Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

25 AWS reviews

External reviews

57 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    HrishikeshNavkar

Metric-based monitoring has simplified alerting and currently supports our cloud migration

  • February 04, 2026
  • Review provided by PeerSpot

What is our primary use case?

Currently, we are in the process of migrating from on-premises to Splunk Cloud as well as Observability. For metric-based monitoring, we can monitor via Observability and are migrating it there. We are setting up private locations to monitor synthetic tests, such as ping checks, port checks, and URL monitoring. The rest is metric-based monitoring, which is being done by Splunk using Splunk OTeL, which is an OpenTelemetry agent for Observability. This agent brings metrics from end devices to Observability. Based on these metrics, we set detectors and rules to trigger alerts.

Our observability is not yet live in production with Splunk Observability Cloud. It is currently being built, and we are adding new components, but it is not yet fully ready.

What is most valuable?

Comparing to Cloud, Splunk Cloud, or any other solution, the most valuable feature of Splunk Observability Cloud is that it is entirely based on metrics. The agent is also very lightweight compared to Splunk UF and does not consume much compute resources on the end server or host from which we are pulling data. However, it can only monitor metrics and cannot monitor logs.

Regarding how Splunk Observability Cloud has benefited our organization, we are yet to go live, but most of the configuration that requires conditions and triggers on Splunk Cloud involves writing queries. With Splunk Observability Cloud, the process is quite simple. We can directly get metrics flowing, set thresholds, and everything is UI-based. This requires less time to set up and use. I do not have that much visibility with Splunk Observability Cloud at this time as I am working as an administrator. It has helped us create dashboards for visualization purposes.

What needs improvement?

There is one thing that could be improved in Splunk Observability Cloud. We have the capability in Splunk to connect to Splunk agents such as Splunk forwarders from a deployment server and update the end agents and forwarders using server classes. We can push and update configurations from our own hosted servers without needing to access the end device. In Splunk Observability, the OTeL agent cannot be updated from our end. Every time we need to update, we have to reach out to users or gain access to the host to update the configurations. There should be a solution to update OTeL agents from Splunk Observability Cloud itself.

For how long have I used the solution?

I have been working with Splunk Observability Cloud for approximately five to six months.

What do I think about the stability of the solution?

Splunk Observability Cloud is reliable based on my experience with stability and reliability so far.

We were facing some challenges with the stability of Splunk Observability Cloud regarding the login page. It was not working several times and was not accepting SSO authentication. The observability team found a solution for this issue, though I am not fully aware of the details. There were several times when opening the page did not directly log in and showed some errors.

What do I think about the scalability of the solution?

I have not encountered any scenarios regarding the scalability of Splunk Observability Cloud. It should be good because it is cloud-based. I am not aware of the licensing model and how it scales or what the rules are for scaling.

How are customer service and support?

I was not directly involved with technical support for Splunk Observability Cloud, but I am aware that my teammates reached out to support. They were finding issues regarding configuration, installation, and deployment of Observability for specific components. Since Observability is cloud-based and hosted by Splunk, the components we own on-premises are the OTeL gateways, agents, and private locations. They reached out to the vendor regarding these components, and the support was quite smooth. They have raised some bugs as well for the vendor to fix. I would rate the technical support from Splunk an eight out of ten.

How would you rate customer service and support?

Positive

How was the initial setup?

Since it is cloud-based, Splunk Observability Cloud was ready to use upon deployment. The OTeL gateways were built by our team and required configuration. I was not part of that process but am aware that we needed to configure the OTeL gateways to route data to them as an endpoint and from there it would be ingested to Observability or forwarded to Observability. There were no significant issues with this process and it was quite smooth. However, configuring private locations on a few gateways was quite difficult to set up and maintain because Docker was going down at times. There were some issues that were discussed with Splunk vendor, and they provided guidance on how to fix them.


    Pradeep Hiremath

Monitoring has become more proactive and cloud operations are managed with real-time insights

  • January 28, 2026
  • Review from a verified AWS customer

What is our primary use case?

My use case for Splunk Observability Cloud is primarily for monitoring and cloud management, and it serves us well.

What is most valuable?

The best features in Splunk Observability Cloud that I appreciate the most include its comprehensive monitoring capabilities and its user-friendly interface.

The solution has significantly helped improve my operational performance and my company's resilience by providing real-time insights. The enhancements to my operational performance and resilience are noticeable.

It has saved me a considerable amount of time and resources by streamlining our monitoring processes.

