Splunk Enterprise

By Cisco

4.3/5(434)
4.3 out of 5 stars

How would you rate your experience with Splunk Enterprise?

Splunk Enterprise Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users find Splunk Enterprise's ease of use remarkable, enabling quick access and seamless integration of large datasets. (46 mentions)
Users value the robust data ingestion capabilities of Splunk Enterprise, efficiently managing diverse data sources. (31 mentions)
Users commend the great integration capabilities of Splunk Enterprise, facilitating seamless implementation across various networks and systems. (26 mentions)
Users value the flexibility and visualization capabilities of Splunk Enterprise, enabling effective data analysis and troubleshooting. (25 mentions)
Users praise the visualization capabilities of Splunk Enterprise dashboards for effective data analysis and decision-making. (23 mentions)
Users find Splunk Enterprise to be expensive, with high renewal costs and limitations that affect large organizations. (32 mentions)
Users find the learning curve steep, struggling to quickly grasp Splunk Enterprise's many features and functionalities. (29 mentions)
Users experience slow performance with Splunk Enterprise, noting occasional crashes and delays in processing saved searches. (19 mentions)
Users find the complex configuration of Splunk Enterprise challenging, impacting performance optimization and overall user experience. (18 mentions)
Users find the pricing issues with Splunk Enterprise burdensome, especially regarding storage costs and data limits. (18 mentions)

5 Pros or Advantages of Splunk Enterprise

5 Cons or Disadvantages of Splunk Enterprise

Splunk Enterprise Reviews (434)

View 2 Video Reviews
Reviews

Splunk Enterprise Reviews (434)

View 2 Video Reviews
4.3
434 reviews
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
Anshuman S.
AS
Anshuman S.
Advance Software Engineer
Mid-Market (51-1000 emp.)
"Powerful On-Prem Splunk for Centralized Log Management and Real-Time Analysis"
5/5
What do you like best about Splunk Enterprise?

It is a strong and powerful on-premises and self-managed platform for log management, security threat detection, operational intelligence, and real-time data analysis. In this Splunk instance we collect, report, and analyze data related to the devops-managed cloud environments. It has been integrated with long list of softwares to produce data at one place and can be analyzed centrally. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Pricing models are based on data ingestion volumes, if the size of the data increases heavily, then the cost will also increase very heavily. Maintenance burden will also be very high since we are ingesting all data at one place. Review collected by and hosted on G2.com.

Fuad M.
FM
Fuad M.
Cyber Security Analyst
Mid-Market (51-1000 emp.)
"Splunk’s Powerful Integrations, Logging, and Out-of-the-Box SIEM Detection"
5/5
What do you like best about Splunk Enterprise?

I use Splunk for security and service monitoring, and what I like most is how easily it integrates with a wide range of tools. I also really appreciate its logging capabilities, along with the out-of-the-box SIEM detection rules. and have the best GUI and performance ranked in the first place across the SEIM tool market. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

oh, it's very costly. even though i like the tool it's price is very high comparing to others Review collected by and hosted on G2.com.

RaviShankar S.
RS
RaviShankar S.
Senior Enterprise Cloud Architect
Information Technology and Services
Enterprise (> 1000 emp.)
"Excellent Enterprise Observability and Log Management Solution for Hybrid Cloud Infrastructure"
4.5/5
What do you like best about Splunk Enterprise?

Splunk Enterprise is an excellent end-to-end Observability Platform for Enterprise Log management, Metrics, Event, and Traces, and enables AIOps to manage Large scale Global IT Infrastructure. Splunk Supports all major cloud platforms — Azure, GCP, AWS, and VMware — along with legacy and on-premises hosting platforms such as Linux, on-premises VMware, and Hyper-V. Splunk Web User Interface is really simple and understandable. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Splunk Enterpirse Solution's Daily Log Data size cap is bit low for the Global Enteprise Organizations running Thousands of critical workloads. Splunk Enterprise Solution's yearly Renewal costs are high. New Users Need formal Training to support efficiently and to manage the Splunk Platform. Review collected by and hosted on G2.com.

Darsh A.
DA
Darsh A.
Cyber Security Consultant
Small-Business (50 or fewer emp.)
"Customizable and Stable with Great Support, but Pricing and AI Lag Behind"
3.5/5
What do you like best about Splunk Enterprise?

