Try our new research platform with insights from 80,000+ expert users
Manish Ved - PeerSpot reviewer
Lead Infrastructure Domain Architect (Systems) at a healthcare company with 10,001+ employees
Real User
Log searching and log analytics come in handy; incredible tech support
Pros and Cons
  • "The features I have found most valuable are log searching and log analytics, both of which are quick features."
  • "There is a lot of room for improvement with the automation."

What is our primary use case?

Our primary use case for this solution is as a supplement to Dynatrace, so the log analytics is done in Splunk instead of Dynatrace.

How has it helped my organization?

We built a tool for firewall log monitoring and we powered all firewall logs to Splunk. In addition, we built a little dashboard that just specifies sources and the destination addresses and port numbers. It passes all the logs and tell us if there are any blocks or drops on the firewall level. This is a very useful tool for us.

What is most valuable?

The features I have found most valuable are log searching and log analytics, both of which are quick features.

What needs improvement?

There's a component in this solution that is particular and takes a lot of manual work and that is the automation. There is a lot of room for improvement with the automation. They should also improve the discovery and detection of all the infrastructure components so that it is more automated and takes less manual work.

Buyer's Guide
Splunk Observability Cloud
June 2025
Learn what your peers think about Splunk Observability Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
861,524 professionals have used our research since 2012.

For how long have I used the solution?

I have been using this solution for about five years.

What do I think about the stability of the solution?

I would rate the stability of this solution an eight, on a scale from one to 10, with one being the worst and 10 being the best.

What do I think about the scalability of the solution?

I would rate the scalability of this solution a nine, on a scale from one to 10, with one being the worst and 10 being the best.

How are customer service and support?

I would rate the technical support of this solution a 10, on a scale from one to 10, with one being the worst and 10 being the best.

How would you rate customer service and support?

Positive

How was the initial setup?

At first, we were deployed on-premises and then about one year ago we migrated to the cloud. So I would say they did most of the work around migration. There are around 1,000 users of this solution in our company.

What was our ROI?

We have seen the ROI.

What's my experience with pricing, setup cost, and licensing?

I would rate the pricing of this solution a two, on a scale from one to 10, with one being the most expensive and 10 being the best price.

What other advice do I have?

Our model of deployment is the cloud.

I would rate this solution as a whole a 10, on a scale from one to 10, with one being the worst and 10 being the best.

I would advise other people looking into this solution to do their due diligence and make sure they do their pre-work and post-work.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Yaseen Shaikh - PeerSpot reviewer
Splunk and AppDynamics SME at Saudi Networkers Services
Real User
Top 10
Improves operational efficiency and integrates very well
Pros and Cons
  • "I find the monitoring console very helpful. With one click, I can see how we are performing, and at the same time, I can see what data is flowing."
  • "The clustering part of indexes can be more refined."

What is our primary use case?

We mostly work with developers. They run some pipelines, and they use Splunk as a platform to identify the errors, instead of themselves debugging the logs and understanding what the issue is. This is one side of the business. On the other side of the business, we use the Splunk database for frozen buckets where we archive the data.

We can easily integrate it with other tools for monitoring our entire IT data infrastructure. I also handle AppDynamics. We have integrated Splunk and AppDynamics. With one click, we can understand what the actual issue is. It brings down the time to resolve. We have had some good experiences.

How has it helped my organization?

It improves our operational efficiency every day. In my previous company, we had integrated it with ServiceNow. For defined alerting conditions, it could directly open up a ticket for the right team. We did not have to look into a thousand cases to understand a problem.

In terms of integrations, most of the plugins are already available. If a plugin is not available, even then it is pretty easy to integrate. There are multiple ways to integrate. You can use the REST API and just forward the data. It can be easily integrated.

It makes it easy to have end-to-end visibility in the cloud environment. There are multiple types of devices in an environment. You might have AWS, Microsoft Azure, or something else. It operates beautifully. It is easy to integrate. This is the best part.

I am in the banking industry. It helps to keep track of how well our application is performing when somebody tries to do a transaction. There are multiple pieces to it, and we keep track of everything. We have our own business dashboard that the top-tier leaders can look into. All the visibility is there because of it.

What is most valuable?

I find the monitoring console very helpful. With one click, I can see how we are performing, and at the same time, I can see what data is flowing.

What needs improvement?

The clustering part of indexes can be more refined.

They can cut down a bit at the monetary level for the long-time customers. We recently had a scenario where we were in discussions to see if there was any flexibility from Splunk's side.

For how long have I used the solution?

I have been using this solution for the past two years. I have also used it in my previous company.

What do I think about the scalability of the solution?

It is pretty scalable. I would rate it a nine out of ten for scalability.

Which solution did I use previously and why did I switch?

