Splunk Enterprise

4.6 (242)
Write a Review!
Machine data management and analytics

Overall rating

4.6 /5
(242)
Value for Money
4.3/5
Features
4.5/5
Ease of Use
4.1/5
Customer Support
4.3/5

96%
recommended this app
Sort by

242 Reviews

Muhamed
Muhamed
Overall rating
  • Industry: Information Technology & Services
  • Company size: 11–50 Employees
  • Used Daily for 1-5 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

A better business companion when integrated with RPA

Reviewed on 29/12/2022

Overall, the experience was positive; even with a free trial license, it was much easier, and on...

Overall, the experience was positive; even with a free trial license, it was much easier, and on the course and certification side, Splunk has a very good collection of videos and materials that help even a novice quickly setup the integration and indexing.

Pros

The most useful thing about Splunk is the ease of integration with application. With uipath on-premises it was very much helpful as the business users can monitor the actions of robots through spluink without entering into uipath orchestrator

Cons

Expression creation for indexing was bit hard as it is not user-friendly to business users if they wanted to create any new fields, also the forwarder was not able to directly connect with uipath cloud so that the logs has to be shifted to intermediate file before uploading into splunk, but that seems not an issue with splunk but more related to uipath cloud

Alternatives Considered

Microsoft Power BI

Reasons for Switching to Splunk Enterprise

Splunk was much cheaper than power bi and only little effort needed for implantation and the resources cost is also higher for power bi
Verified Reviewer
Overall rating
  • Industry: Retail
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

nice tool with functionality for everyone

Reviewed on 12/02/2024

very good tool to see your logging and get alerts when something is wrong.

very good tool to see your logging and get alerts when something is wrong.

Pros

Splunk is easy to use, also non technical persons can also use and create their dashboards. Easy to implement and very easy to use the query language, the documentation is also sufficient

Cons

We cannot setup the alerts for realtime. we only us it for logging and not for metrics. the maintenance of the dashboards are very time offering.

Alexia
Overall rating
  • Industry: Consumer Electronics
  • Company size: 11–50 Employees
  • Used Monthly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

I use Splunk Enterprise to analyze and visualize data for better decision-making.

Reviewed on 29/08/2024

Pros

Splunk Enterprise has powerful search capabilities and customizable dashboards.

Cons

The learning curve for setting up queries can be steep, and the pricing can be high for smaller teams.

Cameron
Overall rating
  • Industry: Financial Services
  • Company size: 201–500 Employees
  • Used Monthly for 1-5 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk, a great tool for a security team's tool belt.

Reviewed on 25/09/2024

Pros

Splunk is a great tool for cyber security professionals wanting to build out their security infrastructure.

Cons

There are other options out there that doesn't require as much configuration.

Verified Reviewer
Overall rating
  • Industry: Information Technology & Services
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

really true nice monitoring tool if its nice implemented

Reviewed on 20/10/2023

For me it is a very good experience. It is necessary to develop a good implementation of IT INC...

For me it is a very good experience. It is necessary to develop a good implementation of IT INC Management

Pros

It helped me enormously in my job as IT INC Management including detailed reports and alerting any necessary information.

Cons

It has a somewhat complex paring curve and there are no simple tutorials or parallel design of tutorials for new managers

Jason
Overall rating
  • Industry: Financial Services
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

A valuable SIEM tool that aids Cyber defences

Reviewed on 20/09/2023

Overall a rather good experience based on the Customer Service we receive and the extent to which...

Overall a rather good experience based on the Customer Service we receive and the extent to which they make our use of the tool a good experience

Pros

The saying "you only get out what you put in" is rather apt when utilising Splunk as a SIEM tool - i.e. the more logs / data you can feed into the solution the better the results. Ingesting multiple log files from numerous systems / applications is essential when reviewing security incidents and ensures everything is in one place.

Cons

For all that is good with Splunk, the costs are rather high and could force Customers to other solutions unless they make themselves more competitive in the pricing market

Verified Reviewer
Overall rating
  • Industry: Information Technology & Services
  • Company size: 10,000+ Employees
  • Used Monthly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Flexible reporting and dashboard constructing using Splunk

Reviewed on 24/10/2023

Overall Splunk is a good reporting tool you can use to show your data for decision-makers to...

