No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Enterprise Platform vs Splunk On-Call comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Enterprise Platform
Ranking in IT Alerting and Incident Management
2nd
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
61
Ranking in other categories
Data Visualization (2nd)
Splunk On-Call
Ranking in IT Alerting and Incident Management
10th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the IT Alerting and Incident Management category, the mindshare of Splunk Enterprise Platform is 2.7%, up from 1.6% compared to the previous year. The mindshare of Splunk On-Call is 3.4%, down from 4.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Platform2.7%
Splunk On-Call3.4%
Other93.9%
IT Alerting and Incident Management
 

Featured Reviews

Koyena Paul - PeerSpot reviewer
Managed Security Services Associate at Accenture
Centralized security monitoring has transformed our threat detection and incident response
While Splunk Enterprise Platform is widely regarded as a powerful SIEM and observability platform, users across enterprises commonly report recurring challenges including licensing and data ingestion costs. Splunk Enterprise Platform's licensing is often based on the volume of data ingested, and as our organization grows, costs can increase significantly, and our teams may need to carefully decide which logs to ingest, which can limit visibility. A suggested improvement would be more flexible licensing options, better built-in recommendations for optimizing data ingestion, and smarter data compression or tiered pricing. There is also a steep learning curve where beginners can find SPL difficult. A suggested improvement would be more AI-assisted SPL generation, interactive tutorials, and guided dashboard creation with additional pre-built templates for common SOC use cases. These are the main areas for improvement that I can see: licensing flexibility, reducing the learning curve for new users, simplifying development, improving performance for very large datasets, and providing more AI-assisted features to reduce manual effort. In terms of adding more improvements, there are frequently discussed areas including easier third-party integrations. While Splunk Enterprise Platform supports many integrations, onboarding new security tools sometimes requires custom configurations or add-ons. A suggested improvement would be more plug-and-play integrations, faster support for new vendors, and then simplified administration. Administrators often manage indexes, forwarders, user roles, and cluster health, so a suggested improvement would be easier administration dashboards and automated health checks. These are suggestions that acknowledge Splunk Enterprise Platform's strengths while highlighting areas where many enterprise users see opportunities for further improvement. The primary areas for improvement that I see are licensing flexibility, simplifying administration, expanding plug-and-play integrations, and adding more AI-driven assistance for searches and investigations. These improvements would significantly simplify our tasks and help us solve more incidents in a lesser amount of time, making it flexible even for beginners.
Ramani Happy - PeerSpot reviewer
Dev Ops Engineer at Data Elicit Solutions Pvt. Ltd.
Streamlined incident response has reduced downtime and improved on-call collaboration
A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak. If I want to deep dive into the on-call load, including MTTD and MTTR rates, I kind of have to export data and build my own dashboard, which is not as out-of-the-box as I would prefer. The UI has improved, but it still feels a little chunky in certain areas, particularly when managing schedules. When I have a lot of teams, it can get messy. Additionally, the pricing model is per user, which starts to get expensive as the team scales.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The governance tools provided by Splunk Enterprise Platform are very good, and it is a very good platform that provides you with a way to maintain data security."
"The most valuable feature of Splunk Enterprise Platform is that it's a customizable solution."
"Overall, the feature set of Splunk Enterprise Platform is comprehensive and flexible."
"Overall, Splunk Enterprise Platform impacts my organization positively, and I can see the benefit from using the product."
"Splunk Enterprise is a wireless enterprise application that can be customized based on training."
"Splunk Enterprise Platform has a vast and versatile powerful search engine with which I can handle all queries, and creating use cases and the search and dashboard is the main selling point, allowing me to visualize live dashboards."
"Splunk Enterprise Platform has improved visibility across the environment by centralizing logs from multiple systems, reduced the time needed to detect, investigate, and respond to security incidents, streamlined troubleshooting, and helped my team respond to issues more quickly, improving operational efficiency and reducing downtime."
"The best thing about Splunk is you can collect all the data you want, and you can play with the data and do what you want."
"My VP of Operations is ecstatic about the VictorOps product."
"It reduces the communication around CI/CD and production errors in about 90% of the cases and made our support tasks much easier."
"The flexible schedule is the most valuable feature. It was very easy to set out a rotation."
"We are very satisfied with the tool."
"VictorOps has decreased the meantime to acknowledge an incident management process, our developers can be on-call faster when we are using this solution, and we can fix our incidents much quicker."
"The alert calling feature is the best because notifications are delivered via phone messages."
"Its the best solution of its type out there, you should go for it."
"Transmogrifier and automatic solution report gives me a report with the solution and the way to solve issues when an error occurred."
 