My impression of the AI-powered analytics and guidance provided by Splunk Observability Cloud is that they are very effective and enhance our decision-making.

I do use the no-sample tracing feature to eliminate blind spots in data collection, and it is quite helpful.

My team has effectively utilized the ability to enrich data with custom metrics to improve our analytical capabilities.

The out-of-the-box customizable dashboards are effective, and they help showcase IT performance to business leaders quite effectively.

What needs improvement?

In Splunk Observability Cloud, the areas that have room for improvement include usability enhancements to make it even better.

For how long have I used the solution?

I have been using Splunk Observability Cloud for a considerable time, and I can share my experience with it.

What do I think about the stability of the solution?

Regarding stability, I would rate the stability of Splunk Observability Cloud as a 9, indicating it is very reliable. Splunk Observability Cloud performs exceptionally in terms of stability under varying conditions.

How are customer service and support?

From 1 to 10, I would rate the technical support as an 8 since it is generally responsive and helpful.

How would you rate customer service and support?

Positive

What about the implementation team?

The solution was purchased through a partner, and my experience with the partner has been generally positive. My experience with the partner has been satisfactory as they provided the needed support throughout the process.

What was our ROI?

My experience with lowering the cost of unplanned digital downtime has been positive as it has indeed reduced downtime.

What's my experience with pricing, setup cost, and licensing?

Regarding the pricing of Splunk Observability Cloud, while I believe it can be improved, I would rate it around 7, leaning towards being expensive.

Which other solutions did I evaluate?

I would compare Splunk Observability Cloud with other solutions as more feature-rich and user-friendly based on my concerns.

What other advice do I have?

For others looking into this product, I would recommend trying it out with a proof of concept to see its benefits firsthand.

Approximately 50 users in my company use Splunk Observability Cloud to leverage its capabilities effectively.

The solution does require some maintenance, but it is quite straightforward in managing it.

In terms of my company's relationship with Splunk, we are currently a customer making the most of their offerings.

I would rate Splunk Observability Cloud a solid 8 from 1 to 10 based on my experience and satisfaction with its performance.


    Dhananjay Dileep

Unified monitoring has improved end-to-end visibility and reduced detection time across apps

  • January 12, 2026
  • Review from a verified AWS customer

What is our primary use case?

I have been using Splunk Observability Cloud for the past one year in my career. Splunk Observability Cloud has been introduced to our project for end-to-end monitoring for applications, providing complete visibility of applications, services, tech stacks, and CIs, which constitutes the whole monitoring solution for an entire application.

Previously, we were using different monitoring systems such as Dynatrace, the competitors of Splunk, and even Splunk Cloud Platform or Enterprise platforms for logging alone. Now we have the entire solution under one name and one platform, which is Splunk Observability Cloud, and that is why we mainly introduced Splunk Observability Cloud to our project.

What is most valuable?

The UI is quite understandable, making it not as complex when compared to the other previous platforms I have worked on. Another thing I could specifically point out is that we can have entire visibility for the entire application performance when we look into Splunk Observability Cloud, and it is much easier to navigate across various aspects such as real user monitoring, application performance monitoring, or synthetic tests, making it stand above the other previous applications I have worked on previously.

One thing I should point out is that there are some auto-detectors which are defaultly present in Splunk. For example, if you are configuring a detector for AWS RDS service, you have an auto-detector which detects what the technology is, and you will have a readily available detector, needing only to configure your specific metrics on that, which is one advantage. The dashboards especially stand out, being different compared to the other platforms. Even previously, Splunk Enterprise also had dashboards, but this is different as we can have live metrics through the dashboards, which is quite impressive with how Splunk Observability Cloud has been introduced and it is performing better than the previous Splunk versions.

What needs improvement?

When we have too many detectors in place for one particular app, such as when I have created 50+ detectors through my account, the entire page becomes a bit loaded when creating the 51st detector, feeling heavy and taking time to load. Additionally, it throws random errors; for example, when we try to save one detector, it might throw some random error which is not even related, with something else being wrong, not that particular error, but the underlying root cause might be different. Sometimes the error is just "some problem occurred," and we are not able to point out what the real cause is.

This mainly happens when we have too many detectors or too many alerts in place rather than a standard number. One more thing is in the alert rules; if we have a main general alert, and instead of creating a new detector, we are adding a new rule under one detector, when the number of rules also increases, such as when we have 10 or 15 rules under one generic detector, that again creates the same kind of problem, taking some time to save that particular newly added rule, and it might not save at times, just keeps on spinning. Those are the two drawbacks which I spotted recently; other than that, everything looks perfect.

