Splunk Enterprise Security Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users value the ease of use of Splunk Enterprise Security, enhancing their monitoring and log management experience. (15 mentions)
Users appreciate the easy integrations of Splunk Enterprise Security, enabling seamless connection with various platforms and systems. (13 mentions)
Users highlight the impressive threat detection capabilities of Splunk Enterprise Security, enhancing security focus and reducing false alarms. (13 mentions)
Users value the effective features of Splunk Enterprise Security, enhancing security analysis with comprehensive logs and insights. (12 mentions)
Users appreciate the user-friendly interface of Splunk Enterprise Security, enabling efficient monitoring and attractive dashboards. (11 mentions)
Users note that the high cost of Splunk Enterprise Security is a major drawback for smaller organizations. (17 mentions)
Users find the initial implementation complex, needing expert resources and time to onboard Splunk Enterprise Security effectively. (8 mentions)
Users find the complex implementation of Splunk Enterprise Security challenging, requiring extensive expertise and resources. (6 mentions)
Users find the complexity and extensive setup of Splunk Enterprise Security to be time-consuming and challenging. (6 mentions)
Users find the difficult learning curve of Splunk Enterprise Security a challenge for beginners and costly to set up. (6 mentions)

5 Pros or Advantages of Splunk Enterprise Security

5 Cons or Disadvantages of Splunk Enterprise Security

Splunk Enterprise Security Reviews (8)

View 2 Video Reviews
Reviews

Splunk Enterprise Security Reviews (8)

View 2 Video Reviews
4.3
248 reviews
Search reviews
Clear Results
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
NT
Naushad T.
Lead Technical Specialist - EDR
Information Technology and Services
Enterprise (> 1000 emp.)
"Splunk ES- Scalable SIEM for Large Enterprise"
4.5/5
What do you like best about Splunk Enterprise Security?

The best thing about Splunk is the deep visibility it provides across the environment, along with its strong ability to correlate large volumes of security data into true positive, actionable alerts. This really helps make investigations/incident response faster and more efficient. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

The initial implementation is complicated and requires significant expertise, time, and resources. In our case, we had to extend the contract to a third party to onboard Splunk ES in our environment. Review collected by and hosted on G2.com.

Muhammad R.
MR
Muhammad R.
Technical Consultant Manager
Enterprise (> 1000 emp.)
"Unmatched Visibility and Customization for Security Operations"
5/5
What do you like best about Splunk Enterprise Security?

What I like most about Splunk Enterprise Security is its ability to give clear and comprehensive visibility across the entire environment. The correlation searches, use cases, and dashboards make it easier to identify patterns and prioritize threats. As someone who works in SOC operations and consulting, the flexibility to customize detections and build my own dashboards is a huge advantage and everything feels scalable, structured, and analyst-friendly. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

What I dislike about Splunk Enterprise Security is that some of its features can be quite resource intensive. The platform is powerful, but it sometimes requires significant tuning and infrastructure capacity to keep everything running smoothly. Additionally, certain configurations or customizations can take more time than expected. It’s not a major drawback, but it does require proper planning and optimization. Review collected by and hosted on G2.com.

SS
Sanket S.
Technical Specialist
Mid-Market (51-1000 emp.)
"Navigating insider threats using Splunk"
5/5
What do you like best about Splunk Enterprise Security?

It uses machine learning to identify abnormal user and entity behaviour. It effectively identifies threat by analyzing patterns of behavior that are not matching with normal patterns.

It integrates well with broader splunk ecosystem, allowing users to leverage their existing splunk investment and data. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Setting up and configuring this solution can be complex and time consuming.

It may generates false positives, especially in the early stages of deployment. Review collected by and hosted on G2.com.

Verified User in Telecommunications
UT
Verified User in Telecommunications
Enterprise (> 1000 emp.)
"Splunk user behavior"
3/5
What do you like best about Splunk Enterprise Security?

It's great because it uses smart technology to spot unusual behavior from users that might signal security issues. It helps find potential threats early and reduce false alarms, making it easier for security teams to focus on real problems. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

it can be complex and require a lot of setup. Review collected by and hosted on G2.com.

Yogendra V.
YV
Yogendra V.
Senior Consultant
Enterprise (> 1000 emp.)
"Empowering Insights: A Deep Dive into Splunk Intelligence Management"
3.5/5
What do you like best about Splunk Enterprise Security?

Splunk Intelligence Management excels in its ability to seamlessly aggregate, analyze, and derive actionable insights from diverse data sources, providing unparalleled visibility and decision-making capabilities for organizations. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

steep learning curve, resource-intensive setup, and the potential for high costs in larger deployments. Review collected by and hosted on G2.com.

Hardik D.
HD
Hardik D.
Sr. DevSecOps Engineer
Enterprise (> 1000 emp.)
"Splunk Enterprise Security - SIEM"
4/5
What do you like best about Splunk Enterprise Security?

Splunk is the industry leader in SIEM solution for a reason. From Log Collection to Correlation & enrichment. Their quality of support is also good. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Cost is bit high as compared to other solutions and the ease of setting up or deploying any Splunk architecture components requires much more technical knowledge. Review collected by and hosted on G2.com.

Shreyansh G.
SG
Shreyansh G.
Security Associate Engineer
Small-Business (50 or fewer emp.)
"Monitoring and SIEM for Stock market and financial brokers."
4.5/5
What do you like best about Splunk Enterprise Security?

The powerful searching and customization in splunk are awesome. Also the scalability is superb which maked it easy for continuity of work even with changes in the infrastructure. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

The complexity in the setup and high costs are a bit of dislikes for Splunk that I have. Review collected by and hosted on G2.com.

Camilo A.
CA
Camilo A.
Staff Support Engineer
Enterprise (> 1000 emp.)
"Invaluable tool to analyze large amounts of data"
4/5
What do you like best about Splunk Enterprise Security?

It helps to make well-informed decisions based on data in order to monitor data in real time. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

There is a lot of configuration required to get value Review collected by and hosted on G2.com.

Product Avatar Image
Splunk
4.3/5(248)