No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Enterprise Platform vs Splunk On-Call comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Enterprise Platform
Ranking in IT Alerting and Incident Management
2nd
Average Rating
8.6
Reviews Sentiment
6.2
Number of Reviews
95
Ranking in other categories
Data Visualization (2nd)
Splunk On-Call
Ranking in IT Alerting and Incident Management
9th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the IT Alerting and Incident Management category, the mindshare of Splunk Enterprise Platform is 2.7%, up from 1.8% compared to the previous year. The mindshare of Splunk On-Call is 3.5%, down from 4.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Platform2.7%
Splunk On-Call3.5%
Other93.8%
IT Alerting and Incident Management
 

Featured Reviews

Koyena Paul - PeerSpot reviewer
Managed Security Services Associate at Accenture
Centralized security monitoring has transformed our threat detection and incident response
While Splunk Enterprise Platform is widely regarded as a powerful SIEM and observability platform, users across enterprises commonly report recurring challenges including licensing and data ingestion costs. Splunk Enterprise Platform's licensing is often based on the volume of data ingested, and as our organization grows, costs can increase significantly, and our teams may need to carefully decide which logs to ingest, which can limit visibility. A suggested improvement would be more flexible licensing options, better built-in recommendations for optimizing data ingestion, and smarter data compression or tiered pricing. There is also a steep learning curve where beginners can find SPL difficult. A suggested improvement would be more AI-assisted SPL generation, interactive tutorials, and guided dashboard creation with additional pre-built templates for common SOC use cases. These are the main areas for improvement that I can see: licensing flexibility, reducing the learning curve for new users, simplifying development, improving performance for very large datasets, and providing more AI-assisted features to reduce manual effort. In terms of adding more improvements, there are frequently discussed areas including easier third-party integrations. While Splunk Enterprise Platform supports many integrations, onboarding new security tools sometimes requires custom configurations or add-ons. A suggested improvement would be more plug-and-play integrations, faster support for new vendors, and then simplified administration. Administrators often manage indexes, forwarders, user roles, and cluster health, so a suggested improvement would be easier administration dashboards and automated health checks. These are suggestions that acknowledge Splunk Enterprise Platform's strengths while highlighting areas where many enterprise users see opportunities for further improvement. The primary areas for improvement that I see are licensing flexibility, simplifying administration, expanding plug-and-play integrations, and adding more AI-driven assistance for searches and investigations. These improvements would significantly simplify our tasks and help us solve more incidents in a lesser amount of time, making it flexible even for beginners.
Ramani Happy - PeerSpot reviewer
Dev Ops Engineer at Data Elicit Solutions Pvt. Ltd.
Streamlined incident response has reduced downtime and improved on-call collaboration
A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak. If I want to deep dive into the on-call load, including MTTD and MTTR rates, I kind of have to export data and build my own dashboard, which is not as out-of-the-box as I would prefer. The UI has improved, but it still feels a little chunky in certain areas, particularly when managing schedules. When I have a lot of teams, it can get messy. Additionally, the pricing model is per user, which starts to get expensive as the team scales.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Splunk Enterprise Platform offers great observability into all my apps, as well as being able to use the GUI to edit different things and be able to provide the best experience for our internal teams so that way we can provide the best experience for our customers."
"Splunk Enterprise Platform has had a significant positive impact on our organization."
"Without knowing the actual cost, I can say with a very high level of confidence that Splunk Enterprise Platform has provided tremendous value."
"Having Splunk Enterprise Platform has made our lives easier because outside of being engineers, we are all still the analysts as well."
"It is a scalable solution."
"We use Federated Search, which allows us to search data across multiple Splunk Enterprise Platform deployments without moving all the data in a single instance, so it helps us very much to access and analyze distributed data sources from one central search interface."
"Splunk Enterprise Platform has positively impacted my organization by allowing us to react to incidents significantly faster."
"The product helps monitor and visualize data. It allows you to handle various tasks. You can store, visualize, and analyze data with the Splunk Enterprise Platform. It offers features like virtual folders and heavy folders for filtering data. Additionally, you can create dashboards to showcase data to different teams and stakeholders. The tool also enables the creation of analytics and alerts and sends reports, making it a valuable tool for our system."
"I would recommend VictorOps for global distributed support teams."
"Transmogrifier and automatic solution report gives me a report with the solution and the way to solve issues when an error occurred."
"Splunk On-Call has helped my organization to improve response times, reduce missed alerts, and coordinate teams more efficiently during incidents."
"The most valuable feature of the solution is helpdesk escalation."
"My VP of Operations is ecstatic about the VictorOps product."
"The alert calling feature is the best because notifications are delivered via phone messages."
"Technical support is an A+ or a 10/10; if I could give an 11/10, I would, and it is what I love about them."
"VictorOps has been good enough for us and it's effective for our needs in case of an on-call escalation process."
 