What do I think about the stability of the solution?

There was an outage which occurred about three or four months ago; that was the only outage I faced entirely in one year, and I believe that was a global outage from Splunk's side, which prevented us from logging in for a couple of hours. The Splunk team was working on it, and they resolved it within five or six hours, which was the only outage I faced in one year. Other than that, everything was smooth.

What do I think about the scalability of the solution?

Splunk Observability Cloud is quite scalable compared to the other platforms I have worked on, and I do not find any difficulty in scaling up or even scaling down.

How are customer service and support?

For particular kinds of issues which we were not able to resolve, we have raised Splunk tickets a couple of times before contacting the technical support or customer support. The support is an eight out of ten. The speed is actually quite good; they would respond within 48 hours, and the solutions they are giving are quite good, as we were able to solve most of the issues with their solutions.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I have used Dynatrace and DataDog as alternatives to Splunk Observability Cloud.

How was the initial setup?

The initial deployment of Splunk Observability Cloud is actually easy. With the clear documentation we have in place, it is quite straightforward. We even have examples of code snippets in the documentation, making it quite straightforward.

What about the implementation team?

One or two people can manage the deployment; you do not need a team of five. I have myself worked on an entire project, and with one of my colleagues, I have worked on a much bigger project. I believe one or two people can easily manage the deployment process.

What was our ROI?

Splunk Observability Cloud has helped me reduce my mean time to detect. We have worked on around 80 applications last year for one particular client, and since the MTTR has improved drastically, they have given us 245 applications, which is around 150 applications added to the previous number of applications. This is definitely a performance improvement.

What's my experience with pricing, setup cost, and licensing?

The pricing area I am not particularly aware of because that is centrally managed by the company which I work for. However, I feel that we are not spending too much on the licensing cost; it is manageable for how much we are working with currently for the number of applications we have at present, which is what I believe is not too much.

Which other solutions did I evaluate?

I would prefer Splunk Observability Cloud any day when comparing these solutions to Dynatrace and DataDog because the first thing is that the documentation Splunk has is perfect, and anybody who is new, even new to the platform, can gain knowledge reading through the documents, which are perfectly explained for configuring various kinds of technologies and integrating various kinds of technologies with Splunk Observability Cloud. The second thing is the UI, which is much more user-friendly compared to Dynatrace and DataDog.

What other advice do I have?

The No-Sample Tracing helps me eliminate any blind spots in my data collection because we have particularly many services, and for example, using Mule, it is an added advantage to use no-sampling traces provided by Splunk Observability Cloud, giving us the exact points where the service is emitted and the exact spans between the two endpoints. It helps us break down where the actual issue is rather than just getting sample trace data and looking into each point entirely, which takes much time, providing a particular breakdown of that span and how it navigates across endpoints and pointing out the particular error which occurs when we access a service or when a service travels across two endpoints.

As of now, we are not using any AI tools in Splunk Observability Cloud, but we are planning to onboard them, considering that the number of applications we have is increasing day by day. We are planning to automate a few applications to generate the detectors and synthetics automatically as soon as we have the metrics in place. For that, we are developing code that can integrate with Splunk Observability Cloud platform and generate the results, which will be a time saver for us.

The recent UI changes have been more streamlined. Initially, the UI was a bit different, but later, I believe a couple of months ago, maybe one month before, they re-modified the menu options, and that has also resulted well for us in navigating across the panes.

I have utilized the ability to enrich data with custom metrics in Splunk Observability Cloud; I did it for custom metrics for AWS services, and for a couple of MQ, IBM-based MQs, we have worked on custom metrics, integrating easily in both cases. My company may have partnerships with Splunk, but I am not sure of that. I would rate this review as a nine out of ten.


    MihaiHristache

Monitoring has improved operational visibility and supports fast, customizable alert dashboards

  • December 17, 2025
  • Review from a verified AWS customer

What is our primary use case?

I work for a managed service provider, so I have different clients that require help in assessing various tools. I work with Splunk, ScienceLogic, and Nagios most frequently because I have small clients as well.

We have Splunk Observability Cloud for some customers. The dashboards are good, and everything is nice, but unfortunately, it doesn't have long-term storage of the logs. So you need to use a data lake to store the logs.

