Hello, I am beginning to study this tool because I am interested in using it in a work solution. To store all the data collected I need to install a server in my organization or where exactly all that amount of data is stored?
If you install Splunk on a server in your organization then the data will be stored on storage device in your organization.
If you choose to install Splunk in a cloud then the data will be stored in that cloud.
In either case, you will need to ensure Splunk has access to sufficient storage space to hold all of the data you read in each day for the numbers of days you want to keep it. The storage can be on-box or off (SAN, etc.).
--- If this reply helps you, an upvote would be appreciated.