Splunk Enterprise Security Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users value the ease of use of Splunk Enterprise Security, enhancing their monitoring and log management experience. (15 mentions)
Users appreciate the easy integrations of Splunk Enterprise Security, enabling seamless connection with various platforms and systems. (13 mentions)
Users highlight the impressive threat detection capabilities of Splunk Enterprise Security, enhancing security focus and reducing false alarms. (13 mentions)
Users value the effective features of Splunk Enterprise Security, enhancing security analysis with comprehensive logs and insights. (12 mentions)
Users appreciate the user-friendly interface of Splunk Enterprise Security, enabling efficient monitoring and attractive dashboards. (11 mentions)
Users note that the high cost of Splunk Enterprise Security is a major drawback for smaller organizations. (17 mentions)
Users find the initial implementation complex, needing expert resources and time to onboard Splunk Enterprise Security effectively. (8 mentions)
Users find the complex implementation of Splunk Enterprise Security challenging, requiring extensive expertise and resources. (6 mentions)
Users find the complexity and extensive setup of Splunk Enterprise Security to be time-consuming and challenging. (6 mentions)
Users find the difficult learning curve of Splunk Enterprise Security a challenge for beginners and costly to set up. (6 mentions)

5 Pros or Advantages of Splunk Enterprise Security

5 Cons or Disadvantages of Splunk Enterprise Security

Splunk Enterprise Security Reviews (248)

View 2 Video Reviews
Reviews

Splunk Enterprise Security Reviews (248)

View 2 Video Reviews
4.3
248 reviews
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
Ashok V.
AV
Ashok V.
Senior Manager, Business Applications
Enterprise (> 1000 emp.)
"Great logging and event monitoring tool that makes our debugging life easy"
4/5
What do you like best about Splunk Enterprise Security?

Splunk is a very great tool for logging our SFDC events and it's 6 months and one year option for having logs of our log headers and log details is a killer feature Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

The UI can be more interactive and they can also be little competitive with pricing as the one year option will cost you a fortune as an organization and small startup also need to afford this tool Review collected by and hosted on G2.com.

Verified User in Aviation & Aerospace
AA
Verified User in Aviation & Aerospace
Small-Business (50 or fewer emp.)
"Splunk security"
4/5
What do you like best about Splunk Enterprise Security?

I like the possibility do performan specific research about cybersecurity Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Nothing of particular,

Maybe splunk not Identity the threat in Real time Review collected by and hosted on G2.com.

Verified User in Information Technology and Services
AI
Verified User in Information Technology and Services
Enterprise (> 1000 emp.)
"Best for security and network teams"
5/5
What do you like best about Splunk Enterprise Security?

Splunk gives you huge access to each end-point and everything on your environment. Especially, it allows you to make your own apps insdie the Splunk which makes it more fruitful. Because it can be customized according to your needs. As a cyber security team member, I was happy to use Splunk which made my event management like shelling peas. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

I can say nothing. May be price is a bit much for developing countries. However, Splunk still deserves it. Review collected by and hosted on G2.com.

RS
Riya S.
Full Stack Engineer Intern
Enterprise (> 1000 emp.)
"Nice platform to see the error reports and logs"
5/5
What do you like best about Splunk Enterprise Security?

The best thing is you can setup it as your company wants. Moreover its a great software as a service for security. TO sell all the error logs in our development server we use Splunk in our company. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

The search is very slow, sometimes to search a particular log message it takes about 5 minutes. Moreover the error message doesn't come completely. Review collected by and hosted on G2.com.

Verified User in Security and Investigations
AS
Verified User in Security and Investigations
Mid-Market (51-1000 emp.)
"Adaptive Response Feature"
5/5
What do you like best about Splunk Enterprise Security?

Enterprise Security Adaptive Response feature is very good where you can directly take action from the one console. Previously, Splunk is used for monitoring only and now it is used as a post mechanism also. For example, If some malicious event comes from the endpoint and you want to isolate that endpoint. You can create a new action and use that to isolate endpoint. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Splunk Enterprise is an add-on on Splunk so it is not isolated from other addon. We might face some security issue if other addons are conflicting with ES. It should come as a product incorporated on top of Splunk. I disliked the slowness of the App when it is installed on the lower configuration VM and it is very heavily built addon with so many javascript and python scripts. Review collected by and hosted on G2.com.

