Skip to main content
TrustRadius
Splunk IT Service Intelligence (ITSI)

Splunk IT Service Intelligence (ITSI)

Overview

What is Splunk IT Service Intelligence (ITSI)?

Splunk supports IT operations analytics with the Splunk IT Service Intelligence premium offering, a software application available to subscribers to Splunk Cloud or Splunk Enterprise log analytics and SIEM platforms.

Read more
Recent Reviews

TrustRadius Insights

Splunk IT Service Intelligence, or ITSI, is a versatile tool used by infrastructure monitoring teams, NOCs, command centers, and IT …
Continue reading

Used the product

10 out of 10
June 16, 2022
Incentivized
We use this solution as the main tool for our NOC and love the ability to assign events to an employee for further analysis and play …
Continue reading

My review for you

8 out of 10
June 15, 2022
Incentivized
We use Splunk IT Service Intelligence to monitor all our environments. several departments use this awesome application. With this …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Splunk IT Service Intelligence (ITSI)?

Splunk supports IT operations analytics with the Splunk IT Service Intelligence premium offering, a software application available to subscribers to Splunk Cloud or Splunk Enterprise log analytics and SIEM platforms.

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.splunk.com/en_us/products/p…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

14 people also want pricing

Alternatives Pricing

What is Moogsoft?

Moogsoft is an IT alert management platform from the San Francisco-headquartered company of the same name with an office in the UK... also comprising the original developers of IBM's acquired Netcool technology.

What is Freshservice?

Freshservice is a cloud-based service desk and IT service management (ITSM) solution that currently serves more than 10,000 SMB, mid-market, and enterprise customers worldwide.

Return to navigation

Product Details

What is Splunk IT Service Intelligence (ITSI)?

ITSI is a premium analytics solution that correlates and applies machine learning to all data for real-time, predictive performance monitoring and one fully integrated IT management solution; this enables teams to prevent incidents before they happen and detect, respond and resolve incidents all from one place.

Splunk IT Service Intelligence (ITSI) Features

  • Supported: Dashboards to monitor service health and KPIs in real-time
  • Supported: Intelligent alerting and automated event clustering
  • Supported: Predictive analytics to prevent incidents 30 minutes in advance

Splunk IT Service Intelligence (ITSI) Integrations

Splunk IT Service Intelligence (ITSI) Competitors

Splunk IT Service Intelligence (ITSI) Technical Details

Deployment TypesOn-premise, Software as a Service (SaaS), Cloud, or Web-Based
Operating SystemsWindows, Linux, Mac
Mobile ApplicationNo
Supported CountriesGlobal

Frequently Asked Questions

Splunk supports IT operations analytics with the Splunk IT Service Intelligence premium offering, a software application available to subscribers to Splunk Cloud or Splunk Enterprise log analytics and SIEM platforms.

Dynatrace, Datadog, and Sumo Logic are common alternatives for Splunk IT Service Intelligence (ITSI).

The most common users of Splunk IT Service Intelligence (ITSI) are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(56)

Community Insights

TrustRadius Insights are summaries of user sentiment data from TrustRadius reviews and, when necessary, 3rd-party data sources. Have feedback on this content? Let us know!

Splunk IT Service Intelligence, or ITSI, is a versatile tool used by infrastructure monitoring teams, NOCs, command centers, and IT departments to manage and monitor various aspects of their infrastructure. Users leverage its capabilities to collect events from multiple data sources such as networks, servers, storage systems, databases, and security devices. Splunk ITSI aggregates this data on a single platform, providing a comprehensive view of the entire infrastructure for quick issue identification and root cause analysis.

One of the key use cases of Splunk ITSI is consolidating alerts from different IT tools to provide stakeholders with visibility into the health of services. This allows infrastructure operations, application developers, and DevOps teams to proactively address potential issues before they impact users. Splunk ITSI also monitors the performance and functionality of critical services, ensuring their proper functioning and reducing mean time to service restoration during outages.

In addition to traditional infrastructure elements, Splunk ITSI extends its monitoring capabilities to include telemetry from data centers, cloud infrastructures, and customer media consumption endpoints like set-top boxes, IPTV streamers, mobile devices, and web browsers. With real-time cloud monitoring and proactive alerting features, Splunk ITSI provides operational visibility into business health and hardware and microservices performance. It also supports event management, aggregation, incident creation, self-healing automation, and trend predictions in different environments.

By offering a single view of the entire topology through glass tables and pre-built content packs for real-time service monitoring, Splunk ITSI reduces response time for critical incidents while identifying root causes. Its user-friendly interface facilitates quick adoption among teams with varying skill levels in monitoring tools. Development teams also utilize Splunk ITSI to monitor system performance during high traffic events or peak times.

