No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Enterprise Platform vs Splunk On-Call comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Enterprise Platform
Ranking in IT Alerting and Incident Management
4th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
47
Ranking in other categories
Data Visualization (6th)
Splunk On-Call
Ranking in IT Alerting and Incident Management
11th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
12
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the IT Alerting and Incident Management category, the mindshare of Splunk Enterprise Platform is 2.6%, up from 1.4% compared to the previous year. The mindshare of Splunk On-Call is 3.3%, down from 4.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Alerting and Incident Management Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Platform2.6%
Splunk On-Call3.3%
Other94.1%
IT Alerting and Incident Management
 

Featured Reviews

Vikas Pandita - PeerSpot reviewer
Global Head Of Security Architecture Digital & Technology at Aramex
Centralized analytics have transformed noc and soc operations and deliver faster threat response
Splunk Enterprise Platform's most valuable features include its integration with AI, as Cisco, which has taken Splunk Enterprise Platform recently, is building up AI functionalities, enhancing remediation capabilities and the orchestration part in the market. Additionally, Splunk Enterprise Platform shows the correct logs at the correct time, and inventory management is very good. I assess the effectiveness of Splunk Enterprise Platform in detecting anomalies and preventing system outages as very strong; for over two to three decades, it has provided centralized log visibility, real-time monitoring, and analytics correlation, which is robust for threat detection and incident investigation. Splunk Enterprise Platform's machine learning capability of the toolkit predicts trends and reduces many false positives, making Splunk Enterprise Platform an essential tool for both SOC and network operations, where it effectively detects anomalies that other SIEM tools cannot. Splunk Enterprise Platform's personalized dashboards are superb, as I have been experimenting with them extensively, and new features have enhanced their quality, making them particularly effective for presentations to leadership, including direct engagement with the CISO.
Ramani Happy - PeerSpot reviewer
Dev Ops Engineer at Data Elicit Solutions Pvt. Ltd.
Streamlined incident response has reduced downtime and improved on-call collaboration
A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak. If I want to deep dive into the on-call load, including MTTD and MTTR rates, I kind of have to export data and build my own dashboard, which is not as out-of-the-box as I would prefer. The UI has improved, but it still feels a little chunky in certain areas, particularly when managing schedules. When I have a lot of teams, it can get messy. Additionally, the pricing model is per user, which starts to get expensive as the team scales.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of Splunk Enterprise Platform include its performance, ease of implementation, and user interface, which are superior compared to other on-premises products."
"Splunk's real-time processing capability has been pretty good for my use cases."
"Splunk Enterprise is a wireless enterprise application that can be customized based on training."
"Splunk is very flexible in handling various formats of data as long as basic rules are adhered to."
"Before using Splunk Enterprise Platform, I used LogRhythm, but after initiating Splunk Enterprise Platform, I noticed several positive impacts in my organization."
"The best thing about Splunk is you can collect all the data you want, and you can play with the data and do what you want."
"The product helps monitor and visualize data. It allows you to handle various tasks. You can store, visualize, and analyze data with the Splunk Enterprise Platform. It offers features like virtual folders and heavy folders for filtering data. Additionally, you can create dashboards to showcase data to different teams and stakeholders. The tool also enables the creation of analytics and alerts and sends reports, making it a valuable tool for our system."
"The most valuable feature of Splunk Enterprise Platform is that it's a customizable solution."
"Transmogrifier and automatic solution report gives me a report with the solution and the way to solve issues when an error occurred."
"The alert calling feature is the best because notifications are delivered via phone messages."
"I would recommend VictorOps for global distributed support teams."
"We are very satisfied with the tool."
"VictorOps has been good enough for us and it's effective for our needs in case of an on-call escalation process."
"Its the best solution of its type out there, you should go for it."
"Since implementing Splunk On-Call, our mean time to acknowledge has dropped significantly, and we have fewer escalations to senior engineering for things that could have been caught earlier."
"The flexible schedule is the most valuable feature. It was very easy to set out a rotation."
 

