Skip to main content
TrustRadius

Overview

What is Splunk Cloud?

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on…

Read more
Recent Reviews

TrustRadius Insights

Splunk Cloud is highly regarded for its efficient customer support and comprehensive services. Users appreciate its ability to perform …
Continue reading
Read all reviews

Popular Features

View all 13 features
  • Event and log normalization/management (15)
    9.7
    97%
  • Correlation (15)
    9.7
    97%
  • Centralized event and log data collection (15)
    9.0
    90%
  • Deployment flexibility (15)
    9.0
    90%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Splunk Cloud?

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they…

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

13 people also want pricing

Alternatives Pricing

What is Trellix Helix?

Trellix Helix (formerly FireEye Helix) is a SIEM solution providing a non-malware threat detection solution.

Return to navigation

Product Demos

UiPath Robotic Process Monitoring for Splunk - Demo Walkthrough

YouTube

Splunk Risk-Based Alerting Demo: Using MITRE ATT&CK + Enterprise Security (ES)—@Splunkofficial Cloud SecOps

YouTube
Return to navigation

Features

Security Information and Event Management (SIEM)

Security Information and Event Management is a category of security software that allows security analysts to look at a more comprehensive view of security logs and events than would be possible by looking at the log files of individual, point security tools

9
Avg 7.8
Return to navigation

Product Details

What is Splunk Cloud?

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they happen with access to streaming and machine learning capabilities. Search any kind of data in real-time to detect and prevent issues before they happen with access to the latest streaming and machine learning capabilities.

Splunk Cloud Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

Reviewers rate Correlation and Event and log normalization/management and Custom dashboards and workspaces highest, with a score of 9.7.

The most common users of Splunk Cloud are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(123)

Community Insights

TrustRadius Insights are summaries of user sentiment data from TrustRadius reviews and, when necessary, 3rd-party data sources. Have feedback on this content? Let us know!

Splunk Cloud is highly regarded for its efficient customer support and comprehensive services. Users appreciate its ability to perform security information and event management, providing real-time analysis. One of the standout features of Splunk Cloud is its user-friendly interface that allows users to create easily customizable dashboards and conveniently share them with others. The product has gained a reputation for being fast, reliable, and easy to navigate.

The versatility of Splunk Cloud makes it an invaluable tool across various departments within organizations. For the IT department, it helps monitor devices that generate logs, enabling them to address log retention and conduct security investigations. Moreover, Splunk Cloud is widely used throughout businesses to solve a range of problems, such as monitoring Active Directory Events, identifying misconfigurations, excessive usage, improper procedures, and security events. Additionally, teams including DevOps, Security, sales, support, and operations benefit from Splunk Cloud's capabilities as it centralizes server logs and provides insights into interruptions in service, anomalous activities, and security-related events.

Splunk Cloud eliminates the need to host infrastructure and pay upfront licensing costs by delivering Splunk-as-a-Service securely on the public cloud. It supports all Splunkbase apps, including premium applications with pre-packaged searches, dashboards, and reports. This makes it easier for businesses to log user events in mobile applications and backend services while gaining visibility into key metrics through comprehensive reports and dashboards.

A significant use case of Splunk Cloud lies in its role as a SIEM solution for aggregating log data and generating alerts when necessary. It replaces less robust solutions for enhanced security measures. Moreover, Splunk Cloud proves valuable in providing visibility into cloud infrastructure and various providers. It aids in identifying anomalies, events of interest, and indicators of compromise.

Overall, Splunk Cloud presents itself as an indispensable tool that offers a wide range of use cases across different departments within an organization. Its powerful features, efficient support, and user-friendly interface make it a popular choice for businesses seeking effective log management, security analysis, and real-time monitoring.

Effective SIEM Solution: Users have found Splunk Cloud to be a simple and effective solution for consolidating multiple data points and managing alert workflows. Several reviewers have mentioned that it has helped them streamline their security operations and improve incident response.

User-Friendly Interface: The user-friendly interface of Splunk Cloud has been praised by many users, with some describing it as intuitive and easy to navigate. This allows users to easily create custom dashboards for everyday monitoring of multiple parameters without the need for extensive training or technical expertise.

Powerful Search Capabilities: Many reviewers have highlighted Splunk Cloud's powerful query language and fast search indexing capabilities. This enables quick and accurate searching through large volumes of information, such as Windows Server Logs, making it easier for users to find the insights they need in a timely manner.

Cons:

  1. Lagging behind competitors: Some users have expressed that Splunk Cloud lags behind its competitors in terms of features and functionality. They feel that the enterprise versions are always one version behind the consumer versions, which hinders their ability to take advantage of the latest enhancements and improvements.
  2. Expensive cost: The cost of Splunk Cloud is considered expensive compared to its competitors. Users would like to see more cost-effective pricing options that align with their budget constraints and provide better value for money.
  3. Complex query language: The SPL programming language used for queries in Splunk Cloud is not intuitive, according to users. They find it challenging to write complex queries efficiently and would appreciate a better repository of pre-built queries for common usage monitoring, making it easier for them to analyze data without extensive knowledge of coding.

