No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Enterprise Platform vs Splunk ITSI (IT Service Intelligence) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
4.4
Splunk Enterprise Platform boosts ROI through improved productivity, data management, and security with reduced troubleshooting costs and enhanced efficiency.
Sentiment score
5.8
Splunk ITSI users achieve cost savings, efficiency boosts, reduced downtime, streamlined tasks, and enhanced monitoring and incident management.
Splunk Enterprise Platform saves approximately 20 to 30 percent of my time without having to perform different actions separately.
Manager Recruitment at tata elxsi
I have seen a return on investment from using Splunk Enterprise Platform, illustrated by tracking how the daily data volume has been indexed, the estimated cost, the monthly actual report, and the annual report.
security engineer at a tech vendor with 501-1,000 employees
We estimate a 30 to 35 percent saving on resource costs and around 25 to 30 percent savings on inventory expenses, all credited to utilizing Splunk ITSI (IT Service Intelligence) effectively.
SIEM Splunk Engineer/Architect at Cepheid
Risks can mean that if one failure happens, it can result in risks in hundreds of thousands of USD.
Technology And Digitization Lead at JLL
It has saved me a lot of money and a lot of time.
IT Associate at Accenture
 

Customer Service

Sentiment score
7.1
Customers praise Splunk's support for its responsiveness and helpfulness, despite occasional concerns over response times and community reliance.
Sentiment score
6.7
Splunk ITSI support is praised for expertise and quick resolutions but criticized for delays and outsourced support issues.
We contacted support and they were able to provide us with the solution which is currently working fine.
Splunk Engineer at Data Elicit Solutions Pvt. Ltd.
It is crucial for anyone looking to deploy Splunk Enterprise Platform to first certify for their courses, such as the Splunk Administrator and the Power User Administrator certifications, which address all troubleshooting queries.
SOC A2 at Innodata-ISOGEN
When we encounter issues, we utilize the Splunk community, which I believe showcases a big advantage of Splunk due to its strong community support.
Security Consultant at ITSEC Asia
The technical support is excellent, and I would rate it at ten.
Senior consultant at a tech services company with 51-200 employees
We typically have weekly calls with the technical staff, and whenever we encounter issues, they usually reply with solutions within one or two days.
Senior Consultant at a consultancy with 10,001+ employees
I would rate Splunk ITSI (IT Service Intelligence) support at nine or 9.5 because it is a highly effective and handy tool.
Splunk Developer ( Training & Enablement) at DXC Technology
 

Scalability Issues

Sentiment score
8.0
Reviewers commend Splunk's scalability and integration, despite challenges with cost and data volume, for its robust infrastructure.
Sentiment score
7.7
Splunk ITSI efficiently scales with growing data, though costs and hardware requirements can impact scalability in larger environments.
Splunk allows for scalability, as you can start with an all-in-one instance and, as your deployment grows, split it into distributed deployment, such as separating the search head and indexers.
Security Consultant at ITSEC Asia
It is highly stable and scalable for us.
Dev Ops And Observability Admin at a tech services company with 11-50 employees
Some products can automatically scale, but Splunk requires manual configuration changes to achieve scale, which is slightly outdated compared to modern technologies.
Consultant at Artifield
Splunk is highly scalable, with the ability to expand efficiently.
Senior consultant at a tech services company with 51-200 employees
When we create Glass Tables containing many searches, the Glass Tables sometimes fail due to memory constraints, and we receive error pages.
Senior Consultant at a consultancy with 10,001+ employees
Splunk ITSI (IT Service Intelligence) scalability allows us to predict analytics such as service degradation and perform root cause analysis through metrics, logs, and traces.
Sr. Technical Manager at Vodafone
 

Stability Issues

Sentiment score
8.3
Splunk Enterprise Platform is highly rated for stability, reliability, and performance, with minor concerns in complex environments.
Sentiment score
7.7
Splunk ITSI is reliable with high stability ratings, minor slowness during heavy use, and occasional configuration challenges.
Our L1 and L2 teams get real-time alerts and query the SPL effectively without delays that other SIEM solutions may impose.
Global Head Of Security Architecture Digital & Technology at Aramex
It is highly stable and scalable for us.
Dev Ops And Observability Admin at a tech services company with 11-50 employees
It requires managing configuration files and processing operations manually, limiting its auto-scaling capabilities.
Consultant at Artifield
The setup, however, must be done correctly as incorrect deployment can lead to issues.
Senior consultant at a tech services company with 51-200 employees
Splunk ITSI (IT Service Intelligence) fails if you do not have good hardware requirements.
Senior Consultant at a consultancy with 10,001+ employees
I would rate the stability of Splunk ITSI (IT Service Intelligence) as a perfect ten; it is an extremely stable tool.
Splunk Developer ( Training & Enablement) at DXC Technology
 

