Log analytics · Cisco Systems, Inc. (Splunk)
Splunk
Long-established platform for indexing and searching machine data at scale, used for both IT log analytics and SIEM.
Splunk indexes machine-generated data — logs, metrics, traces — and provides its own search language (SPL) for ad hoc investigation, dashboards, and alerting on top of it. It predates most modern observability tooling and remains deeply entrenched in enterprise IT operations and security teams, where its Enterprise Security app extends the same indexed data into SIEM use cases. It is available as self-managed Splunk Enterprise or as Splunk Cloud Platform (SaaS), now sold under Cisco following its 2024 acquisition. Licensing has moved away from a single flat per-GB/day model toward workload-, ingest-, or activity-based options, and published list pricing is limited — most deployments are quoted based on data volume and search workload.
At a glance
| Vendor | Cisco Systems, Inc. (Splunk) |
|---|---|
| Pricing model | Quote only |
| Free tier | No |
| Deployment | Cloud, Self-hosted |
| Open source | No |
| Best for | Large enterprises with existing Splunk investment needing unified log search across IT operations and security. |
Pricing
Workload-, ingest- or activity-based licensing for the core platform; no flat public per-GB rate is listed, quotes vary by data volume.
Checked on the vendor's own page on September 21, 2026: no prices are published. Expect to be quoted.
Features
- SPL search language over indexed machine data
- Custom dashboards and scheduled alerting
- Enterprise Security app for SIEM use cases on the same data
- IT Service Intelligence for service-level correlation
- Federated search across indexes and Splunk Cloud
- Broad ecosystem of prebuilt technology add-ons
Integrations
Profile last reviewed September 21, 2026