My main use cases for Splunk Observability Cloud include retail analytics.

Splunk Observability Cloud
SplunkExternal reviews
External reviews are not included in the AWS star rating for the product.
Synthetic monitoring increases availability and reduces downtime
What is our primary use case?
What is most valuable?
The feature I appreciate the most about Splunk Observability Cloud is Synthetic Monitoring. These features have benefited my organization by increasing availability and decreasing downtime, providing assurance that makes you feel good, and ultimately enhancing well-being.
The out-of-the-box customizable dashboards are very effective. At the same time, we also use Splunk Cloud to enhance them. The Splunk Cloud is a better dashboarding experience.
Our teams have utilized the ability to enrich data with custom metrics in Splunk Observability Cloud. We've been doing a lot of that with event management and linking that into IT as well. So we're using that to be able to tie systems together. The integration we have between Observability Cloud and ITSI for event management is where we're using that type of stuff.
What needs improvement?
Splunk Observability Cloud could be improved by having more integration with Splunk Cloud because at the moment they're two separate products. They're making great moves on what they call unified access; tighter integration is always a good thing.
For how long have I used the solution?
I have been using Splunk Observability Cloud for three years.
What do I think about the stability of the solution?
I would assess the stability and reliability of Splunk Observability Cloud as generally good. We have experienced the odd bug; however, nothing too serious, and Splunk has been quite good in terms of resolving issues; it's just routine stuff and nothing bad.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales incredibly with the growing needs of my organization. It just means the more we use it, the more expensive it is, but there are no issues reported.
How are customer service and support?
I would evaluate customer service and technical support as fantastic; nobody is better.
How would you rate customer service and support?
Positive
How was the initial setup?
During the deployment, we only had some challenges when we switched on unified access. However, they were just teething problems.
What was our ROI?
I have seen a return on investment with Splunk Observability Cloud as we have averted some things that may otherwise have resulted in downtime. We have had it avert potential problems, and the first time it happens is a return on investment. The second time, nobody notices, making measuring business value a challenge.
What other advice do I have?
I would advise other organizations considering this solution to give careful attention to the use cases they have and how they plan to proceed in terms of their roadmap over the next two to three years, as there are alternatives. Having an idea of where you want to go will help you make a better-informed decision.
Additionally, it's good advice to have a customer reference call to learn from someone's experience and avoid pitfalls.
On a scale of one to ten, I would rate Splunk Observability Cloud overall as a good eight; as soon as it's all integrated neatly together, then it's up in the high numbers.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Improves incident detection and performance monitoring but UI updates are needed
What is our primary use case?
My primary use cases for Splunk Observability Cloud include creating dashboards for metrics, detecting incidents, and ensuring overall observability of applications, service connections, and integrations, along with reporting and Slack integrations.
What is most valuable?
By visualizing the integration of the service, I can understand the flow of the data, which is one of the features I appreciate most about Splunk Observability Cloud.
With the metrics collection, I can proactively find incidents and work on the major issues when they happen and predict these issues.
With alerting and the detectors, we can inform the engineers that are on call to take over the service responsibility.
With the metrics and the dashboards, we can have a clear view of how the system is performing. Splunk Observability Cloud has helped improve my operational performance by detecting, analyzing tracings, and detecting alerts.
50% of our metrics on Splunk Observability Cloud are custom metrics, so we heavily rely on that. The out-of-the-box customizable dashboards provided by Splunk Observability Cloud are excellent, especially with the Amazon ones, AWS, memory cache, and Kubernetes dashboards, which are complete for the Kubernetes needs.
What needs improvement?
The UI of Splunk Observability Cloud is one of the major issues; it's old and has been there for more than 10 years, acquired by other applications from other companies. It's time to reinvent how the UI is going to work with the AI modules and integrations, making it softer and cleaner.
Splunk Observability Cloud is comprehensive in terms of functionality and features, so educating users has to be more functional. Users need to know how to be educated about certain views or pages they're working on.
