Palantir Foundry is an expensive solution."
"It's expensive."
"The solution’s pricing is high."
"Palantir Foundry has different pricing models that can be negotiated."
"Splunk's cost is very high. They need to review the pricing. They have to go back and totally readdress the market."
"Pricing is pretty fair."
"It is quite expensive."
"The pricing modules could be improved."
"It is possible to use a developer's license, which is up to 10GB per day of volume traffic, which is usually enough for most use cases."
"I think we recently switched to the SVC pricing compared to the ingest pricing."
"Splunk Enterprise Security is expensive but the solution is equipped with a lot of features."
"My experience with the solution's setup cost, pricing, and licensing was really good."
report
Use our free recommendation engine to learn which IT Operations Analytics solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Manufacturing Company
14%
Financial Services Firm
10%
Government
8%
University
7%
Financial Services Firm
12%
Computer Software Company
10%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise5
Large Enterprise9
By reviewers
Company SizeCount
Small Business112
Midsize Enterprise50
Large Enterprise267
 

Questions from the Community

What needs improvement with Palantir Foundry?
Apart from the pricing and offline availability issues, improvements are needed in Palantir Foundry's costing factor. Cost-wise, it is not open for everybody, and they are not exposing anything out...
What is your primary use case for Palantir Foundry?
One of the leading European manufacturing plants uses Palantir Foundry for manufacturing interior parts of various car brands such as Honda, Hyundai, Ford, Mercedes-Benz, and BMW. This involves hig...
What advice do you have for others considering Palantir Foundry?
Palantir Foundry is an excellent product for data engineering. On a scale of one to 10, I would rate Palantir Foundry a 9.
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Overview

 

Sample Customers

Merck KGaA, Airbus, Ferrari,United States Intelligence Community, United States Department of Defense
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Palantir Foundry vs. Splunk Enterprise Security and other solutions. Updated: March 2026.
884,873 professionals have used our research since 2012.