Try our new research platform with insights from 80,000+ expert users

Splunk ITSI (IT Service Intelligence) vs Unit 42 Managed Detection and Response comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk ITSI (IT Service Int...
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
50
Ranking in other categories
Application Performance Monitoring (APM) and Observability (9th), IT Alerting and Incident Management (4th)
Unit 42 Managed Detection a...
Average Rating
0.0
Reviews Sentiment
7.8
Number of Reviews
1
Ranking in other categories
Managed Security Services Providers (MSSP) (60th), Managed Detection and Response (MDR) (46th)
 

Featured Reviews

Sunil K R - PeerSpot reviewer
Helps improve our incident response time, and our mean time to resolve, but visibility is limited
In my previous project, I successfully led the end-to-end deployment of a Splunk migration. The process went smoothly thanks in part to Splunk's professional services team. They conducted a thorough assessment, identified all our potential pain points, and developed a tailored solution and migration plan. This comprehensive approach ensured a seamless transition. Our core deployment team consisted of 5 internal members and two specialists from Splunk. Additionally, the project included a project manager and a product owner. We also benefited from the expertise of two professional service consultants and two representatives from the customer's side. An on-site admin architect further provided valuable technical support. Throughout the deployment process, we leveraged support from various resources whenever necessary. This included assistance with configuration changes, deployments, and other related tasks. We also collaborated effectively with our teammates to ensure a smooth and successful implementation.
MohammedSirajuddin - PeerSpot reviewer
Flexible and reduces IT operations but requires local data sovereignty and competitive pricing
I prefer having local data sovereignty. It would be advantageous for Palo Alto to have local data centers across different countries to adhere to this requirement. I also have a concern regarding pricing, which is perceived as high compared to competitors. Improvements should focus on response times and reducing the time taken to reach solutions.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We save substantial time on monitoring tasks because we don't have to search for what we need. Everything is packed, so you can drill down to the end values by just doing the kit. We don't spend a lot of time on this. Splunk ITSI is easy to use and not time-consuming."
"The most valuable features of Splunk ITSI are event analytics and service insight."
"The solution has been stable."
"The most valuable feature of ITSI is the service KPIs. No other tool provides you with the same level of observability and enterprise security or the search and reporting applications."
"What I like the most is the event correlations. It's a file structure, and ITSI has a correlation layer where you can normalize the events from different sources. Once these events are normalized, you set up rules to aggregate them into different or the same attributes. After the rules are defined, you can automate the process to solve the issue automatically."
"Splunk ITSI helps us secure our environment by allowing us to create automatons that run when alerts are triggered."
"The solution's scalability is fine."
"The flexibility to develop and consolidate many solutions into one platform is great."
"Unit 42 MDR provides us with managed detection and response functionalities, eliminating the need for capital expenditure since it is an operational expenditure-based service."
"Unit 42 MDR provides us with managed detection and response functionalities, eliminating the need for capital expenditure since it is an operational expenditure-based service."
 

Cons

"I believe the refresh time should be faster."
"Microservices is the only area where Splunk ITSI can be improved. When things come from one EC2 instance to another, there's a lack of exposure to microservices, so we can't know what's happening. Apart from that, it's doing pretty well."
"It could be a little easier to use with the thresholding. We've struggled a little bit with thresholding."
"Splunk ITSI's UI needs to be more interactive and user-friendly."
"The dashboard queries should be improved. More queries should be suggested in order to produce better dashboards."
"It is pretty okay. I am not sure whether the current release has already moved to the new framework where instead of the glass tables, we can directly use the Dashboard Studio. It would be nice to have that integrated into the same framework."
"ITSI is an almost perfect tool, but there is room for improvement in a few features like the deep dive and multi-KPI alerts. We're using most of the features like service API, coding searches, and aggregation, but our team members hardly use multi-KPI and deep dive. We don't use the multi-KPI or deep dive because everything is available in the service KPI. I don't think this feature is necessary."
"After upgrading Splunk ITSI from version 4.11 to 4.13, the analyzer stopped finding values for KPS and services."
"I have a concern regarding pricing, which is perceived as high compared to competitors."
"I also have a concern regarding pricing, which is perceived as high compared to competitors."
 

Pricing and Cost Advice

"Splunk ITSI is expensive."
"Pricing was pretty good, and it is possible to just add on the features we want."
"It would have been good if the product cost was much lower."
"The pricing of Splunk is a bit high."
"It depends on how big an organization is. If we have a lot of resources, the licensing needs to be upgraded. If we have a small environment, the licensing cost is definitely going to be less."
"Splunk ITSI is expensive; however, with the appropriate use case, it justifies the cost."
"I know that it is expensive, but I do not think there is another solution that can do similar things for that price."
"Splunk ITSI is expensive."
Information not available
report
Use our free recommendation engine to learn which IT Alerting and Incident Management solutions are best for your needs.
851,174 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
14%
Government
11%
Manufacturing Company
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Splunk ITSI (IT Service Intelligence)?
Pricing can vary significantly based on the selected modules and deployment choices. Splunk ITSI tends to be more expensive compared to some open-source solutions.
What needs improvement with Splunk ITSI (IT Service Intelligence)?
Splunk ITSI could benefit from including more features that other solutions support, such as vulnerability management modules. This would help manage vulnerabilities effectively, allowing my organi...
What is your experience regarding pricing and costs for Unit 42 Managed Detection and Response?
I find the pricing to be expensive, especially when compared with competitors who offer significant discounts. Palo Alto has room to become more competitive in its pricing.
What needs improvement with Unit 42 Managed Detection and Response?
I prefer having local data sovereignty. It would be advantageous for Palo Alto to have local data centers across different countries to adhere to this requirement. I also have a concern regarding p...
What is your primary use case for Unit 42 Managed Detection and Response?
Unit 42 is a Managed Detection and Response solution with MDR capabilities. I use it in a managed service context where my organization's security needs are catered to by Palo Alto. Generally, it i...
 

Overview

 

Sample Customers

TransUnion, Cox Automotive, Carnival Cruises, Leidos, Econocom, National Ignition Factory, Entrust Datacard, Molina Healthcare, United States Census Bureau
Information Not Available
Find out what your peers are saying about PagerDuty, Atlassian, Splunk and others in IT Alerting and Incident Management. Updated: April 2025.
851,174 professionals have used our research since 2012.