For how long have I used the solution?
I have been using Splunk Observability Cloud for five years.
What do I think about the stability of the solution?
I assess the stability and reliability of Splunk Observability Cloud as built on top of reliability because of the Cisco networking and infrastructure. That's not a concern for me; I totally rely on it. I've experienced downtime, crashes, and performance issues with Splunk Observability Cloud, as with any other solution. Comparing it with other monitoring solutions, Splunk has been excellent with availability. When I experienced issues, they were communicated through maintenance windows, resulting in 100% satisfaction with how they conduct this.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales very well with the growing needs of my organization. We didn't have scaling issues as the application evolved. I expanded usage of Splunk Observability Cloud when the company opened new coverage areas in different countries. Adding those metrics or new indexes to Splunk wasn't much of an issue in scaling.
How are customer service and support?
I evaluate customer service and technical support for Splunk Observability Cloud as having only great experiences working with people at Splunk.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Prior to adopting Splunk Observability Cloud, I was using Datadog, which would accomplish 70% of what Splunk does currently.
How was the initial setup?
There have been so many challenges that I can't name one right now. There is always a challenge in deploying open source material, like the open telemetry modules, that don't have the reliance on Splunk. It's just an integration challenge that we have the most. Deploying Splunk itself wasn't that much of a big deal.
What was our ROI?
I see ROI with Splunk Observability Cloud. My company is heavily dedicated to analytics, so the Splunk deal is significant. I cannot imagine how the business would run without it currently.
What's my experience with pricing, setup cost, and licensing?
I had low pricing and setup costs for Splunk Observability Cloud, and overall, my company has received a good deal on all the features that we have. We just have to understand how to explore it further.
Which other solutions did I evaluate?
Not directly because of Splunk, but the visualization that I have with the main aspects of scaling made us create custom dashboards that proactively detect the changes in scale, and then we can get ready for those changes. We don't have to spend time testing the new capacity when it's already being defined and envisioned by Splunk.
What other advice do I have?
My advice to other organizations considering Splunk Observability Cloud is to watch out for your budget. If I could assess the impact of not having Splunk Observability Cloud, there would be a monetary impact with other solutions. For the business, we would lose resiliency of the system. To imagine the impact, it would be catastrophic.
Splunk has to think about how to redesign Observability Cloud. It came from SignalFx and AppDynamics to Splunk Cloud. It's a merge of different platforms into one, and this merge is being done at a pace where I expected more velocity.
On a scale of one to ten, I rate Splunk Observability Cloud overall as a seven.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Dashboards have provided a central place to visualize and manage large volumes of log data
What is our primary use case?
My main use cases for Splunk Observability Cloud are indexing, dashboards, alerts, and reports.
What is most valuable?
The dashboards are the features of Splunk Observability Cloud that I appreciate the most, providing visual representation of all data and text. These features have benefited my organization by speeding up people's jobs, allowing a place to monitor all logs, as there are usually thousands of entries coming in which can become very disorderly. Users can monitor everything and write queries to organize the data and build dashboards to visualize it. This creates one-stop shops to get answers on how products and applications are performing, as opposed to having to jump onto servers and look through numerous logs.
What needs improvement?
The main improvement I would suggest for Splunk Observability Cloud would be offering the ability to implement custom apps, specifically allowing Python scripts that Splunk Cloud could host. Currently, we cannot create custom apps through Splunk Cloud. Additionally, continuous performance improvements for faster searching and indexing would be beneficial.
For how long have I used the solution?
I have been using Splunk Observability Cloud for over the last year.
What do I think about the stability of the solution?
I would assess the stability and reliability of Splunk Observability Cloud as good. There have been some performance issues, though not necessarily crashes, occurring approximately 20% of the time or less.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales smoothly with the growing needs of my organization. There have been some cases of performance loss due to rapid onboarding. We are handling multiple terabytes of data daily, so we expect some hiccups, but otherwise, it has scaled effectively for our fast-paced migration.
