No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Cloud Platform vs Sumo Logic Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.1
Splunk Cloud Platform boosts operational visibility, efficiency, and ROI through enhanced integration, dashboard access, and reduced manual tasks.
Sentiment score
5.8
Sumo Logic Security enhances efficiency by reducing downtime and workload, leading to overall satisfaction among users despite varied investment evaluations.
The overall cost saving from tool consolidation and automation delivered measurable return on investment within the first year.
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
It is definitely not a beginner-friendly tool, but it is definitely the best tool that is available in the market for insurance-related products.
Data engineer at Cognizant
Splunk Cloud Platform has impacted operational costs; it's a bit expensive, but it provides value for money.
Business General Manager at Mutex Systems
We have saved 64 hours of our time overall.
Security Engineer at a tech vendor with 11-50 employees
The return on investment I have seen with Sumo Logic Security in the past year and a half is tough to quantify, but I would estimate it has hit the milestones we set internally for return on investment.
CISO at Mambu
 

Customer Service

Sentiment score
6.0
Splunk Cloud's support varies, with praised resources but inconsistent response times and quality depending on account status.
Sentiment score
7.0
Sumo Logic Security is praised for efficient customer service and effective technical support, though regional response times may vary.
I feel that Splunk's documentation is highly maintained, regular updates seem to happen, and I don't have any suggestions for improvement as it is currently at its best.
Soc Analyst at Payatu
Support teams understand cloud and SOC issues and provide actionable guidelines quickly.
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
Sometimes, the support team may not be fully knowledgeable about the challenge you face, but through their internal escalation structure, they manage to find viable solutions sooner or later or provide updates on when issues will be fixed.
Splunk Certified Architect at Data Elicit Solutions Pvt. Ltd.
They have a response time of forty-eight hours, which is not instant support.
SOC Analyst at a computer software company with 1,001-5,000 employees
In general, they usually provide continuous support post-implementation, being in touch and trying to help, which makes their after-sale process better than Splunk.
CSO at Altera
Sumo Logic Security has really good customer support.
CISO at Mambu
 

Scalability Issues

Sentiment score
6.7
Splunk Cloud Platform offers scalable, efficient expansion for large data, with ease of integration despite some cost and licensing concerns.
Sentiment score
7.6
Sumo Logic Security is adaptable, scales with business growth, excels in cloud environments, and consistently receives high flexibility ratings.
I think it's scalable due to the ease of integrating and deploying multiple indexers for data processing.
Soc Analyst at Payatu
Splunk Cloud Platform is scalable for multi-tenant environments, handling terabytes of logs daily across global customers without performance impact.
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
Regarding the scalability of Splunk Cloud Platform, I would say it is scalable, but maybe the pricing may affect the scalability.
IT Security Operations Manager at a retailer with 5,001-10,000 employees
Sumo Logic Security scales up automatically because it is a cloud-native SIEM, and I do not need to worry about hardware clusters or capacity planning.
Security Engineer at a tech vendor with 11-50 employees
The tool has high scalability because everything is based in the cloud.
Deputy Country Manager at PT Securite Asia Indonesia (ABP Securite)
I did not face any significant issues with Sumo Logic Security, but the pricing may be a concern as they try to upsell and raise the prices very quickly.
CSO at Altera
 

Stability Issues

Sentiment score
7.8
Splunk Cloud Platform is highly reliable with quick issue resolution, despite minor outages mostly due to external factors.
Sentiment score
8.0
Sumo Logic Security is highly reliable, efficiently handling large data with minimal performance issues and rare support needs.
I rate Splunk Cloud Platform a ten out of ten for stability and reliability.
Soc Analyst at Payatu
Splunk Cloud Platform was stable, and I did not see any performance issues or downtime.
IT Security Operations Manager at a retailer with 5,001-10,000 employees
We face occasional downtime issues where when we try to scale up, we face a considerable amount of challenges.
Data engineer at Cognizant
If there are many records, the system may stop or the UI may become unresponsive.
SOC Analyst at a computer software company with 1,001-5,000 employees
The query language is pretty straightforward and easy, and it is very powerful for building different searches and dashboards that will serve for later exploration of the same interests I have.
CSO at Altera
It operates very well as a cloud-native SaaS platform with high availability, and there is no downtime that I have experienced.
Security Engineer at a tech vendor with 11-50 employees
 

