Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.
N/A
Splunk IT Service Intelligence (ITSI)
Score 10.0 out of 10
N/A
Splunk supports IT operations analytics with the Splunk IT Service Intelligence premium offering, a software application available to subscribers to Splunk Cloud or Splunk Enterprise log analytics and SIEM platforms.
N/A
StackState
Score 8.0 out of 10
N/A
StackState is an observability solution that helps enterprises decrease downtime and prevent outages by breaking down the silos between existing monitoring tools and tracking changes in dependencies, relationships, and configuration over time. The system relates these changes to incidents, understanding the precise change that is the root cause of an issue. The vendor states StackState clients realize decreases in mean-time-to-repair (MTTR), fewer outages, and lower costs associated with…
$15
per month per host
Pricing
Splunk Enterprise
Splunk IT Service Intelligence (ITSI)
StackState
Editions & Modules
No answers on this topic
No answers on this topic
StackState for Cloud Native Environments
$15 Per billed annually
per month per host
StackState for Hybrid IT Environments
Contact Sales
Offerings
Pricing Offerings
Splunk Enterprise
Splunk IT Service Intelligence (ITSI)
StackState
Free Trial
Yes
No
No
Free/Freemium Version
Yes
No
No
Premium Consulting/Integration Services
No
Yes
No
Entry-level Setup Fee
No setup fee
No setup fee
No setup fee
Additional Details
—
—
Pricing includes 10 components per host. If the total number of components exceeds the total number of hosts multiplied by 10, additional components cost $1.50 per component per month (billed annually)
I have not used any other product like Splunk IT Service Intelligence. The Splunk IT Service Intelligence can be applied across all the information you have in your Splunk environment. You can correlate the events with Splunk IT Service Intelligence and use it as an APM tool or …
Splunk ITSI provides a holistic methodology for collecting and utilizing telemetry data that most other "basic" monitoring technologies and products in this space do not. By allowing us to model our ecosystem's components and services, Splunk ITSI observes and reports at a …
StackState
No answer on this topic
Features
Splunk Enterprise
Splunk IT Service Intelligence (ITSI)
StackState
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Splunk Enterprise
8.1
85 Ratings
3% above category average
Splunk IT Service Intelligence (ITSI)
-
Ratings
StackState
-
Ratings
Centralized event and log data collection
9.081 Ratings
00 Ratings
00 Ratings
Correlation
8.383 Ratings
00 Ratings
00 Ratings
Event and log normalization/management
8.482 Ratings
00 Ratings
00 Ratings
Deployment flexibility
7.975 Ratings
00 Ratings
00 Ratings
Integration with Identity and Access Management Tools
It's well suited for what I do, which is network security operations. And that's for anything from troubleshooting incidents, troubleshooting performance, troubleshooting for the purpose of a compliance and auditing. It's not best suited for users who are new in terms of they're new to the product and they have expectations that probably Splunk cannot meet.
Splunk ITSI is a great tool (and toolbox) for combining together numerous and varied monitoring regimes to bring more holistic analysis and reduce alert fatigue. By leveraging the Splunk ITSI service and KPI modeling regime, ecosystem telemetry can be turned into a more reliable, clearer, high-level perspective on the current state of your components and services.
StackState is suitable for 1000+ hosts. Sometimes specific applications can take higher development time. Well suited for hybrid platforms to build end to end service alarms and service views. Advanced UI navigation might require some training. It is not a simple download and deploy software. It will require development in an agile model. Where newer versions are deployed to suit exact client requirements. Support contract with the StackState Engineer for development of use-cases is required and very useful.
We are using Splunk extensively in our projects and we have recently upgraded to Splunk version 6.0 which is quite efficient and giving expected results. We keep track of updates and new features Splunk introduces periodically and try to introduce those features in our day to day activities for improvement in our reporting system and other tasks.
We have replaced our monitoring platform with Splunk & ITSI, and with the success, it's seen at our organization thus far we would be hard-pressed to pivot to another tool. Frankly, our business partners and application teams love Splunk & ITSI.
You can literally throw in a single word into Splunk and it will pull back all instances of that word across all of your logs for the time span you select (provided you have permission to see that data). We have several users who have taken a few of the free courses from Splunk that are able to pull data out of it everyday with little help at all.
Splunk IT Service Intelligence (ITSI) is a platform with extended functionality and provides various functionalities which can be utilized to improve the efficiency and accuracy in analyzing the data and detecting the attacks.
Some elements of the product haven't had the usability upgrade yet and can be a bit technical. This is to be expected as they are trying to solve complex problems. I am sure that in the future, steps will be made to simplify this as well for the users / administrators / developers of the platform.
Splunk maintains a well resourced support system that has been consistent since we purchased the product. They help out in a timely manner and provide expert level information as needed. We typically open cases online and communicate when possible via e-mail and are able to resolve most issues with that method.
During POC, pre-planning, and implementation, we have had interactions with numerous folks at Splunk. Everyone from sales & engineering to markets analysts to specific IT component SMEs, and a small professional services engagement to get started. They have all been exceptionally helpful and go above and beyond the call of duty. They actively reach out to ensure success is being realized and find ways to help proactively, instead of having to simply open support cases with the vendor.
It's swift, they're thinking along with us. It's a "collaboration approach" rather than a (traditional) customer-supplier relation. Out new ideas are taken in concern and often ends up in enhancements of StackState
The online course was simple clear and described the main capabilities of the solution. There is also an initial module that can be done for free so anyone can familiarize themselves with the functionality of this solution. On the other hand, however, there could be more free online courses. Maybe even with a certificate, this would broaden the group of people who are familiar with the platform while increasing familiarity with the solution itself.
I didn't get to fully evaluate Logstash as our corporation was already using Logstash, but both seemed like viable solutions to the problem that we were having. I wanted to evaluate Logstash some more, both did seem like they would work for the business needs that we had, we went with splunk as many teams were already using it.
Splunk has raised itself as a platform not just as a tool unlike other products in the market. If I talk about Moogsoft it also has similar capabilities but Splunk ITSI has more visibility and its GUI is making a different impact on the users. ServiceNow and Splunk are equally capable products however Splunk seems to have more tech-savvy people tools than ServiceNow.
I don't have any numbers to share but Splunk has positively served as a 24/7 monitoring tool that has saved hours of work by self-detecting, saving statistics and alerting problems in the system or from external interfaces as soon as they happen.
Splunk dashboards does a solid job in collecting, analyzing data and creating reports that contain an entire day's activity and then automatically sent out to the business.
Splunk is very easy to learn and very useful to any program or business application.
Splunk ITSI has reduced the number of alerts exposed to our Network Operations Center by 100x while increasing the context around outages.
Splunk ITSI has increased the accuracy of our incident detection by leveraging the Event Analytics system to weigh the behavior of the many characteristics of each component together instead of independently.
Splunk ITSI has reduced our incident MTTR (mean time to restore) by detecting issues faster, presenting them more clearly, and surfacing the salient details about the underlying issue.