How are customer service and support?
My experience with customer service and technical support has been very present and super responsive. When we submit a case on Splunk support, they usually reach out within the same day or next day. They have consistently helped us resolve any issues we've encountered.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I used Splunk Enterprise before adopting Splunk Observability Cloud. While other parts of the company were leveraging different logging tools, we primarily revolved around Splunk. When Splunk Cloud became available as the next option, we were ready to migrate.
How was the initial setup?
I haven't had personal experience with pricing, setup cost, and licensing as it's managed by our managerial side.
What was our ROI?
I have seen a return on investment with Splunk Observability Cloud through faster debugging and troubleshooting capabilities with enhanced observability. A significant return on investment comes from not having to host Splunk Enterprise ourselves. Having servers on Splunk's end allows us to focus more on development, monitoring, and our products, rather than maintaining our own local version of Splunk.
What other advice do I have?
I would rate Splunk Observability Cloud overall as a solution 9 out of 10.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Supports end-to-end monitoring and improves reliability through core metric insights
What is our primary use case?
My main use case is end-to-end monitoring for the application.
What is most valuable?
We utilize the APM and auto-detectors, as the core metrics and core alerts are available for us, which are the features of Splunk Observability Cloud that I appreciate the most.
We lead the SRE, so our job is to ensure reliability, stability, and uptime, and without good observability monitoring, there is no way we can accomplish that. This is the main tool that we would use.
I would evaluate the effectiveness of Splunk Observability Cloud in improving digital resilience by saying that the idea is to minimize incidents. If any incident happens, the first thing I would do is go back to see why Splunk Observability Cloud did not detect that. I will take it back, do the reverse engineering to find out where it was missed out, and then work with the team to ensure these things are identified.
I have yet to experience the No-Sample Tracing feature in Splunk Observability Cloud, however, I am only in conversation with the teams where distributed tracing is required, and we want to provide the traces. My teams utilize the ability to enrich data with custom metrics in Splunk Observability Cloud, and I appreciate the feature supported within the Observability Cloud. Custom metrics could also be introduced from within the microservices, so I am yet to explore the OTEL library. I gave this feedback to the Splunk team that they should have their dedicated .NET library that customers can embed and start using; I do not think that is there today.
We are the first project within the company for a fully cloud-native application, so we will set the ground for the rest of the teams to get motivated. Therefore, I expect that I will have the best experience to become an example for others.
What needs improvement?
The integrations need to be improved for Splunk Observability Cloud. Currently, they do not have great support for Azure. We are on Azure, and I know they invested a lot of time in AWS yet not in Azure.
I had given feedback to the teams here, as the integration from Azure Cloud, how we supply the logs and the metrics, is not clearly documented yet, which was acknowledged by the team. For example, the OTEL collector has a thousand parameters, and we need a very specific use case with 10 parameters required for our integration. We can't go through the thousand parameters; we can, however, that is basically why I think some integrations need to get better for Azure.
There's a lot of talk about AI-powered analytics and guidance in Splunk Observability Cloud. I didn't get a great sense of how much of it is actually working; there are a lot of AI hallucinations. I think it probably needs much more improvement to contextualize it so that it is very clear and precise about what it randomly thinks, but it needs to match the context better.
Customer service and technical support need some improvement. We had issues with technical support, and the professional services were struggling as well.
For how long have I used the solution?
I've been using Splunk Observability Cloud for six months.
What do I think about the stability of the solution?
I would assess the stability and reliability of Splunk Observability Cloud by saying no crashes or performance issues have been experienced.
How are customer service and support?
On a scale of one to ten, I would rate customer service as eight.
How would you rate customer service and support?
Positive
How was the initial setup?
My experience with deployment has been good. It's just the routing, the matrices, and the integration is where we were struggling a little bit. That said, having the cloud as observed to provision was never a problem.
What was our ROI?
I hope to see a return on investment with Splunk Observability Cloud. I have not applied this for production. That said, we already use Splunk Cloud for production, and we are good with that, so I see the value.
