Getting Data In

Splunk workload pricing vs ingest pricing

inventsekar
SplunkTrust
SplunkTrust
Hi Splunk Gurus, 
Lets say i have 2TB daily ingest license, but lets assume daily my ingestion is averagely 1500GB for whole year(lets assume never touched or crossed the 2TB).
now, this means, i have paid extra amount to Splunk(precisely 500 GB license cost i paid extra to Splunk), right. so, can i assume for this usecase, the workload pricing is right one and cheaper one, pls suggest, thanks.  



Some details for reference:
Workload Pricing
  • What it is: Based on compute resources (SVCs) and storage needed for search and analytics.
  • Best for: Organizations with diverse, evolving use cases (ITOps, Security, DevOps) and variable data, especially when some data is searched infrequently.
  • Key Benefit: Flexibility to ingest more data without immediate cost spikes, paying for the work done on data. 
 
  • What it is: A simple, volume-based model paying per GB/day of data ingested.
  • Best for: Predictable data volumes, defined use cases, and when you want to run many searches on ingested data.
  • Key Benefit: Predictable costs and reduced unit pricing as data volume grows. 
thanks and best regards,
Sekar

PS - If this or any post helped you in any way, pls consider upvoting, thanks for reading !
Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Contact your Splunk account team.  They will look at your Splunk usage and will be able to determine if you can save any money by switching to workload pricing.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...