No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Observability Cloud vs ThreatSync NDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Observability Cloud
Ranking in Network Monitoring Software
7th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
89
Ranking in other categories
Application Performance Monitoring (APM) and Observability (5th), IT Infrastructure Monitoring (4th), Cloud Monitoring Software (4th), Container Management (5th), Digital Experience Monitoring (DEM) (3rd)
ThreatSync NDR
Ranking in Network Monitoring Software
56th
Average Rating
8.6
Reviews Sentiment
8.7
Number of Reviews
2
Ranking in other categories
Network Detection and Response (NDR) (18th)
 

Mindshare comparison

As of August 2026, in the Network Monitoring Software category, the mindshare of Splunk Observability Cloud is 1.5%, up from 1.0% compared to the previous year. The mindshare of ThreatSync NDR is 0.3%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Monitoring Software Mindshare Distribution
ProductMindshare (%)
Splunk Observability Cloud1.5%
ThreatSync NDR0.3%
Other98.2%
Network Monitoring Software
 

Featured Reviews

PK
Project Manager at AGRICULTURE SKILL COUNCIL OF INDIA (ASCI)
Unified observability has improved real-time governance and now drives data-led decisions
Log Observer Connect is embedded here, but we are facing some delays in centralized log collection and analysis, which can be further fastened. We are collecting all the data metrics and decision-making insights, but all these data-driven decisions coming from different applications are not connected somewhere. A consolidated form or correlation of these insights is not happening between each other due to which we feel we are missing something significant. Some generalized feedback includes that predictive alerts or alarms which can be integrated with AI-driven alarms and alerting features should be established so that there is AI-driven intelligence and anomaly detection happening with a complete systematic process in service delivery. Application dependencies are huge, and business and operational dashboards should be improved. Right now there are very interactive custom dashboards, and every now and then, the personalization of enhancements keeps happening. KPI monitoring, executive reporting, and analytics have definitely been introduced to a great extent. There are few things in cloud-native monitoring, such as integration with AWS and Azure, where we sometimes do face lags. Those things can definitely be improved upon. I have used Datadog and Dynatrace before using Splunk Observability Cloud. Datadog was definitely recommended by most of our peers because of its very strong comprehensive observability and very strong and unique dashboard systems. Dynatrace was also very good because they have offered a lot of AI-driven analysis methods and processes, which was helping our organization a lot. Since our organization has a very strong IT ecosystem for agriculture, very different kinds of customized things are required.
Michael-Foster - PeerSpot reviewer
Head of IT at Bulkhaul Limited
Has improved threat detection and reduced manual workload through real-time cloud insights
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it reacts instantly with a notification delay of 10 to 20 minutes, while nighttime notifications can have up to eight hours delay. ThreatSync+ NDR has enhanced our ability to proactively manage network risks by enabling us to implement extra measures at a lower level based on its findings. The compliance reporting tools are comprehensive and meet our requirements. Though we haven't conducted official compliance reporting yet, we anticipate it will save approximately one day of work in report compilation. Regarding pricing, WatchGuard rates a nine out of ten. We maintain 1,001 licenses for ThreatSync+ NDR, serving approximately 1,000 users, with about 300 local users in the UK. ThreatSync+ NDR's effectiveness in identifying weaknesses before exploitation is excellent and very quick. I recommend ThreatSync+ NDR to other users based on its rapid deployment and immediate value delivery. I rate ThreatSync+ NDR 9 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I recommend Splunk Observability Cloud to other organizations because we are currently saving our engineers time by 20 to 30 percent, and for infrastructure alerting, we can use it to ensure that servers will not go down."
"It can monitor, get the data, and then report on the data."
"The best feature of this product is the latency and processing of all the telemetry that is being received, which gives full visibility at the right time."
"Splunk's dashboards are great."
"It is a great resource for us because we have so many different data sources and to be able to aggregate that and put it through a concise dashboard or an alert really helps."
"Splunk APM provides a holistic view of the application. Unlike other APMs, Splunk's service map is quite effective."
"The ability to create custom dashboards is one of the best features and that's typically why most people deploy Splunk. Users can create dashboards for just about anything."
"The product retains a lot of log data for subsequent analysis."
"Implementing ThreatSync+ NDR has influenced our business significantly as it provides enhanced security and saves several hours daily by eliminating manual log reviews."
"ThreatSync NDR is a strong addition to our company's security architecture."
 