What's my experience with pricing, setup cost, and licensing?
The cost is fine, and we are good with what is given. It's a centralized tool for my organization, so at the org level, a lot of things were decided, but we are actually happy with the cost we received because I know I have to approve my budget, and it's within our range, so we are okay with it.
What other advice do I have?
My advice to Splunk is to mix Splunk Cloud and Splunk Observability Cloud into one. Don't make oObservability only needed in Splunk Cloud, too. You don't want to have two products competing with each other; you want to compete with someone outside your organization. Combine this, as there's a lot of confusion. Even in different classes and training sessions meant only for Splunk Cloud, they were not for Splunk Observability Cloud, and they are different today. The acquisition of SignalFx, which is not its own, adds to the confusion. So, to the customer, provide one interface, and combine them.
On a scale of one to ten, I rate Splunk Observability Cloud an eight overall.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Deployment optimized and demos delivered faster for the retail sector thanks to customizable dashboards
What is our primary use case?
For the retail sector, we are building a solution for customer stores in order to know how the products are sold.
What is most valuable?
The feature of Splunk Observability Cloud that I prefer most is the easy deployment on the cloud. The benefit of that feature for my organization is to optimize the deploys and implementation and the response to our customers, to quickly make a demo. Splunk Observability Cloud has helped improve our operational performance, especially for our customers.
My experience with the out-of-the-box customizable dashboards provided by Splunk Observability Cloud is that they are effective in showcasing IT performance to business leaders. For the initial point of contact, it helps and works nicely as a star point. Then, you have the basics and use that as a framework to deploy others, so they are very helpful.
What needs improvement?
Splunk Observability Cloud can be improved. In terms of additional features I would want to see in future releases, since Cisco acquired Splunk, more Cisco integration could be beneficial.
For how long have I used the solution?
I have been using Splunk Observability Cloud for the last two years.
What do I think about the stability of the solution?
I have not experienced any downtime, crashes, or performance issues.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales very well with the growing needs of my organization, as we just need to add a license or data ingestion.
How are customer service and support?
I would evaluate customer service and technical support for Splunk Observability Cloud as good. They respond effectively and in time.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Prior to adopting Splunk Observability Cloud, we used other solutions to address similar needs, such as Dynatrace and ElasticSearch.
How was the initial setup?
It is easy to deploy on the cloud.
What was our ROI?
I have not seen a return on investment with Splunk Observability Cloud yet, as we are relatively new to it.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing of Splunk Observability Cloud is that it is somewhat expensive, considering I am from Mexico and the market in Mexico is very different from the market in the USA. It is expensive, especially when there are other vendors that offer something similar for much cheaper.
Which other solutions did I evaluate?
The factors that led me to consider the change to Splunk Observability Cloud include performance and cost, and it depends on the customer. If the customer is a network user or partner with all Cisco solutions, Splunk Observability Cloud fits perfectly.
However, if we have a new customer that doesn't have any Cisco products, it might be better for them to use another solution that is easier to deploy and not as complete as Splunk Observability Cloud, especially if they only need one or two features.
What other advice do I have?
My advice to other organizations considering using Splunk Observability Cloud is that if you want a comprehensive, consistent tool or solution, it is one of the leaders in the market because it integrates with the network side of their organization, including Cisco solutions. Regarding customers who don't come from the Cisco world, it is a good choice, depending on their use. However, for small customers or those that are not large companies, Splunk Observability Cloud may not be the best fit, as it is a comprehensive tool. In Mexico, we observe that customers claim they only need APM or infrastructure monitoring, a very basic requirement, and don't require the entire Splunk portfolio.
On a scale of one to ten, I rate Splunk Observability Cloud a nine.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Has improved performance by enabling better troubleshooting and infrastructure visibility, but interface and deployment challenges remain
What is our primary use case?
Our main use cases for Splunk Observability Cloud are to observe our application, our websites, and our infrastructure metrics.