Overall Splunk is a good reporting tool you can use to show your data for decision-makers to determine the business performance. Easy to integrate with data sources and providers. Requires a little knowledge of how to construct queries. But plenty of developer documentation is available.

Pros

Splunk offers a lot of ways to connect with multiple data providers and sources to populate the reports and dashboards you need to show your business performance or data.

Cons

Customer support was a little slow. Requires a little knowledge of how to construct queries.

Thomas
Overall rating
  • Industry: Information Services
  • Company size: 5,001–10,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 7.0 /10

Swiss Knife for everything about logs

Reviewed on 7/09/2023

Pros

The product has a ton of Features. Everything what you Need when working with logs is already implemented

Cons

Due to the rich set of capabilities regarding, searching, transforming and vizualzing data it‘s sometimes quite tricky to find all necessary query commands

Verified Reviewer
Overall rating
  • Industry: Banking
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk for Enterprise

Reviewed on 11/11/2023

A very helpful product that can improve your way to do business intelligence and forecasting.

A very helpful product that can improve your way to do business intelligence and forecasting.

Pros

Data visualization is very clear and easy to use.

Cons

The possible to share with many people data and dashboards.

Verified Reviewer
Overall rating
  • Industry: Oil & Energy
  • Company size: 10,000+ Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Helps you predict IT problems

Reviewed on 23/07/2023

Splunk Enterprise's real-time monitoring keeps us ahead of potential problems. A must-have tool!

Splunk Enterprise's real-time monitoring keeps us ahead of potential problems. A must-have tool!

Pros

Splunk Enterprise is a great tool for security analytics, IT operations, and business intelligence. I especially like the way it can help me identify potential threats and improve our IT infrastructure.

Cons

The pricing for Splunk Enterprise may be out of reach for some small businesses.

kartik
Overall rating
  • Industry: Financial Services
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best Siem solution in market.

Reviewed on 4/10/2022

Overall experience is amazing, we are happy with this software as it can ingest any form of data...

Overall experience is amazing, we are happy with this software as it can ingest any form of data and generate alerts quite swiftly.

Pros

Easy to install agents on servers, it can parse any form of data easily, Splunk can detect anomalies quite easily and the UBEA feature is amazing.

Cons

The cost of this solution is high, and customer service is bad. Apart from that Splunk SPL language is difficult to learn.

Alternatives Considered

ArcSight

Reasons for Switching to Splunk Enterprise

Cause its to implement as compared to other siems.
shabbir
Overall rating
  • Industry: Information Technology & Services
  • Company size: 51–200 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Complete Security operations with Splunk

Reviewed on 3/10/2021

Splunk data visualization and its analytics handling chunks of data is exceptional.

Splunk data visualization and its analytics handling chunks of data is exceptional.

Pros

Data visualization, Analytics skills with AI-powered and can handle data in TB/per day without any interruptions in services. Live dashboards, developing use-cases and their capabilities (correlation).

Cons

complex architecture and efficient skills are required, financial is also not feasible for small and medium customers. no inbuilt query builders for beginners to understand the platform.

Alternatives Considered

AlienVault OSSIM

Reasons for Choosing Splunk Enterprise

Its niche player was can handle only a few products data and not so feasible in terms of query building and customization in dashboards. Good for small businesses not for enterpraises.

Switched From

AlienVault OSSIM

Reasons for Switching to Splunk Enterprise

Not so feasible in handling data and its simple architecture cannot handle logs from all the data sources.
Davis
Overall rating
  • Industry: Computer Software
  • Company size: 11–50 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

The most expensive tool, requiring highly-skilled employees, capable of limitless value

Reviewed on 19/09/2022

Splunk's SPL is a flexible, straight forward query-language with aspects of SQL, R, Python, and...

Splunk's SPL is a flexible, straight forward query-language with aspects of SQL, R, Python, and Bash. The fact that an analyst can learn to be an engineer through using the platform provides ease of growth. It is unmatched in its automation to make data actionable, while providing reporting and visualization capabilities.

Pros

Splunk is provides a single tool for log aggregation, log analysis, and visualizations. Threat hunting, applying threat intelligence, and incident response are easily repeatable; pushing organizations to proactive security processes.