Overall, Splunk IT Service Intelligence is a powerful AIOps platform that brings together different areas of IT that were previously siloed. It helps manage major incidents effectively, monitor service availability, and limit downtime by quickly responding to outages.

Attribute Ratings

Reviews

(1-9 of 9)
Companies can't remove reviews or game the system. Here's why
September 09, 2023

ITSI - worth it.

Score 8 out of 10
Vetted Review
Verified User
Incentivized
Splunk ITSI is being used to mitigate hardware resource issues before they become a problem and troubleshoot issues for our teams.
  • Asset group overview.
  • Detailed metrics.
  • Customization to meet customer requirements.
  • Easier navigation for new users.
  • KPI responses.
  • Deconflicting multiple entity IDs.
ITSI is best suited for an environment with 100 or more devices or in any domain where monitoring critical devices is a must. The ability to customize KPIs and create alert actions is imperative.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
The Glasstables built-in ITSI is being used by our department. We are building Services/KPIs to build our Glasstables. Glasstables help us with monitoring our Services and alert us for any service degradation or issues. We are using it for IT monitoring and management, event analytics and management, and Service insights and monitoring
  • KPI based alerting
  • Adaptive Thresholding
  • Health Scorecard provided by Glasstables
  • Validating Adaptive Thresholding
  • Integrating Event Analytics with Servicenow
ITSI is well suited to know the health of the services. Based on the health of the Glasstables, we are able to make the business impact statement for the business users.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
My organization has used Splunk for many years however my team just started ingesting our data. We started off small and are figuring out what Splunk can do. Once you have the correct search results, the power is incredible. We can see how many calls come into our network, what errors are occurring and where exactly they are. In fact, for the first time, we used our dashboard (which hasn't been made public to the rest of the organization yet) to troubleshoot a possible outage. The on-call person opened the dashboard, and we knew right away it wasn't our team’s issue. The time we saved by not manually pulling calls from SQL, looking for errors within those calls, and simply digging through our network to find where the issue was occurring allowed the on-call person to immediately open a ticket with a vendor. We were able to show when the issue started, where the issue was, and defer to the vendor even though they had not seen the issue. If we can find this with the little data we are ingesting, just imagine what we can do with more. The possibilities are endless!
  • laying out dashboards to quickly see data
  • Providing a trending map to see data over time
  • Drilling down to find things you didn't even know you needed
  • I'm not sure if it's my organization locking down Splunk or Splunk itself but it would be helpful to get more detailed errors when searching. A way of guiding the correct input to get results.
  • Something like SQL IntelliSense - the feature reads internal metadata and lists all of the available objects and their properties, thereby helping people effectively and quickly write SPL.
  • Personalization for things like saving reports, datasets, dashboards of others
Splunk IT Service Intelligence is great for visualizing data and creating dashboards, and reports. Drilling down through the data is easy and shows things you may not have thought to look for. Seeing the data laid out in this fashion makes it easy and quick to get what you want. If you’re not well versed in SPL you maybe have difficulty finding what you need in a hurry.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
ITSI is a competitive tool that helps with highlighting issues and more importantly where the root cause lies. There is not much of a learning curve to get value out of ITSI, especially compared to the competitors out there. Spunks user groups are also a big help for quick responses.
  • Out of the box value
  • Problem identification
  • Root cause analysis
  • Better highlight what you can click on and what is static.
It can show end-to-end visibility into your infrastructure all in one view. Not having to go to specific and separate devices or logs is invaluable in keeping services flowing (i.e great uptime.) Splunk as a whole can cover all of its infrastructure services security etc and this is just a niche or specific tool in the toolset)
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Splunk ITSI is being used by our clients across different projects and IT teams to manage the critical issues being reported by different application teams and timely resolution of those issues in order to ensure a smooth user experience for the end-users. Different IT teams are able to work on the different issues based on the defined priorities and parameters.
  • User intuitive interface.
  • A large array of options and customizations available for IT teams.
  • Report extraction for different scenarios.
  • Auto event detection and logging.
  • In built mechanism for calculation of health scores of applications and deployments.
  • Support for third-party tools and extensions needs improvement.
  • Cost is somewhat higher.
Splunk ITSI is one of the best event management and monitoring solutions available for medium to large-sized enterprises. It has an excellent dashboard that provides in-depth analysis for all the monitoring and events.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use Splunk IT [Service Intelligence (ITSI)] to help reduce the reliance on institutional knowledge and put real-time actionable information in the hands of technicians troubleshooting a production problem. ITSI will help us to ensure that our recent hires are able to identify root causes to an ongoing incident as quickly as our more seasoned team members. ITSI allows us to layer information from various sources into a single pane of glass view of our entire topology.