Splunk Enterprise provides high level of customizability in terms of creating custom queries, integrations and other knowledge objects. Overall the UI/UX is good and the performance is highly stable. The Splunk support is excellent. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

The pricing is too expensive compared to other products and the use of AI is very less compared to the offerings by other solutions available in the market. Review collected by and hosted on G2.com.

RB
Robert B.
Lead Support Engineer
Mid-Market (51-1000 emp.)
"Splunk Enterprise Makes Endpoint Data Collection and Troubleshooting Easy at Scale"
4/5
What do you like best about Splunk Enterprise?

Splunk Enterprise stands out because it makes it easy to collect data from endpoints at scale. It can pull in logs, events, and machine data from many different systems, then centralize that information so it is searchable and useful. That makes troubleshooting, monitoring, and security investigations much faster, because the data is already in one place instead of scattered across servers and devices. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Splunk Enterprise can be expensive, and at times it feels like you don’t have enough control over your own data. Running into licensing limits is also frustrating, especially when data volume grows unexpectedly and starts impacting visibility or how the platform can be used. Another concern is that vulnerabilities in Windows collectors can add extra security risk and increase ongoing maintenance overhead. Taken together, these issues can make the platform feel restrictive, costly, and more difficult to manage than it should be. Review collected by and hosted on G2.com.

Verified User in Broadcast Media
UB
Verified User in Broadcast Media
Enterprise (> 1000 emp.)
"Splunk Enterprise Delivers Powerful Real-Time Search and Actionable Insights"
5/5
What do you like best about Splunk Enterprise?

Splunk Enterprise excels at real-time data indexing and search, allowing you to quickly correlate disparate logs into actionable insights using its powerful Search Processing Language (SPL).

Its versatile visualization tools and massive Splunkbase app ecosystem make it a top choice for centralized security monitoring and high-scale IT operations. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Splunk Enterprise is often criticized for its complex and expensive licensing based on data volume, which can become unpredictable as your infrastructure grows.

Users also find its Search Processing Language (SPL) has a steep learning curve, and the platform can be resource-intensive to maintain and scale. Review collected by and hosted on G2.com.

MO
Marco O.
Soc Manager
Information Technology and Services
Mid-Market (51-1000 emp.)
"Splunk’s for SOC Operations"
5/5
What do you like best about Splunk Enterprise?

What I like most about Splunk is how well it integrates with many well-known products, along with its very clear, easy-to-use dashboards. On top of that, the search system is incredibly versatile and works especially well for SOC operations. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

The main downside of Splunk is that it’s still quite expensive compared to other vendors. As a service provider, I also find it difficult to position with clients, because the costs can climb quickly and the overall price becomes high. Review collected by and hosted on G2.com.

Verified User in Telecommunications
AT
Verified User in Telecommunications
Small-Business (50 or fewer emp.)
"Centralized, Reliable, and Easy to Use Daily"
5/5
What do you like best about Splunk Enterprise?

I love how fast and flexible Splunk is. The search and reporting tools make it really easy to dig through logs, spot issues, and monitor system performance. It integrates well with other tools we use, and honestly, we use it every single day. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

It can get expensive as your data grows, and some of the more advanced features take a while to learn. But once you get the hang of it, it’s extremely powerful. Review collected by and hosted on G2.com.

Sujit S.
SS
Sujit S.
Senior Associate Consultant
Mid-Market (51-1000 emp.)
"Effortless Integration and Dynamic Dashboards Enhance Incident Management"
4/5
What do you like best about Splunk Enterprise?

It is easy to integrate with Ms Purview DLP technology. Dynamic Dashboard are very useful for incident management. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

What I dislike about Splunk Enterprise is that it can get expensive, especially as the data volume grows. The initial setup and writing queries can also feel complex for new users, and it often takes skilled resources to manage it efficiently. As a result, day-to-day operations can be a bit challenging for smaller teams. Review collected by and hosted on G2.com.

Dominika T.
DT
Dominika T.
Cybersecurity Engineer - Data Protection
Enterprise (> 1000 emp.)
"Real-Time Log Analysis and Aggregation That Delivers"
3.5/5
What do you like best about Splunk Enterprise?

That it lets you to analyze and aggregate logs in real time. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

At the beginning it’s a lot of False positives and it requires tunning. Review collected by and hosted on G2.com.

Product Avatar Image
Splunk Enterprise
4.3/5(434)