

Splunk Cloud Platform and Splunk Enterprise Platform compete in the enterprise IT solutions category. Splunk Cloud Platform seems to have the upper hand with its cloud-native advantages and operational efficiency.
Features: Splunk Cloud Platform offers rapid deployment, enhanced flexibility in log handling, and robust enterprise security features. Its indexing and business controls provide significant value, and it alleviates infrastructure management needs by eliminating on-premises setups. Splunk Enterprise Platform's customizable solutions excel in IT monitoring, security, and observability, providing superior analytics and detailed local support for extensive on-premises requirements.
Ease of Deployment and Customer Service: Splunk Cloud Platform offers straightforward deployment in public and hybrid cloud environments but faces challenges with support responsiveness, despite some customer service improvements. In contrast, Splunk Enterprise Platform requires more manual setup for on-premises environments yet benefits from established technical support, although the quality varies, offering detailed consultation for enterprise users.
Pricing and ROI: Splunk Cloud Platform is perceived as expensive due to ingest-based licensing costs, impacting data integration. However, users find value in its advanced features and business resilience, achieving ROI from improved metric tracking and environmental monitoring. Splunk Enterprise Platform also incurs high costs but offers slightly more flexible pricing options. Its robust features correlate with high costs, suitable for larger enterprises, with users reporting ROI due to visibility and efficient data management.
The incident response time to any failure has increased more than 50 percent.
It is definitely not a beginner-friendly tool, but it is definitely the best tool that is available in the market for insurance-related products.
We saved a lot of money because we did not recruit any new employees.
Splunk Enterprise Platform saves approximately 20 to 30 percent of my time without having to perform different actions separately.
I have seen a return on investment from using Splunk Enterprise Platform, illustrated by tracking how the daily data volume has been indexed, the estimated cost, the monthly actual report, and the annual report.
I feel that Splunk's documentation is highly maintained, regular updates seem to happen, and I don't have any suggestions for improvement as it is currently at its best.
However, as I mentioned, sometimes they might not have proper knowledge or sometimes they are not sufficiently technical.
The CSMs and account managers in the channel team are great, providing assistance not just with selling the product but also for implementation, deployment, and aftercare.
We contacted support and they were able to provide us with the solution which is currently working fine.
It is crucial for anyone looking to deploy Splunk Enterprise Platform to first certify for their courses, such as the Splunk Administrator and the Power User Administrator certifications, which address all troubleshooting queries.
When we encounter issues, we utilize the Splunk community, which I believe showcases a big advantage of Splunk due to its strong community support.
If we have compliance requirements to just store logs, then Splunk Cloud Platform is not the right platform.
If you purchase something initially and later have increased requirements, they can scale up and scale down your environment.
Splunk Cloud Platform's scalability works well, especially for smaller businesses, but can present issues for larger enterprises facing stricter regulations and greater integration requirements.
Splunk allows for scalability, as you can start with an all-in-one instance and, as your deployment grows, split it into distributed deployment, such as separating the search head and indexers.
It is highly stable and scalable for us.
Some products can automatically scale, but Splunk requires manual configuration changes to achieve scale, which is slightly outdated compared to modern technologies.
Its stability is commendable, enabling easy visibility into logs, effective data ingestion, and successful operations with diverse integrations and third-party platforms.
I rate Splunk Cloud Platform a ten out of ten for stability and reliability.
Splunk Cloud Platform is stable and reliable with no issues.
Our L1 and L2 teams get real-time alerts and query the SPL effectively without delays that other SIEM solutions may impose.
It is highly stable and scalable for us.
It requires managing configuration files and processing operations manually, limiting its auto-scaling capabilities.
I know there are tutorials on the website, but I feel if they rolled out more free courses on such things that provide a link to a free course for beginner training, I feel people would be interested in it.
In terms of enhancement for Splunk Cloud Platform, I would say if we could create add-ons or if we get the capability to build add-ons directly through cloud, not talking about the add-on builder framework, but something editor-like where we will directly edit our conf files from any specific app or TA provided by Splunk Cloud Platform itself.