What is most valuable?
What I appreciate the most about Splunk Observability Cloud is the APM part and the log analytics part. These features can help us with troubleshooting our problems between multiple systems.
Distributed tracing is very useful to us, and the infrastructure part can help us identify problems with the infrastructure. Splunk Observability Cloud has helped improve our operational performance and our company's resilience on the path of adopting it, and I expect more improvements in the future.
What needs improvement?
The RUM part of Splunk Observability Cloud can be improved significantly. We are currently struggling to use it since our application is mixed mobile and non-mobile. Some AI features in the search functionality could be beneficial in the next release of Splunk Observability Cloud.
In GCP, Cloud Run is not natively supported by Splunk, and we are challenged with bringing data from Cloud Run to Splunk. Native support of it in the future would be great for us.
For how long have I used the solution?
We started using Splunk Observability Cloud one year ago.
What do I think about the stability of the solution?
I would assess Splunk Observability Cloud as quite reliable. The only problem is the graphical interface, which sometimes is buggy. It crashes, doesn't display data, and requires reloading the browser. I have experienced downtime with Splunk Observability Cloud only once, which lasted one hour due to issues that prevented us from logging into the platform.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales with the growing needs of our organization quite efficiently. I have expanded the usage of Splunk Observability Cloud, and the process of expanding usage was smooth apart from one part.
How are customer service and support?
Customer service and technical support respond very quickly. That said, sometimes the solutions take too long to implement.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Before adopting Splunk Observability Cloud, we used DataDog, and before that, we had no solution. The factors that led me to consider the change were mainly because my company has different IT offices. My IT office used DataDog, another IT office used New Relic, and others used different tools. We needed to adopt Splunk across the group to have something standard in my company.
How was the initial setup?
My experience with deploying Splunk Observability Cloud was quite good, mainly since we almost have everything on cloud and that makes deployment quite easy.
What other advice do I have?
My advice to other organizations considering Splunk Observability Cloud is to adopt it if you don't have anything else as it's a very good tool, and having something for observability is very good. Not only for the observability part but for all the Splunk platform, that's great.
On a scale of one to ten, I rate Splunk Observability Cloud a seven out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Has a unified monitoring license model that supports broader adoption but has deployment difficulties
What is our primary use case?
My main use cases for Splunk Observability Cloud include Application Performance Monitoring, synthetic monitoring, and dabbling in infrastructure and what comes along with it; however, we do already have a tool that does infrastructure. We're debating about just switching it all over to Observability.
What is most valuable?
The features of Splunk Observability Cloud that I prefer the most are its all-encompassing licensing model, which is comparatively better than others in the market. We're switching off AppDynamics, and the licensing model always constrained us, so that is our main reason for switching to observability, as the licensing is all-encompassing.
The benefits of these features for my organization are significant. The license is all in one, meaning infrastructure, APM, synthetics, RUM, and the logs are all under one license, allowing us to offer that to our application teams more so than we were ever able to do before.
We're currently trying to implement RUM, Real User Monitoring, with two applications just to get a feel for it, which we were never able to do before, since it was a completely separate license that we needed to purchase. So we're able to offer more of a full suite, more of a one-stop shop sort of thing, versus what we were able to do before.
What needs improvement?
The user interface of Splunk Observability Cloud needs a lot of work. I have been known to describe it as slapping lipstick on a pig. The pretty colors draw in everybody, however, the actual functionality of it has a lot that you cannot do, and how the user interface is organized is very difficult to navigate. This is a driving factor for us not to use the product.
The next release of Splunk Observability Cloud should include a feature that makes it so that when looking at charts and dashboards, and also looking at one environment regardless of the product feature that you're in, APM, infrastructure, RUM, the environment that is chosen in the first location when you sign into Splunk Observability Cloud needs to stay persistent all the way through. There's no reason that a user should have to keep having to restart all of their filters and select their environment anytime that they switch to a different area of the tool.
For how long have I used the solution?