Attribute Ratings

Reviews

(1-6 of 6)
Companies can't remove reviews or game the system. Here's why
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use Splunk Cloud to aggregate logs from various Cloud and on-premise applications and services into a single place for Security and IT Operations monitoring. This allows us to focus on a single platform and remove duplication of costs, training, data onboarding etc. We have alerts that are sent directly to operations teams and dashboards available for wallboards and aggregate data.
  • Easy to get data in
  • Rich user experience
  • Wide range of Splunk & Community add-ons
  • Unable to download configuration changes easily
Splunk Cloud is suitable for a range of scenarios and is outstanding in Security monitoring use-cases. Having the data in Splunk Cloud easily opens up the possibility to implement IT Ops monitoring using the same data, however Splunk Infrastructure Monitoring might be a better IT Ops tool if the data is not already in Splunk Cloud.
David Hillier | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Splunk Cloud is one of the advanced and reliable platforms. It has efficient customer support which is playing an important role in giving great services. It is being used by me for the last year in our organization. It has helped me a lot in security information and event management. It provides me the real-time analysis. Using it, I create easy-to-follow dashboards that I can easily share with your users. The usability of the product is another amazing reason why I am using the product. It is very fast and reliable to use. It is very easy to create customizable dashboards for scheduling your events, and also you do not have to learn a lot for using them.
  • This SIEM consolidates multiple data points and offers several features and benefits, creating custom dashboards and managing alert workflows.
  • Splunk Cloud provides a simple way to have a central monitoring and security solution. Though it does not have a huge learning curve, you should spend some time learning the basics.
  • Splunk Cloud enables me to create and schedule statistical reports on network use for Management.
  • Splunk Cloud generally lags behind its competitors. Enterprise versions are always one version behind those available to consumers.
  • It is expensive as compared to its competitors. They should come up with cost-effective prices.
I will highly recommend this software because using Splunk Cloud has helped us become more proactive about handling our security concerns and better manage our environment. It is one of the finest security software that is easy to use and also provides analytics. It has excellent features like creating dashboard security and managing features etc. So you must give it a try once!
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Splunk Cloud is used to provide quick and easy access to important data. This includes metrics about their business, the use of our services, revenue, and errors. Several departments throughout the organization use the data and dashboards available in Splunk.
  • Excellent dashboards that provide a quick view of important data.
  • Easy to create dashboards.
  • Filtering within the dashboards provides updated dashboards quickly.
  • Exporting is easy.
  • While the dashboards are intuitive, setting them up isn't always as easy. A more intuitive interface would help ensure all users can easily set up dashboards to get the information they need.
If you want to see the data instead of dig for it, Splunk is helpful for providing the visualizations that speak to the data.
Joseph Sweet | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Splunk Cloud is being used by our IT security operation and our DevOps team. It is being used similarly to a SIEM for aggregating log data and running analysis on it for generating alerts. It replaced Sumo Logic which was producing too many poor alerts and was not as robust of a solution. It supports our SOC well, and it makes our security team's job much easier. We are also using it in DevOps as a pilot for APM.
Splunk Cloud has been great for our security environment and helping us becoming more proactive at addressing security concerns. For us, it has great transparency in terms of cost and allows for good scalability as we right-size our environment. It is great for developing easy to follow dashboards that you can share across your user environment.
June 22, 2019

Heavy Hitter SIEM!

Chase Palmer, CISSP | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use Splunk to centralize and consume all of our server logs, and various other logs, to monitor for interruptions in service, anomalous activity, and other security-related events. Splunk is primarily used by our DevOps and Security teams. Splunk solved an issue of being able to easily and effectively search hundreds of thousands of log entries in an easy to consume format.
  • Splunk is extremely versatile and can consume just about any kind of log out there.
  • Splunk's search function is very powerful, and allows for some very complex search criteria. Narrowing and/or expanding search results is as simple as a click of the mouse.
  • There are many different apps/plugins that can be added to Splunk that provide built-in reporting and alerting on certain kinds of events, meaning you don't have to be an expert to use Splunk.
  • There is a bit of a learning curve to figure out how to initially use it.
  • When SAML is set up, there is no apparent way to log out.
Splunk is not cheap, so Splunk only makes sense for businesses where there are hundreds of thousands of logs a minute, or where manual processes or open source alternatives can't keep up. You will need to have a dedicated person or two in order to configure and manage Splunk on a very regular business, otherwise, you won't be able to reap the full benefits that Splunk can offer.
Jeff Kitchens | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Here at CCMSI, we use Splunk Cloud to monitor Active Directory Events. It is primarily used by the IT Systems Team. It has proven to be invaluable to find misconfiguration, excessive usage, improper procedures, and security events. The tool allows me to give Management the information they ask for in a graphical way that shows trends, spikes, and overall usage.
  • Splunk Cloud allows me to search the volumes of information help in Windows Server Logs quickly and accurately.
  • Splunk Cloud allows me to create Dashboards for everyday monitoring of multiple parameters.
  • Splunk Cloud allows me to create and schedule reports for Management on network usage and statistics.
  • The SPL programming language that the queries are built in is not very intuitive.
  • There should be a better repository of pre-built queries for what I would think of as common Active Directory usage monitoring.
  • I would like to see more free training/familiarization information made available.
I find that Splunk Cloud is well suited for tracking user logins, Server Reboots, failed login attempts, account lockouts, and sorting these items by host or user. We often trace failed user logins to someone having cached credentials on an endpoint which can result in locked accounts that drive the Help Desk ticket volume up unnecessarily.
Return to navigation