I would like to see agentless deployment and better integration with ticketing systems like ServiceNow, which is the biggest.

We utilize the ability to enrich data with custom metrics in Splunk Observability Cloud to create tickets in ServiceNow. It is integrated with ServiceNow, but we enrich the tickets by putting the logs in the tickets and things of that nature, so it helps us. However, even that is a mixed approach. From Splunk Observability Cloud, you cannot put the logs directly in the tickets. Instead, it will create a ticket and send you an email with the logs. That integration could be improved.

What is most valuable?

Splunk Observability Cloud has helped me improve my operational performance and my customer's operational performance because we use alerting, so we find when things are not working.

I think it is very good for evaluating the effectiveness of Splunk Observability Cloud in improving digital resilience within my customer's environment.

It does provide some return on investment. It is beneficial in terms of finance to use it.

The dashboards in Splunk Observability Cloud are amazing. If you configure them correctly, they are amazing, and it is quite fast as well.

That is a very good feature of Splunk Observability Cloud because it helps us and it gives more trust in the alerts.

What needs improvement?

There are not complexities with the installation of Splunk Observability Cloud, but with the configuration of alerts and everything because Splunk has its own language in the background. You need to know Splunk in order to configure everything that you want.

It requires some in-depth knowledge of the product. It should be more plug-and-play, similar to ScienceLogic. ScienceLogic uses whatever it finds. You can use PowerShell, you can use scripts that you make. Splunk is more on the old style. It uses agents, and you have to deploy the agents.

The out-of-the-box customizable dashboards provided by Splunk are okay, but usually, I have to create new dashboards because every user wants to see something else. The out-of-the-box dashboards help to get started faster, but in the end, I will have to redo them.

I would like to see agentless deployment and better integration with ticketing systems such as ServiceNow, which is the biggest.

We utilize the ability to enrich data with custom metrics in Splunk Observability Cloud to create tickets in ServiceNow. It is integrated with ServiceNow, but we enrich the tickets by putting the logs in the tickets and things of that nature, so it helps us. However, even that is a mixed approach. From Splunk Observability Cloud, you cannot put the logs directly in the tickets. Instead, it will create a ticket and send you an email with the logs. That integration could be improved.

For how long have I used the solution?

I have been working with Splunk Observability Cloud for about two years.

What do I think about the stability of the solution?

I cannot speak to lowering the cost of unplanned digital downtime using Splunk Observability Cloud because the client will get the bills. However, it reduces the downtime for systems. It improved visibility when you do changes and you do patching and you do emergency changes, so you can see if they were applied correctly or not, if the servers are still down.

What do I think about the scalability of the solution?

If it is a new deployment and you have a medium client with about 2,000 users or computers or servers, it will take about six months just to install and configure.

How are customer service and support?

The technical support is very good with Splunk.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I worked with ScienceLogic before actually working with Splunk.

How was the initial setup?

There are not complexities with the installation of Splunk Observability Cloud, but with the configuration of alerts and everything because Splunk has its own language in the background. You need to know Splunk in order to configure everything that you want.

What about the implementation team?

I do not spend any time personally because I have a team that does it. I have 27 people in my team.

What was our ROI?

It does provide some return on investment. It is beneficial in terms of finance to use it.

What's my experience with pricing, setup cost, and licensing?

I think the pricing for Splunk Observability Cloud is still at a good price. If you are looking at Dynatrace, it is way higher.

Which other solutions did I evaluate?

I am familiar with the Dynatrace operator but I am not actually working with them. I am just looking into differences and tooling and what will benefit my clients better.

What other advice do I have?

You need to know Splunk in order to configure everything that you want.

The out-of-the-box customizable dashboards provided by Splunk are okay, but usually, I have to create new dashboards because every user wants to see something else. The out-of-the-box dashboards help to get started faster, but in the end, I will have to redo them.

We utilize the ability to enrich data with custom metrics in Splunk Observability Cloud to create tickets in ServiceNow. It is integrated with ServiceNow, but we enrich the tickets by putting the logs in the tickets and things of that nature, so it helps us. However, even that is a mixed approach. From Splunk Observability Cloud, you cannot put the logs directly in the tickets. Instead, it will create a ticket and send you an email with the logs. That integration could be improved.

I would rate this product an 8 overall.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Aleem Cummins

Synthetic monitoring increases availability and reduces downtime

  • September 10, 2025
  • Review from a verified AWS customer

What is our primary use case?

My main use cases for Splunk Observability Cloud include retail analytics.