Cons

"What I dislike about Splunk Enterprise Platform is the props and transforms functionality. For most types of data, we have custom add-ons and everything is available, but for some data we want to parse, the add-on is not available."
"The platform is too expensive for small businesses. Splunk should focus more on delivering something for small businesses and entrepreneurs."
"We have Splunk at a very high cost, but I can say that other vendors working with mid-size customers can compete against Splunk."
"The tool lacked in providing a shareable format. I had to use pivot tables and manually parse and edit the data to create a visualization-friendly format. It was helpful when we had an issue. What would make it stronger is if it were more proactive. For example, if it highlighted major incidents and their impact on users without digging through notifications, that would be better. Typically, the first question we get is, "Oh, we had an incident. How bad was it? How many customers were impacted?" So having that information pop up from the notification would be helpful."
"The only problem I have with Splunk Enterprise Platform is that sometimes when I update a review, it takes time to receive confirmation emails."
"The solution's license cost is high and can be improved."
"The cost is the most significant area for improvement in Splunk Enterprise Platform, as it is quite expensive, causing many clients to differ due to this reason."
"Areas for improvement include enhancing dashboards, reports, alerts, and the monitoring console."
"There could be improvements with communicating an incident or alert."
"User management has to be improved and more user types need to be added as there is currently only Admin or User."
"At that stage, all our needs are fulfilled, but at the beginning, we had some feature requests and they were deployed during their roadmap."
"We chose to move away from the HP product as far as our monitoring goes and dealing with system-generated alerts, simply because it took too much time and effort to manage the APM platform."
"Another example is that you cannot check the incidents created in VictorOps from the previous Friday."
"The only feature that we are currently waiting on right now is really kind of an annoyance factor: when we get on the timeline on the main dashboard, there’s an ACK All button."
"The third-party configuration tool could be easier to use."
"A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak."
 

Pricing and Cost Advice

"There are yearly payments to be made towards the licensing costs attached to the solution."
"The solution's pricing increases with the amount of data used. This pricing model is acceptable because it aligns with the security features provided. It ensures that the price reflects the level of security and the amount of data we're managing."
"The product is expensive, and the cost depends on the amount of data ingestion."
"On a scale from one to ten, where one is cheap, and ten is expensive, I rate the solution's pricing around seven or eight out of ten."
"Splunk Enterprise Platform is an expensive solution."
"I rate the product's pricing a ten on a scale of one to ten, where one is cheap, and ten is expensive. It is a very pricey tool."
"The tool is expensive."
"If you exceed your licensed limit, the product will issue a warning, typically a five-license warning. Additionally, they send daily email notifications informing you about the breach. This prompts you to consider options such as minimizing logs or acquiring additional licensing to address the issue."
"The price of the solution could be less expensive."
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
902,495 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
11%
Financial Services Firm
9%
Healthcare Company
8%
Comms Service Provider
7%
Construction Company
12%
Financial Services Firm
11%
Performing Arts
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise6
Large Enterprise30
By reviewers
Company SizeCount
Small Business1
Midsize Enterprise1
Large Enterprise9
 

Questions from the Community

What needs improvement with Splunk Enterprise Platform?
A major factor I dislike about Splunk Enterprise Platform is the cost. Since the cost is based on data ingestion or the volume of data, large logs or large volumes of logs sometimes increase the RO...
What is your primary use case for Splunk Enterprise Platform?
I mainly work on log management and observability for our platforms. We use Splunk Enterprise Platform for the collection of logs and primarily for the observability of dashboards related to incide...
What advice do you have for others considering Splunk Enterprise Platform?
Splunk Enterprise Platform does not require any maintenance on our end since it is a cloud-based system, so I do not think we require any maintenance for that. My impression of Splunk Enterprise Pl...
What is your experience regarding pricing and costs for VictorOps?
The pricing aspect is per-user licensing, which is standard for this category, making it competitive compared to PagerDuty. In the past, we used PagerDuty, but it is not cheap once you start adding...
What needs improvement with VictorOps?
A few things I would improve in Splunk On-Call. Honestly, the reporting and analysis side feels a bit weak. If I want to deep dive into the on-call load, including MTTD and MTTR rates, I kind of ha...
What is your primary use case for VictorOps?
I have been using Splunk On-Call for nearly about two years. Our main use is incident alerting and on-call scheduling for our engineering and DevOps team. Basically, whenever something goes down, a...
 

Also Known As

No data available
VictorOps
 

Overview

 

Sample Customers

Information Not Available
NVIDIA, Cisco, NBC, Rackspace, Intuit, DirectTV, NASCAR, Arrow Electronics, Alliance Health, NetApp, Edmunds, New York Times, Return Path, Sony Playstation, CA Technologies, Sphero, Symantic, HBO, Weatherford, Blackboard, Epic Games
Find out what your peers are saying about Splunk Enterprise Platform vs. Splunk On-Call and other solutions. Updated: June 2026.
902,495 professionals have used our research since 2012.