I have worked with Kibana and Logstash, but they are not comparable to this solution.

What's my experience with pricing, setup cost, and licensing?

It is expensive.

What other advice do I have?

Overall, I would rate it an eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Splunk Observability Cloud
June 2025
Learn what your peers think about Splunk Observability Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
861,524 professionals have used our research since 2012.
reviewer2239860 - PeerSpot reviewer
Software Engineer at a logistics company with 5,001-10,000 employees
Real User
We can monitor our infrastructure better and respond faster to a problem
Pros and Cons
  • "It is a great resource for us because we have so many different data sources and to be able to aggregate that and put it through a concise dashboard or an alert really helps."
  • "We have both on-prem and cloud, and the challenge is getting all our log data aggregated or streams aggregated so that it is real-time. We do a pretty good job of that, but our organization is not using it as a security platform when it can do a great job of that."

What is our primary use case?

We have our application development and we monitor our websites. I create alerts and dashboards to help us notify if we have any infrastructure issues.

We get our data in and then I create some SQL queries to find out where our averages are and do some predictive analysis. When we deviate from the normal, that is where I like to set up alerts and dashboards. I have alerts that trigger and link to dashboards to see the trend over time or what happened last hour. There is also alerting to the phones.

How has it helped my organization?

I believe Splunk Infrastructure Monitoring has improved our organization because, over time, it has always been pinpointing the source of the problem. We have pretty quick responses knowing that we have a problem, and we can drill in pretty quickly to find out where the problem might be occurring. Is it a specific server or is it happening to multiple systems across the board? It is easy to visualize that.

Monitoring multiple cloud environments is pretty easy because it just aggregates from different places, and when we have an outage, we can say, "Oh! Amazon West is having a problem."

Splunk Infrastructure Monitoring provides end-to-end visibility into our cloud-native environment. I am not directly involved with the cloud portion of it, but for our developers, end-to-end observability is important because we have multiple platforms and systems.

Splunk Infrastructure Monitoring has reduced our mean time to resolve. I cannot put a number on that, but compared to years ago, we now do a pretty good job of infrastructure monitoring. We can better monitor a bunch of different aspects of our business.

Splunk Infrastructure Monitoring has improved our organization's business resilience. We do not want to be down, and we do not want people to be not able to pay their bills online.

What is most valuable?

It is a great resource for us because we have so many different data sources and to be able to aggregate that and put it through a concise dashboard or an alert really helps.

What needs improvement?

We have both on-prem and cloud, and the challenge is getting all our log data aggregated or streams aggregated so that it is real-time. We do a pretty good job of that, but our organization is not using it as a security platform when it can do a great job of that. We have other tools that we use, but we should leverage this more in our organization because we have already got the tools and the software.

For how long have I used the solution?

I have been using Splunk Infrastructure Monitoring since 2019.

What do I think about the stability of the solution?

It is very stable. Especially since we went to the cloud, it just makes it easier for us.

What do I think about the scalability of the solution?

We have not had any issues there.

How are customer service and support?

Their technical support has been very good. I have not had to use it a whole lot because we have pretty good and experienced staff. We use consultants, and in general, we have been lucky. We work with our representative, and we have hired a couple of contractors. 

Which solution did I use previously and why did I switch?

We have used different solutions in the past. I used CA Wily. New Relic was another tool we had used for a time. 

We had several different tools that we were using for APM monitoring and website monitoring. Over time, we migrated more to the Splunk platform because it helps to aggregate the data. Having to configure all the agents was painful, and Splunk made that a lot easier.

How was the initial setup?

It was pretty easy. We had to set up all of our collectors. Getting our feeds was critical. 

We have an on-prem setup, so we have a lot of forwarders. We are also on the cloud. We have a data center locally, and we have one in Texas. We also have a third one that I like to call the cloud, so we have three different environments that we move between, and it is nice that when we have a problem, we can tell exactly where it is.

What about the implementation team?

John Ansett's company helped us with our initial deployment. They did an excellent job.

What was our ROI?

We have seen an ROI. It is hard to put a price on downtime, but our primary business is travel, insurance, as well as automotive. We are a diverse organization, but our bread and butter is insurance. If there is downtime, people cannot pay their insurance bills online, or they cannot look up the policy and that type of information. Being down is not good for our customers.

We have seen a time to value. I use a lot of dashboards for monitoring, and I have trained other teams in our organization on how to use the tool. It is starting to have a lot of legs now, and we got a lot of different diverse departments using the tool. We are getting a lot of experienced staff to use the tool and make their own desktops.

It is difficult to put a price on how fast you can find a problem and resolve the problem. We have got web services and servers, and sometimes, pinpointing where the problem is took the longest time. Having ITSI observability and Splunk dashboarding together has helped a lot with that.

