The main purpose of using Splunk APM is to optimize our application. We use Splunk APM primarily to understand how the application works, how it uses resources, and its response time in connection with different infra services. It is mainly used for application optimization and reviewing third-party application dependency response times.
Head of DevOps at a tech services company with 1-10 employees
Optimizes application performance and has an effective service map
Pros and Cons
- "Splunk APM provides a holistic view of the application. Unlike other APMs, Splunk's service map is quite effective."
- "Splunk APM helps us to find errors immediately and resolve them."
- "There is room for improvement in the alerting system, which is complicated and has less documentation available. We sometimes encountered issues in setting up alerts."
- "There is room for improvement in the alerting system, which is complicated and has less documentation available."
What is our primary use case?
How has it helped my organization?
Splunk APM helps us to identify long-running queries and long-running functions or methods, as well as third-party dependencies that are not responding on time. We are easily able to see the error or trace it. A developer can easily find out the issue without having to dig into the application.
We normally do not use the Tag Spotlight functionality, but our developers use this functionality when we are trying to dig into the logs. It helps to search the data that we want to see. It helps to troubleshoot the actual problem and visualize the data. We can see how the error is coming and how many reports are coming.
Splunk APM has helped us to optimize the application performance, find out when third-party services go down, and monitor our application within our SLA. It allows us to minimize our downtime. We can send timely notifications to our users. It mainly helps us to optimize application performance, and secondly, we are able to generate alerts based on the data that we receive from Splunk.
Splunk APM helps us to find errors immediately and resolve them. We are able to find some of the errors within five minutes. It minimizes the time to identify errors. There are about 30% to 40% time savings.
What is most valuable?
The best feature is the service map that they have. I have used multiple APM solutions such as Datadog and Elastic. They have a service map, but it does not work like Splunk APM. Splunk APM provides a holistic view of the application. Unlike other APMs, Splunk's service map is quite effective.
We suggested they provide an alert based on insert services. We told them that they have all the data, so why not have an alert on the insert service? They took feedback from us and added that feature. That feature helps us identify if any third-party dependent is down.
What needs improvement?
There is room for improvement in the alerting system, which is complicated and has less documentation available. We sometimes encountered issues in setting up alerts. The custom detector could be more simplified to assist system engineers in setting up alerts with ease.
Buyer's Guide
Splunk Observability Cloud
April 2025

Learn what your peers think about Splunk Observability Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
852,098 professionals have used our research since 2012.
For how long have I used the solution?
We tested Splunk APM last year and officially started using it this year. It has been about a year.
What do I think about the stability of the solution?
Splunk APM is stable. I would rate its stability a nine out of ten, as it delivers on its promises.
What do I think about the scalability of the solution?
We have not had to scale it. Our clients are medium enterprises.
How are customer service and support?
The support is responsive, though it could use some improvement. In the past, we contacted their support about a feature. They did respond to us, but they did not explicitly inform us about the feature's absence. Instead, they directed us to try various resources or articles. They did not have a clear answer. I would rate them a five out of ten for customer service.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Before using Splunk APM, I used Elastic APM and Datadog. Splunk APM is better than them. Splunk's service map and support for our existing libraries were significant reasons for the switch. The previous vendor required library updates that we could not accommodate, but Splunk supported our existing setups.
How was the initial setup?
The initial setup of Splunk APM was easy and straightforward. It took around a week.
What's my experience with pricing, setup cost, and licensing?
It appears to be expensive compared to competitors.
What other advice do I have?
Splunk APM is suitable for enterprise solutions, particularly for those deeply involved in technical business. The service map and overall stability make it a robust choice for such needs.
I would rate Splunk APM a nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Nov 10, 2024
Flag as inappropriate
Senior Consultant at Tata Consultancy
Enables us to directly search for a metric and straightaway create alert charts
Pros and Cons
- "The volume it handles is very good, including the number of metrics, the volume number of traces, and more."
- "There are some predefined metrics.......we may want to create customized metrics."
What is our primary use case?
Our primary use case for SignalFx was visualization, charting, and alerting. We also used it to fix our µAPM.