What is most valuable?

The feature I appreciate the most about Splunk Observability Cloud is Synthetic Monitoring. These features have benefited my organization by increasing availability and decreasing downtime, providing assurance that makes you feel good, and ultimately enhancing well-being.

The out-of-the-box customizable dashboards are very effective. At the same time, we also use Splunk Cloud to enhance them. The Splunk Cloud is a better dashboarding experience.

Our teams have utilized the ability to enrich data with custom metrics in Splunk Observability Cloud. We've been doing a lot of that with event management and linking that into IT as well. So we're using that to be able to tie systems together. The integration we have between Observability Cloud and ITSI for event management is where we're using that type of stuff.

What needs improvement?

Splunk Observability Cloud could be improved by having more integration with Splunk Cloud because at the moment they're two separate products. They're making great moves on what they call unified access; tighter integration is always a good thing.

For how long have I used the solution?

I have been using Splunk Observability Cloud for three years.

What do I think about the stability of the solution?

I would assess the stability and reliability of Splunk Observability Cloud as generally good. We have experienced the odd bug; however, nothing too serious, and Splunk has been quite good in terms of resolving issues; it's just routine stuff and nothing bad.

What do I think about the scalability of the solution?

Splunk Observability Cloud scales incredibly with the growing needs of my organization. It just means the more we use it, the more expensive it is, but there are no issues reported.

How are customer service and support?

I would evaluate customer service and technical support as fantastic; nobody is better.

How would you rate customer service and support?

Positive

How was the initial setup?

During the deployment, we only had some challenges when we switched on unified access. However, they were just teething problems.

What was our ROI?

I have seen a return on investment with Splunk Observability Cloud as we have averted some things that may otherwise have resulted in downtime. We have had it avert potential problems, and the first time it happens is a return on investment. The second time, nobody notices, making measuring business value a challenge.

What other advice do I have?

I would advise other organizations considering this solution to give careful attention to the use cases they have and how they plan to proceed in terms of their roadmap over the next two to three years, as there are alternatives. Having an idea of where you want to go will help you make a better-informed decision.

Additionally, it's good advice to have a customer reference call to learn from someone's experience and avoid pitfalls.

On a scale of one to ten, I would rate Splunk Observability Cloud overall as a good eight; as soon as it's all integrated neatly together, then it's up in the high numbers.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Juan Baez

Dashboards have provided a central place to visualize and manage large volumes of log data

  • September 10, 2025
  • Review from a verified AWS customer

What is our primary use case?

My main use cases for Splunk Observability Cloud are indexing, dashboards, alerts, and reports.

What is most valuable?

The dashboards are the features of Splunk Observability Cloud that I appreciate the most, providing visual representation of all data and text. These features have benefited my organization by speeding up people's jobs, allowing a place to monitor all logs, as there are usually thousands of entries coming in which can become very disorderly. Users can monitor everything and write queries to organize the data and build dashboards to visualize it. This creates one-stop shops to get answers on how products and applications are performing, as opposed to having to jump onto servers and look through numerous logs.

What needs improvement?

The main improvement I would suggest for Splunk Observability Cloud would be offering the ability to implement custom apps, specifically allowing Python scripts that Splunk Cloud could host. Currently, we cannot create custom apps through Splunk Cloud. Additionally, continuous performance improvements for faster searching and indexing would be beneficial.

For how long have I used the solution?

I have been using Splunk Observability Cloud for over the last year.

What do I think about the stability of the solution?

I would assess the stability and reliability of Splunk Observability Cloud as good. There have been some performance issues, though not necessarily crashes, occurring approximately 20% of the time or less.

What do I think about the scalability of the solution?

Splunk Observability Cloud scales smoothly with the growing needs of my organization. There have been some cases of performance loss due to rapid onboarding. We are handling multiple terabytes of data daily, so we expect some hiccups, but otherwise, it has scaled effectively for our fast-paced migration.

How are customer service and support?

My experience with customer service and technical support has been very present and super responsive. When we submit a case on Splunk support, they usually reach out within the same day or next day. They have consistently helped us resolve any issues we've encountered.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I used Splunk Enterprise before adopting Splunk Observability Cloud. While other parts of the company were leveraging different logging tools, we primarily revolved around Splunk. When Splunk Cloud became available as the next option, we were ready to migrate.

How was the initial setup?

I haven't had personal experience with pricing, setup cost, and licensing as it's managed by our managerial side.

