Splunk Observability Cloud and Microsoft Defender for Cloud are leading platforms in the monitoring and security categories, respectively. Splunk is more favorable for its customizable dashboards and integration versatility, while Microsoft Defender for Cloud shines with its comprehensive security features and Azure ecosystem support.
Features: Splunk Observability Cloud stands out with customizable dashboards that enhance monitoring processes, rapid log searching capabilities, and seamless integration with various data sources for detailed analysis. Microsoft Defender for Cloud provides comprehensive security compliance, multi-cloud support, and robust threat detection, excelling in its integration with the Microsoft ecosystem.
Room for Improvement: Splunk Observability Cloud's areas of improvement include its high cost, complexity, better integrations, and more intuitive documentation. Users seek enhanced interfaces and simplified automation. In contrast, Microsoft Defender for Cloud could improve integration with non-Microsoft platforms, dashboard clarity, and user-friendliness. Despite its robust features, customizations and pricing complexities pose challenges.
Ease of Deployment and Customer Service: Splunk Observability Cloud offers on-premises and cloud deployments, which fits various infrastructure needs but poses complexity in deployment. Customer service is satisfactory but needs quicker response times. Microsoft Defender for Cloud facilitates deployment primarily in cloud-based environments, simplifying adoption for Azure users, supported by responsive technical support, though pricing clarity and customer engagement need enhancement.
Pricing and ROI: Splunk is recognized for its high cost but competitive features, especially suited for enterprises needing exhaustive data analysis, providing a positive ROI through powerful capabilities. Microsoft Defender for Cloud offers cost-effective security for Azure-integrated organizations, with additional features affecting costs, yet pricing is considered fair with satisfactory ROI through streamlined security operations and proactive threat management.
Defender proactively indexes and analyzes documents, identifying potential threats even when inactive, enhancing preventative security.
Identifying potential vulnerabilities has helped us avoid costly data losses.
The biggest return on investment is the rapid improvement of security posture.
Using Splunk has saved my organization about 30% of our budget compared to using multiple different monitoring products.
Anyone working in front-end management should recognize the market price to see the true value of end-user monitoring.
Since security is critical, we prefer a quicker response time.
The support team was very responsive to queries.
They understand their product, but much like us, they struggle with the finer details, especially with new features.
They often require multiple questions, with five or six emails to get a response.
Support from Splunk is not very helpful because Splunk doesn't have a dedicated APM; they only have one APM engineer in Korea.
They did respond to us, but they did not explicitly inform us about the feature's absence.
We are using infrastructure as a code, so we do not have any scalability issues with Microsoft Defender for Cloud implementation because our cloud automatically does it.
It has multiple licenses and features, covering infrastructures from a hundred to five hundred virtual machines, without any issues.
Defender won't replace our endpoint XDR, but it will likely adapt and support any growth in the Microsoft Cloud space.
We've used the solution across more than 250 people, including engineers.
I would rate its scalability a nine out of ten.
The issue is mainly about pricing because if they want to monitor more, it costs money.
Defender's stability has been flawless for us.
Microsoft Defender for Cloud is very stable.
Microsoft sometimes changes settings or configurations without transparency.
I would rate its stability a nine out of ten.
We rarely have problems accessing the dashboard or the page.
Unlike NetScout or regular agents for APM, RUM has many problems during the POC phase because customer environments vary widely.
Microsoft, in general, could significantly improve its communication and support.
It would be beneficial to streamline recommendations to avoid unnecessary alerts and to refine the severity of alerts based on specific environments or environmental attributes.
The artificial intelligence features could be expanded to allow the system to autonomously manage security issues without needing intervention from admins.
There is room for improvement in the alerting system, which is complicated and has less documentation available.
Improvements in dashboard configuration, customization, and artificial intelligence functionalities are desired.
Customers sometimes need to create specific dashboards, particularly for applicative metrics such as Java and process terms.
Every time we consider expanding usage, we carefully evaluate the necessity due to cost concerns.
We appreciate the licensing approach based on employee count rather than a big enterprise license.
Microsoft Defender for Cloud is pricey, especially for Kubernetes clusters.
Splunk is a bit expensive since it charges based on the indexing rate of data.
It appears to be expensive compared to competitors.
Splunk is a little expensive, however, it is in line with the current market pricing.
The most valuable feature for me is the variety of APIs available.
This feature significantly aids in threat detection and enhances the user experience by streamlining security management.
The most valuable feature is the recommendations provided on how to improve security.
Splunk provides advanced notifications of roadblocks in the application, which helps us to improve and avoid impacts during high-volume days.
For troubleshooting, we can detect problems in seconds, which is particularly helpful for digital teams.
It offers unified visibility for logs, metrics, and traces.
Microsoft Defender for Cloud is a comprehensive security solution that provides advanced threat protection for cloud workloads. It offers real-time visibility into the security posture of cloud environments, enabling organizations to quickly identify and respond to potential threats. With its advanced machine learning capabilities, Microsoft Defender for Cloud can detect and block sophisticated attacks, including zero-day exploits and fileless malware.
The solution also provides automated remediation capabilities, allowing security teams to quickly and easily respond to security incidents. With Microsoft Defender for Cloud, organizations can ensure the security and compliance of their cloud workloads, while reducing the burden on their security teams.
Splunk Observability Cloud offers sophisticated log searching, data integration, and customizable dashboards. With rapid deployment and ease of use, this cloud service enhances monitoring capabilities across IT infrastructures for comprehensive end-to-end visibility.
Focused on enhancing performance management and security, Splunk Observability Cloud supports environments through its data visualization and analysis tools. Users appreciate its robust application performance monitoring and troubleshooting insights. However, improvements in integrations, interface customization, scalability, and automation are needed. Users find value in its capabilities for infrastructure and network monitoring, as well as log analytics, albeit cost considerations and better documentation are desired. Enhancements in real-time monitoring and network protection are also noted as areas for development.
What are the key features?In industries, Splunk Observability Cloud is implemented for security management by analyzing logs from detection systems, offering real-time alerts and troubleshooting for cloud-native applications. It is leveraged for machine data analysis, improving infrastructure visibility and supporting network and application performance management efforts.
We monitor all Container Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.