How has it helped my organization?
For one project I was working on, at least 15,000 people were using SignalFx. They used to monitor their application health in the SignalFx dashboard and get alerts from SignalFx. The users had different job profiles, such as engineers and architects.
What is most valuable?
One of the valuable features is that it is very user-friendly. We can directly search for a metric and create alert charts straightaway. There are multiple visualization options to create charts that allow users to create detectors and alerts and integrate them with downstream applications for getting notifications.
Moreover, the volume it handles is very good, including the number of metrics, the volume number of traces, and more.
What needs improvement?
There are some predefined metrics where we can directly install the SignalFx agent. It gives some informative CPU utilization where some things are inbuilt. But for specific applications, we may need to create customized metrics. Here, developer teams have an additional burden of creating the whole thing if they need to customize anything. The additional feature metric could be a custom metric edition. It would make it simple for any user or engineer to go beyond the default metrics and easily choose to add more metrics. It will help share dashboards, so when we have a single version, thousands of people can use the same single version of the dashboard.
The sharing option and custom metric would be the two additional features I would like to see in the improved version.
For how long have I used the solution?
I used SignalFx for six to eight months for my previous project, and the version I used was Splunk Observability. I used it last in October 2022; I am not using it right now.
What do I think about the stability of the solution?
It is a stable product. There used to be some unplanned maintenance or intermittent issues. Most of the time, we used to get alerts or notifications from the SignalFx team. So, out of 100, I would give it a 90. It was stable, but in that 10% of the occurrence, we faced various problems like loading traces, dashboards, and more. In that project, we had a limit of detectors and a limit of a metric time series, and several subscribed metrics. So, we used to get some notifications when it reached 80% or 90% of the usage. Thus, it is completely related to the subscription. But we faced the fact that the number of MTS reached the limit.
In terms of stability, we faced intermittent issues so I won't give it a 100%; it is 90%.
What do I think about the scalability of the solution?
It is scalable. Although the scalability depends on the subscription model, there are some related requests according to cost. For example, if I want to increase the metrics by up to 30%, store more metrics, or create more alerts, I can easily do it without impacting anything. For all those things, it is scalable.
How are customer service and support?
I used to create a support case in the SignalFx portal itself, and I used to call them on their toll-free number and engage them with issues. So I had some experience with their team and I rate them an eight out of ten.
I would rate it an eight because customer support won't provide back-to-back service. If I expect updates every hour, sometimes I may not get updates every hour. For example, if I need someone to explain the issue, there might be delays. If I need to get some root cause of an issue in real-time, that might take time. So considering these factoes, I rate them an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have used some observability tools like Splunk, Instana, and Grafana. I found SignalFx the best one for visualization, and it is user-friendly too. For example, you can directly search for a metric, and we can create alert charts immediately. So there will be multiple visualization options to create graphs. From there, we can directly create detectors, create alerts, and integrate them with other downstream applications for getting notifications.
How was the initial setup?
The initial setup was simple, and we used some package installers. We had a restrictive code for binaries in Artifactory. So we directly used some package installers and pulled it in individual service. Also, it was integrated with Puppet, so installing the SignalFx agent and starting it was simple.
What about the implementation team?
I wanted to manually install, deploy, and download it on a single server, and the whole manual procedure took around 10 to 15 minutes. When I tested a group of services with the help of Puppet, even hundreds of servers were done within an hour or something.
So I was working on a banking project, and we had a private cloud there; SignalFx agents were installed on servers, and our metrics were derived from there.
Which other solutions did I evaluate?
My company used an inbuilt application built by in-house developers, which was developed 15 years ago. Those tools were somewhat outdated and could not serve the purpose of the ever-growing volumes and other issues. So they preferred to have some third-party tool to solve their problems, and they found SignalFx useful. As a user, I also thought SignalFx was much better than other visualizations.
What other advice do I have?
I would definitely recommend SignalFx. Compared to other installation tools, creating alerts, understanding charts, and creating dashboards is more straightforward.