What was our ROI?

I have seen a return on investment with Splunk Observability Cloud through faster debugging and troubleshooting capabilities with enhanced observability. A significant return on investment comes from not having to host Splunk Enterprise ourselves. Having servers on Splunk's end allows us to focus more on development, monitoring, and our products, rather than maintaining our own local version of Splunk.

What other advice do I have?

I would rate Splunk Observability Cloud overall as a solution 9 out of 10.


    reviewer2756127

Supports end-to-end monitoring and improves reliability through core metric insights

  • September 10, 2025
  • Review provided by PeerSpot

What is our primary use case?

My main use case is end-to-end monitoring for the application.

What is most valuable?

We utilize the APM and auto-detectors, as the core metrics and core alerts are available for us, which are the features of Splunk Observability Cloud that I appreciate the most.

We lead the SRE, so our job is to ensure reliability, stability, and uptime, and without good observability monitoring, there is no way we can accomplish that. This is the main tool that we would use.

I would evaluate the effectiveness of Splunk Observability Cloud in improving digital resilience by saying that the idea is to minimize incidents. If any incident happens, the first thing I would do is go back to see why Splunk Observability Cloud did not detect that. I will take it back, do the reverse engineering to find out where it was missed out, and then work with the team to ensure these things are identified.

I have yet to experience the No-Sample Tracing feature in Splunk Observability Cloud, however, I am only in conversation with the teams where distributed tracing is required, and we want to provide the traces. My teams utilize the ability to enrich data with custom metrics in Splunk Observability Cloud, and I appreciate the feature supported within the Observability Cloud. Custom metrics could also be introduced from within the microservices, so I am yet to explore the OTEL library. I gave this feedback to the Splunk team that they should have their dedicated .NET library that customers can embed and start using; I do not think that is there today.

We are the first project within the company for a fully cloud-native application, so we will set the ground for the rest of the teams to get motivated. Therefore, I expect that I will have the best experience to become an example for others.

What needs improvement?

The integrations need to be improved for Splunk Observability Cloud. Currently, they do not have great support for Azure. We are on Azure, and I know they invested a lot of time in AWS yet not in Azure.

I had given feedback to the teams here, as the integration from Azure Cloud, how we supply the logs and the metrics, is not clearly documented yet, which was acknowledged by the team. For example, the OTEL collector has a thousand parameters, and we need a very specific use case with 10 parameters required for our integration. We can't go through the thousand parameters; we can, however, that is basically why I think some integrations need to get better for Azure.

There's a lot of talk about AI-powered analytics and guidance in Splunk Observability Cloud. I didn't get a great sense of how much of it is actually working; there are a lot of AI hallucinations. I think it probably needs much more improvement to contextualize it so that it is very clear and precise about what it randomly thinks, but it needs to match the context better.

Customer service and technical support need some improvement. We had issues with technical support, and the professional services were struggling as well.

For how long have I used the solution?

I've been using Splunk Observability Cloud for six months.

What do I think about the stability of the solution?

I would assess the stability and reliability of Splunk Observability Cloud by saying no crashes or performance issues have been experienced.

How are customer service and support?

On a scale of one to ten, I would rate customer service as eight.

How would you rate customer service and support?

Positive

How was the initial setup?

My experience with deployment has been good. It's just the routing, the matrices, and the integration is where we were struggling a little bit. That said, having the cloud as observed to provision was never a problem.

What was our ROI?

I hope to see a return on investment with Splunk Observability Cloud. I have not applied this for production. That said, we already use Splunk Cloud for production, and we are good with that, so I see the value.

What's my experience with pricing, setup cost, and licensing?

The cost is fine, and we are good with what is given. It's a centralized tool for my organization, so at the org level, a lot of things were decided, but we are actually happy with the cost we received because I know I have to approve my budget, and it's within our range, so we are okay with it.

What other advice do I have?

My advice to Splunk is to mix Splunk Cloud and Splunk Observability Cloud into one. Don't make oObservability only needed in Splunk Cloud, too. You don't want to have two products competing with each other; you want to compete with someone outside your organization. Combine this, as there's a lot of confusion. Even in different classes and training sessions meant only for Splunk Cloud, they were not for Splunk Observability Cloud, and they are different today. The acquisition of SignalFx, which is not its own, adds to the confusion. So, to the customer, provide one interface, and combine them.

On a scale of one to ten, I rate Splunk Observability Cloud an eight overall.


