Splunk LLC is a Cisco company that provides security and observability software through a unified platform built to turn machine and operational data into action. Founded in 2003, it has evolved from log analytics into an AI-driven data platform that supports search, analytics, automation, and real-time visibility across cloud, on-premises, and hybrid environments.
Splunk LLC focuses on helping SecOps, ITOps, and engineering teams build digital resilience. Its portfolio combines core data platform capabilities with security operations, observability, application performance, and IT service monitoring so organizations can detect threats faster, troubleshoot issues sooner, and keep critical services running reliably at enterprise scale.
Offerings, Capabilities, and Integrations
Splunk LLC’s core capabilities center on collecting, processing, searching, and analyzing machine data, logs, metrics, traces, and events across distributed environments. Its platform supports real-time dashboards, data streaming, federated search and analytics, machine learning, and embedded AI features that help teams investigate issues and act faster.
The company supports hybrid and multicloud operations with open standards and a broad ecosystem of apps, add-ons, and data integrations. Its observability portfolio is OpenTelemetry-native, while its security offerings connect with a wide range of third-party tools to automate workflows and enrich investigations. Across the portfolio, Splunk LLC is positioned to help organizations unify data visibility, reduce tool sprawl, and operationalize insights across security, IT, and engineering use cases.
Products and Services
- Splunk Cloud Platform: Cloud-delivered data platform service for streaming, searching, analyzing, visualizing, and acting on data across hybrid and multicloud environments.
- Splunk Enterprise: Self-managed platform for searching, monitoring, analyzing, and visualizing machine-generated data in on-premises, cloud, or hybrid deployments.
- Splunk Enterprise Security: Unified threat detection, investigation, and response platform that combines SIEM, UEBA, AI-driven workflows, and integrated response capabilities.
- Splunk SOAR: Security orchestration, automation, and response offering that connects existing security tools, automates playbooks, and accelerates incident response.
- Splunk Attack Analyzer: Automated threat analysis offering for phishing and malware investigations, with attack-chain execution, forensics, and AI-assisted malware analysis.
- Splunk Asset and Risk Intelligence: Asset and identity intelligence offering that builds a continuously updated inventory across network, endpoint, cloud, and scanning data sources.
- Splunk Observability Cloud: OpenTelemetry-native, full-stack observability platform for metrics, traces, logs, digital experience, database, and infrastructure monitoring.
- Splunk AppDynamics: Full-stack application performance and business performance monitoring for hybrid and on-premises applications, including runtime application security capabilities.
- Splunk IT Service Intelligence: AIOps and service monitoring solution that gives IT operations teams a service-health view with analytics, correlation, and alert tracking.
- Splunk Universal Forwarder: Lightweight data collection agent that securely forwards data from remote systems into Splunk deployments for indexing and analysis.
- Splunk AI Assistant for SPL: Generative AI assistant that helps users create and explain SPL queries, answer how-to questions, and work with Splunk data more efficiently.
- MCP Server for Splunk platform: Model Context Protocol server that provides a secure, standardized interface for connecting AI assistants and agents to Splunk data, searches, and knowledge objects.
Target Customers
Splunk LLC primarily serves organizations with complex digital estates that need to secure, monitor, and troubleshoot applications, infrastructure, and services across cloud, on-premises, and hybrid environments. Its core buyers and users include security operations centers, IT operations teams, platform engineering teams, site reliability teams, and application owners.
Splunk LLC targets large enterprises and public sector organizations, especially those operating mission-critical or regulated environments. Its industry focus spans aerospace and defense, communications, energy and utilities, financial services, healthcare, higher education, manufacturing, online services, public sector, retail, nonprofits, and technology.
Cloud Integrations and Marketplace
- AWS Marketplace: Splunk Cloud Platform is available through AWS Marketplace, where Splunk LLC positions it for security, operations, and end-to-end visibility across AWS and hybrid environments.
- Microsoft Azure Marketplace: Microsoft Azure Marketplace includes verified Splunk LLC listings such as Splunk Cloud and Splunk SOAR, supporting Azure-based procurement and deployment for security and observability use cases.
- Google Cloud Marketplace: Google Cloud Marketplace supports direct procurement of Splunk LLC offerings, and Splunk LLC highlights availability for products including Splunk Cloud Platform and additional security and observability solutions on Google Cloud.
Key People
- Kamal Hathi: SVP and GM, Splunk
- Frank Dimina: Senior Vice President & Chief Revenue Officer
- Toni Pavlovich: Senior Vice President, Chief Customer Officer
- Min Wang: Chief Technology Officer
- Claire Hockin: Senior Vice President, Chief Marketing Officer
- Emily Killam: Senior Vice President, Go-to-Market Operations
- Patrick Lin: Senior Vice President and General Manager, Observability
- Jason Lee: Chief Information Security Officer
Key Facts
- Headquarters: San Francisco, California, United States
- Employees: Approximately 9,400
- Annual Revenue: $4.216 billion (FY2024)
- Parent Company: Cisco Systems, Inc.
- Subsidiaries: 30+ international subsidiaries, including Splunk Services UK Limited, Splunk Ireland Limited, Splunk Services Germany GmbH, Splunk Services Australia Pty. Ltd., and Splunk Technology Consulting (Beijing) Co., Ltd.
- Publicly Listed: No; subsidiary of Cisco Systems, Inc. (NASDAQ: CSCO) after Cisco acquired Splunk in 2024; formerly NASDAQ: SPLK
Analyst Recognitions
- Gartner: Leader in the 2025 Gartner Magic Quadrant for Security Information and Event Management (SIEM). Leader in the 2025 Gartner Magic Quadrant for Observability Platforms. #1 SIEM solution in all three use cases in the 2025 Gartner Critical Capabilities for Security Information and Event Management.
- Forrester: Leader in The Forrester Wave: Security Analytics Platforms, Q2 2025.
- IDC: Leader in the IDC MarketScape: Worldwide Observability Platforms 2025 Vendor Assessment. Leader in the IDC MarketScape: Worldwide SIEM for Enterprise 2024 Vendor Assessment. No. 1 SIEM provider in IDC Worldwide Security Information and Event Management Market Shares, 2024.