Splunk Accelerates Agentic AI Innovation at Cisco Live Amsterdam
At Cisco Live Amsterdam, Splunk is showcasing how organizations can unlock more value of their machine data in the agentic AI era. With new and enhanced capabilities across its platform, observability and security portfolios, Splunk helps customers transform operations, secure environments, and drive meaningful business outcomes with AI.
The Data Platform for Resilience in the Agentic AI Era
In today’s AI-powered landscape, machine data matters more than ever. Cisco Data Fabric, powered by Splunk, is breaking down silos and connecting network, infrastructure, applications and user data across cloud and on premises to fuel the next generation of agentic AI innovation.
The latest Splunk Platform updates showcase this evolution:
- Splunk hosted AI models available on February 18: Splunk’s hosted AI models include the Cisco Deep Time Series Model (beta), Cisco Foundation AI Security Model, and GPT OSS (20B and 120B). These models deliver powerful, out-of-the-box analytics and reasoning, predictive alerting, anomaly detection, infrastructure forecasting, alert prioritization, and attack timeline reconstruction. These hosted models will be accessible natively within Splunk, with no additional fine tuning required.
- Splunk Model Context Protocol (MCP) server generally available: The Splunk MCP server enables a secure, standardized communication protocol for connecting AI systems to Splunk Platform, now including alpha support for Splunk Observability Cloud MCP. With a unified MCP server, customers can more easily access Splunk capabilities, simplify workflows, and gain insights across domains (e.g., metrics, logs, traces, and events), making it easier for more customers to harness the power of data for AI.
- Native Splunk platform integration with Cisco Nexus One available in March: With native integration into the Splunk platform, Cisco Nexus One provides job-aware, network-to-GPU visibility by correlating network telemetry with AI workload behavior directly at the data source. Customers can analyze telemetry without exporting data to external systems, supporting sovereign cloud deployments and compliance-driven environments where data locality is paramount.
These platform enhancements empower organizations to turn their data into a dynamic force for resilience and predictive insights at scale. For a deeper look at Splunk’s latest platform updates, read our detailed blog post.
Agentic Observability: Empowering AI-Driven Teams
As organizations embrace LLMs and agentic capabilities, observability challenges are evolving. In response, Splunk is delivering purpose-built solutions for agentic AI:
- AI Agent Monitoring for Splunk Observability Cloud available on February 25: Teams can now monitor the performance, quality, cost, and security of LLM and agentic applications. This allows customers to correlate root causes of performance issues, evaluate the quality and behavior of models, track and optimize resources and costs, and mitigate risks like hallucinations and prompt injection. With AI Agent Monitoring, organizations gain visibility into AI interactions, tool calls, and workflows to help ensure trust, reliability, and measurable business impact.
- Splunk Digital Experience Analytics available in March: Digital Experience Analytics unifies behavioral and observability data, revealing exactly how users interact with applications. By tracking feature usage, user flows, and friction points, teams can boost conversions, resolve issues faster, and deliver better digital experiences all with a single OpenTelemetry agent.
These innovations are designed to give teams end-to-end visibility so they can build, monitor, and operate AI-powered systems with confidence. To explore the newest observability enhancements in more detail, check out our dedicated observability update blog.
A New Era of Security: Toward the Agentic SOC
Security teams need to move faster and smarter in the age of agentic AI. The role of security has shifted from reactive response to strategic enablement. Splunk is leading the way by integrating advanced AI across the SOC workflow:
- Splunk Enterprise Security Premier Edition now generally available: Now available for customer-managed deployments, this unified package brings together Splunk Enterprise Security, Splunk SOAR, Splunk UEBA, threat intelligence, detection engineering, and AI capabilities into a single analyst experience. Integrated workflows and agentic AI accelerate detection, investigation, and response to reduce risk, increase efficiency, and pave the way for the Agentic SOC.
With Splunk Enterprise Security Premier Edition, Splunk is empowering organizations to simplify security operations and forge a path to faster, more resilient outcomes, leveraging AI every step of the way. Learn more about Splunk Enterprise Security Premier Edition in our in-depth blog post.
Driving Forward, Together
Splunk’s product innovation is helping to power the AI transformation, making data a strategic asset for every organization in the agentic era. As we continue to deliver on our vision, customers can expect even more capabilities that enable resilience, security, and business value at any scale.
This blog post may contain forward-looking statements regarding future events, plans or the expected financial performance of our company, including our expectations regarding our products, technology, strategy, customers, markets, acquisitions and investments. These statements reflect management’s current expectations, estimates and assumptions based on the information currently available to us. These forward-looking statements are not guarantees of future performance and involve significant risks, uncertainties and other factors that may cause our actual results, performance or achievements to be materially different from results, performance or achievements expressed or implied by the forward-looking statements contained in this blog post.
For additional information about factors that could cause actual results to differ materially from those described in the forward-looking statements made in this presentation, please refer to our periodic reports and other filings with the SEC, including the risk factors identified in our most recent quarterly reports on Form 10-Q and annual reports on Form 10-K, copies of which may be obtained by visiting the Cisco Investor Relations website at investor.cisco.com or the SEC's website at www.sec.gov. The forward-looking statements made in this blog post are made as of the time and date of this blog post. If reviewed after the initial presentation, even if made available by us, on our website or otherwise, it may not contain current or accurate information. We disclaim any obligation to update or revise any forward-looking statement based on new information, future events or otherwise, except as required by applicable law.
In addition, any information about our roadmap outlines or our general product direction is subject to change at any time without notice. It is for informational purposes only and shall not be incorporated into any contract or other commitment. We undertake no obligation either to develop the features or functionalities described, in alpha or beta or in preview (used interchangeably), or to include any such feature or functionality in a future release.
Related Articles

Defending Against npm Supply Chain Attacks: A Practical Guide to Detection, Emulation, and Analysis

Splunk Security Content for Threat Detection & Response: November Recap
