• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • No categories available

      Browse All Categories

      Select a category to view markets

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In

Overview

Product Information on Splunk Enterprise

Updated 13th October 2025

What is Splunk Enterprise?

Splunk Enterprise is a software that enables organizations to monitor, search, analyze, and visualize large volumes of machine-generated data from various sources including applications, servers, and devices. The software provides features such as real-time data indexing, powerful search capabilities, customizable dashboards, and reporting tools to facilitate investigation and interpretation of operational, security, and business intelligence data. It assists organizations in addressing challenges related to IT operations, security monitoring, and compliance by helping users identify trends, detect anomalies, and investigate incidents. Splunk Enterprise integrates with diverse data sources and supports scalability for managing data across complex infrastructures.

Splunk Enterprise Pricing

Splunk Enterprise software uses a pricing model based on the amount of data ingested per day, with different tiers to accommodate varying data volumes and feature requirements. Subscription options are available for either annual or perpetual licensing, and pricing may differ depending on deployment type, such as cloud or on-premises. Additional services and support can be purchased separately.

Overall experience with Splunk Enterprise

Lead Cloud Infrastructure Specialist
30B + USD, Finance (non-banking)
FAVORABLE

“Splunk Enterprise: The tool you reach for at 3am when something breaks”

4.0
Mar 6, 2026
This text serves as a placeholder and does not reflect the user’s review responses or opinions. This text serves as a placeholder and does not reflect the user’s review responses or opinions. This text serves as a placeholder and does not reflect the user’s review responses or opinions.
Senior Product Manager
10B - 30B USD, Telecommunication
CRITICAL

“Splunk Enterprise Excels in Dashboards but Interface Needs Modernization for Accessibility”

3.0
Sep 3, 2025
This text serves as a placeholder and does not reflect the user’s review responses or opinions. This text serves as a placeholder and does not reflect the user’s review responses or opinions. This text serves as a placeholder and does not reflect the user’s review responses or opinions.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

Peer Discussions

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.

  1. Home
  2. /
  3. Splunk Enterprise
Logo of Splunk Enterprise

Splunk Enterprise

byCisco Systems (Splunk)
in Security Information and Event Management
4.5

About Company

Company Description

Updated 25th July 2024

Splunk operates in the realm of digital security and observability to facilitate safer and more resilient digital infrastructures. The company delivers a unified platform equipped with capabilities to maintain the secure operations of an organization, insulating it against potential digital disruptions.

Company Details

Updated 26th February 2025
Company type
Public
Year Founded
2003
Head office location
San Francisco, United States
Number of employees
5001 - 10000
Annual Revenue
3B-10B USD
Website
http://www.splunk.com

Do You Manage Peer Insights at Cisco Systems (Splunk)?

Access Vendor Portal to update and manage your profile.

User Sentiment About Splunk Enterprise
Reviewer Insights for: Splunk Enterprise
Deciding Factors: Splunk Enterprise Vs. Market Average
Performance of Splunk Enterprise Across Market Features

Splunk Enterprise Likes & Dislikes

Like

The first strength worth calling out is SPL itself. In practice, the Search Processing Language is the most powerful log query language I've used. I can write a single search that correlates Kubernetes pod crash loops from our EKS clusters with AWS CloudTrail API call failures and on-prem AD authentication events, all in one view. When we had a cascading failure last year that started with an expired IAM role and ended with stuck Helm deployments across two regions, SPL was how we traced the full chain in under an hour. No other tool in our stack could have done that. The second strength is the alerting and dashboard maturity. This isn't a tool where you build dashboards once and nobody looks at them. Our operations team has daily driver dashboards for ESK cluster health, data pipeline throughput, and deployment success rates. The alerts are granular enough that we can page on specific error patterns rather than just log volume spike. After running it for a few years, those dashboards have become the source of truth during incident calls and honestly that's the best compliment I can give an observability tool. Third, the forwarder architecture is quietly excellent. We run universal forwarders on hundreds of endpoints -- Linux servers, Windows hosts, container sidecars -- and they just work. I can count on one hand the number of forwarder-related incidents we've had in 3 years. For something that runs on every server we own, that kind of reliability matters more than any flashy feature.