The functions are complex but SingalFx is very user-friendly. There is very defined documentation for everything, whether I have to create an alert or use some aggregation. We will have a direct link that says something like, "Click here to read more" or "Click here to understand." Such links are there for everything. Moreover, if I want to create an alert, there will be multiple options; it will say, "What is the time of alert?" or "What is the threshold base?" All these details will be there; you will have a link to detailed documentation. It is a very user-friendly tool for any beginner.
I would rate it as nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Splunk Observability Cloud
April 2025

Learn what your peers think about Splunk Observability Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
852,098 professionals have used our research since 2012.
Data Scientists at a government with 10,001+ employees
Monitors attacks or unauthorized access to the information we want to protect
Pros and Cons
- "The solution monitors attacks or unauthorized access to the information we want to protect."
- "The solution's machine learning deployment is hard and should be made user-friendly."
What is our primary use case?
We use the solution to do a lot of email checking. We also use the tool to monitor different embassies, server IPs and some of the teams.
How has it helped my organization?
Splunk Infrastructure Monitoring has helped our organization tremendously. We have onboarded Splunk for the last four years, and we have 30 to 40 contractors who use Splunk daily. The solution has helped not just a small organization like ours but the whole DOS (Department of State).
What is most valuable?
The solution monitors attacks or unauthorized access to the information we want to protect. There is a dashboard called ISSO that monitors pretty much everything worldwide. We also monitor almost 300 embassies and consulates.
What needs improvement?
The solution's machine learning deployment is hard and should be made user-friendly. Even if a team doesn't have a data scientist, they should be able to use the machine learning toolkit for monitoring purposes. The solution should include more algorithms and SPL commands that people can use.
For how long have I used the solution?
I have been using Splunk Infrastructure Monitoring for four months.
What do I think about the stability of the solution?
We haven’t faced any issues with the solution’s stability.
What do I think about the scalability of the solution?
Splunk Infrastructure Monitoring is highly scalable. We were able to do monitoring and some of the advanced analytics.
How are customer service and support?
I have not contacted Splunk's technical support. We have contacted our account manager for issues, and she's been awesome.
What about the implementation team?
We have different vendors who do deployments, which is different for the government than regular businesses.
What was our ROI?
We have seen a return on investment with Splunk Infrastructure Monitoring regarding the kind of threats we can identify.
What's my experience with pricing, setup cost, and licensing?
Splunk Infrastructure Monitoring is an expensive solution.
What other advice do I have?
Our organization monitors multiple cloud environments using Splunk Infrastructure Monitoring, which works well. This is the only tool we use, and we aren't considering moving or having additional tools.
It is important for our organization that Splunk Infrastructure Monitoring has end-to-end visibility into our cloud-native environments. Our job is critical and very sensitive, so having end-to-end visibility is really helpful.
Splunk Infrastructure Monitoring has helped reduce our mean time to resolve. Looking at the solution's dashboards has helped tremendously because we don't have to look at the individual index or events.
Our business is different from that of a private organization, and Splunk Infrastructure Monitoring has helped improve our organization's business resilience. The machine learning toolkit allows us to do clustering, and we have a couple of deployments on the clusters. That has helped cluster different events based on their critical or security threats.
We have seen time to value using Splunk Infrastructure Monitoring.
Splunk's unified platform has helped consolidate networking, security, and IT observability tools. We don't have to integrate Splunk with a different tool and worry whether those two will integrate. Having everything in one platform helps us create dashboards, alerts, and monitoring tools in one place.
Overall, I rate the solution an eight or nine out of ten.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Manager ICT & at Bangalore International Airport Limited
Offers end-to-end visibility, real-time monitoring, and distributed tracing, enabling organizations to optimize application performance and troubleshoot issues efficiently
Pros and Cons
- "The most valuable features are troubleshooting and optimizing application performance."
- "It is essential for the monitoring tool to deliver quick response times when generating analytical reports, instead of prolonged delays."
What is our primary use case?
I use it for monitoring and troubleshooting the performance of cloud-native applications.
How has it helped my organization?
Providing comprehensive visibility throughout the environment, it monitors my system, enhances career performance, and offers insights into the user experience.
