Splunk On-Call - Review
December 20, 2022

Splunk On-Call - Review

Mubeen Akhtar | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk On-Call

Splunk On-Call is the extended orchestration arm of Splunk. It is utilized to automate and centralize the flow of information during an incident. It is a great add-on if you have Splunk Enterprise Security in your environement and if you are providing services to multiple customers as it can peovide efficiency and optimize the incident life-cycle.
  • Centraliing information work-flow
  • Providing insights in to incident life cycle
  • Acting as a central platform during incidents
  • The user interface can be furthe improved
  • Licensing needs to be simplified and packaged as a bundle with other Splunk product like Enterprise Security
  • Customer outreach can be further enhanced
  • Centralized Incident Workflow
  • Correlation with Incidents
  • Knowledge sharing during Incident life cycle
  • Reduced incident handling time
  • Better incident contextual information sharing
  • Better incident documentation
  • BMC Helix ITSM (Remedy)
Splunk stacks really well due to its native integration with Splunk Products. The platform provides direct access to all the underlying data which is part of the investigation and this really adds tremendous value to the overal incident handling and management process. Also, knowledge management and contextual information sharing are great features for any operations.

Do you think Splunk On-Call delivers good value for the price?

Yes

Are you happy with Splunk On-Call's feature set?

Yes

Did Splunk On-Call live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of Splunk On-Call go as expected?

I wasn't involved with the implementation phase

Would you buy Splunk On-Call again?

Yes

It is very well suited for large enterprises and Managed Services Providers since there is huge event throughput and the considerable incidents created. The monitoring teams usually work in a 24/7 environment and information flow and centralization for incidents, especially during shift handover becomes crucial. Splunk On-Call does not realise its full value where the event throughput is less.