What's my experience with pricing, setup cost, and licensing?

I am not in that circle, but we are currently licensing based on our queries. That is working out for us. Previously, it was by volume of data, and now, we can store as much data as we want. 

What other advice do I have?

I would rate Splunk Infrastructure Monitoring a ten out of ten because that is primarily what I use every day. I love the product. 

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
System Administrator at Nournet communications
Real User
Top 20
User-friendly, offers good visibility through the logs, and helps identify issues in our environment
Pros and Cons
  • "The most valuable feature is log reporting."
  • "The price has room for improvement."

What is our primary use case?

We use Splunk Infrastructure Monitoring because it is a durable solution for our environment.

How has it helped my organization?

Splunk Infrastructure Monitoring is easy to use.

The dashboards are good.

Splunk Infrastructure Monitoring has helped improve our operational performance and efficiency. 

Splunk Infrastructure Monitoring has helped reduce our MTTD by 90 percent.

Our MTTR is good thanks to Splunk Infrastructure Monitoring.

What is most valuable?

The most valuable feature is log reporting.

What needs improvement?

The price has room for improvement.

For how long have I used the solution?

I have been using Splunk Infrastructure Monitoring for five years.

What do I think about the stability of the solution?

I would rate the stability of Splunk Infrastructure Monitoring ten out of ten.

What do I think about the scalability of the solution?

Splunk Infrastructure Monitoring is scalable.

How are customer service and support?

I have used the technical support a few times and they were good.

How would you rate customer service and support?

Positive

What's my experience with pricing, setup cost, and licensing?

I would rate the price of Splunk Infrastructure Monitoring as an eight out of ten, with ten being the most expensive.

What other advice do I have?

I rate Splunk Infrastructure Monitoring ten out of ten.

Splunk Infrastructure Monitoring is a good service that provides visibility into our environment.

I recommend Splunk Infrastructure Monitoring to organizations for the logs that will help identify errors in their devices and assist them in resolving the issues.

One person is required to maintain Splunk Infrastructure Monitoring.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Solution Architect(Splunk- Log Management) at Tata Consultancy
Real User
Good support, detailed reports, and stable
Pros and Cons
  • "The alerts are the most valuable feature."
  • "The implementation can be more user-friendly."

What is our primary use case?

Our use cases have not been completely sorted and executed. In that case, if this has been done and we know the way forward, the stabilization is more complete. This is not yet stabilized, and I would say at the moment, the focus is more on creating alerts and incidents, rather than how the user can view Splunk ITSI. That focus has not yet been set. Once it is done, I think that would help.

How has it helped my organization?

If there is an issue or challenge in Splunk at the product level, Splunk's internal log will call out every problem it is facing, which will help us to identify the root cause and fix it. This gives us a clue about what to do next if there is a problem we can understand the issue from the reports.

What is most valuable?

The alerts are the most valuable feature.

What needs improvement?

I don't see any issues yet because my use case has not been finalized. The point is, if anyone is going to acquire Splunk ITSI, their primary purpose should be to ensure that all infrastructure assets in production are logged into Splunk to ensure complete monitoring is enabled. Each organization has its own criteria for the importance of its applications and servers. All of these must be added for the monitoring to be effective.

The implementation can be more user-friendly.

For how long have I used the solution?

I have been using the solution for a few months.

What do I think about the stability of the solution?

The solution is stable.

How are customer service and support?

The Splunk technical support meets all the SLAs. There's a P1, P2, and P3 categories, and the support is being handled accordingly.

How would you rate customer service and support?

Positive

How was the initial setup?

It is not possible to set up the solution without the assistance of Splunk professionals. A professional services representative must be present to handle the Splunk ITSI implementation.

What about the implementation team?

The implementation requires either Splunk for PS or the hiring of a Splunk Certified Resource. We used a Splunk architect for our implementation.

What other advice do I have?

I give the solution an eight out of ten. 

I suggest using Splunk Professional Services for enrollment review. Splunk has a set of recommendations for keeping our data clean and structured when logging into Splunk, which will make our application infrastructure monitoring more effective. Splunk also has best practices that need to be implemented. We can take care of this in one call, and Splunk inputs may help us make it even better.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Robert Cheruiyot - PeerSpot reviewer
IT Security Consultant at Microlan Kenya Limited
Real User
Simple to install and configure with many interesting features
Pros and Cons
  • "It's a very easy-to-use solution."
  • "They need more EDR functionalities."

What is our primary use case?

We primarily use the solution for network monitoring and to identify threats. It is a security measure. 

How has it helped my organization?

If anything suspicious happens in the banking system, the solution would be able to identify the threat. We've also been able to identify malicious domains and phishing attacks. 

What is most valuable?

The product provides a lot of valuable features. 