Troubleshooting and visualizing a cloud-native environment is made easy with Splunk APM. It provides complete visibility into software tools, swiftly monitoring business performance and applications.
It possesses the capability to conduct distributed tracing within our environment. This includes monitoring the speed of tracked access, extending from end users to the Internet, system, and network services, and supporting my software application. Consequently, it offers an end-to-end overview of potential bottlenecks.
Splunk APM has significantly enhanced our organizational efficiency. Initially, my responsibilities included tracking website application performance, managing applications, and handling license releases. Now, it provides real-time user monitoring, transforming the way I handle these tasks.
It significantly impacts our organization's telemetry data, improving operational performance and user experience. The platform provides insights into application performance and effective log management. Ensuring accurate tracking of all performance-related logs contributes to building up the application performance percentage with comprehensive data.
It contributed to a daily reduction of six hours in our mean time to resolve.
What is most valuable?
The most valuable features are troubleshooting and optimizing application performance.
Another value lies in the resilience and quick recovery capabilities offered by the SIEM. It enables thorough monitoring across our landscape, providing insights into the number of running software applications. The tool furnishes comprehensive information across microservices, significantly enhancing our proficiency.
What needs improvement?
Enhancing system availability and optimizing service performance are crucial. It is essential for the monitoring tool to deliver quick response times when generating analytical reports, instead of prolonged delays.
For how long have I used the solution?
I have been using it for two years.
What do I think about the stability of the solution?
It provides good stability capabilities.
What do I think about the scalability of the solution?
It has the capacity to scale. There are approximately two hundred users and one administrator that use it.
How are customer service and support?
I would rate its customer service and support eight out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup was straightforward.
What about the implementation team?
The deployment process took six hours. During this time, a clear understanding was established regarding which technical applications—whether cloud-based, native, or others—needed monitoring and improved performance. These categories were identified in-house, with two individuals overseeing the process.
What was our ROI?
It allowed our IT staff to focus on other projects by freeing up their time. In total, it saved around four hours.
Which other solutions did I evaluate?
We evaluated Grafana.
What other advice do I have?
It can serve as an analytical application for enhancing performance, ensuring all dependencies are effectively addressed. Overall, I would rate it eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Software and Production Engineer S at WEX Inc.
It provides a holistic view and accurate information, but it is difficult to manage
Pros and Cons
- "Once configured correctly, the analysis reporting the Splunk APM provides is better than that of the other APM tools."
- "Splunk isn't an ideal tool for application performance management due to the extensive setup required."
What is our primary use case?
We utilize Splunk APM for security purposes, monitoring all transactions within the organization to prevent potential attacks. Additionally, we leverage Splunk APM to analyze application logs, gaining insights into application behaviour and facilitating a reduction in Mean Time To Resolution should any issues arise in the production environment.
How has it helped my organization?
OpenTelemetry provides more accurate information about an application by combining views from the customer perspective, infrastructure metrics, and application-specific data. This holistic view enables full telemetry observability, allowing us to analyze and strategize effectively for our company or clients.
What is most valuable?
Once configured correctly, the analysis reporting the Splunk APM provides is better than that of the other APM tools. Once the correct fields are defined, we can create different report dashboards.
What needs improvement?
Splunk isn't an ideal tool for application performance management due to the extensive setup required. It necessitates various configurations to gather diverse information from applications, networks, or other sources. Creating the right tables and defining the appropriate fields to extract comprehensive data involves a significant amount of setup within the tool. Managing this process can be quite challenging. However, once configured, the collected information is invaluable, although not easily manageable.
Splunk falls short compared to other APM tools such as AppDynamics or Datadog. It does not collect online information in real time and relies heavily on log files. Unlike Datadog, which collects real-time application behaviour data like CPU, memory, load, and response time, Splunk requires additional configuration to obtain similar information. This makes using Splunk for APM purposes significantly more difficult compared to the automatic data collection capabilities of AppDynamics or Datadog.
For how long have I used the solution?
I have been using Splunk APM for more than a decade.
What do I think about the scalability of the solution?
