Splunk

Splunk Inc. is a subsidiary of CISCO Systems that produces software for indexing, searching, and analyzing machine-generated data, allowing for the creation of dashboards, alerts, graphs, and reports to monitor system health and to detect and respond to issues in real time.[2][3][4] With a focus on cyber security and observability, Splunk describes its on-premises software and SaaS products as SIEM, SOAR (Security Orchestration, Automation, and Response), and observability solutions.[5]

Splunk was acquired by Cisco in September 2023 for $28 billion in an all-cash deal.[6] The transaction was completed on March 18, 2024.[7] The company was based in San Francisco, California,[8]

History

Founding & early years

Michael Baum, Rob Das[9] and Erik Swan co-founded Splunk Inc in 2003.[10] Venture firms August Capital, Sevin Rosen, Ignition Partners and JK&B Capital backed the company.

By 2007, Splunk had raised US$40 million.[11] It became profitable in 2009.[12] In 2012, Splunk had its initial public offering, trading under NASDAQ symbol SPLK.[13]

Company growth

In September 2013 the company acquired BugSense, a mobile-device data-analytics company.[14] BugSense provides "a mobile analytics platform used by developers to improve app performance and improve quality." It supplied a "software developer kit" to give developers access to data analytics from mobile devices that it managed from its scalable cloud platform.[15] The acquisition amount was undisclosed.

In December 2013, Splunk acquired Cloudmeter, a provider of network data capture technologies.[16] In June 2015, Splunk acquired the software company Metafor that uses machine learning technology to analyze data generated from IT infrastructure and applications.[17] In July 2015, Splunk acquired Caspida, a cybersecurity startup, for US$190 million.[18]

In October 2015, Splunk sealed a "cybersecurity alliance" with U.S. government security contractor Booz Allen Hamilton Inc. to offer combined cyber threat detection and intelligence-analysis technology.[19]

In 2016, Splunk pledged to donate $100 million in software licenses, training, support, education, and volunteerism for nonprofits and schools over a 10-year period.[20]

According to Glassdoor, it was the fourth highest-paying company for employees in the United States in April 2017.[21][22] In May 2017, Splunk acquired Drastin, a software company that provides search-based analytics for enterprises.[23]

In September 2017, Splunk acquired SignalSense which developed cloud-based data collection and breach detection software.[24] Splunk announced it was using machine learning about that time.[25]

In October 2017, Splunk acquired technology and intellectual property from smaller rival Rocana.[26] On April 9, 2018, Splunk acquired Phantom Cyber Corporation for approximately US$350 million.[27] In April 2018, it reached US$14.8 billion of market capitalization. On June 11, 2018, Splunk announced its acquisition of VictorOps, a DevOps incident management startup, for US$120 million.[28] In July 2018 Splunk acquired KryptonCloud, an industrial IoT and analytics SaaS company.[29] Splunk acquired the cloud monitoring company, SignalFx, in October 2019 for $1.05 billion.[30] Two weeks later on September 4, 2019, Splunk acquired Omnition—an early-stage startup specializing in distributed tracing—for an undisclosed amount.[31]

Splunk also announced the launch of its corporate venture fund, Splunk Ventures—a $100 million Innovation Fund and a $50 million Social Impact Fund to invest in early-stage startups.[32]

Recent history

Splunk reported its fiscal 2021 fourth-quarter revenue of $745.1 million. For all of fiscal 2021, Splunk reported revenue of $2.23 billion.[33] On November 15, 2021, Doug Merritt stepped down as president and CEO. Graham Smith, Splunk's chairman since 2019, took over as interim CEO.[34][35] On March 2, 2022, Splunk named Gary Steele, previously at Proofpoint, as its CEO and the successor to interim chief Graham Smith effective April 2022.[36][37]

Cisco acquisition

On September 21, 2023 Cisco announced it would acquire Splunk for $28 billion in an all-cash deal.[6] In November 2023, the company announced layoffs affecting 7% or 500 of its employees, following an earlier reduction of 300 staff in the same year. CEO Gary Steele clarified in a letter to employees, filed with the U.S. Securities and Exchange Commission, that the decision was not related to the Cisco deal.[38]

In April 2024, Splunk won an infringement case against Cribl Inc, a startup competitor, for copying enterprise data analysis software. The jury awarded Splunk $1 in damages.[39]

The acquisition of Splunk was completed in March 2024. It was the largest deal in Cisco's history.[40] At the time, Splunk had 1,100 patents, with clients such as Singapore Airlines, Papa John's, Heineken, and McLaren. Splunk continued under the same management, with pricing projected to stay the same.[41]