Splunk Cloud Platform needs improvement in its security offerings, specifically in cybersecurity.
The deep learning capabilities need enhancing, especially on Splunk Cloud, where customers find it challenging to use deep learning tools without setting up backend computing resources.
I could also build some pre-indexed summaries so that Splunk Enterprise Platform can search much faster than raw logs.
From an architectural standpoint, data onboarding, normalization, performance, and scalability improvements would be beneficial, particularly in optimizing search speed and query execution to handle larger searches efficiently.
Once you are in the partnership with Splunk Cloud Platform and with Cisco, you can have good discounts, you can make the deal and discuss, and they are willing to help you as a partner in finding the solution and finding your target.
When it comes to the cost of Splunk Cloud Platform, I would rate it a five from one to ten, with one being cheap and ten being expensive.
Splunk Cloud is considered too expensive, with its two product offerings both being costly.
The pricing model is based on ingesting data sizes, not user count, and includes a free tier for up to 500 MB of daily data.
We ingest terabytes of data, so I can say Splunk Enterprise Platform is somewhat costly.
Splunk Enterprise Platform is expensive.
The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs.
The search capability utilizes the same compute assigned, and compared to on-premises, it is very efficient and fast because on-premises we had fixed compute assigned with limits set for searching per role or application.
The platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks.
Splunk Enterprise Platform also has its own Phantom as a SOAR, which is much more refined and gives more accurate results than any other AI integrated SIM tool.
The anomaly detection is very good for live production data. Whenever an anomaly comes in an application, it automatically resolves and just gives the notification.
Splunk Enterprise Platform will create an incident and detect this as a credential compromise because we have a successful login from another location.
| Product | Mindshare (%) |
|---|---|
| Splunk Cloud Platform | 1.0% |
| Splunk Enterprise Platform | 1.5% |
| Other | 97.5% |

| Company Size | Count |
|---|---|
| Small Business | 31 |
| Midsize Enterprise | 14 |
| Large Enterprise | 55 |
| Company Size | Count |
|---|---|
| Small Business | 27 |
| Midsize Enterprise | 4 |
| Large Enterprise | 27 |
Splunk Cloud Platform enhances operational efficiency with streamlined log management and real-time data analysis, offering customizable dashboards, seamless system integration, and a user-friendly interface that simplifies infrastructure management.
Splunk Cloud Platform stands out for its robust indexing and powerful search capabilities, delivering end-to-end visibility across environments. AI-driven security measures enhance cybersecurity intelligence, while its flexible log management reduces resolution times. The platform integrates effortlessly with diverse systems, supporting centralized log management, security monitoring, and application performance analysis. Users leverage its comprehensive analytics for troubleshooting, alerting, and visualization, optimizing costs and ensuring compliance with unified data sources.
What are the key features of Splunk Cloud Platform?In many industries, Splunk Cloud Platform is implemented primarily for unified log management, cybersecurity initiatives, and application performance monitoring. Businesses utilize it to streamline IT operations, integrate data sources, and leverage insights for troubleshooting and strategic decision-making, ensuring compliance and optimized resource use.
Splunk Enterprise Platform provides high flexibility and integration, featuring strong analytics, data ingestion, and real-time monitoring, catering to diverse industry needs and enhancing threat detection and data analysis.
Splunk Enterprise Platform is renowned for its powerful capabilities in log management, threat detection, and data visualization. It supports infrastructure monitoring and anomaly detection, crucial for Security Incident and Event Management operations. With its scalable architecture, users can efficiently manage data ingestion and create personalized dashboards, utilizing Splunk Processing Language for comprehensive querying and system performance assessment. This platform offers enhanced threat detection through its robust anomaly detection features and real-time monitoring capabilities, with machine learning enabling predictive analytics.
What features make Splunk Enterprise Platform stand out?In industries like finance, healthcare, and technology, Splunk Enterprise Platform is implemented to monitor infrastructure, manage logs, and enhance security protocols. Companies utilize its predictive analytics for strategic planning and operational efficiency, focusing on integration with AWS, EDR, and firewalls for comprehensive data visualization and threat management.
We monitor all Data Visualization reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.