It's helpful for identifying threats. The solution helps protect against phishing and malicious domains.

We we see any spikes in the CPU, it might be a sign of suspicious activity, and we can monitor it to protect our company. 

It's a very easy-to-use solution. It's simple to install and configure.

The solution is stable.

It is scalable.

What needs improvement?

They need to offer better endpoint protection. They don't have their own platform for endpoint protection. It would be helpful if they added something that addressed that. They need more EDR functionalities. 

Support could be faster. 

For how long have I used the solution?

I've used the solution for five years now. 

What do I think about the stability of the solution?

The solution is stable. It's reliable and the performance is good. There are no bugs or glitches and t doesn't crash or freeze. 

What do I think about the scalability of the solution?

The solution is really scalable. You can easily add more components and different vendors. 

We're an IT service provider. We don't use Splunk ourselves. However, a bank we work for has about 500 employees right now that would be leveraging Splunk. 

How are customer service and support?

We tend to support our customers. We can troubleshoot for customers.

We also use Splunk technical support, and they aren't too bad. They could be faster and improve their response time. 

Which solution did I use previously and why did I switch?

We also use Cisco for EDR since Splunk doesn't really have any EDR options. 

How was the initial setup?

The simplicity of the setup is great. It's easy to configure. Splunk is very straightforward. 

To have the solution up and running, you can deploy it in three hours. There might be more integration that needs to be done on top of that. There are a few other items that may make the deployment a bit longer, depending on the setup. 

Installing the system is very easy. However, for it to be useful, you need to customize it to integrate with your current use cases. You might have to spend some time testing use cases. It's important to understand the use cases before doing the configurations.

We have a manager and a few engineers that can handle deployment and maintenance tasks. 

What about the implementation team?

We're a service provider and can implement the solution for clients. 

What's my experience with pricing, setup cost, and licensing?

We use a free version of the solution. There is also an enterprise option as well. 

The product has a fairly flexible licensing model. You buy based on your requirements, whether it is six months or a year.

What other advice do I have?

We are using the latest version of the product. 

I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
reviewer2100369 - PeerSpot reviewer
Sr. MTS Software Engineer at a financial services firm with 10,001+ employees
Real User
A good traditional monitoring platform with good reliability but needs to be recognized more locally
Pros and Cons
  • "The solution is stable and reliable."
  • "The cardinality is pretty low."

What is our primary use case?

We primarily use the solution for monitoring. 

What is most valuable?

The solution has a lot of features. 

It's a good traditional monitoring platform. 

The solution is stable and reliable. 

It can scale well. 

What needs improvement?

It's a little bit technical. 

The cardinality is pretty low. They need to expand their reach.

For how long have I used the solution?

I've been using the solution for three or four years. 

What do I think about the stability of the solution?

The stability is good. I'd rate it eight out of ten. There are no bugs or glitches, and it doesn't crash or freeze. 

What do I think about the scalability of the solution?

The scalability of the solution is pretty good. I'd rate the ability to expand at an eight out of ten. 

I'm not sure how many people are using the solution in our company. 

How are customer service and support?

Technical support has not been an area of the solution I've dealt with. 

Which solution did I use previously and why did I switch?

We previously used open-source solutions previously and found SignalFx to be better. 

How was the initial setup?

I wasn't directly involved in the deployment of the solution. 

What was our ROI?

I have not looked into the ROI. I can't say if we have seen ROI or not. 

What's my experience with pricing, setup cost, and licensing?

I haven't dealt with the pricing and licensing aspects of the solution. 

What other advice do I have?

I don't know which version of the solution I'm using. 

I'd rate the solution seven out of ten overall. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
CEO at Aby3 secure system
Real User
Top 20
Beneficial for our IT infrastructure and end-to-end visibility
Pros and Cons
  • "It has been beneficial for our IT infrastructure."
  • "The security could be better."

How has it helped my organization?

Splunk Infrastructure Monitoring provides end-to-end visibility into our cloud-native environments. It is very important for us.

Splunk Infrastructure Monitoring has helped reduce our mean time to resolve.

What is most valuable?

It is digitalized. It has been beneficial for our IT infrastructure.

What needs improvement?

The security could be better.

For how long have I used the solution?

I have been using Splunk Infrastructure Monitoring for 11 years.

How are customer service and support?

I usually use the community site. I find that helpful.

Which solution did I use previously and why did I switch?

We did not use any other solution previously.

What about the implementation team?

We set it up ourselves.

What other advice do I have?

I would rate Splunk Infrastructure Monitoring a ten out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Download our free Splunk Observability Cloud Report and get advice and tips from experienced pros sharing their opinions.
Updated: June 2025
Buyer's Guide
Download our free Splunk Observability Cloud Report and get advice and tips from experienced pros sharing their opinions.