In May 2024, former Splunk CEO Gary Steele was promoted to a Cisco executive, although Splunk continued to report to him.[42] He remained Splunk general manager.[43] Cisco's observability product development including its Cisco AppDynamics software was moved into Splunk after the integration.[44]

In 2025, Splunk became a central element of Cisco's enterprise AI and security strategy following its integration into Cisco's software portfolio.[45]

Products

Splunk's core offering collects and analyzes high volumes of machine-generated data. It uses a lightweight agent to locally collect log messages from files, receives them via TCP or UDP syslog protocol on an open port (not preferred), or calls scripts to collect events from various application programming interfaces (APIs) to connect to applications and devices. It was developed for troubleshooting and monitoring distributed applications based on log messages.[46][47]

Splunk Enterprise Security (ES) provides security information and event management (SIEM) for machine data generated from security technologies such as network, endpoints, access, malware, vulnerability, and identity information. It is a premium application that is licensed independently.

In 2011, Splunk released Splunk Storm, a cloud-based version of the core Splunk product. Splunk Storm offered a turnkey, managed, and hosted service for machine data.[48] In 2013, Splunk announced that Splunk Storm would become a completely free service and expanded its cloud offering with Splunk Cloud.[49] In 2015, Splunk shut down Splunk Storm.[50]

In 2013, Splunk announced a product called Hunk: Splunk Analytics for Hadoop, which supports accessing, searching, and reporting on external data sets located in Hadoop from a Splunk interface.[51]

In 2015, Splunk announced a Light version of the core Splunk product aimed at smaller IT environments and mid-sized enterprises.[52] Splunk debuted Splunk IT Service Intelligence (ITSI) in September 2015. ITSI leverages Splunk data to provide visibility into IT performance. Software analytics can detect anomalies and determine their causes and the areas it affects.[53]

Splunk Security Orchestration, Automation and Response (SOAR) free community edition, is free for as long as you want, up to 100 actions/day to automate tasks, orchestrate workflows, and reduce incident response times for cloud, on-premises or hybrid deployments.[54][55]

Cloud transformation

In 2016, Google announced its cloud platform would integrate with Splunk to expand in areas like IT ops, security, and compliance.[56] The company also announced additional machine learning capabilities for several of its major product offerings, which are installed on top of the platform.[57][58] Splunk Cloud received FedRAMP authorization from the General Services Administration FedRAMP Program Management Office at the moderate level in 2019, enabling Splunk to sell to the federal government.[59] This allows customers to access Google's AI and ML services and power them with data from Splunk. Also, by integrating with Google Anthos and Google Cloud Security Command Center, Splunk data can be shared among different cloud-based applications. To help companies manage the shift to a multi cloud environment, Splunk launched its Observability Cloud, which combines infrastructure monitoring, application performance monitoring, digital experience monitoring, log investigation, and incident response capabilities. In 2020, the company announced that Splunk Cloud is available on the Google Cloud Platform and launched an initiative with Amazon Web Services to help customers migrate on-premises Splunk workloads to Splunk Cloud on the AWS cloud.[60]

In 2017, Splunk introduced Splunk Insights for ransomware, an analytics tool for assessing and investigating potential threats by ingesting event logs from multiple sources. The software is targeted toward smaller organizations like universities.[61][62] The company also launched Splunk Insights for AWS Cloud Monitoring, a service to facilitate enterprises' migration to Amazon Web Services' cloud.

In 2018, Splunk introduced Splunk Industrial Asset Intelligence, which extracts information from IIoT (Industrial Internet of Things) data from various resources and presents its users with critical alerts.[63]

In 2019, Splunk announced new capabilities to its platform, including the general availability of Data Fabric Search and Data Stream Processor. Data Fabric Search uses datasets across different data stores, including those that are not Splunk-based, into a single view. The required data structure is only created when a query is run.[64]

Data Stream Processor is a real-time processing product that collects data from various sources and then distributes results to Splunk or other destinations. It allows role-based access to create alerts and reports based on data that is relevant for each individual.[64] In 2020, it was updated to allow it to access, process, and route real-time data from multiple cloud services. Also, in 2019, Splunk rolled out Splunk Connected Experiences, which extends its data processing and analytics capabilities to augmented reality (AR), mobile devices, and mobile applications.[65]

In 2020, Splunk announced Splunk Enterprise 8.1 and the Splunk Cloud edition. They include stream processing, machine learning, and multi-cloud capabilities.[66]

