Skip to main content
TrustRadius

Overview

What is Splunk Cloud?

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on…

Read more
Recent Reviews

TrustRadius Insights

Splunk Cloud is highly regarded for its efficient customer support and comprehensive services. Users appreciate its ability to perform …
Continue reading
Read all reviews

Popular Features

View all 13 features
  • Event and log normalization/management (15)
    9.7
    97%
  • Correlation (15)
    9.7
    97%
  • Centralized event and log data collection (15)
    9.0
    90%
  • Deployment flexibility (15)
    9.0
    90%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Splunk Cloud?

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they…

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

13 people also want pricing

Alternatives Pricing

What is Trellix Helix?

Trellix Helix (formerly FireEye Helix) is a SIEM solution providing a non-malware threat detection solution.

Return to navigation

Product Demos

UiPath Robotic Process Monitoring for Splunk - Demo Walkthrough

YouTube

Splunk Risk-Based Alerting Demo: Using MITRE ATT&CK + Enterprise Security (ES)—@Splunkofficial Cloud SecOps

YouTube
Return to navigation

Features

Security Information and Event Management (SIEM)

Security Information and Event Management is a category of security software that allows security analysts to look at a more comprehensive view of security logs and events than would be possible by looking at the log files of individual, point security tools

9
Avg 7.8
Return to navigation

Product Details

What is Splunk Cloud?

A data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts, users can focus on acting on data. Search any kind of data in real-time to detect and prevent issues before they happen with access to streaming and machine learning capabilities. Search any kind of data in real-time to detect and prevent issues before they happen with access to the latest streaming and machine learning capabilities.

Splunk Cloud Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

Reviewers rate Correlation and Event and log normalization/management and Custom dashboards and workspaces highest, with a score of 9.7.

The most common users of Splunk Cloud are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(123)

Community Insights

TrustRadius Insights are summaries of user sentiment data from TrustRadius reviews and, when necessary, 3rd-party data sources. Have feedback on this content? Let us know!

Splunk Cloud is highly regarded for its efficient customer support and comprehensive services. Users appreciate its ability to perform security information and event management, providing real-time analysis. One of the standout features of Splunk Cloud is its user-friendly interface that allows users to create easily customizable dashboards and conveniently share them with others. The product has gained a reputation for being fast, reliable, and easy to navigate.

The versatility of Splunk Cloud makes it an invaluable tool across various departments within organizations. For the IT department, it helps monitor devices that generate logs, enabling them to address log retention and conduct security investigations. Moreover, Splunk Cloud is widely used throughout businesses to solve a range of problems, such as monitoring Active Directory Events, identifying misconfigurations, excessive usage, improper procedures, and security events. Additionally, teams including DevOps, Security, sales, support, and operations benefit from Splunk Cloud's capabilities as it centralizes server logs and provides insights into interruptions in service, anomalous activities, and security-related events.

Splunk Cloud eliminates the need to host infrastructure and pay upfront licensing costs by delivering Splunk-as-a-Service securely on the public cloud. It supports all Splunkbase apps, including premium applications with pre-packaged searches, dashboards, and reports. This makes it easier for businesses to log user events in mobile applications and backend services while gaining visibility into key metrics through comprehensive reports and dashboards.

A significant use case of Splunk Cloud lies in its role as a SIEM solution for aggregating log data and generating alerts when necessary. It replaces less robust solutions for enhanced security measures. Moreover, Splunk Cloud proves valuable in providing visibility into cloud infrastructure and various providers. It aids in identifying anomalies, events of interest, and indicators of compromise.

Overall, Splunk Cloud presents itself as an indispensable tool that offers a wide range of use cases across different departments within an organization. Its powerful features, efficient support, and user-friendly interface make it a popular choice for businesses seeking effective log management, security analysis, and real-time monitoring.

Effective SIEM Solution: Users have found Splunk Cloud to be a simple and effective solution for consolidating multiple data points and managing alert workflows. Several reviewers have mentioned that it has helped them streamline their security operations and improve incident response.

User-Friendly Interface: The user-friendly interface of Splunk Cloud has been praised by many users, with some describing it as intuitive and easy to navigate. This allows users to easily create custom dashboards for everyday monitoring of multiple parameters without the need for extensive training or technical expertise.

Powerful Search Capabilities: Many reviewers have highlighted Splunk Cloud's powerful query language and fast search indexing capabilities. This enables quick and accurate searching through large volumes of information, such as Windows Server Logs, making it easier for users to find the insights they need in a timely manner.

Cons:

  1. Lagging behind competitors: Some users have expressed that Splunk Cloud lags behind its competitors in terms of features and functionality. They feel that the enterprise versions are always one version behind the consumer versions, which hinders their ability to take advantage of the latest enhancements and improvements.
  2. Expensive cost: The cost of Splunk Cloud is considered expensive compared to its competitors. Users would like to see more cost-effective pricing options that align with their budget constraints and provide better value for money.
  3. Complex query language: The SPL programming language used for queries in Splunk Cloud is not intuitive, according to users. They find it challenging to write complex queries efficiently and would appreciate a better repository of pre-built queries for common usage monitoring, making it easier for them to analyze data without extensive knowledge of coding.

