Logs

Splunk

Splunk (Cisco)

The incumbent enterprise log/SIEM platform with the most mature search language (SPL) and ecosystem, aimed at large security/IT-ops orgs.

Category
Logs
License
Proprietary
Deployment
SaaS or self-hosted
Cost
Enterprise
Free tier
Yes
Self-host effort
Heavy
Maturity
Incumbent
Popularity
Market leader; Gartner SIEM/observability leader

The catch

Famous for cost blowups — ingest-based pricing means a noisy app or debug-log flood can blow the annual budget, and you index everything you ingest whether you query it or not.

Monitors

LogsMetricsTracesServersSecurityCloudK8s

Protocols

Syslog

Capabilities

AlertingDashboardsRBACAPI

Built for

Enterprise