In October 2019, Splunk announced the integration of its security tools - including security information and event management (SIEM), user behavior analytics (UBA), and security orchestration, automation, and response (Splunk Phantom) — into the new Splunk Mission Control.[67][68]

In 2019, Splunk introduced an application performance monitoring (APM) platform, SignalFx Microservices APM, that pairs “no-sample’ monitoring and analysis features with Omnition's full-fidelity tracing capabilities. Splunk also announced that a capability called Kubernetes Navigator would be available through its product, SignalFx Infrastructure Monitoring.[69]

Splunkbase

Splunkbase is a community hosted by Splunk where users can go to find apps and add-ons for Splunk, which can improve the functionality and usefulness of Splunk, as well as provide a quick and easy interface for specific use cases and/or vendor products. As of October 2019, more than 2,000 apps were available on the site.[70]

Integrations on Splunkbase include the Splunk App for New Relic,[71] the ForeScout Extended Module for Splunk,[72] and Splunk App for AWS.[73]

Sponsorships

McLaren

Starting in 2020, Splunk announced a partnership with the McLaren Formula One team, sponsoring the team and working with them to provide data analysis and insight on racing performance.[74]

Splunk worked with McLaren Racing for several years, evaluating the performance data pulled from the nearly 300 sensors on every racecar, before becoming McLaren's official technology partner in February 2020.[75][76] The partnership resulted in Splunk deployed across the McLaren Group.[77][75] This included using Splunk to interpret data from McLaren's e-sports team.[75] As part of the partnership, Splunk's logo was added to the sidepod and cockpit surrounds of the MCL35 racecar.[78][79]

Trek-Segafredo

In November 2018, Splunk signed a sponsorship deal with the Trek-Segafredo professional road cycling team; the partnership started in 2019. Splunk replaced CA Industries as the company's technology partner.[80] Splunk provides data analysis for the company, including analysis on riders, coaches, and mechanics.[81] Team jerseys, bikes, and vehicles carry Splunk branding.[81] Splunk also participates in Trek's race hospitality program.[81]