Room For Improvement

Splunk Enterprise needs better pricing, usability, integration, performance, AI features, support, and visualization to aid smaller organizations.
Splunk ITSI requires simplified configuration, enhanced features, improved performance, and better scalability to address user concerns effectively.
The deep learning capabilities need enhancing, especially on Splunk Cloud, where customers find it challenging to use deep learning tools without setting up backend computing resources.
Consultant at Artifield
I could also build some pre-indexed summaries so that Splunk Enterprise Platform can search much faster than raw logs.
security engineer at a tech vendor with 501-1,000 employees
From an architectural standpoint, data onboarding, normalization, performance, and scalability improvements would be beneficial, particularly in optimizing search speed and query execution to handle larger searches efficiently.
Global Head Of Security Architecture Digital & Technology at Aramex
I would appreciate additional features in the next release of Splunk ITSI (IT Service Intelligence) such as cloud infrastructure monitoring including CICDs, Kubernetes, and similar technologies.
Director at Techpace
On-cloud upgrades are easy, but on-premises upgrades are very painful.
Technology And Digitization Lead at JLL
If Splunk ITSI (IT Service Intelligence) could handle real-time call-outs automatically—not just incident creation—this would reduce our dependency on PagerDuty and consolidate processes within Splunk ITSI (IT Service Intelligence).
Monitoring Dev Ops Engineer at Centrica
 

Setup Cost

Splunk Enterprise Platform is often seen as costly, especially for small businesses, compared to alternatives like Microsoft Sentinel.
Splunk ITSI, while offering premium services, is considered costly due to data volume-based pricing and varying licensing models.
The pricing model is based on ingesting data sizes, not user count, and includes a free tier for up to 500 MB of daily data.
Consultant at Artifield
We ingest terabytes of data, so I can say Splunk Enterprise Platform is somewhat costly.
Dev Ops And Observability Admin at a tech services company with 11-50 employees
Splunk Enterprise Platform is expensive.
Regional Director at iSecureMind Integrated Solutions
Splunk ITSI tends to be more expensive compared to some open-source solutions.
Senior consultant at a tech services company with 51-200 employees
I believe the pricing is based on daily volume ingestion.
Senior Consultant at a consultancy with 10,001+ employees
The pricing reflects usage levels, and compared to others in the market, Splunk ITSI (IT Service Intelligence) provides a reasonable solution.
Works at a tech services company with 1,001-5,000 employees
 

Valuable Features

Splunk Enterprise offers customization, real-time analytics, and integration, excelling in monitoring, security, and observability with scalable architecture.
Splunk ITSI offers intelligent alerting, predictive analysis, customizable dashboards, and integration for enhanced operational efficiency and incident management.
Splunk Enterprise Platform also has its own Phantom as a SOAR, which is much more refined and gives more accurate results than any other AI integrated SIM tool.
SOC A2 at Innodata-ISOGEN
The anomaly detection is very good for live production data. Whenever an anomaly comes in an application, it automatically resolves and just gives the notification.
Technical Lead at a financial services firm with 10,001+ employees
Splunk Enterprise Platform will create an incident and detect this as a credential compromise because we have a successful login from another location.
Cybersecurity Team Leader at EMAK For Computer Manufacturing (ECM)
The predictive analysis can give you proactive information about potential bottlenecks that can occur on applications, desk, storage, SQL servers, databases, or other systems.
Director at Techpace
One valuable feature is the scheduled maintenance window provided by Splunk ITSI (IT Service Intelligence) because Splunk does not offer this scheduling maintenance feature in the core product, but Splunk ITSI (IT Service Intelligence) helps us with these maintenance reports.
Senior Consultant at a consultancy with 10,001+ employees
The most beneficial aspect for me is that it is AI-enabled, providing us with very good analytics.
Technology And Digitization Lead at JLL
 

Categories and Ranking

Splunk Enterprise Platform
Ranking in IT Alerting and Incident Management
4th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
45
Ranking in other categories
Data Visualization (6th)
Splunk ITSI (IT Service Int...
Ranking in IT Alerting and Incident Management
3rd
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
63
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th)
 