Cons

"I consider Splunk Enterprise Platform an expensive tool because budget constraints from license-based data ingestion costs are significant."
"One area for improvement is the high licensing cost that Splunk charges."
"Splunk Enterprise Platform's licensing is often based on the volume of data ingested, and as our organization grows, costs can increase significantly, and our teams may need to carefully decide which logs to ingest, which can limit visibility."
"I would like to see more flexible licensing, easier deployment and administration, enhanced AI-driven automation, and more built-in dashboards and detection content in Splunk Enterprise Platform."
"However, in the last couple of years, the support staff do not necessarily understand the problems I report and sometimes simply regard them as bugs."
"The only problem I have with Splunk Enterprise Platform is that sometimes when I update a review, it takes time to receive confirmation emails."
"he product's initial setup phase needs to be made easy since it looks like it is very complex compared to the other tools in the market."
"I wasn't involved with the initial purchase, but I understand the pricing, setup cost, and licensing are quite expensive."
"The third-party configuration tool could be easier to use."
"There could be improvements with communicating an incident or alert."
"I would say a little bit of the user experience and the user interface of Splunk On-Call can be improved."
"We chose to move away from the HP product as far as our monitoring goes and dealing with system-generated alerts, simply because it took too much time and effort to manage the APM platform."
"User management has to be improved and more user types need to be added as there is currently only Admin or User."
"Many years ago, when VictorOps was a standalone company, when it was not part of Splunk, their support was more dedicated for us."
"A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak."
"Should have more YouTube webinars."
 

Pricing and Cost Advice

"The tool is expensive."
"The solution’s pricing is moderate."
"I rate the product's pricing a ten on a scale of one to ten, where one is cheap, and ten is expensive. It is a very pricey tool."
"The solution's pricing increases with the amount of data used. This pricing model is acceptable because it aligns with the security features provided. It ensures that the price reflects the level of security and the amount of data we're managing."
"The solution is expensive, so I rate its pricing a four out of ten."
"I have heard from my managers that Splunk Enterprise Platform is an expensive solution."
"If you exceed your licensed limit, the product will issue a warning, typically a five-license warning. Additionally, they send daily email notifications informing you about the breach. This prompts you to consider options such as minimizing logs or acquiring additional licensing to address the issue."
"There are yearly payments to be made towards the licensing costs attached to the solution."
"The price of the solution could be less expensive."
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
914,394 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Outsourcing Company
13%
Construction Company
9%
Healthcare Company
7%
Retailer
15%
Construction Company
10%
Outsourcing Company
10%
Financial Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business39
Midsize Enterprise11
Large Enterprise67
By reviewers
Company SizeCount
Small Business1
Midsize Enterprise1
Large Enterprise10
 

Questions from the Community

What needs improvement with Splunk Enterprise Platform?
I would like to see more flexible licensing, easier deployment and administration, enhanced AI-driven automation, and more built-in dashboards and detection content in Splunk Enterprise Platform. I...
What is your primary use case for Splunk Enterprise Platform?
Splunk Enterprise Platform serves as our primary solution for centralized log collection, real-time security monitoring, threat detection, incident investigation, and alert management. The cloud de...
What advice do you have for others considering Splunk Enterprise Platform?
My advice for others looking into using Splunk Enterprise Platform is to start with clear use cases, onboard the right data, train your team on Splunk Enterprise Platform, optimize the searches and...
What is your experience regarding pricing and costs for VictorOps?
I would say it is very affordable. I have compared Splunk On-Call internally with our own homemade solution. I have also compared it with other vendors such as PagerDuty, and it is really affordable.
What needs improvement with VictorOps?
I would say a little bit of the user experience and the user interface of Splunk On-Call can be improved. I have already started to gather metrics from the tool and started to analyze that. I would...
What is your primary use case for VictorOps?
I am currently working with Splunk Cloud, but I could review Splunk Enterprise as well because it is fundamentally the same product but with hosting being on-premises instead. Splunk Enterprise, Sp...
 

Also Known As

No data available
VictorOps
 

Overview

 

Sample Customers

Information Not Available
NVIDIA, Cisco, NBC, Rackspace, Intuit, DirectTV, NASCAR, Arrow Electronics, Alliance Health, NetApp, Edmunds, New York Times, Return Path, Sony Playstation, CA Technologies, Sphero, Symantic, HBO, Weatherford, Blackboard, Epic Games
Find out what your peers are saying about Splunk Enterprise Platform vs. Splunk On-Call and other solutions. Updated: September 2026.
914,394 professionals have used our research since 2012.