Cons

"Splunk's functionality could be improved by adding database connectors for other platforms like AWS and Azure."
"They can improve the flow system and the keyword language. It has predefined keywords, but they can be improved."
"I don't consider the solution scalable."
"The solution should have more sensors regarding fiber intelligence for security measures."
"Unfortunately, with our current setup, we just have to implement Log Observer in a couple of instances so that we can have that integration with Splunk Observability Cloud."
"Enhancements can be made to Splunk Observability Cloud dashboard, particularly the widgets that can help display ROI metrics and streamline setup for detection tuning."
"Splunk Infrastructure Monitoring's data analytics can be improved by including suggestions for various types of continuous monitoring."
"The deployment can be quite complex."
"There are definitely areas for improvements in ThreatSync NDR, as no product is perfect. Its effectiveness depends on proper network visibility, so if important traffic segments are not mirrored or monitored, detection may be incomplete."
"After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API."
 

Pricing and Cost Advice

"Splunk Observability Cloud is expensive."
"Splunk Infrastructure Monitoring is an expensive solution."
"Splunk offers a 14-day free trial and after that, we have to pay but the cost is reasonable."
"The solution's pricing is competitive. I rate the solution's pricing a seven out of ten. The price of the solution could be cheaper."
"The price of Splunk APM is less than some of its competitors."
"Licensing cost is the biggest argument I get from those divesting from Splunk. There are those within our organization who say we are going to go to other tools since Splunk is too expensive."
"I am not in that circle, but we are currently licensing based on our queries. That is working out for us. Previously, it was by volume of data, and now, we can store as much data as we want."
"I would rate the price of Splunk Infrastructure Monitoring as an eight out of ten, with ten being the most expensive."
Information not available
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
909,948 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
8%
Construction Company
8%
Computer Software Company
7%
Construction Company
16%
Outsourcing Company
9%
Comms Service Provider
7%
Transportation Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business33
Midsize Enterprise9
Large Enterprise56
No data available
 

Questions from the Community

What needs improvement with SignalFx?
Regarding dashboard customization, while Splunk has many dashboard building options, customers sometimes need to create specific dashboards, particularly for applicative metrics such as Java and pr...
What is your primary use case for SignalFx?
The solution involves observability in general, such as Application Performance Monitoring, and generally addresses digital applications, web applications, sites, and mobile applications. I worked ...
What advice do you have for others considering SignalFx?
We're a customer and end-user. Currently, in France, we cannot use the artificial intelligence option. While this option is enabled for the United States and many countries, it's not yet available ...
What needs improvement with ThreatSync+ NDR?
After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API. You can use Netflow which gets around this in some cases.
What is your primary use case for ThreatSync+ NDR?
We use ThreatSync+ NDR for both network monitoring and detection and response.
What advice do you have for others considering ThreatSync+ NDR?
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it...
 

Also Known As

Splunk Infrastructure Monitoring, Splunk Real User Monitoring (RUM), Splunk Synthetic Monitoring
No data available
 

Overview

 

Sample Customers

Sunrun, Yelp, Onshape, Tapjoy, Symphony Commerce, Chairish, Clever, Grovo, Bazaar Voice, Zenefits, Avalara
Information Not Available
Find out what your peers are saying about Zabbix, SolarWinds, Datadog and others in Network Monitoring Software. Updated: August 2026.
909,948 professionals have used our research since 2012.