I have been using Splunk Observability Cloud for one year exactly.
What do I think about the stability of the solution?
I have not experienced downtime, crashes, or performance issues with Splunk Observability Cloud yet.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales with the growing needs of my organization, however, we very quickly always run into hitting the limit for custom metrics. This is something we've discovered that we have to manually manage, which is not fun, especially for large applications such as our huge tracking system, since we're a logistics company, as well as the two main revenue-generating applications. We are probably going to hold off putting them into Splunk Observability as we're constantly bumping the limit already.
How are customer service and support?
I would evaluate customer service and technical support as hit or miss as I get the impression that the support folks assigned to our account might be spread a little too thin. They are good people and do good work; however, I get the impression they're spread a little too thin. If we put in a ticket, we do get a response in a decent amount of time, so that's not a problem.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Prior to adopting Splunk Observability Cloud, I used several solutions. The solutions we used include Zabbix, Splunk Core, Grafana, Prometheus, and AppDynamics, so a whole suite of things.
How was the initial setup?
The deployment has been fine for cloud applications. It is very tumultuous for on-prem. That is supposed to be getting fixed over the next year. Right now, it's not there. So I always tell my management we're a year and a half too early for this tool.
What was our ROI?
I have seen ROI for our cloud applications, as we've been able to fully integrate with one application, which is a big revenue producer for the post office, and it's something that they were not able to do before, so we have been able to see that. In terms of ROI, I would say 100%.
What other advice do I have?
We don't currently use the out-of-the-box customizable dashboards provided by Splunk Observability Cloud to showcase IT performance to business leaders.
I will say we have not expanded usage to other applications since we're still stuck where we are.
My advice to other organizations considering Splunk Observability Cloud is to wait until next year.
On a scale of one to ten, I would rate this solution five or six.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Custom dashboards and detailed searches have improved operational visibility
What is our primary use case?
I use Splunk Observability Cloud for network logging analysis.
What is most valuable?
I prefer the dashboard building and search features of Splunk Observability Cloud the most. Splunk Observability Cloud has helped improve my operational performance.
Previously, we used Elastic for similar purposes as Splunk Observability Cloud, and this has allowed us much more visibility into what we're working on with usable dashboards and metrics, which has been awesome.
What needs improvement?
The only strain point we've encountered with Splunk Observability Cloud is that the search times can be lengthy for some things. We have a large environment, so that's expected. That's the only complaint I've had so far.
For how long have I used the solution?
I have been using Splunk Observability Cloud for approximately three months.
What do I think about the stability of the solution?
I experience slow searches occasionally with Splunk Observability Cloud, but there are no outages or anything in that regard, so it is pretty stable and reliable.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales with the growing needs of my organization effectively. As a large organization, we find it impressive that our volume has been handled with only occasional slow searches.
How are customer service and support?
I haven't worked with customer service and technical support directly, however, another engineer on the team has shared positive feedback about their experiences.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Prior to adopting Splunk Observability Cloud, I was using Elastic. Support was a significant factor that led to switching to Splunk Observability Cloud. The previous solution wasn't fully supported by their team, and there weren't adequate integrations or visibility needed for some of our applications. Additionally, it was a legacy installation set up by former employees, so this was an opportunity to start fresh with people who are actively involved.
What was our ROI?
We haven't had Splunk Observability Cloud long enough for me to make substantial comments on its effectiveness in improving digital resilience within my organization.
What's my experience with pricing, setup cost, and licensing?
I wasn't involved in the licensing.
What other advice do I have?
We haven't used the no-sample tracing feature in Splunk Observability Cloud specifically for eliminating blind spots in data collection. We haven't implemented the AI-powered analytics and guidance features provided by Splunk Observability Cloud either.
Our main security architect has done extensive work utilizing the ability to enrich data with custom metrics in Splunk Observability Cloud by setting up specialized dashboards and searches for our various integrated apps, including ISE and Palo firewall logging.