Room For Improvement

Users want better third-party integration, intuitive UI, improved support, simplified alerts, optimized performance, and lower pricing for Splunk Cloud.
Users urge improvements in interface usability, automation, integration, support, AI capabilities, pricing, and visualization for Sumo Logic Security.
I know there are tutorials on the website, but I feel if they rolled out more free courses on such things that provide a link to a free course for beginner training, I feel people would be interested in it.
Data Security Intern at a manufacturing company with 10,001+ employees
In terms of enhancement for Splunk Cloud Platform, I would say if we could create add-ons or if we get the capability to build add-ons directly through cloud, not talking about the add-on builder framework, but something editor-like where we will directly edit our conf files from any specific app or TA provided by Splunk Cloud Platform itself.
Splunk Engineer at Data Elicit Solutions Pvt. Ltd.
Splunk Cloud Platform needs improvement in its security offerings, specifically in cybersecurity.
Sr Manager at Continued
This can lead to alerts that are collections of disjointed signals that sometimes make no sense and lack real context; this simplistic approach makes it hard to find coherent stories during investigations.
CSO at Altera
I would also appreciate the AWS automation integrations to be more secure because currently, they are using access keys, which involves a user rather than roles, which is the security best practice recommended by AWS.
Senior Security Analyst at City Electric Supply Company
The correlation rules and log mapping are not as mature compared to other SIM tools like Splunk.
SOC Analyst at a computer software company with 1,001-5,000 employees
 

Setup Cost

Splunk Cloud Platform's pricing is high but offers significant value, though cost predictability and transparency remain concerns.
Sumo Logic Security offers mid-range pricing, balancing cost and functionality, with convenience through AWS Marketplace but increasing costs with usage.
Once you are in the partnership with Splunk Cloud Platform and with Cisco, you can have good discounts, you can make the deal and discuss, and they are willing to help you as a partner in finding the solution and finding your target.
Innovation Service Manager at a computer software company with 51-200 employees
Splunk Cloud is considered too expensive, with its two product offerings both being costly.
Sr Manager at Continued
If I were to rate the price for the product from 1 to 10, I would rate it nine.
Business General Manager at Mutex Systems
This makes it more cost-effective because other solutions often include a third element in their pricing.
Deputy Country Manager at PT Securite Asia Indonesia (ABP Securite)
From one to ten, where one is cheap and ten is expensive, I would put Sumo Logic Security at a seven.
CISO at Mambu
If you go to the well-known vendors such as Azure Sentinel or other tools like Splunk, you are going to find them costly since they are well-known and they have much more integration compared to Sumo Logic Security.
Security Analyst at a tech vendor with 10,001+ employees
 

Valuable Features

Splunk Cloud Platform offers enterprise-grade capabilities enhancing operational insights with easy deployment, cost-saving management, and robust security features.
Sumo Logic Security offers comprehensive log aggregation, AI analytics, and scalability, enhancing detection, response, and operational efficiency.
The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs.
Sr Manager at Continued
The search capability utilizes the same compute assigned, and compared to on-premises, it is very efficient and fast because on-premises we had fixed compute assigned with limits set for searching per role or application.
Senior Software Engineer at WorldPay US
The platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks.
Chief Executive Officer at ENAD
The features I find most useful in Sumo Logic Security are the ease of implementation and connectors; they have a very easy connection and many connectors to important systems, making it very easy to implement and fast to start running in production.
CSO at Altera
They are able to save time on fewer alerts because we are able to perform tuning on the logs to be able to only get relevant or security relevant incidents.
Senior Security Analyst at City Electric Supply Company
My SOC analysts were crushed under Splunk, but Sumo has actually eased the workload and made it tolerable for three people.
CISO at Mambu
 

Categories and Ranking

Splunk Cloud Platform
Average Rating
8.2
Reviews Sentiment
5.9
Number of Reviews
68
Ranking in other categories
Data Visualization (3rd), IT Alerting and Incident Management (2nd)
Sumo Logic Security
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
25
Ranking in other categories
Log Management (21st), Security Information and Event Management (SIEM) (18th), Security Orchestration Automation and Response (SOAR) (13th)
 