    Ernesto Gutierrez

Deployment optimized and demos delivered faster for the retail sector thanks to customizable dashboards

  • September 10, 2025
  • Review from a verified AWS customer

What is our primary use case?

For the retail sector, we are building a solution for customer stores in order to know how the products are sold.

What is most valuable?

The feature of Splunk Observability Cloud that I prefer most is the easy deployment on the cloud. The benefit of that feature for my organization is to optimize the deploys and implementation and the response to our customers, to quickly make a demo. Splunk Observability Cloud has helped improve our operational performance, especially for our customers.

My experience with the out-of-the-box customizable dashboards provided by Splunk Observability Cloud is that they are effective in showcasing IT performance to business leaders. For the initial point of contact, it helps and works nicely as a star point. Then, you have the basics and use that as a framework to deploy others, so they are very helpful.

What needs improvement?

Splunk Observability Cloud can be improved. In terms of additional features I would want to see in future releases, since Cisco acquired Splunk, more Cisco integration could be beneficial.

For how long have I used the solution?

I have been using Splunk Observability Cloud for the last two years.

What do I think about the stability of the solution?

I have not experienced any downtime, crashes, or performance issues.

What do I think about the scalability of the solution?

Splunk Observability Cloud scales very well with the growing needs of my organization, as we just need to add a license or data ingestion.

How are customer service and support?

I would evaluate customer service and technical support for Splunk Observability Cloud as good. They respond effectively and in time.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Prior to adopting Splunk Observability Cloud, we used other solutions to address similar needs, such as Dynatrace and ElasticSearch.

How was the initial setup?

It is easy to deploy on the cloud.

What was our ROI?

I have not seen a return on investment with Splunk Observability Cloud yet, as we are relatively new to it.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup cost, and licensing of Splunk Observability Cloud is that it is somewhat expensive, considering I am from Mexico and the market in Mexico is very different from the market in the USA. It is expensive, especially when there are other vendors that offer something similar for much cheaper.

Which other solutions did I evaluate?

The factors that led me to consider the change to Splunk Observability Cloud include performance and cost, and it depends on the customer. If the customer is a network user or partner with all Cisco solutions, Splunk Observability Cloud fits perfectly.

However, if we have a new customer that doesn't have any Cisco products, it might be better for them to use another solution that is easier to deploy and not as complete as Splunk Observability Cloud, especially if they only need one or two features.

What other advice do I have?

My advice to other organizations considering using Splunk Observability Cloud is that if you want a comprehensive, consistent tool or solution, it is one of the leaders in the market because it integrates with the network side of their organization, including Cisco solutions. Regarding customers who don't come from the Cisco world, it is a good choice, depending on their use. However, for small customers or those that are not large companies, Splunk Observability Cloud may not be the best fit, as it is a comprehensive tool. In Mexico, we observe that customers claim they only need APM or infrastructure monitoring, a very basic requirement, and don't require the entire Splunk portfolio.

On a scale of one to ten, I rate Splunk Observability Cloud a nine.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Jack Weekly

Custom dashboards and detailed searches have improved operational visibility

  • September 09, 2025
  • Review from a verified AWS customer

What is our primary use case?

I use Splunk Observability Cloud for network logging analysis.

What is most valuable?

I prefer the dashboard building and search features of Splunk Observability Cloud the most. Splunk Observability Cloud has helped improve my operational performance. 

Previously, we used Elastic for similar purposes as Splunk Observability Cloud, and this has allowed us much more visibility into what we're working on with usable dashboards and metrics, which has been awesome.

What needs improvement?

The only strain point we've encountered with Splunk Observability Cloud is that the search times can be lengthy for some things. We have a large environment, so that's expected. That's the only complaint I've had so far.

For how long have I used the solution?

I have been using Splunk Observability Cloud for approximately three months.

What do I think about the stability of the solution?

I experience slow searches occasionally with Splunk Observability Cloud, but there are no outages or anything in that regard, so it is pretty stable and reliable.

What do I think about the scalability of the solution?

Splunk Observability Cloud scales with the growing needs of my organization effectively. As a large organization, we find it impressive that our volume has been handled with only occasional slow searches.

How are customer service and support?

I haven't worked with customer service and technical support directly, however, another engineer on the team has shared positive feedback about their experiences.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Prior to adopting Splunk Observability Cloud, I was using Elastic. Support was a significant factor that led to switching to Splunk Observability Cloud. The previous solution wasn't fully supported by their team, and there weren't adequate integrations or visibility needed for some of our applications. Additionally, it was a legacy installation set up by former employees, so this was an opportunity to start fresh with people who are actively involved.

