Try our new research platform with insights from 80,000+ expert users

Devo vs Palantir Foundry comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 1, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Devo
Ranking in IT Operations Analytics
9th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
23
Ranking in other categories
Log Management (28th), Security Information and Event Management (SIEM) (25th), AIOps (21st)
Palantir Foundry
Ranking in IT Operations Analytics
10th
Average Rating
7.8
Reviews Sentiment
7.0
Number of Reviews
18
Ranking in other categories
Data Integration (11th), Supply Chain Analytics (1st), Cloud Data Integration (11th), Data Migration Appliances (3rd), Data Management Platforms (DMP) (1st), Data and Analytics Service Providers (1st)
 

Mindshare comparison

As of March 2026, in the IT Operations Analytics category, the mindshare of Devo is 4.1%, down from 5.3% compared to the previous year. The mindshare of Palantir Foundry is 4.2%, up from 2.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Operations Analytics Mindshare Distribution
ProductMindshare (%)
Devo4.1%
Palantir Foundry4.2%
Other91.7%
IT Operations Analytics
 

Featured Reviews

FR
Strategic Account Executive at a computer software company with 51-200 employees
Has improved investigative workflows with interactive dashboards and simplified data correlation
The data analytics cloud component focuses on real-time analytics, which is very impressive. The SIEM collects and correlates logs data from different sources and can integrate with ServiceNow, hardware asset management, and software asset management. The security orchestration, automation, and response (SOAR) is another valuable feature. The security data platform serves as the foundation of Devo. Regarding advanced query capabilities, Devo offers several models including query logs, visual query builder, language integrated query, and SQL, with SQL being the most frequently used querying data capability. The single pane of glass that Devo offers is the SOC. The tools in Devo's active ports are for investigating, not just viewing data. They are more interactive than other market solutions. The drill-down reports capabilities allow analysts to click on any element in a widget. When they see a spike in a line chart for a failed login, which could be a true or false attempt, they can click that spike, and a table widget on the same active board instantly populates with raw logs of data for those specific failed logins. This is particularly important for enterprise companies with numerous endpoints and users. The dynamic filtering of inputs significantly reduces the time cybersecurity analysts spend trying to figure out failed logins and identifying false positives.
BA
Associate Vice President at a insurance company with 10,001+ employees
Unified data workflows have empowered collaborative analytics and streamlined AI development
Regarding points for improvement for Palantir Foundry, I see that they are improving day by day. In the last one to two years, I have seen many improvements compared to the two years that I have worked on Palantir Foundry. There are many things that come up, but a few things are not intuitive enough. Now that we are in this AI phase, Palantir Foundry has created some wrappers around the models, allowing us to create using a no-code application, chatbots, and LLM functions. The problem is that interaction with outside applications can be difficult with the current setup that Palantir Foundry has. There are ways to do that, but it is not that intuitive, which is what I feel.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Devo saves us hours in every investigation."
"More than anything, we have seen ROI in the amount of time saved during investigations."
"It centralizes security management within a business, functioning as a core system for a SOC."
"Overall, Devo is awesome, but it's got some room to grow."
"The ROI has been great as we could launch it in a few months instead of a couple of years, and when you put all the costs together, it is less to have done it than with the open source approach."
"In traditional BI solutions, you need to wait a lot of time to have the ability to create visualizations with the data and to do searches. With this kind of platform, you have that information in real-time."
"Overall, I have no issues with it and my guys love it."
"It is a joy to partner and be able to work with this kind of system."
"Live video sessions enhance the available documentation and allow you to ask questions directly."
"Foundry's data visualization is fantastic."
"The predictive analytics capability within Palantir Foundry impacts financial forecasting strategies through its AIP functionality, which includes numerous pre-built models, LLMs, and data science application libraries."
"The solution provides an end-to-end integrated tech stack that takes care of all utility/infrastructure topics for you."
"The ease of use is my favorite feature. We're able to build different models and projects or combine different projects to build one use case."
"I rate Palantir Foundry a ten out of ten."
"Based on my huge experience with Palantir Foundry, I find that starting from the data connection to the end user application, there is a tool for everyone."
"The data lineage is great."
 