Featured Reviews

Hemanthreddy Vakiti - PeerSpot reviewer
Data engineer at Cognizant
Centralized logs have transformed payment issue troubleshooting and now streamline incident resolution
Splunk Cloud Platform holds only three months' worth of data. If you try to search for more than three months or prior to three months, it wouldn't store the values because the data stores a large number of data. I believe that's the limit for us. I believe having flexible memory would ease us because whenever we face an incident, if we want to look for this occurrence or root cause, if it is prior to three months, we wouldn't have proper logs to check. I wish it would take a little less time and not search through unnecessary things. Of course, querying depends on the developer's knowledge, but storage is also an issue because I feel memory is not flexible enough. If we try to increase our memory, it will charge us a considerable amount of money.
MR
Senior Security Analyst at City Electric Supply Company
Security insights have enabled faster incident response and streamlined cross-team collaboration
To improve Sumo Logic Security, I would appreciate the tool being easier to use from a search perspective. For example, we have a few teams that want to use the tool itself, but they are not as savvy when it comes to creating searches from the core platform. I understand that Mobot has come out and is in the works, and it really does assist non-savvy users when it comes to querying the platform. As far as that is concerned, I wish that could be improved a bit more, but I do know that that is in the works. I would add that I wish for improved documentation. For example, we are using Sumo Playbooks and automation integrations along with that, but I have found that there has been a lack of documentation, very little to none at all when it comes to that. With regards to automation integrations as well, there are very few details included in them. I would also appreciate the AWS automation integrations to be more secure because currently, they are using access keys, which involves a user rather than roles, which is the security best practice recommended by AWS. I chose eight out of ten because to make it a nine or ten, I would lean heavily on the documentation. A lot of the times when we get around to configuring things such as playbooks or trying to understand playbooks, what I found was that documentation sometimes is not up to date or documentation is lacking. There are instances also where some security best practices are not being followed. So, if we are able to set up an integration that is not only secure, following security best practices, and has complete documentation, I believe it would alleviate the issue of having to go back and forth with support to check the documentation and things of that nature. My impression of the built-in threat intelligence feature in Sumo Logic Security is that it is comprehensive, but I would say that it could do a little bit better. For example, we have the TAXI feeds, which is STIX and TAXI integrated into the core platform, but the issue I am running into is that I am able to use that feed into a CSE alert; however, I am not able to see the contents of that feed. If I integrate CISA, which we do have integrated, I cannot see what IOCs are in that feed in the core platform, and I hope that is the case because, in order for us to better tune our alerts, we need to be able to see what is in the contents of that threat intelligence feed.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
885,728 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Construction Company
10%
Financial Services Firm
10%
Manufacturing Company
9%
Manufacturing Company
11%
Outsourcing Company
8%
Computer Software Company
8%
Financial Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise10
Large Enterprise50
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise5
Large Enterprise14
 

Questions from the Community

What do you like most about Splunk Cloud Platform?
Splunk has sped up our response and reduced the time we spend manually monitoring any logs for ticketing tools or servers. It saves us around two hours daily.
What needs improvement with Splunk Cloud Platform?
I don't see any new requirements in terms of improvements for Splunk Cloud Platform at this time. Splunk's dashboarding, reporting, and visualizations are evolving at a larger scale with the new Sp...
What do you like most about Sumo Logic Security?
Sumo Logic Security is a good solution for searching the logs and identifying the issues.
What is your experience regarding pricing and costs for Sumo Logic Security?
I would say that the pricing for Sumo Logic Security is in the medium part of the market. If you go to the well-known vendors such as Azure Sentinel or other tools like Splunk, you are going to fin...
What needs improvement with Sumo Logic Security?
I would say there are a few more things that Sumo Logic Security can improve on. It is not the tool; it is a technical part. From the app point of view, I would say when we need to include a few la...
 

Overview

 

Sample Customers

Mindtouch
Information Not Available
Find out what your peers are saying about Splunk, Wazuh, IBM and others in Security Information and Event Management (SIEM). Updated: March 2026.
885,728 professionals have used our research since 2012.