

(My favorite is Splunk being used for real-time metrics in Formula1 races) Splunk as a platform offers an org the potential to leverage that analytics power for a whole bunch of different uses as you said. But I feel like it's penny-wise pound-foolish if you have any sort of on-prem infrastructure or care about monitoring user endpoints. I think if you're only looking at cloud monitoring in a vacuum, it makes more sense.

Anything as long as you have the data and the guy who understands SPL and the logs/events.įor this particular use case, I think Datadog was created specifically for infra-monitoring (I'm not sure, I can be wrong) so I think it's the easier choice.īelated reply, but this sub doesn't move very fast: But Splunk really is a blank slate and can be transformed into anything that has something to do with data being indexed-be it a payroll system, veterinary clinic queueing system, volcano earthquake monitoring system, Starlink satellites location monitoring system, Disney amusement rides health maintenance system, Marriot hotel guest booking charts. And nowadays, when we say "Splunk", most of the time what comes to mind right away is SIEM, security, monitoring. Sure, Splunk is super popular with security, infrastructure monitoring, BI, and etc. One tightly integrated modern UI powered by the most advanced capabilities means reduced tool sprawl, centralized management, cost control, and one seamless and streamlined workflow for monitoring, troubleshooting, investigation and resolution.You'll have to employ the correct Splunk guy/gal to make it better than Datadog (very particularly) in Infrastructure Monitoring.Īs a Splunk guy, I just wanted to say that we mustn't forget that Splunk is agnostic about what you want to do with it. AI-driven pattern detection proactively identifies and alerts on issues in seconds, drastically lowering MTTR. Unlike other vendors, with Splunk Observability Cloud you only need to instrument once with OpenTelemetry to get unified metrics, traces and logs collected in real-time, without sampling for full-stack, end-to-end visibility. You can quickly find, analyze and resolve incidents anywhere in your stack with all the answers in one place. It powers high performing applications to deliver world-class customer experiences by eliminating operational blindspots. Splunk Observability Cloud is the only fully integrated, turn-key solution for DevOps teams to conquer the complexity caused by modern applications and infrastructure. One tightly integrated modern UI powered by the most advanced capabilities means reduced tool sprawl, centralized management, cost control, and one seamless and streamlined workflow for monitoring, troubleshooting, investigation and resolution.

