Logo of Splunk Enterprise Security

Splunk Enterprise Security

Website LinkedIn Twitter

Last updated on

Ratings

G2
4.3/5
(220)

Splunk Enterprise Security description

Splunk Enterprise Security is a comprehensive security tool that gives you a clear picture of your company's security status. It uses advanced data analysis and pre-built security intelligence to quickly detect and investigate threats, allowing you to understand and react to serious security risks. Its adaptability and integration capabilities make it a good fit for businesses with changing security needs.


Who is Splunk Enterprise Security best for

Splunk Enterprise Security is a robust security solution for organizations needing real-time threat detection and analysis. Users praise its powerful search and flexible dashboards but note the high cost and complex setup. It's best suited for IT professionals, security analysts, and SOCs handling large data volumes.

  • Best for medium to large businesses.

  • Ideal for IT, Media, and Finance.


Splunk Enterprise Security features

Type in the name of the feature or in your own words tell us what you need
Supported

Splunk Enterprise Security supports real-time alerts based on log data.

Supported

Splunk Enterprise Security allows creating and customizing dashboards to visualize log data.

Supported

Splunk Enterprise Security automatically detects incidents and sends alerts.

Supported

Splunk Enterprise Security supports searching logs based on various criteria using the Splunk Query Language.

Supported

Splunk Enterprise Security provides real-time security event monitoring and analysis.

Supported

Splunk Enterprise Security rapidly detects and neutralizes threats using real-time analytics and machine learning.

Qualities

We evaluate the sentiment that users express about non-functional aspects of the software

Value and Pricing Transparency

Strongly negative
-1

Customer Service

Strongly positive
+1

Ease of Use

Rather positive
+0.52

Reliability and Performance

Strongly positive
+0.76

Ease of Implementation

Neutral
-0.29

Scalability

Neutral
+0.2

Splunk Enterprise Security reviews

We've summarised 220 Splunk Enterprise Security reviews (Splunk Enterprise Security G2 reviews) and summarised the main points below.

Pros of Splunk Enterprise Security
  • Powerful search and analysis capabilities enable efficient data mining and threat detection.
  • Flexible and customizable dashboards and reporting features.
  • Extensive integration options with various security devices and platforms.
  • Real-time monitoring and alerting for proactive threat response.
  • Scalable architecture to handle large data volumes.
Cons of Splunk Enterprise Security
  • High licensing costs are a major concern for many users, especially smaller businesses.
  • The complexity of setup and configuration requires significant technical expertise.
  • Limited out-of-the-box content and use cases, requiring customization.
  • Performance can be slow, especially with large datasets or complex queries.
  • Steep learning curve for the search processing language (SPL).

Splunk Enterprise Security pricing

The commentary is based on 26 reviews from Splunk Enterprise Security G2 reviews.

Splunk Enterprise Security is a powerful SIEM solution with a robust feature set. However, reviews consistently highlight its high cost and complex licensing model as significant drawbacks, particularly for smaller organizations. Despite the price, many users find the investment worthwhile for its advanced security capabilities.

Users sentiment

Strongly negative
-1

Splunk Enterprise Security alternatives

  • Logo of FortiSIEM
    FortiSIEM
    Better suited for organizations looking for simplified security management. More user-friendly GUI. Stronger machine learning-based threat detection. Excellent integration with other Fortinet products. More momentum in terms of popularity.
    Read more
  • Logo of Microsoft Sentinel
    Microsoft Sentinel
    Cloud-based and better integrated with Microsoft products. A good Splunk Enterprise Security competitor for Azure users.
    Read more
  • Logo of vPenTest
    vPenTest
    Better for smaller businesses seeking affordable and continuous automated network penetration testing. Easier to use and implement with positive reviews on customer support and pricing. However, it offers limited customization and lacks application and website penetration testing. Splunk Enterprise Security offers more comprehensive security monitoring, incident management, and threat intelligence integration, but with higher costs and complexity. For those seeking a Splunk alternative focused on automated penetration testing, vPenTest offers a compelling option.
    Read more
  • Logo of Prisma SASE
    Prisma SASE
    Better for organizations with remote workforces needing secure access and cloud security features. Simpler user interface but more complex initial setup. Higher scalability but potentially slower support.
    Read more
  • Logo of Netskope
    Netskope
    Better for organizations with a large remote workforce focused on data protection and cloud security. More suitable for Software, IT & Telecommunications but less applicable to Healthcare, Wellness & Pharma, Hospitality & Tourism and Energy & Utilities. Easier to use but potentially less reliable. Has more momentum.
    Read more
  • Logo of Wazuh - The Open Source Security Platform
    Wazuh - The Open Source Security Platform
    Open-source, providing a cost-effective Splunk Enterprise Security alternative. Simpler setup and a more intuitive user interface. Faster growth and a highly engaged community. Better value and easier implementation.
    Read more

Splunk Enterprise Security FAQ

  • What is Splunk Enterprise Security and what does Splunk Enterprise Security do?

    Splunk Enterprise Security is a security information and event management (SIEM) solution that provides real-time threat detection, analysis, and response. It uses data analytics and machine learning to identify and address security risks, offering customizable dashboards and extensive integration options. It helps organizations gain insights into their security posture and streamline incident response.

  • How does Splunk Enterprise Security integrate with other tools?

    Splunk Enterprise Security integrates with various security tools, devices, and platforms, allowing for comprehensive data collection and analysis. This adaptable platform enables customized integration to meet specific security needs.

  • What the main competitors of Splunk Enterprise Security?

    Top alternatives to Splunk Enterprise Security include Microsoft Sentinel, FortiSIEM, Wazuh, Netskope, and Dynatrace. These competitors offer various features like cloud security, threat detection, and system monitoring.

  • Is Splunk Enterprise Security legit?

    Splunk Enterprise Security is a legitimate and widely used security information and event management (SIEM) platform. It's known for its powerful data analysis capabilities and real-time threat detection. However, potential users should be aware of the high cost and complex setup.

  • How much does Splunk Enterprise Security cost?

    I could not find pricing information for Splunk Enterprise Security. Contact Splunk sales for product pricing details or to see if it is worth the investment for your security needs.

  • Is Splunk Enterprise Security customer service good?

    Splunk Enterprise Security's customer support receives positive feedback, with users highlighting its helpfulness and availability. Some users mention that support is "great for any type of issue," while others praise the "amazing and proactive customer support team." However, one user noted that support was occasionally "not as expected."


Reviewed by

MK
Michal Kaczor
CEO at Gralio

Michal has worked at startups for many years and writes about topics relating to software selection and IT management. As a former consultant for Bain, a business advisory company, he also knows how to understand needs of any business and find solutions to its problems.

TT
Tymon Terlikiewicz
CTO at Gralio

Tymon is a seasoned CTO who loves finding the perfect tools for any task. He recently headed up the tech department at Batmaid, a well-known Swiss company, where he managed about 60 software purchases, including CX, HR, Payroll, Marketing automation and various developer tools.