Cons

"Technical support needs to be more direct. For example, when we submit a ticket, the support team will delegate a task to the operations team, for example, or various other teams."
"There's room for improvement within the GUI. There is also some room for improvement within the native parsers they support. But I can say that about pretty much any solution in this space."
"From our experience, the Devo agent needs some work. They built it on top of OS Query's open-source framework, and it seems like it wasn't tuned properly to handle a large volume of Windows event logs."
"The Activeboards feature is not as mature regarding the look and feel. Its functionality is mature, but the look and feel is not there. For example, if you have some data sets and are trying to get some graphics, you cannot change anything. There's just one format for the graphics. You cannot change the size of the font, the font itself, etc."
"Some basic reporting mechanisms have room for improvement."
"The overall performance of extraction could be a lot faster, but that's a common problem in this space in general."
"Some of the documentation could be improved a little bit. A lot of times it doesn't go as deep into some of the critical issues you might run into. They've been really good to shore us up with support, but some of the documentation could be a little bit better."
"We only use the core functionality and one of the reasons for this is that their security operation center needs improvement."
"The major hindrance with Palantir Foundry is that being a very closed product, the cost optimization and costing are not exposed to the end users."
"There are some issues with scalability because when we are using a really large dataset, the system is rather slow."
"There is not a wide user base for the solution's online documentation so it is sometimes difficult to find answers."
"The frontend capabilities of Palantir Foundry could be improved."
"Difficult to receive data from external sources."
"The startup pricing is high, causing concern despite being cost-effective in terms of total cost of ownership."
"The data lineage was challenging. It's hard to track data from the sources as it moves through stages. Informatica EDC can easily capture and report it because it talks to the metadata. This is generated across those various staging points."
"If you want to create new models on specific data sets, computing that is quite costly."
 

Pricing and Cost Advice

"Devo is a hosted or subscription-based solution, whereas before, we purchased QRadar, so we owned it and just had to pay a maintenance fee. We've encountered this with some other products, too, where we went over to subscription-based. Our thought process is that with subscription based, the provider hosts and maintains the tool, and it's offsite. That comes with some additional fees, but we were able to convince our upper management it was worth the price. We used to pay under 10k a year for maintenance, and now we're paying ten times that. It was a relatively tough sell to our management, but I wonder if we have a choice anymore; this is where the market is."
"Pricing is based on the number of gigabytes of ingestion by volume, and it's on a 30-day average. If you go over one day, that's not a big deal as long as the average is what you expected it to be."
"Our licensing fees are billed annually and per terabyte."
"I rate the pricing a four on a scale of one to ten, where one is cheap, and ten is expensive."
"We have an OEM agreement with Devo. It is very similar to the standard licensing agreement because we are charged in the same way as any other customer, e.g., we use the backroom."
"The way Devo prices things is based on the amount of data, and I wish the tiers had more granularity. Maybe at this point they do, but when we first negotiated with them, there were only three or four tiers."
"It's a per gigabyte cost for ingestion of data. For every gigabyte that you ingest, it's whatever you negotiated your price for. Compared to other contracts that we've had for cloud providers, it's significantly less."
"It's very competitive. That was also a primary draw for us. Some of the licensing models with solutions like Splunk and Sentinel were attractive upfront, but there were so many micro-charges and services we would've had to add on to make them what we wanted. We had to include things like SOAR and extended capabilities, whereas all those capabilities are completely included with the Devo platform. I haven't seen any additional fee."
"The solution’s pricing is high."
"Palantir Foundry is an expensive solution."
"It's expensive."
"Palantir Foundry has different pricing models that can be negotiated."
report
Use our free recommendation engine to learn which IT Operations Analytics solutions are best for your needs.
885,264 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
9%
Manufacturing Company
6%
Retailer
6%
Manufacturing Company
14%
Financial Services Firm
10%
Government
8%
University
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise11
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise5
Large Enterprise9
 

Questions from the Community

What is your experience regarding pricing and costs for Devo?
Compared to Splunk or SentinelOne, it is really expensive. I rate the product’s pricing a nine out of ten, where one is cheap and ten is expensive.
What needs improvement with Devo?
The single pane of glass that Devo offers could be improved. The tools in Devo's active ports need enhancement in their investigative capabilities. The drill-down reports capabilities, while useful...
What is your primary use case for Devo?
During my time at MetaBase Q and as a partner integrator of ServiceNow, I had the chance to understand and be part of projects integrating SOCs, NOCs, and Security Operation Centers with Devo. Most...
What needs improvement with Palantir Foundry?
Apart from the pricing and offline availability issues, improvements are needed in Palantir Foundry's costing factor. Cost-wise, it is not open for everybody, and they are not exposing anything out...
What is your primary use case for Palantir Foundry?
One of the leading European manufacturing plants uses Palantir Foundry for manufacturing interior parts of various car brands such as Honda, Hyundai, Ford, Mercedes-Benz, and BMW. This involves hig...
What advice do you have for others considering Palantir Foundry?
Palantir Foundry is an excellent product for data engineering. On a scale of one to 10, I would rate Palantir Foundry a 9.
 

Overview

 

Sample Customers

United States Air Force, Rubrik, SentinelOne, Critical Start, NHL, Panda Security, Telefonica, CaixaBank, OpenText, IGT, OneMain Financial, SurveyMonkey, FanDuel, H&R Block, Ulta Beauty, Manulife, Moneylion, Chime Bank, Magna International, American Express Global Business Travel
Merck KGaA, Airbus, Ferrari,United States Intelligence Community, United States Department of Defense
Find out what your peers are saying about Devo vs. Palantir Foundry and other solutions. Updated: March 2026.
885,264 professionals have used our research since 2012.