What was our ROI?

We haven't had Splunk Observability Cloud long enough for me to make substantial comments on its effectiveness in improving digital resilience within my organization.

What's my experience with pricing, setup cost, and licensing?

I wasn't involved in the licensing. 

What other advice do I have?

We haven't used the no-sample tracing feature in Splunk Observability Cloud specifically for eliminating blind spots in data collection. We haven't implemented the AI-powered analytics and guidance features provided by Splunk Observability Cloud either.

Our main security architect has done extensive work utilizing the ability to enrich data with custom metrics in Splunk Observability Cloud by setting up specialized dashboards and searches for our various integrated apps, including ISE and Palo firewall logging.

I haven't extensively used the out-of-the-box customizable dashboards provided by Splunk Observability Cloud as we're still using our custom ones. I wasn't involved in the pricing, setup, cost, and licensing. I enjoy using Splunk Observability Cloud, but I'm not familiar with the cost aspects.

Access to Splunk Observability Cloud has been reliable for all users. On a scale of one to ten, I rate Splunk Observability Cloud an eight. 

I recommend spending time working on your own dashboards and searches to fit your business needs, as that's where you'll get the most value out of Splunk Observability Cloud.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    reviewer2755917

Correlating logs with traces reduces time to resolution and uncovers issues before reaching operations

  • September 09, 2025
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Splunk Observability Cloud is end-to-end tracing of business processes.

How has it helped my organization?

Splunk Observability Cloud has helped improve my operational performance and my company's resilience.

What is most valuable?

What I appreciate most about Splunk Observability Cloud is the correlation feature, specifically the ease of correlating logs and issues to those traces to see where within the path of the business function is failing. 

One significant way these features benefit my organization is through mean time to resolution. Taking away that first instinct of where we're trying to figure out what's wrong will drop that time significantly, so rather than a few hours, potentially we're looking at a few minutes before we can start resolving an issue.

In terms of operation performance and resilience, I have experienced improvements in mean time to resolution and the ability to detect issues that we weren't detecting ahead of time. I can give a specific case scenario; while we were in a POC situation, it was able to find issues we were having with servers just by random chance. We implemented it and it happened to let us know about an issue before our NOC even knew that it was occurring.

My teams have utilized the ability to enrich data with custom metrics in Splunk Observability Cloud during the implementation process, and we're definitely seeing a huge difference in what data we have, and the teams are extremely excited by the new amount of data we're getting in. I find the out-of-the-box customizable dashboards provided by Splunk Observability Cloud extremely beneficial since they give you a lot of information already, and the ability to customize and do your own is even better.

I ran into a small security incident. Splunk Observability Cloud was able to help us with that along with Splunk's core process or core offering. Between the two, we were able to use it for correlations, which helped with mean time to resolution and getting us back up and running much faster.

What needs improvement?

Splunk Observability Cloud could be improved with better integration with AppDynamics, as we know that's coming, however, it is an issue we've had between the OpenTelemetry and the AppDynamics collector. We saw a complete difference in what data was being brought in, however, we know that issue is being resolved and that's a big one for us.

What do I think about the stability of the solution?

I would assess the stability and reliability of Splunk Observability Cloud as okay. We've been experiencing an issue with the cloud console, and we're working with support to get through that. We're assuming it's just a growing pain at this point. Particularly what we're having is disconnection from the cloud console, where we will be working in it and receive a message saying that we've been disconnected and have to wait for it to come up. It's been painful and seems to be a new issue, and they're trying to figure out what's going on,however, I haven't heard of anybody else having that issue.

What do I think about the scalability of the solution?

Splunk Observability Cloud seems to be scaling quite well with the growing needs of my organization.

How are customer service and support?

I would evaluate the customer service and technical support for Splunk Observability Cloud as fantastic. On a scale of 1 to 10, the customer service and technical support deserve a 10.

How would you rate customer service and support?

Positive

What was our ROI?

I have seen a return on investment with Splunk Observability Cloud.

What other advice do I have?

I would advise other organizations considering Splunk Observability Cloud to definitely POC it to see if it's going to work for their situation. It may not be for everybody. That said, definitely give it a chance and see what it can do for you and the kinds of new information it can bring in for you.

On a scale of one to ten, I rate Splunk Observability Cloud nine.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)