Splunk APM lacks scalability, requiring the administrator to constantly monitor or create specific alerts to ensure sufficient disk space, CPU, and memory for data collection and transaction processing. This results in a tool that is challenging to manage and costly to maintain.
How are customer service and support?
Splunk support is responsive and provides quick resolutions when tickets are opened. Their service has left a positive impression on me.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial deployment is complex, requiring the definition of the switch, storage, correct host, and working with certification. This necessitates at least one expensive specialist, costing approximately $5,000 per month to hire and work with our team.
What's my experience with pricing, setup cost, and licensing?
Splunk APM is expensive. Even before we begin, we need substantial infrastructure investment to collect comprehensive logs. For example, to gather log data, we must create specific tables in Splunk, starting at 50 gigabytes. In a cloud environment, this storage requirement becomes very costly.
What other advice do I have?
I would rate Splunk APM six out of ten.
Cisco recently acquired Splunk, and its roadmap for the coming year includes incorporating aspects of Splunk into AppDynamics. Cisco's intention behind combining these two tools is to showcase its commitment to open telemetry and comprehensive observability to the market and its customers.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Sep 24, 2024
Flag as inappropriateSoftware Engineer at a healthcare company with 10,001+ employees
Helps to ingest a massive amount of raw data and use it effectively
Pros and Cons
- "The most valuable thing that we have seen within our group is the ability to ingest all this raw data and have it organized in a certain way so that different groups can get effective alerting from this massive amount of raw data that is out there."
- "A lot of customers had a hard time effectively searching within the data in Splunk. There is a learning curve from searches to indexes and using all the macros that we have created. It is a little difficult for somebody who has not used it quite a bit and does not have a lot of practice with it, but the AI features that we have been hearing about through Splunk will make it a lot easier for us to use human language to search this data. That is big. That is pretty powerful, and that will help a lot with our customers."
What is our primary use case?
We mainly use it for different divisions and departments within our company to keep track of our systems' health. We also ingest log files to get data and alerts for different groups.
How has it helped my organization?
We used to use a number of different tools before we were introduced to Splunk. We used to have a very hard time getting this data in and being able to effectively use it because we had such a massive amount of data. We also could not find a way to organize it effectively. Splunk helped us to effectively use all the data that we collect in a valuable way for different customers and groups that we have in our company.
It has definitely helped reduce our meantime to resolve (MTTR). A lot of our customers have difficulty getting to root cause analysis of different problems and situations. They also do not have the data to perform analytical responses for different problems that there could be within our industry. They are now able to use this data effectively, not just for alerting, but also for preventative maintenance.
It has definitely improved our organization’s business resiliency by a lot. I do not have the actual data to share at this time, but there has been a marked improvement in the organization. We are now able to keep track of all the raw data that we pull in and then use it effectively. This helps our organization run more efficiently.
It has improved our organization's ability to predict, identify, and solve problems in real time. We are able to use data and search for it effectively. We have different analytical forms and data that we can use to improve in different ways.
What is most valuable?
The most valuable thing that we have seen within our group is the ability to ingest all this raw data and have it organized in a certain way so that different groups can get effective alerting from this massive amount of raw data that is out there.
What needs improvement?
A lot of customers had a hard time effectively searching within the data in Splunk. There is a learning curve from searches to indexes and using all the macros that we have created. It is a little difficult for somebody who has not used it quite a bit and does not have a lot of practice with it, but the AI features that we have been hearing about through Splunk will make it a lot easier for us to use human language to search this data. That is big. That is pretty powerful, and that will help a lot with our customers. At the Splunk conference, some of the talks have been about the AI platform and more effective and easier ways to search within Splunk through indexes and other things. These features will help correct some of the things with which we are having a hard time with some of our customers.
For how long have I used the solution?
We have been using this solution for about four years.
What do I think about the stability of the solution?
We are not on the cloud. We are all on-prem. We have had certain issues with space on the servers and things like that, and while moving things up to what we need, we have not had any issues on the Splunk side.
How are customer service and support?