Cons

Splunk is expensive, especially when an organizations is exploring and building new security or data use cases. It also requires a lot of engineering maintenance, making the quality of the data highly-dependent on the skill(s) of those supporting it. Many organizations do not maximize its benefit because it is poorly managed or supported by low-skilled employees.

Alternatives Considered

Elastic Stack

Reasons for Switching to Splunk Enterprise

Splunk scales in all aspects except price. Organizations that are serious about security and SIEM tools will see the value in their investment almost immediately. The insights from the analytics and development capabilities are not available in other tools with this level of ease.
Verified Reviewer
Overall rating
  • Industry: Government Administration
  • Company size: 51–200 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Great Choice for an SIEM

Reviewed on 2/12/2021

Pros

Provides a single location for collecting and analyzing logs. Provides ease of use for non-technical users, but powerful features for security and IT. There is an add-on/app for anything you could imagine.

Cons

Some documentation is vague, and when certain things don't work, it can be difficult to find out a solution to the problem.

Alternatives Considered

Sumo Logic

Reasons for Switching to Splunk Enterprise

We needed a product that we could host ourselves.
Bishal
Bishal
Overall rating
  • Industry: Computer Software
  • Company size: 11–50 Employees
  • Used Weekly for 1-5 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Perfect solution to handle big data

Reviewed on 21/09/2023

Pros

I love its versatility to handle different kinds of data. While monitoring our internal data, Splunk Enterprise saved a lot of code with its real-time data monitoring and logs analysis feature.

Cons

With the growth of the data, costs grew intensively which was out of the budget for our startup company. Initially setting up Splunk was complex as we were new to this.

Stephan
Stephan
Overall rating
  • Industry: Computer & Network Security
  • Company size: 2–10 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk is a great SIEM solution for anyone to use

Reviewed on 23/03/2023

Vey happy to user the product, it fits our client's need perfectly

Vey happy to user the product, it fits our client's need perfectly

Pros

The easy of setup and integration makes this one of my favorites As well as the real time dashboard

Cons

Not much i don't like yet, but maybe the interface can do with an update

Samuel
Overall rating
  • Industry: Telecommunications
  • Company size: 2–10 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Powerhouse in data management and analysis

Reviewed on 2/06/2023

A complex but rewarding journey of data exploration and anomaly detection.

A complex but rewarding journey of data exploration and anomaly detection.

Pros

Powerful and versatile data mining tool with excellent integration capabilities.

Cons

Challenging initial setup and learning curve, particularly with query language and high cost.

Verified Reviewer
Overall rating
  • Industry: Oil & Energy
  • Company size: 10,000+ Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

An excellent SIEM at a low cost

Reviewed on 1/02/2023

We have many programs that measure the performance and quality of the operation, of the production...

We have many programs that measure the performance and quality of the operation, of the production in chevron, I think it is important that they give extra barriers to what we do and splunk is an optimal collaborator so that we can track all these programs and not get intrusions through the network.

Pros

It is a very subtle program, when generating the setup it is not necessary to have a great knowledge of programming to install it, but to solve some configuration errors, when you start what I like the most is that you start from day one to organize your applications, then From that you can easily configure cybersecurity for each program, I particularly like the monitoring of data programs and that the program alerts you with notifications so that you see errors that sometimes jumps in the program.

Cons

What I don't like and I see that it is something widespread is that it has very poor support in technical help, I think that the old technical support collaborators have left and people who are not so qualified have arrived to answer the tickets.For my part it is not a big problem since I am a researcher and with the information that is on the splunk website it is enough for me to generate the resolutions of problems.

Verified Reviewer
Overall rating
  • Industry: Automotive
  • Company size: 10,000+ Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk is a lifesaver!

Reviewed on 7/01/2023

It’s been wonderful. I was able to take most of my forwarded lambdas and charts them to watch...

It’s been wonderful. I was able to take most of my forwarded lambdas and charts them to watch duration and throughput. Notifications and alerts let me know if things are out of whack. Such a relief to know Splunk is watching my back!

Pros

If you need real-time grokking into your infrastructure, look no further than Splunk. I love love love the dashboards. It’s easy to tell a story with your data, and the live search is so FAST!

