Try our new research platform with insights from 80,000+ expert users

Splunk Enterprise Platform vs Splunk ITSI (IT Service Intelligence) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.9
Splunk Enterprise offers improved security, efficiency, and reduced troubleshooting time, boosting ROI and decision-making for organizations.
Sentiment score
8.0
Splunk ITSI quickly delivers ROI by enhancing visibility, reducing costs, and improving performance with centralized data and efficient analytics.
Splunk Enterprise Platform saves approximately 20 to 30 percent of my time without having to perform different actions separately.
 

Customer Service

Sentiment score
6.6
Satisfaction with Splunk Enterprise's support varies; users praise responsiveness but also rely on community resources and mention response delays.
Sentiment score
6.5
Splunk ITSI support is generally good, but experiences vary by company size and issue, with occasional delays reported.
The technical support is excellent, and I would rate it at ten.
 

Scalability Issues

Sentiment score
7.9
Splunk Enterprise Platform is highly scalable, supporting many users efficiently, though some scalability issues arise at high data volumes.
Sentiment score
7.9
Splunk ITSI efficiently scales with clustering and machine learning, handling large data volumes and scoring high in scalability ratings.
Some products can automatically scale, but Splunk requires manual configuration changes to achieve scale, which is slightly outdated compared to modern technologies.
Splunk Enterprise Platform is scalable to some extent, which is acceptable.
Splunk is highly scalable, with the ability to expand efficiently.
 

Stability Issues

Sentiment score
8.3
Splunk Enterprise is highly rated for stability, efficiently handling large data sets with responsive searches and minimal bugs.
Sentiment score
7.9
Splunk ITSI offers high reliability and stability, especially in cloud deployments, with minor issues related to infrastructure and data consistency.
It requires managing configuration files and processing operations manually, limiting its auto-scaling capabilities.
The setup, however, must be done correctly as incorrect deployment can lead to issues.
 

Room For Improvement

Splunk Enterprise Platform requires enhanced integration, usability, automation, affordability, support, and AI capabilities with an easier setup and interface.
Splunk ITSI needs better integration, user interface, predictive analytics, machine learning, real-time alerting, automated response, and user support.
The deep learning capabilities need enhancing, especially on Splunk Cloud, where customers find it challenging to use deep learning tools without setting up backend computing resources.
It is complex for inexperienced cybersecurity engineers and requires experienced personnel to handle it effectively.
I feel this can be improved in terms of performance.
Splunk ITSI could benefit from including more features that other solutions support, such as vulnerability management modules.
 

Setup Cost

Splunk Enterprise is costly but valued for its security, with pricing based on data ingestion and potential discounts.
Splunk ITSI is a costly but comprehensive tool, valued for its observability despite complex licensing and high pricing.
The pricing model is based on ingesting data sizes, not user count, and includes a free tier for up to 500 MB of daily data.
Splunk Enterprise Platform is expensive.
Splunk ITSI tends to be more expensive compared to some open-source solutions.
 

Valuable Features

Splunk Enterprise Platform offers efficient data management, visualization, and integration, excelling in security, IT monitoring, and analytics.
Splunk IT Service Intelligence enhances incident management with agile data handling, advanced analytics, and effective troubleshooting features for quick issue resolution.
It saves time by allowing me to perform actions on a single platform instead of managing them separately.
Splunk's Machine Learning Toolkit is offered without charge, allowing users to incorporate machine learning in their business logic, aiding in procedures like threat hunting.
The features that have proven most effective for real-time data analysis include parts of the platform and its automation capabilities.
Splunk ITSI allows for integration with threat intelligence, enabling my organization to correlate more than two events for generating alerts.
 

Categories and Ranking

Splunk Enterprise Platform
Ranking in IT Alerting and Incident Management
5th
Average Rating
8.4
Reviews Sentiment
7.7
Number of Reviews
33
Ranking in other categories
Data Visualization (4th)
Splunk ITSI (IT Service Int...
Ranking in IT Alerting and Incident Management
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th)
 

Mindshare comparison

As of May 2025, in the IT Alerting and Incident Management category, the mindshare of Splunk Enterprise Platform is 1.6%, up from 0.4% compared to the previous year. The mindshare of Splunk ITSI (IT Service Intelligence) is 4.0%, up from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management
 

Featured Reviews

Kundan Nagare - PeerSpot reviewer
Offers excellent data analysis and visualization capabilities
I use the Platform to monitor my IT infrastructure. There are apps for Linux and Windows servers that capture performance metrics like CPU and memory usage. These metrics are collected and sent to the blank index through forwarders. Splunk helps with security information and event management by detecting and monitoring network equipment and firewalls. It saves searches for specific terms, like threats, in firewall logs. When a match is found, it alerts about potential security breaches, helping to detect and address them. The real-time processing capability in Splunk enhances data monitoring by centrally collecting all data. This allows for easy searching and scheduling of searches, reducing the need for manual intervention. The dashboard and visualization features in Splunk impact data analysis by providing a clear status of data analysis. Users can create customized views for management, helping them understand what is happening within the infrastructure more effectively. I would recommend Splunk to others, especially from the CIM perspective. Its data analysis and visualization capabilities are unmatched, making it an excellent choice for SIM. Overall, I would rate Splunk Enterprise Platform as a nine out of ten.
Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
849,963 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Hospitality Company
16%
Financial Services Firm
14%
Manufacturing Company
13%
Healthcare Company
12%
Financial Services Firm
21%
Computer Software Company
14%
Government
11%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Splunk Enterprise Platform?
The most valuable features of the solution are the load balancing technique, the forwarding technique, and SSL certification.
What needs improvement with Splunk Enterprise Platform?
While Splunk Enterprise Platform is a good product, it is expensive. Additionally, it is complex for inexperienced cybersecurity engineers and requires experienced personnel to handle it effectively.
What is your primary use case for Splunk Enterprise Platform?
We are working with AppDynamics, Splunk Enterprise Platform, and other Splunk products. However, the main use case here is with Splunk Enterprise Platform.
What is your experience regarding pricing and costs for Splunk ITSI (IT Service Intelligence)?
Pricing can vary significantly based on the selected modules and deployment choices. Splunk ITSI tends to be more expensive compared to some open-source solutions.
What needs improvement with Splunk ITSI (IT Service Intelligence)?
Splunk ITSI could benefit from including more features that other solutions support, such as vulnerability management modules. This would help manage vulnerabilities effectively, allowing my organi...
 

Overview

 

Sample Customers

Information Not Available
TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Find out what your peers are saying about Splunk Enterprise Platform vs. Splunk ITSI (IT Service Intelligence) and other solutions. Updated: April 2025.
849,963 professionals have used our research since 2012.