Like

The first strength worth calling out is SPL itself. In practice, the Search Processing Language is the most powerful log query language I've used. I can write a single search that correlates Kubernetes pod crash loops from our EKS clusters with AWS CloudTrail API call failures and on-prem AD authentication events, all in one view. When we had a cascading failure last year that started with an expired IAM role and ended with stuck Helm deployments across two regions, SPL was how we traced the full chain in under an hour. No other tool in our stack could have done that. The second strength is the alerting and dashboard maturity. This isn't a tool where you build dashboards once and nobody looks at them. Our operations team has daily driver dashboards for ESK cluster health, data pipeline throughput, and deployment success rates. The alerts are granular enough that we can page on specific error patterns rather than just log volume spike. After running it for a few years, those dashboards have become the source of truth during incident calls and honestly that's the best compliment I can give an observability tool. Third, the forwarder architecture is quietly excellent. We run universal forwarders on hundreds of endpoints -- Linux servers, Windows hosts, container sidecars -- and they just work. I can count on one hand the number of forwarder-related incidents we've had in 3 years. For something that runs on every server we own, that kind of reliability matters more than any flashy feature.

Like

The first strength worth calling out is SPL itself. In practice, the Search Processing Language is the most powerful log query language I've used. I can write a single search that correlates Kubernetes pod crash loops from our EKS clusters with AWS CloudTrail API call failures and on-prem AD authentication events, all in one view. When we had a cascading failure last year that started with an expired IAM role and ended with stuck Helm deployments across two regions, SPL was how we traced the full chain in under an hour. No other tool in our stack could have done that. The second strength is the alerting and dashboard maturity. This isn't a tool where you build dashboards once and nobody looks at them. Our operations team has daily driver dashboards for ESK cluster health, data pipeline throughput, and deployment success rates. The alerts are granular enough that we can page on specific error patterns rather than just log volume spike. After running it for a few years, those dashboards have become the source of truth during incident calls and honestly that's the best compliment I can give an observability tool. Third, the forwarder architecture is quietly excellent. We run universal forwarders on hundreds of endpoints -- Linux servers, Windows hosts, container sidecars -- and they just work. I can count on one hand the number of forwarder-related incidents we've had in 3 years. For something that runs on every server we own, that kind of reliability matters more than any flashy feature.

Dislike

UI and UX can be more intuitive for a less technical audience

Dislike

UI and UX can be more intuitive for a less technical audience

Dislike

UI and UX can be more intuitive for a less technical audience

Top Splunk Enterprise Alternatives

Logo of LogRhythm SIEM
1. LogRhythm SIEM
4.3
(716 Ratings)
Logo of IBM Security QRadar SIEM
2. IBM Security QRadar SIEM
4.3
(665 Ratings)
Logo of Splunk Enterprise Security
3. Splunk Enterprise Security
4.5
(560 Ratings)
View All Alternatives

Recommended Gartner Insights

  • Critical Capabilities for Security Information and Event Management
  • Magic Quadrant for Security Information and Event Management

Splunk Enterprise Reviews and Ratings

  • Lead Cloud Infrastructure Specialist
    10B+ USD
    Finance (non-banking)
    Review Source

    Splunk Enterprise: The tool you reach for at 3am when something breaks

    4.0
    Mar 5, 2026
    I've been running Splunk Enterprise for about 3.5 years across a hybrid environment -- on-prem servers, multiple AWS regions and a fleet of EKS clusters. I manage the cloud infrastructure side, which means I'm both a consumer of Splunk dashboards and responsible for keeping the indexers healthy. I'd give it a 4 out of 5. It's earned the high marks because when something goes wrong at 3am, Splunk is the first place I go and it consistently gives me the answer. But that last star is held back by the cost model and the operational overhead of running it at scale.
  • Lead Cloud Infrastructure Specialist
    10B+ USD
    Finance (non-banking)
    Review Source

    Splunk Enterprise: The tool you reach for at 3am when something breaks

    4.0
    Mar 5, 2026
    I've been running Splunk Enterprise for about 3.5 years across a hybrid environment -- on-prem servers, multiple AWS regions and a fleet of EKS clusters. I manage the cloud infrastructure side, which means I'm both a consumer of Splunk dashboards and responsible for keeping the indexers healthy. I'd give it a 4 out of 5. It's earned the high marks because when something goes wrong at 3am, Splunk is the first place I go and it consistently gives me the answer. But that last star is held back by the cost model and the operational overhead of running it at scale.
  • Read All 1,122 Reviews

    Get unlimited access to verified peer reviews and insights

    Read unlimited Gartner-vetted product reviews
    View and share valuable product insights
    Download full product profiles
    Review products you use today

4.5

(1045 Ratings)

Rating Distribution

5 Star
46%
4 Star
49%
3 Star
5%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?