It is great. We have not had any major issues with getting support from Splunk. With our monthly license, there are a certain amount of hours that we have with Splunk support. We are able to use it when we are getting close to the end of the month. In our meetings, we make a list of different topics that we would like to explore and discuss with Splunk. We create meetings for that, and they are always very helpful. We never had any issues in getting support from Splunk. I would rate their support a ten out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used to use Tivoli. We also use AppDynamics in addition to Splunk for different parts, but we are starting to learn that Splunk does have a lot of similar toolsets. Splunk does the same as what AppDynamics does, and in some cases, there are more powerful tool sets that would help us. We are thinking of petering down our different tools to get into one tool, possibly Splunk. We already got rid of Tivoli, and we are using Splunk fully in place of Tivoli. We have seen a positive response to it.
We have seen cost efficiencies by switching to this solution. Because of the wider range of tools that Splunk offers, we were able to get rid of Tivoli and get rid of that licensing obligation on an annual basis. We are able to save a good amount of money on that and move that budget over to our Splunk budget to keep everything under one umbrella.
How was the initial setup?
I was not involved in its deployment. I came on the year after.
We are currently on-prem, but we are working on developing and moving everything over to a Google Cloud platform. The announcement that Splunk is partnering with Google Cloud, in addition to AWS, is pretty good for us because we are working on moving over to the cloud in the next couple of years.
What was our ROI?
We have definitely seen an ROI. Our team is able to spend more time learning one tool as opposed to having to learn multiple different toolsets. Therefore, we are able to get more work done in a more efficient manner.
We have seen time to value using this solution. Our company has a very heavy push toward work-life management. Since we have been able to, especially in our group, switch to this tool, we could cut down on our on-call time and have our groups run on different patterns where people who are off are actually off. They do not have to be called in because essentially, everybody is able to access the tool and use it effectively because it is the one tool that we use as opposed to having different tool sets. Everybody knows how to use it, so it definitely has helped us in that way.
Which other solutions did I evaluate?
I know there was a panel and a team that was going through different tools. I was not a part of that process, but I know there were quite a bit of tools that they were looking at. Splunk must have worked out better than everything else.
What other advice do I have?
I would rate Splunk Infrastructure Monitoring a ten out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Lead Infrastructure Domain Architect (Systems) at a healthcare company with 10,001+ employees
Log searching and log analytics come in handy; incredible tech support
Pros and Cons
- "The features I have found most valuable are log searching and log analytics, both of which are quick features."
- "There is a lot of room for improvement with the automation."
What is our primary use case?
Our primary use case for this solution is as a supplement to Dynatrace, so the log analytics is done in Splunk instead of Dynatrace.
How has it helped my organization?
We built a tool for firewall log monitoring and we powered all firewall logs to Splunk. In addition, we built a little dashboard that just specifies sources and the destination addresses and port numbers. It passes all the logs and tell us if there are any blocks or drops on the firewall level. This is a very useful tool for us.
What is most valuable?
The features I have found most valuable are log searching and log analytics, both of which are quick features.
What needs improvement?
There's a component in this solution that is particular and takes a lot of manual work and that is the automation. There is a lot of room for improvement with the automation. They should also improve the discovery and detection of all the infrastructure components so that it is more automated and takes less manual work.
For how long have I used the solution?
I have been using this solution for about five years.
What do I think about the stability of the solution?
I would rate the stability of this solution an eight, on a scale from one to 10, with one being the worst and 10 being the best.
What do I think about the scalability of the solution?
I would rate the scalability of this solution a nine, on a scale from one to 10, with one being the worst and 10 being the best.
How are customer service and support?
I would rate the technical support of this solution a 10, on a scale from one to 10, with one being the worst and 10 being the best.
How would you rate customer service and support?
Positive
How was the initial setup?
At first, we were deployed on-premises and then about one year ago we migrated to the cloud. So I would say they did most of the work around migration. There are around 1,000 users of this solution in our company.
What was our ROI?
We have seen the ROI.
What's my experience with pricing, setup cost, and licensing?
I would rate the pricing of this solution a two, on a scale from one to 10, with one being the most expensive and 10 being the best price.
What other advice do I have?
Our model of deployment is the cloud.
I would rate this solution as a whole a 10, on a scale from one to 10, with one being the worst and 10 being the best.