RC
Rmn C.
Ram chhura
Enterprise (> 1000 emp.)
"Amazing tool to analyze huge logs accurately"
4.5/5
What do you like best about Splunk Enterprise Security?

The UI is so simple and interactive that you provide a simple search string and this powerful tool looks at your terabytes sized logs and show you result in an index form and that too in seconds. It also helps our OPS team to perform a log forensics. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

This tool becomes very expensive if you have huge logs and if the logs keep on increasing so will the price to use this tool. The support from SPLUNK team is not that great. Review collected by and hosted on G2.com.

Verified User in Telecommunications
ET
Verified User in Telecommunications
Small-Business (50 or fewer emp.)
"A powerful log aggregation solution with immensely useful tools built-in for popular applications."
3/5
What do you like best about Splunk Enterprise Security?

Configuration design: Thoughtful and mature documentation and design of the application regarding enterprise-class scaling on network storage.

-POWERFUL tools: The user interface lends itself to learning more about your organization from the logs you collect, through metrics of trends of the logs being gathered. There are also specific modules/add-ons for popular applications to provide more value and event-based monitoring, all without having to develop in-house dashboards and intelligence of those logs.

- Customization: You can create your own queries of logs, and event-based alerts. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Price: This product is not free for more than the minimal use. Pricing can be very expensive, relative to open source offerings. That is the trade-off you pay for not having in-house development of open source offerings. As this product is priced based on gigabytes of indexed logs, it is important to understand the scope of licensing necessary for your environment to determine if it is a good fit for your organization. Review collected by and hosted on G2.com.

AY
Andrew Y.
Software Engineer
Computer Software
Mid-Market (51-1000 emp.)
""Powerful and overhwelming SIEM""
5/5
What do you like best about Splunk Enterprise Security?

Its abilities to list tremendous measure of information into occasions inside seconds, the different applications and extra, and its representations. It encourages continuous examination and can list any sort of information, likewise the equipment necessities of splunk are less. Splunk does not require any database to store its recorded occasions. A great deal of help and help is accessible in the network. Its extremely exceptionally simple to set up and can take information contribution from different sources like remote hosts, logs, contents, records, organize and so forth. In addition there is a free form also which permits to list 500 MB of information for each day. In conclusion, its UI is very client friendly.The truth that we can total and relate any occasions that we need is an integral asset in distinguishing and ceasing malignant movement on or against our system Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

I truly hated the way that we need to restart splunk at whatever point arrangement documents are changed, however I comprehend the explanation for, regardless it, restart takes a considerable amount of time. Likewise look handling language sets aside some opportunity to learn, it has a great deal of directions. The splunk expectation to absorb information is enormous and can take over a month to learn splunk thouroughly. Normalizing information is trying in splunk. What's more, numerous addons are Common Information display (CIM) good in splunk. Review collected by and hosted on G2.com.

PR
paul R.
Software Engineer
Computer Software
Mid-Market (51-1000 emp.)
"An incredible device which fills some needs.""
5/5
What do you like best about Splunk Enterprise Security?

It has exceptionally educational dashboard which enables us to see information about servers in our condition. It gives visuals to the client when we select graphical portrayal, enabling us to change signs into visual outlines for example pie outlines, diagrams, tables, and so on. It is anything but difficult to scale with extensive informational collections. It underpins different sorts of information with ongoing analyzing.Splunk is extremely simple to introduce and they give bundle to both linux and windows based opertaing framework. establishment is simple simply unfasten the bundle and set the way and you are prepared to utilize Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

It tends to be CPU serious if not cautious. Early discharges were a great deal carriage, yet remediation's were brisk and brief. The heap on our quests, a few inquiries take for eternity. In some cases we have incredible trouble with motivating different items to parse logs accurately into splunk.pretty costly Review collected by and hosted on G2.com.

US
Usman S.
Senior Analyst, Technical
Enterprise (> 1000 emp.)
"A powerful log aggregation solution "
3/5
What do you like best about Splunk Enterprise Security?

- Free to use for small 500MB or less daily ingress, quite nice for small use cases and learning

- No development work required to deploy and provide value.

- Deployment flexibility: client agents are available to use, or clientless configurations for multiple OS platforms. It's also very easy to deploy, not just flexible. its a very simple affair. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

PRICE. The software is so powerful, and they seem to leverage this in the pricing of the licenses. Review collected by and hosted on G2.com.

Product Avatar Image
Splunk
4.3/5(248)