Skip to main content
TrustRadius
Splunk Cloud Platform

Splunk Cloud Platform

Overview

What is Splunk Cloud Platform?

Splunk Cloud Platform is a data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts.

Read more

Learn from top reviewers

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Splunk Cloud Platform?

Splunk Cloud Platform is a data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts.

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

16 people also want pricing

Alternatives Pricing

What is Trellix Helix?

Trellix Helix (formerly FireEye Helix) is a SIEM solution providing a non-malware threat detection solution.

What is Blumira?

Blumira’s cloud SIEM platform offers both automated threat detection and response, enabling organizations of any size to more defend against cybersecurity threats in near real-time. It's goal is to ease the burden of alert fatigue, complexity of log management and lack of IT visibility.

Return to navigation

Product Demos

UiPath Robotic Process Monitoring for Splunk - Demo Walkthrough

YouTube

Splunk Risk-Based Alerting Demo: Using MITRE ATT&CK + Enterprise Security (ES)—@Splunkofficial Cloud SecOps

YouTube
Return to navigation

Features

Security Information and Event Management (SIEM)

Security Information and Event Management is a category of security software that allows security analysts to look at a more comprehensive view of security logs and events than would be possible by looking at the log files of individual, point security tools

9
Avg 7.8
Return to navigation

Product Details

What is Splunk Cloud Platform?

Splunk Cloud Platform is a data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they happen with access to streaming and machine learning capabilities. Search any kind of data in real-time to detect and prevent issues before they happen with access to the latest streaming and machine learning capabilities.

Splunk Cloud Platform Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

Splunk Cloud Platform is a data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts.

Reviewers rate Event and log normalization/management and Custom dashboards and workspaces highest, with a score of 9.8.

The most common users of Splunk Cloud Platform are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews From Top Reviewers

(1-5 of 16)

Splunk Cloud, good for cloud-first companies.

Rating: 6 out of 10
July 19, 2021
Vetted Review
Verified User
Splunk Cloud Platform
1 year of experience
We recently implemented it in our organization, mainly for security monitoring and to provide visibility into our cloud infrastructure and various providers. We are bringing in data to better identify anomalies, events of interest, and indicators of compromise.
  • Integration with Okta for IAM-related security events and monitoring.
  • Integration with AWS for CloudTrail and CloudWatch logs
  • Integration with Mimecast for email monitoring and integration
Cons
  • Deploying apps require a support ticket and can have a long turnaround time.
  • Making changes to conf files requires a ticket and if it's not through an approved process, then Puppet will reset it to what it was previously
  • Custom apps have to be very well written to make it through the approval process.
If you have a smaller team that can't have a dedicated Splunk admin to manage the indexers, clusters, search heads, etc, Splunk Cloud is good because you have them manage it.

Splunk Cloud - king of log ingest

Rating: 8 out of 10
December 29, 2023
Vetted Review
Verified User
Splunk Cloud Platform
4 years of experience
Log aggregation, enterprise security - alerts and detections off of log events for corporate infrastructure. Correlation searches off of specific events, application troubleshooting, and any other details that you can find in our log sources.

Using Splunk Cloud simplifies the solution as we do not have to maintain and manage infrastructure.
  • Log ingest / parsing
  • role based access to specific logs
  • log event searching
  • alerts and dashboards
Cons
  • Filter of incoming logs from cloud sources - needs drastically improved UI
  • Mission Control - nice concept, not there in implementation
Best platform for ingesting, parsing, and searching for logs. Other recent promises of new functionality that is not ready yet.

Splunk Cloud - Excellent product with steep learning curve

Rating: 8 out of 10
June 23, 2022
FC
Vetted Review
Verified User
Splunk Cloud Platform
1 year of experience
Splunk Cloud is used by the IT department for the majority of the devices that can produce logs. It was initially purchased as a syslog aggregate but has evolved into much more than that now. It addresses the question of log retention and security investigation. It will eventually be expanded to be used across the wider business.
  • Searching through logs/data
  • Data ingestion
Cons
  • Documentation for add-ons and apps
  • Support for Splunk Cloud
Splunk Cloud is suited for organisations that have a lot of data from many different data sources and you would like them to be in one tool. It's excellent for splitting data and searching through the different indexes of data.
If you only have one data source (syslog from network devices for example) I would say it is less appropriate and would be overkill.

Splunk Cloud is a great solution for SIEM

Rating: 10 out of 10
October 13, 2019
JS
Vetted Review
Verified User
Splunk Cloud Platform
1 year of experience
Splunk Cloud is being used by our IT security operation and our DevOps team. It is being used similarly to a SIEM for aggregating log data and running analysis on it for generating alerts. It replaced Sumo Logic which was producing too many poor alerts and was not as robust of a solution. It supports our SOC well, and it makes our security team's job much easier. We are also using it in DevOps as a pilot for APM.
Cons
  • We have no suggestions at this time. It has been a great experience.
Splunk Cloud has been great for our security environment and helping us becoming more proactive at addressing security concerns. For us, it has great transparency in terms of cost and allows for good scalability as we right-size our environment. It is great for developing easy to follow dashboards that you can share across your user environment.

Splunk Cloud -- A tool that helps monitor and solve problems.

Rating: 10 out of 10
March 22, 2018
JK
Vetted Review
Verified User
Splunk Cloud Platform
1 year of experience
Here at CCMSI, we use Splunk Cloud to monitor Active Directory Events. It is primarily used by the IT Systems Team. It has proven to be invaluable to find misconfiguration, excessive usage, improper procedures, and security events. The tool allows me to give Management the information they ask for in a graphical way that shows trends, spikes, and overall usage.
  • Splunk Cloud allows me to search the volumes of information help in Windows Server Logs quickly and accurately.
  • Splunk Cloud allows me to create Dashboards for everyday monitoring of multiple parameters.
  • Splunk Cloud allows me to create and schedule reports for Management on network usage and statistics.
Cons
  • The SPL programming language that the queries are built in is not very intuitive.
  • There should be a better repository of pre-built queries for what I would think of as common Active Directory usage monitoring.
  • I would like to see more free training/familiarization information made available.
I find that Splunk Cloud is well suited for tracking user logins, Server Reboots, failed login attempts, account lockouts, and sorting these items by host or user. We often trace failed user logins to someone having cached credentials on an endpoint which can result in locked accounts that drive the Help Desk ticket volume up unnecessarily.
Return to navigation