Cons

SPL is a little hard to get used to, but once you get the hang of it, it’s not so bad. I recommend downloading their community edition for some great examples of queries and dashboards.

Sachin
Sachin
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Splunk: A Monitoring Tool for all your needs

Reviewed on 30/04/2022

If i have put a word it would say "Fantastic". The functionalities Splunk provides eases team to...

If i have put a word it would say "Fantastic". The functionalities Splunk provides eases team to manage/monitor their IT infrastructure and internal application you will be well aware about the performance of your applications. Setup alerting and take necessary actions in stipulated time to overcome all the issues which may affect your application performance.

Pros

Splunk offers various features whether you need to setup monitoring on your server, application logs based on logs ingestion set alerts so that teams got notified on real time and take actions accordingly. In this way, it helps to monitor application which are mission critical. You can make dashboards in Splunk where you can configure various components such indexes, data inputs and schedule reports as well. To achieve additional functionalities we can install third party apps as well such as AWS Add on for cloud watch log ingestion.

Cons

From Admin perspective, I found user access management a little difficult. The roles of access management becomes complicated because some time the config files for that didn't came very handy. Other then that I think all in all Splunk provides fulfill all of the requirements.

mitchelle
mitchelle
Overall rating
  • Industry: Information Technology & Services
  • Company size: 5,001–10,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

The best tool for log collection and analysis.

Reviewed on 11/09/2022

Splunk enterprise has improved our IT security through collection of logs. It centralizes large...

Splunk enterprise has improved our IT security through collection of logs. It centralizes large amounts of log data and efficiently manages it. We use it for analyzing the collected logs and report on metrics found from the logs.

Pros

Through its robust log analysis and ability to collect data from different sources, we can easily perform analysis on various data and predict any future operational hazards. Splunk enterprise efficiently monitors our log activities and and gives results to any queries at faster speed than most SIEM tools.

Cons

The searches can be complex at times and the messages on query errors aren't always specific.

Ronnie
Ronnie
Overall rating
  • Industry: Information Technology & Services
  • Company size: 10,000+ Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk Enterprise Review

Reviewed on 3/06/2022

Scanning for known and unknown vulnerabilities on network to detect and remediate threats.

Scanning for known and unknown vulnerabilities on network to detect and remediate threats.

Pros

With Splunk Enterprise, it is easy to investigate, detect and remediate threats on devices and endpoints on our network.

Cons

It was full of technical overheads when we were customizing Splunk Enterprise features.

David
David
Overall rating
  • Industry: Entertainment
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Offers more than you think

Reviewed on 7/02/2018

We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening...

We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening and gives us end to end insight into our stack.

Pros

The system is highly intuitive to use. It is faster than other solutions I've used on the market and has a huge library of 3rd party plugins to get more from the system. It is easy to create scheduled searches, dashboards, reports etc. but there are a number of additional plugins (at an extra cost) to help with security, single pane of glass and metric collection.

Cons

It offers challenges for a decentralized working model. Where Splunk is centrally managed, it is easy to ensure that best practices are maintained. Where the system is opened up for an entire department to utilize and on-board their logs, it becomes more difficult. However, with some creative thinking and good process, this issue can be overcome.

Vince
Vince
Overall rating
  • Industry: Hospitality
  • Company size: 10,000+ Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk is a critical tool for monitoring and alerting

Reviewed on 28/10/2021

Splunk is a great product for enterprise monitoring and alerting.

Splunk is a great product for enterprise monitoring and alerting.

Pros

They have a robust platform that I have used for monitoring and analytics. There are a lot of options and customization available when using it.

Cons

Because there is so much customization and options available, it can be complicated to learn.

Or
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk helps us to walk in the darkness, for sure in the Prod arena

Reviewed on 18/12/2021

We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be...

We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be improved and even more useful

Pros

Dashboards feature is amazing, I use it much. Alerts and queries are easy to set up. Mostly it works fast so it's kind of Dev friendly so it's easy to onboard the new guys

Cons

Alerts should have a better way to manage it. There should be a way to promote alerts to different environments - so we will be able to set the Dev/Stg/Prod
Sometimes some things that we want to do take a while searching on the internet for a solution - they might think how to do it better - maybe some examples or better documentation