Attribute Ratings

Reviews

(1-4 of 4)
Companies can't remove reviews or game the system. Here's why
Fraser Clark | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Splunk Cloud is used by the IT department for the majority of the devices that can produce logs. It was initially purchased as a syslog aggregate but has evolved into much more than that now. It addresses the question of log retention and security investigation. It will eventually be expanded to be used across the wider business.
  • Searching through logs/data
  • Data ingestion
  • Documentation for add-ons and apps
  • Support for Splunk Cloud
Splunk Cloud is suited for organisations that have a lot of data from many different data sources and you would like them to be in one tool. It's excellent for splitting data and searching through the different indexes of data.
If you only have one data source (syslog from network devices for example) I would say it is less appropriate and would be overkill.
Security Information and Event Management (SIEM) (7)
100%
10.0
Centralized event and log data collection
100%
10.0
Correlation
100%
10.0
Event and log normalization/management
100%
10.0
Deployment flexibility
100%
10.0
Integration with Identity and Access Management Tools
100%
10.0
Custom dashboards and workspaces
100%
10.0
Host and network-based intrusion detection
100%
10.0
  • Helped us identify potential security breaches
  • Able to investigate issues thoroughly
All the products in this category do log aggregation very well, however the winning factor was that we have experience with Splunk already and this has proved invaluable as Splunk has a steep learning curve. Especially the Splunk administration part of the tool as that is a very complex area if you wish to get into it.
Splunk Cloud support is sorely lacking unfortunately. The portal where you submit tickets is not very good and is lacking polish. Tickets are left for days without any updates and when chased it is only sometimes you get a reply back. I get the feeling the support team are very understaffed and have far too much going on. From what I know, Splunk is aware of this and seem to be trying to remedy it.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use Splunk for a part of the business. More specifically, for the less critical machines. For the critical ones, we have a big SIEM with limited licenses. Having Splunk for the rest of the environment does save some money, and they do not need the same management as the critical ones.
  • Ease of use.
  • There is not a big learning curve.
  • It could be cheaper.
Splunk Cloud is easy to use for having a central Security and monitoring solution. It does not have a huge learning curve, though you should spend some time to learn the basics.
Security Information and Event Management (SIEM) (7)
84.28571428571429%
8.4
Centralized event and log data collection
90%
9.0
Correlation
80%
8.0
Event and log normalization/management
90%
9.0
Deployment flexibility
80%
8.0
Integration with Identity and Access Management Tools
90%
9.0
Custom dashboards and workspaces
80%
8.0
Host and network-based intrusion detection
80%
8.0
  • It did give use insight in our network which we had not had before.
There is plenty of community-driven support, which is always a very good thing to have. Getting support from your peers worldwide means answers can be very quick, even quicker than official support channels.
Joseph Sweet | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Splunk Cloud is being used by our IT security operation and our DevOps team. It is being used similarly to a SIEM for aggregating log data and running analysis on it for generating alerts. It replaced Sumo Logic which was producing too many poor alerts and was not as robust of a solution. It supports our SOC well, and it makes our security team's job much easier. We are also using it in DevOps as a pilot for APM.
Splunk Cloud has been great for our security environment and helping us becoming more proactive at addressing security concerns. For us, it has great transparency in terms of cost and allows for good scalability as we right-size our environment. It is great for developing easy to follow dashboards that you can share across your user environment.
Security Information and Event Management (SIEM) (7)
85.71428571428571%
8.6
Centralized event and log data collection
100%
10.0
Correlation
100%
10.0
Event and log normalization/management
100%
10.0
Deployment flexibility
100%
10.0
Integration with Identity and Access Management Tools
N/A
N/A
Custom dashboards and workspaces
100%
10.0
Host and network-based intrusion detection
100%
10.0
  • Reduced the amount of time needed from internal security resources (freed up at least 3 FTEs).
  • Reduced the cost per daily GB ingests of our SIEM by 33%.
  • Allowed us to migrate to a lower cost SOC model.
Splunk Cloud blows Sumo Logic out of the water. The experience is night and day. We went from several highly stressed IT security professionals who were unsure if the data they were getting was valuable, to very happy IT security professionals who can now be more proactive and get all the information they need.
Whenever we have an issue, it gets resolved quickly and beats SLAs. Splunk Cloud support is knowledgeable, responsive and quick. We have never had an issue getting what we need when we need it.
August 16, 2019

Powerful and versatile

Score 9 out of 10
Vetted Review
Verified User
Incentivized
Splunk is available to all our teams, and usage is spreading. My team uses it for all the applications we manage, and it lets us log all user events in our mobile application and backend services. The reports it enables also really help with visibility and monitoring. For example, we were able to create a dashboard showing the average amount of time it takes to get through a particular flow in the app, the number of units processed per day in our app, error rates, and a lot more.
  • Powerful query language.
  • Very fast search indexing.
  • Intuitive UI.
  • The query language is well-documented but has a bit of a learning curve.
  • I wish copy/pasting JSON from the logs were easier without going to the completely raw (condensed) form.
Splunk is great for logging and aggregating information across many sources. We are able to attach unique ids to the requests from our mobile app and trace their execution through our backend services. It is also very powerful for creating dashboards and other insights based on our log data. I would even use it for just a single application, just for the search capabilities.
Security Information and Event Management (SIEM) (6)
96.66666666666666%
9.7
Centralized event and log data collection
100%
10.0
Correlation
100%
10.0
Event and log normalization/management
90%
9.0
Deployment flexibility
100%
10.0
Integration with Identity and Access Management Tools
90%
9.0
Custom dashboards and workspaces
100%
10.0
  • It has allowed my team to find answers to support issues quickly.
  • It has given us insight into how our app is doing through custom dashboards.
  • It has simplified logging setup with their easy-to-use API.
Overall, it is very usable. I would like if recent searches were saved for longer because I always have to refer to my notes when I'm looking for something specific and it's been a few weeks. But that's a small issue, and the actual search and browsing interface is easy to use and powerful.
My team has reached out to them on several occasions with various questions, and they were quick to respond and help us solve our problems.
My company used to use Loggly, and while I can't speak to the specifics of why we switched to Splunk, I do know that Splunk seems faster and has more features than Loggly. On the other hand, I've used Splunk much more than I used Loggly when we had it before, so my view could be skewed a bit.
Return to navigation