  • ITSI visualizes the dependency topology and layers in data
  • ITSI grabs data from many disparate sources and creates an integrated view
  • ITSI provides real-time insights by showing a timelines of metrics layered across various transactions
  • ITSI really needs a robust splunk log ingestion infrastructure at its core
  • ITSI requires a great engineering team to build out the automated discovery and topology
  • Unless you use an API to build the topology, the view can quickly become static
[Splunk IT Service Intelligence (ITSI)] is well suited when you have a system that you want to visualize, and then layer in information from many different sources. This will allows ITSI to intelligently create alerts based on the system as a whole vs the individual components. In some cases, a simple splunk dashboard would really suffice over using ITSI. Teams deploying ITSI should really understand the use cases and consider using simple dashboards where they make sense, and use ITSI for topological views.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We currently leverage ITSI across our entire IT organization. It is primarily used for event management and aggregation of events to drive incident creation and self healing automation.
  • Clean user interface
  • Easy to build new integrations
  • Flexible and can be catered to your specific use case
  • The terminology takes some getting used to: Aggregation policies, notable events, correlation searches, glass tables. If you're not familiar with ITSI, these terms can be a bit overwhelming and steepens the learning curve.
  • We have had some technical issues with the underlying support when used in a multisite cluster. We've had to build in several points of redundancy to make sure it works as expected.
  • I'd like to see additional types of notable events, like informational events that come in for when an incident is created or when an alert is acknowledged so all of those action steps can be viewed on the episode timeline without affecting the count of events.
I don't think there is a better event management solution on the market especially when you factor in the power of Core Splunk backing it.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
ITSI is used by our business unit in order to provide operational visibility into all our Splunk data. Splunk does a great job of aggregating data into a single searchable dataset, but Splunk Enterprise alerts are disjointed from one another and there are too many metrics we would need to alert on in Splunk Enterprise to be manageable. ITSI provides a framework to define the IT services that matter to you, such as the health of a server, an application, or a client, constantly monitor the KPIs that make up the health of that IT service, and organize all of so that is it operationally easy to view the health of all services yet easy to drill down to a specific server or process experiencing a problem.
  • Monitor hundreds of IT services by continuously tracking thousands of KPIs in a scalable way.
  • Quickly identify problem areas by a combination of default visualizations and ability to create custom dashboards.
  • Extremely configurable to effectively monitor nearly any KPI imaginable from Splunk.
  • The extreme flexibility also makes it highly complex. Expert Splunk users are required to make full use of it.
  • Documentation is insufficient and does not cover advanced use cases that ITSI is capable of supporting.
  • Depending on how ITSI is configured, it can place heavy load on Splunk infrastructure. ITSI performance can be optimized in many ways but they are not always obvious.
  • ITSI Events/Alerts (AKA Episode Review) has flexibility in it but still not as flexible as desired. However this can be compensated by directly querying ITSI's result data in Splunk.
ITSI is the obvious tool for a scaled solution to continuously monitoring thousands of KPIs buried in Splunk. Any IT service question you might ask Splunk such as "Is traffic dropping to one of my data centers?" or "Are all my critical processes running?" or "Is traffic balanced across my web farm?" can be implemented in ITSI. However, all that flexibility comes at the cost of complexity. ITSI is easy for a consumer to use but not easy to learn how to administer. Simple use cases are not overly difficult to implement but it takes a combination of Splunk query expertise and patience to learn ITSI. Once mastered though, you gain unbelievable operational awareness into the critical KPIs hiding in your Splunk data.
August 02, 2020

Splunk ITSI FTW

Mike McGrail | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Splunk ITS Service Intelligence is used to consolidate alerts from various IT tools. Along with other logs and performance data, it is used by infrastructure operations, application developers, DevOps and other stakeholders to quickly see service health of applications and the IT infrastructure components. It helps eliminate data silos and having to reach out to individual teams managing point solutions.
  • Show KPIs for each service.
  • Show aggregated health scores.
  • Increase transparency across large disparate organizations.
  • Multiple ways to ingest the same data can be confusing (events vs. metrics).
  • Glass tables can be a conflicting priority against normal Splunk dashboards.
  • Proper setup for alerting requires content packs that could be included with the product directly.
  • A separate license for ITSI on top of Splunk may make purchasing decisions difficult to justify.
Some teams get excited when looking at ITSI service models and envision modeling the entire infrastructure. What gets lost in translation is breaking it down to services, and also ITSI is not a replacement for an APM solution. So using a proper APM solution to drive quick insights into specific transactions, then feeding that data to Splunk/ITSI is a better bet.
Return to navigation