References

  1. US SEC: Form 10-K Splunk Inc. (FY Jan. 31, 2023) U.S. Securities and Exchange Commission, March 23, 2023, retrieved March 24, 2023^
  2. How Splunk Is Riding IT Search Toward an IPO — Tech News and Analysis Giga OM, December 17, 2010, retrieved April 22, 2013^
  3. Pui-Wing Tam. Start-Ups Aim to Help Tame Corporate Data Wall Street Journal, September 9, 2009, retrieved August 8, 2017^
  4. Dan Woods. Business Intelligence and the Data Center citoresearch.com, January 6, 2011^
  5. Observability and Security: Thoughts on the Cisco-Splunk Acquisition www.computerweekly.com, retrieved 2025-10-16^
  6. Molly Schuetz. Cisco Strikes $28 Billion Deal for Splunk in Biggest Buy Yet Bloomberg, September 21, 2023, retrieved September 21, 2023^
  7. Cisco Completes Acquisition of Splunk Cisco, retrieved 2024-03-19^
  8. Laura Waxmann. Splunk lists S.F. corporate headquarters for lease American City Business Journals, May 7, 2022, retrieved July 28, 2022^
  9. Not to be confused with Rob Das, the Dutch film and television actor, director, and writer^
  10. Drew Robb. Splunk Inc.'s Splunk Data Center Search Party Computerworld, 2006-08-21, retrieved 2021-06-11^
  11. Splunk search engine raises $25 million IT PRO, September 12, 2007, retrieved December 26, 2021^
  12. IT search company Splunk reaches profitability VentureBeat, October 14, 2009, retrieved April 22, 2013^
  13. Evelyn Rusli. Splunk Soars as Investors Embrace Data Boom The New York Times, April 19, 2012, retrieved March 8, 2016^
  14. Splunk Announces Agreement to Acquire BugSense Splunk, retrieved September 16, 2013^
  15. Splunk Acquires Bugsense TechCrunch, September 16, 2013, retrieved June 25, 2017^
  16. Jamie Hinks 10 December 2013. Splunk completes Cloudmeter acquisition ITProPortal, December 10, 2013, retrieved 2020-10-08^
  17. Vancouver's Metafor Acquired by Splunk Digital Magazine, 2015-06-29, retrieved 2020-10-08^
  18. Splunk acquires cybersecurity startup Caspida for $190M Venturebeat, July 9, 2015, retrieved September 14, 2017^
  19. Angela Messer: Booz Allen-Splunk Cyber Alliance Blends Data, Experience GovCon, October 15, 2015, retrieved October 15, 2015^
  20. Steve Symington. Why Splunk, Inc. Just Dedicated $100 Million to Philanthropy The Motley Fool, October 6, 2016, retrieved April 3, 2017^
  21. Julie Verhage. These Are the Highest-Paying Companies in America Bloomberg Business, April 12, 2017, retrieved April 18, 2017^
  22. 25 Highest Paying Companies in America for 2017 Glassdoor Blog, 2017-04-12, retrieved 2020-10-08^
  23. Document www.sec.gov, retrieved 2020-12-04^
  24. Larry Dignan. Splunk acquires SignalSense, beefs up machine learning, security expertise ZDNet, retrieved 2020-10-08^
  25. Martin Banks. Splunk .conf - one machine log to bind them all diginomica, September 27, 2017, retrieved August 11, 2021^
  26. Natalie Gagliordi. Splunk buys IP assets of smaller rival Rocana ZDNet, retrieved November 15, 2017^
  27. Splunk Closes Acquisition of Phantom Splunk, retrieved April 30, 2018^
  28. Splunk nabs on-call management startup VictorOps for $120M retrieved June 11, 2018^
  29. Acquisitions Splunk, retrieved 2021-10-25^
  30. Frederic Lardinois. Writer TechCrunch, 21 August 2019, retrieved 5 September 2019^
  31. Tim Tully. Splunk to Acquire Observability Innovator and Leading Open Source Contributor Omnition Splunk blog, Splunk, Inc., retrieved 5 September 2019^
  32. Splunk launches venture funds with $150 million San Francisco Business Times, retrieved 2020-12-04^
  33. Rick Whiting. Splunk: Deal-Closing Rate Rebounded In Fourth Quarter CRN, 2021-03-04, retrieved 2021-08-21^
  34. Splunk Announces CEO Transition Press release, November 15, 2021, retrieved January 14, 2021^
  35. Jordan Novet. Splunk stock plunges as CEO Doug Merritt steps down CNBC, 15 November 2021^
  36. Kimberly Chin. Splunk Post Higher 4Q Sales, Beating Estimates Press release, 2022-03-02, retrieved March 2, 2022^
  37. Eric Savitz. Splunk Names a New CEO and Reports Strong Earnings Barrons, 2022-03-02, retrieved March 2, 2022^
  38. Rohan Goswami. Splunk to cut 7% of workforce, or about 500 employees, ahead of Cisco acquisition CNBC, 2023-11-01, retrieved 2023-11-01^
  39. "Splunk Jury Awards $1 for Software Copyright Win Over Cribl (1)", Bloomberg Law, Isaiah Poritz (April 22, 2024)^
  40. "Cisco Closes $28 Billion Acquisition of Splunk, Betting Big on AI", The Wall Street Journal, Steven Rosenbush (March 18, 2024)^
  41. "Cisco just made a $28 billion bet on AI", Fast Company, Emily Price (March 18, 2024)^
  42. Wade Tyler Millward. Sharritts To Leave As Cisco Exec Shuffle Puts Former Splunk CEO In President Role CRN, May 15, 2024^
  43. Rick Whiting. Splunk Unveils Advanced AI Capabilities Throughout Its Security, Observability And IT Service Intelligence Software CRN, June 13, 2024^