I haven't extensively used the out-of-the-box customizable dashboards provided by Splunk Observability Cloud as we're still using our custom ones. I wasn't involved in the pricing, setup, cost, and licensing. I enjoy using Splunk Observability Cloud, but I'm not familiar with the cost aspects.
Access to Splunk Observability Cloud has been reliable for all users. On a scale of one to ten, I rate Splunk Observability Cloud an eight.
I recommend spending time working on your own dashboards and searches to fit your business needs, as that's where you'll get the most value out of Splunk Observability Cloud.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Correlating logs with traces reduces time to resolution and uncovers issues before reaching operations
What is our primary use case?
My main use case for Splunk Observability Cloud is end-to-end tracing of business processes.
How has it helped my organization?
Splunk Observability Cloud has helped improve my operational performance and my company's resilience.
What is most valuable?
What I appreciate most about Splunk Observability Cloud is the correlation feature, specifically the ease of correlating logs and issues to those traces to see where within the path of the business function is failing.
One significant way these features benefit my organization is through mean time to resolution. Taking away that first instinct of where we're trying to figure out what's wrong will drop that time significantly, so rather than a few hours, potentially we're looking at a few minutes before we can start resolving an issue.
In terms of operation performance and resilience, I have experienced improvements in mean time to resolution and the ability to detect issues that we weren't detecting ahead of time. I can give a specific case scenario; while we were in a POC situation, it was able to find issues we were having with servers just by random chance. We implemented it and it happened to let us know about an issue before our NOC even knew that it was occurring.
My teams have utilized the ability to enrich data with custom metrics in Splunk Observability Cloud during the implementation process, and we're definitely seeing a huge difference in what data we have, and the teams are extremely excited by the new amount of data we're getting in. I find the out-of-the-box customizable dashboards provided by Splunk Observability Cloud extremely beneficial since they give you a lot of information already, and the ability to customize and do your own is even better.
I ran into a small security incident. Splunk Observability Cloud was able to help us with that along with Splunk's core process or core offering. Between the two, we were able to use it for correlations, which helped with mean time to resolution and getting us back up and running much faster.
What needs improvement?
Splunk Observability Cloud could be improved with better integration with AppDynamics, as we know that's coming, however, it is an issue we've had between the OpenTelemetry and the AppDynamics collector. We saw a complete difference in what data was being brought in, however, we know that issue is being resolved and that's a big one for us.
What do I think about the stability of the solution?
I would assess the stability and reliability of Splunk Observability Cloud as okay. We've been experiencing an issue with the cloud console, and we're working with support to get through that. We're assuming it's just a growing pain at this point. Particularly what we're having is disconnection from the cloud console, where we will be working in it and receive a message saying that we've been disconnected and have to wait for it to come up. It's been painful and seems to be a new issue, and they're trying to figure out what's going on,however, I haven't heard of anybody else having that issue.
What do I think about the scalability of the solution?
Splunk Observability Cloud seems to be scaling quite well with the growing needs of my organization.
How are customer service and support?
I would evaluate the customer service and technical support for Splunk Observability Cloud as fantastic. On a scale of 1 to 10, the customer service and technical support deserve a 10.
How would you rate customer service and support?
Positive
What was our ROI?
I have seen a return on investment with Splunk Observability Cloud.
What other advice do I have?
I would advise other organizations considering Splunk Observability Cloud to definitely POC it to see if it's going to work for their situation. It may not be for everybody. That said, definitely give it a chance and see what it can do for you and the kinds of new information it can bring in for you.
On a scale of one to ten, I rate Splunk Observability Cloud nine.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Alerting improves incident response across teams and enables faster awareness before customer impact
What is our primary use case?
My primary use cases for Splunk Observability Cloud include alerting the business and the integrations app team, which are the largest users of Splunk within our company. They take up most of our ingest and have many alerts set up, along with log analysis and events analysis.
Those are our biggest team users, and alerting in general plays a crucial role for incident creation across multiple teams, regardless of who the shareholders are, cutting across multiple teams.
