

Find out in this report how the two IT Alerting and Incident Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
We did not have a good experience with the Devo toolset, leading to efficiency gains from SOC tier one all the way to tier three in searches, reducing search time and fewer errors compared to Devo, resulting in great optimization.
Overall, our spend is about the same for much better capabilities.
We have observed between five to seven percent of the overall enterprise-wide applications that were flagged for frequent analysis and necessary cleanup, which saved my SVCs and licenses, ultimately translating to significant cost savings for my organization.
Rootly's customer support is great; every time we have had to use it, they have gotten in touch with us really quickly and connected us to the relevant teams to fix our problems or potentially suggest a feature for the future.
The customer support is quite good; I can write to Rootly specialists in Slack, and that is very useful.
I feel that Splunk's documentation is highly maintained, regular updates seem to happen, and I don't have any suggestions for improvement as it is currently at its best.
However, as I mentioned, sometimes they might not have proper knowledge or sometimes they are not sufficiently technical.
The CSMs and account managers in the channel team are great, providing assistance not just with selling the product but also for implementation, deployment, and aftercare.
If we ever need to add a new alert, we just put it into the code, run the pipeline, and we are done.
Rootly's scalability is great; it goes under the hood and my colleagues and I as users do not think about it generally.
If we have compliance requirements to just store logs, then Splunk Cloud Platform is not the right platform.
If you purchase something initially and later have increased requirements, they can scale up and scale down your environment.
Splunk Cloud Platform's scalability works well, especially for smaller businesses, but can present issues for larger enterprises facing stricter regulations and greater integration requirements.
Its stability is commendable, enabling easy visibility into logs, effective data ingestion, and successful operations with diverse integrations and third-party platforms.
This is usually improved by following best practices such as optimizing SPL queries, using the proper index, and managing data correctly.
I rate Splunk Cloud Platform a ten out of ten for stability and reliability.
We had one incident when we lost alerting generally because Rootly crashed, and we did not like it.
The integration process could be easier, perhaps with the addition of AI to facilitate smoother integrations with other applications, especially since those who manage integrations often need technical knowledge about web services and single sign-on processes, which can be challenging for non-technical users.
Enhancing search functionality to make it easier to locate historical incidents and action items would be beneficial.
I know there are tutorials on the website, but I feel if they rolled out more free courses on such things that provide a link to a free course for beginner training, I feel people would be interested in it.
In terms of enhancement for Splunk Cloud Platform, I would say if we could create add-ons or if we get the capability to build add-ons directly through cloud, not talking about the add-on builder framework, but something editor-like where we will directly edit our conf files from any specific app or TA provided by Splunk Cloud Platform itself.
I would suggest going for Splunk Cloud Platform because AWS, Microsoft Azure, and Google Cloud are very expensive in comparison.
Generally, it is great and the price is great, and that is the reason we chose Rootly.
Rootly scheduled a call with us and was very quick to give us a POC license to trial out the full product.
Once you are in the partnership with Splunk Cloud Platform and with Cisco, you can have good discounts, you can make the deal and discuss, and they are willing to help you as a partner in finding the solution and finding your target.
When it comes to the cost of Splunk Cloud Platform, I would rate it a five from one to ten, with one being cheap and ten being expensive.
If you really need the SIEM solution, then it is very cost-effective for your company.
With the strategic approach of putting everyone in a Slack group to resolve incidents, we have reduced the percentage of incidents created in a month by thirty percent during the first three months of using Rootly.
Rather than manually tweaking schedules to try to hack a way to shadow existing engineers, Rootly gave us a shadow feature which allowed us to say person X, please shadow person Y, using these times and these days, very customizable.
The precise rules and entities help me route alerts very specifically to the exact persons who are in charge and to rotate this person using on-call policies.
The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs.
The search capability utilizes the same compute assigned, and compared to on-premises, it is very efficient and fast because on-premises we had fixed compute assigned with limits set for searching per role or application.
The platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks.
| Product | Mindshare (%) |
|---|---|
| Splunk Cloud Platform | 2.2% |
| Rootly | 2.8% |
| Other | 95.0% |
| Company Size | Count |
|---|---|
| Small Business | 3 |
| Large Enterprise | 4 |
| Company Size | Count |
|---|---|
| Small Business | 37 |
| Midsize Enterprise | 17 |
| Large Enterprise | 80 |
Rootly is an essential tool for effectively addressing and managing incidents within any system or organization. With quick and reliable incident alerts, comprehensive incident management capabilities, and efficient problem-solving features, Rootly helps users to identify, prioritize, and resolve incidents, resulting in improved system reliability and reduced downtime. The solution is highly regarded for its reliability, excellent customer support, and overall value to users.
Splunk Cloud Platform enhances operational efficiency with streamlined log management and real-time data analysis, offering customizable dashboards, seamless system integration, and a user-friendly interface that simplifies infrastructure management.
Splunk Cloud Platform stands out for its robust indexing and powerful search capabilities, delivering end-to-end visibility across environments. AI-driven security measures enhance cybersecurity intelligence, while its flexible log management reduces resolution times. The platform integrates effortlessly with diverse systems, supporting centralized log management, security monitoring, and application performance analysis. Users leverage its comprehensive analytics for troubleshooting, alerting, and visualization, optimizing costs and ensuring compliance with unified data sources.
What are the key features of Splunk Cloud Platform?In many industries, Splunk Cloud Platform is implemented primarily for unified log management, cybersecurity initiatives, and application performance monitoring. Businesses utilize it to streamline IT operations, integrate data sources, and leverage insights for troubleshooting and strategic decision-making, ensuring compliance and optimized resource use.
We monitor all IT Alerting and Incident Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.