Cons

"When concerning the cost of Splunk Enterprise Platform, the license cost can be a factor."
"I consider Splunk Enterprise Platform an expensive tool because budget constraints from license-based data ingestion costs are significant."
"Pricing for Splunk Enterprise Platform is actually very high, but at the same time, the value that it gives is highly beneficial."
"Regarding improvement for Splunk Enterprise Platform, compatibility is needed."
"There is very much improvement needed from Splunk vendor support side because they need to check what people are raising in the requests."
"I think the machine learning toolkit is fine, but when I talk about threat intelligence, it is not that effective."
"Splunk Enterprise Platform's licensing is often based on the volume of data ingested, and as our organization grows, costs can increase significantly, and our teams may need to carefully decide which logs to ingest, which can limit visibility."
"There should be continuous customer engagement and training programs on the new features and capabilities introduced by the solution."
"The only feature that we are currently waiting on right now is really kind of an annoyance factor: when we get on the timeline on the main dashboard, there’s an ACK All button."
"One area for improvement would be enhancing the mobile app experience."
"The solution can be improved by including a wider list of permissions."
"User management has to be improved and more user types need to be added as there is currently only Admin or User."
"Should have more YouTube webinars."
"Many years ago, when VictorOps was a standalone company, when it was not part of Splunk, their support was more dedicated for us."
"At that stage, all our needs are fulfilled, but at the beginning, we had some feature requests and they were deployed during their roadmap."
"Another example is that you cannot check the incidents created in VictorOps from the previous Friday."
 

Pricing and Cost Advice

"The solution's pricing increases with the amount of data used. This pricing model is acceptable because it aligns with the security features provided. It ensures that the price reflects the level of security and the amount of data we're managing."
"I have heard from my managers that Splunk Enterprise Platform is an expensive solution."
"The product is expensive, and the cost depends on the amount of data ingestion."
"The solution’s pricing is moderate."
"I rate the product's pricing a ten on a scale of one to ten, where one is cheap, and ten is expensive. It is a very pricey tool."
"The tool is expensive."
"If you exceed your licensed limit, the product will issue a warning, typically a five-license warning. Additionally, they send daily email notifications informing you about the breach. This prompts you to consider options such as minimizing logs or acquiring additional licensing to address the issue."
"Splunk Enterprise Platform is an expensive solution."
"The price of the solution could be less expensive."
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
909,647 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Construction Company
10%
Outsourcing Company
8%
Manufacturing Company
7%
Construction Company
12%
Financial Services Firm
10%
Performing Arts
10%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business34
Midsize Enterprise8
Large Enterprise43
By reviewers
Company SizeCount
Small Business1
Midsize Enterprise1
Large Enterprise10
 

Questions from the Community

What needs improvement with Splunk Enterprise Platform?
With respect to the use cases, we were able to create many use cases as well as fine-tune them, so thirty percent of the alerts were fine-tuned, and we have improved our detection logic and also th...
What is your primary use case for Splunk Enterprise Platform?
Splunk Enterprise Platform serves as our SIEM tool where we receive alerts and we primarily depend on it. As a centralized logging and monitoring system, we use Splunk based upon different data typ...
What advice do you have for others considering Splunk Enterprise Platform?
With respect to the use cases, we were able to create many use cases as well as fine-tune them, so thirty percent of the alerts were fine-tuned, and we have improved our detection logic and also th...
What is your experience regarding pricing and costs for VictorOps?
The pricing aspect is per-user licensing, which is standard for this category, making it competitive compared to PagerDuty. In the past, we used PagerDuty, but it is not cheap once you start adding...
What needs improvement with VictorOps?
A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak. If I want to deep dive into the on-call load, including MTTD and MTTR rates, I kind of ha...
What is your primary use case for VictorOps?
I have been using Splunk On-Call for nearly about two years. Our main use is incident alerting and on-call scheduling for our engineering and DevOps team. Basically, whenever something goes down, a...
 

Also Known As

No data available
VictorOps
 

Overview

 

Sample Customers

Information Not Available
NVIDIA, Cisco, NBC, Rackspace, Intuit, DirectTV, NASCAR, Arrow Electronics, Alliance Health, NetApp, Edmunds, New York Times, Return Path, Sony Playstation, CA Technologies, Sphero, Symantic, HBO, Weatherford, Blackboard, Epic Games
Find out what your peers are saying about Splunk Enterprise Platform vs. Splunk On-Call and other solutions. Updated: June 2026.
909,647 professionals have used our research since 2012.