Mindshare comparison

As of May 2026, in the IT Alerting and Incident Management category, the mindshare of Splunk Enterprise Platform is 2.6%, up from 1.5% compared to the previous year. The mindshare of Splunk ITSI (IT Service Intelligence) is 1.8%, down from 3.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management Mindshare Distribution
ProductMindshare (%)
Splunk ITSI (IT Service Intelligence)1.8%
Splunk Enterprise Platform2.6%
Other95.6%
IT Alerting and Incident Management
 

Featured Reviews

Vikas Pandita - PeerSpot reviewer
Global Head Of Security Architecture Digital & Technology at Aramex
Centralized analytics have transformed noc and soc operations and deliver faster threat response
Splunk Enterprise Platform's most valuable features include its integration with AI, as Cisco, which has taken Splunk Enterprise Platform recently, is building up AI functionalities, enhancing remediation capabilities and the orchestration part in the market. Additionally, Splunk Enterprise Platform shows the correct logs at the correct time, and inventory management is very good. I assess the effectiveness of Splunk Enterprise Platform in detecting anomalies and preventing system outages as very strong; for over two to three decades, it has provided centralized log visibility, real-time monitoring, and analytics correlation, which is robust for threat detection and incident investigation. Splunk Enterprise Platform's machine learning capability of the toolkit predicts trends and reduces many false positives, making Splunk Enterprise Platform an essential tool for both SOC and network operations, where it effectively detects anomalies that other SIEM tools cannot. Splunk Enterprise Platform's personalized dashboards are superb, as I have been experimenting with them extensively, and new features have enhanced their quality, making them particularly effective for presentations to leadership, including direct engagement with the CISO.
DS
Senior Consultant at a consultancy with 10,001+ employees
Service health has been monitored and visual insights support proactive telecom operations
The installation process is the first aspect I dislike about Splunk ITSI (IT Service Intelligence). If you do not configure it correctly, you will encounter issues in the search head. Because we use a distributed environment where each component has its own specific roles, installation is critical and requires careful attention. Splunk ITSI (IT Service Intelligence) is built with many applications. It is a compressed file, and when you extract the Splunk ITSI (IT Service Intelligence) app, you receive approximately 19 apps. Some applications, add-ons, and packages must be installed on specific components. If you do not configure an application correctly, it will not work. Sometimes we encounter issues during installation because of this complexity. I believe the installation process should be more uniform, meaning it could be deployed across all components to avoid post-installation issues. Sometimes after installation, you receive errors, and users cannot access Splunk ITSI (IT Service Intelligence). We have experienced this type of issue due to installation errors. I believe there is currently room for improvement regarding scalability. When we create Glass Tables containing many searches, the Glass Tables sometimes fail due to memory constraints, and we receive error pages. Splunk ITSI (IT Service Intelligence) should have a lightweight version to address these concerns. I would rate current scalability as medium.
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Healthcare Company
9%
Construction Company
9%
Financial Services Firm
8%
Hospitality Company
8%
Financial Services Firm
16%
Manufacturing Company
10%
Outsourcing Company
6%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business27
Midsize Enterprise4
Large Enterprise27
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise10
Large Enterprise43
 

Questions from the Community

What needs improvement with Splunk Enterprise Platform?
When concerning the cost of Splunk Enterprise Platform, the license cost can be a factor. The pricing is based on limited factors. There are two types of pricing where we have licensing based on th...
What is your primary use case for Splunk Enterprise Platform?
In terms of using Splunk Enterprise Platform, we use it for our SOC environment where we have an ES setup separately. We collect logs from various sources like AWS, EDR logs, firewall logs, WinEven...
What is your experience regarding pricing and costs for Splunk ITSI (IT Service Intelligence)?
From a pricing perspective, it is not that bad because we get it from a distributor and do not purchase it directly from Splunk. We get it from a distributor who gives the pricing to a partner and ...
What needs improvement with Splunk ITSI (IT Service Intelligence)?
In terms of improvements for Splunk ITSI (IT Service Intelligence), I would suggest adding more out-of-the-box plugins and adapters, especially as there is a high demand for observability and dashb...
 

Overview

 

Sample Customers

Information Not Available
TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Find out what your peers are saying about Splunk Enterprise Platform vs. Splunk ITSI (IT Service Intelligence) and other solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.