How has it helped my organization?
Splunk Observability Cloud has significantly improved my operational performance and my company's resilience. I would evaluate the effectiveness of Splunk Observability Cloud in improving digital resilience within my organization as very positive. It's easier to access for both Splunk experts and users who may not be familiar with Splunk, allowing even non-technical people to navigate it.
What is most valuable?
The features I appreciate the most about Splunk Observability Cloud are the ServiceNow integration feature, which is very seamless, and that's probably my favorite since ServiceNow is big in the observability industry. Being able to seamlessly create those incidents is the biggest plus. Without that, we probably wouldn't be using Splunk.
Just alerting with Splunk Observability Cloud provides significant benefits for my organization, particularly since this is a food and manufacturing company. Alerting the business side before the customer reports an issue helps us to be one step ahead, which is a big feature.
Dashboards for the IT executives are also beneficial since they might not be as technical yet can easily read a dashboard. The ability to create something easily interpretable, using color coding and heat maps, allows directors to see value in it.
The ability to enrich data with custom metrics in Splunk Observability Cloud has significantly impacted our integrations and app team, the biggest users of Splunk in our environment. The visibility provided and the remediation they gain from reading events have led to increased log ingestion, which is a good problem to have. They can confidently rely on Splunk for monitoring app creations, APIs, and more.
What needs improvement?
Splunk Observability Cloud could be improved in terms of integrations with more technical add-ons, such as Zoom. Although they have one with Zoom, it's not available in the cloud, so having that feature would be beneficial. Essentially, Splunk should continue expanding to create easier ways to ingest logs from different products.
The out-of-the-box customizable dashboards in Splunk Observability Cloud are very effective in showcasing IT performance to business leaders. However, there are aspects that could be improved, such as linking dashboards to one another. While IT leaders may not drill down, it's crucial to create levels of dashboards for technical users to find root causes, making it effective for stakeholders.
For how long have I used the solution?
I have been using Splunk Observability Cloud for two years, as my first cloud was with ABC.
What do I think about the stability of the solution?
I have experienced slowness from Splunk Observability Cloud occasionally, yet we have not faced crashes or major performance issues. When slowdowns occur, we reach out to support for explanations and have received adequate responses.
What do I think about the scalability of the solution?
Splunk Observability Cloud scales efficiently with the growing needs of my organization, even requiring occasional license increases. Maintenance is done by Splunk, and we receive alerts about maintenance windows to ensure we stay current. So far, we've experienced seamless operations without any breakdowns.
How are customer service and support?
I find Splunk's customer service to be great compared to many other products. They do a good job of responding within 24 hours or less, even with P4 issues. They may reroute you a couple of times. Overall their support is commendable. I would rate technical support and customer service a solid eight.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Prior to adopting Splunk Observability Cloud, I was aware that our company used another solution. I don't recall what it was since I was brought in specifically for Splunk.
How was the initial setup?
I wasn't a part of the deployment process.
What was our ROI?
I have definitely seen a return on investment with Splunk Observability Cloud, particularly through how fast it has grown and how comfortable other teams are in relying on its outputs for monitoring and observability.
I don't directly deal with costs, so I can't comment on the return on investment regarding lowering unplanned digital downtime using Splunk Observability Cloud.
What other advice do I have?
I haven't explored the no-sample tracing feature in Splunk to eliminate blind spots in data collection.
AI-powered analytics and guidance provided by Splunk Observability Cloud will be very beneficial. We just initiated a response to get those AI functionalities into our cloud environments, so we haven't fully explored it yet.
My advice to other organizations considering Splunk Observability Cloud is to get it, especially for log monitoring and alerting. There aren't too many observability tools that match its ease of use, whether for IT-oriented users or not. Its graphical user interface is brilliant and very seamless, making it easy for anyone to navigate. I'm confident big companies considering Splunk should choose it, as it delivers in usability and integration with other tools.
On a scale of one to ten, I rate Splunk Observability Cloud an eight.