  44. Rick Whiting. Partners See More Opportunities, Few Downsides In Splunk-Cisco Integration CRN, June 18, 2024^
  45. Newton Kitonga. Cisco (CSCO) Stock: Splunk Integration and NeuralFabric Acquisition Shape AI Strategy Parameter, 2025-12-15, retrieved 2025-12-15^
  46. Curtis Franklin Jr.. SAP, Splunk Dashboards Aim To Satisfy Data Hunger InformationWeek, October 16, 2015, retrieved March 24, 2016^
  47. Barb Darrow. Splunk IPO explained and why it matters GigaOM, January 13, 2012, retrieved March 24, 2016^
  48. Splunk Storm brings log management to the cloud InfoWorld, August 28, 2012, retrieved October 23, 2013^
  49. Splunk Announces General Availability of Splunk Cloud Wall Street Journal Marketwatch, October 1, 2013, retrieved October 23, 2013^
  50. Has Splunk Turned Its Back on the DevOps Community? DZone.com, retrieved December 26, 2021^
  51. Splunk Spawns Hunk Hadoop Tool Information Week, June 18, 2013, retrieved June 18, 2018^
  52. Splunk announces lower cost light version of its log analyticsl Infoworld, March 10, 2015, retrieved October 12, 2015^
  53. Thor Olavsrud. Splunk updates platform, adds monitoring and analytics services CIO magazine, International Data Group, September 23, 2015, retrieved April 5, 2017^
  54. Free Trials and Downloads Splunk, retrieved 2 February 2023^
  55. Splunk SOAR Splunk, retrieved 2 February 2023^
  56. Ingrid Lunden. Google ramps up hybrid cloud security strategy with Splunk, BMC and Tenable partnerships TechCrunch, March 23, 2016, retrieved March 23, 2016^
  57. Thor Olavsrud. Splunk puts machine learning at center of operational intelligence portfolio CIO, International Data Group, September 27, 2016, retrieved April 5, 2017^
  58. Scott Carey. Splunk brings machine learning capabilities into its tools and launches toolkit for customer's own algorithms Computerworld UK, September 28, 2016, retrieved April 5, 2017^
  59. Why Is Splunk (SPLK) Up 19% Since Last Earnings Report? finance.yahoo.com, December 21, 2019, retrieved 2020-11-23^
  60. Splunk transition to cloud 'accelerated' ahead of expectations CRN Australia, retrieved 2020-11-30^
  61. Joshua Bolkan. Splunk Debuts New Security Tool for Ransomware Campus Technology, June 28, 2017, retrieved July 10, 2017^
  62. Emily Tate. Splunk releases solution that helps defend universities from ransomware EdScoop, July 11, 2017, retrieved July 11, 2017^
  63. Splunk turns data processing chops to Industrial IoT – TechCrunch techcrunch.com, April 10, 2018, retrieved April 23, 2018^
  64. Volk von Torsten. Demystifying Splunk's Data-to-Everything Vision Cloud Advisors, October 28, 2019, retrieved August 11, 2021^
  65. Splunk Buys Another Startup, Launches Mission Control - SDxCentral SDxCentral, 2019-10-22, retrieved 2020-12-11^
  66. Rick Whiting. Splunk Debuts Observability Suite, Acquires Pair Of Monitoring Tool Startups CRN, 2020-10-20, retrieved 2021-06-11^
  67. Splunk Buys Another Startup, Launches Mission Control - SDxCentral SDxCentral, 2019-10-22, retrieved 2020-12-14^
  68. Splunk enhances its Security Operations Suite to modernize and unify the SOC Help Net Security, 2019-10-23, retrieved 2020-12-14^
  69. Splunk Dives Into Cloud Native Application Monitoring - SDxCentral SDxCentral, 2020-03-31, retrieved 2020-12-29^
  70. Home splunkbase.splunk.com, retrieved 2021-01-05^
  71. Larry Dignan. Splunk, New Relic forge integration pact ZDNet, March 22, 2017, retrieved April 5, 2017^
  72. Ron Miller. ForeScout-Splunk integration hopes to bring greater insight to IoT security TechCrunch, January 5, 2017, retrieved April 5, 2017^
  73. Ben Kepes. Splunk goes down-market and leverages AWS' market dominance Computerworld, November 30, 2016, retrieved April 5, 2017^
  74. Splunk and McLaren Racing: Driven by Data Splunk, 2020-02-08, retrieved September 6, 2020^
  75. McLaren Racing uses Splunk to analyse 1.5 TB of data every race weekend diginomica, 2020-11-30, retrieved 2021-01-29^
  76. Darshan Chokhani. McLaren gets Darktrace and Splunk as new F1 partners ahead of 2020 season DriveTribe, 2020-02-10, retrieved 2021-01-29^
  77. Mike Moore 09 February 2020. McLaren signs up Splunk and Darktrace as F1 2020 technology partners TechRadar, February 9, 2020, retrieved 2021-01-29^
  78. McLaren add Splunk as latest technology partner - SportsPro Media www.sportspromedia.com, February 7, 2020, retrieved 2021-02-12^
  79. Darshan Chokhani. McLaren gets Darktrace and Splunk as new F1 partners ahead of 2020 season DriveTribe, 2020-02-10, retrieved 2021-02-12^
  80. UAE Team Emirates extend with Mirza and Mori – News Shorts cyclingnews, October 31, 2018, retrieved 2021-02-05^
  81. Trek-Segafredo teams up with Splunk SportBusiness Sponsorship, 2018-10-31, retrieved 2021-02-26^
  82. Peter Cohan. 3 Well-Financed Startups Aspire To Displace Splunk Forbes, 2018-08-15, retrieved 2019-10-14^