I would advise other people looking into this solution to do their due diligence and make sure they do their pre-work and post-work.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Client Partner at a tech consulting company with 1-10 employees
Is easy to use, and improves performance, but does not monitor network devices
Pros and Cons
- "The vibrant dashboards are valuable."
- "The end-to-end visibility is lacking because Splunk cannot directly monitor network devices."
What is our primary use case?
Splunk Infrastructure Monitoring helps identify bottlenecks within the network domain, including issues related to server databases, application response times, and code. These problems can be resolved by our customers promptly.
How has it helped my organization?
It is easy to use. It offers a unique dashboard reporting tool called Ollie. Ollie is essentially an observability tool, and it's also referred to simply as "Ollie" for brevity. It's important to note that this product is agent-based only.
Splunk Infrastructure Monitoring helps improve the efficiency and performance of applications by up to 70 percent.
It has helped reduce our mean time to detect. It has helped to reduce our mean time to resolve by around 50 percent.
Splunk helps us focus on business-critical initiatives.
It integrates well with multiple sets of products.
What is most valuable?
The vibrant dashboards are valuable.
What needs improvement?
The main drawback of Splunk for network monitoring is its limited agent deployment. Splunk excels at collecting data from servers and databases where agents can be installed. However, it cannot directly monitor network devices, unlike Broadcom.
Broadcom offers Spectrum and Performance Management tools that primarily work on SNMP to collect data from network devices. Splunk doesn't have a directly comparable functionality for network devices.
While Splunk offers a wider range of data collection, including metrics, logs, and more, it can be more expensive. Splunk's licensing model is based on data volume (terabytes) rather than the number of devices. This can be costlier compared to Broadcom or similar tools, which often use device-based licensing.
The end-to-end visibility is lacking because Splunk cannot directly monitor network devices.
Broadcom provides a topology-based root cause analysis that is not available with Splunk.
For how long have I used the solution?
I have been using Splunk Infrastructure Monitoring for 10 years.
What do I think about the stability of the solution?
Splunk Infrastructure Monitoring is stable.
How was the initial setup?
Splunk deployment is simplified because it is cloud-based. The deployment takes no more than 15 days to complete.
What's my experience with pricing, setup cost, and licensing?
Splunk's infrastructure monitoring costs can be high because our billing is based on data volume measured in terabytes, rather than the number of devices being monitored.
Replacing legacy systems with Splunk could cost up to $200,000.
What other advice do I have?
I would rate Splunk Infrastructure Monitoring 7 out of 10.
The decision to move from another infrastructure monitoring solution to Splunk should be based on a customer's specific needs. While Splunk offers visually appealing dashboards and access to a wider range of data compared to Broadcom products, pricing can be a significant factor, especially in the Indian market.
Deploying Splunk for a customer can involve higher upfront infrastructure costs. This is because implementing Splunk effectively often requires writing custom queries to filter data and optimize license usage. While this approach minimizes licensing costs, it can be labor-intensive.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: partner

Buyer's Guide
Download our free Splunk Observability Cloud Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2025
Product Categories
Application Performance Monitoring (APM) and Observability IT Infrastructure Monitoring Cloud Monitoring Software Container ManagementPopular Comparisons
Veeam Data Platform
Azure Monitor
Splunk AppDynamics
Elastic Observability
SolarWinds NPM
PRTG Network Monitor
ThousandEyes
Buyer's Guide
Download our free Splunk Observability Cloud Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- When evaluating Application Performance Management, what aspect do you think is the most important to look for?
- APM tools for a Managed Service Provider - Dynatrace vs. AppDynamics vs. Aternity vs. Ruxit
- What solution would you recommend for monitoring traffic utilization of leased lines?
- How Much Should I Budget for an APM Solution?
- Which is the best AANPM product? Should we be considering anything besides for Riverbed?
- Who Uses APM?
- What is your favorite tool for Application Performance Monitoring?
- How does synthetic monitoring differ from real user monitoring?
- Differences between SiteScope and dynaTrace?
- Splunk as an Enterprise Class monitoring solution -- thoughts?