[
Splunk ... Reviews
](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/reviews)

[
Splunk ... Reviews
](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/reviews)

# Splunk SOAR (Security Orchestration, Automation and Response) Features

##### 
## Response (8)

Resolution Automation

Diagnose and resolve incidents without the need for human interaction.

Resolution Guidance

Guide users through the resolution process and give specific instructions to remedy individual occurrences.

System Isolation

Cuts off network connection or temporarily inactivate applications until incidents are remedied.

Threat Intelligence

Gathers information related to threats in order to gain further information on remedies.

Incident Investigation

Analyzes incidents, correlates related events, and determines the scope and impact of attacks.

Alerting

Clearly notifies users with relevant information and anomalies in a timely manner.

Performance Baselin

Sets a standard performance baseline by which to compare log activity.

High Availability/Disaster Recovery

Allows platform to scale to size of desired environment and configured with high availability and disaster recovery capabilities.

Show More

##### 
## Records (2)

Incident Logs

Information on each incident is stored in databases for user reference and analytics.

Incident Reports

Produces reports detailing trends and vulnerabilities related to their network and infrastructure.

Show More

##### 
## Management (3)

Incident Alerts

Gives alerts when incidents arise. Some responses may be automated, but users will still be informed.

Incident Case Management

Ability to track incidents, tasks, evidence, and investigation progress within a structured case.

Workflow Management

Administrators can organize workflows to guide remedies to specific situations incident types.

Show More

##### 
## Automation (4)

Workflow Mapping

Visually displays connected applications and integrated data. Allows customization and management of workflow structures.

Workflow Automation

Streamline the flow of work processes by establishing triggers and alerts that notify and route information to the appropriate people when their action is required within the compensation process.

Automated Remediation

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Log Monitoring

Constantly monitors logs to detect anomalies in real time.

Show More

##### 
## Orchestration (4)

Security Orchestration

Integrates additional security tools to automate security and incident response processes.

Data Collection

Collects information from multiple sources to cross reference and build contextual to correlate intelligence.

Threat Intelligence

Stores information related to common threats and how to resolve them once incidents occur.

Data Visualization

Offer pre-built and custom reporting and dashboards for quick insights into system states.

Show More

##### 
## Generative AI (2)

AI Text Generation

Allows users to generate text based on a text prompt.

AI Text Summarization

Condenses long documents or text into a brief summary.

Show More

##### 
## Threat Detection & Triage - AI SOC Agents (3)

Anomaly Detection & Correlation

Detect and link suspicious activities across systems in real time.

False‑Positive Suppression

Identify and dismiss non‑threats through intelligent pattern recognition.

AI‑Driven Alert Triage

Reduce noise by automatically evaluating and prioritizing alerts based on risk and context.

Show More

##### 
## Investigation & Enrichment - AI SOC Agents (3)

Autonomous Case Investigation

Investigate alerts end‑to‑end, gathering evidence and building incident timelines.

Contextual Enrichment from Multiple Sources

Enrich cases with data from SIEM, EDR, cloud, identity, and threat‑intel feeds.

Attack Path Mapping

Create visual maps of threat propagation and lateral movement through networks.

Show More

##### 
## InfoSec Experience & Governance - AI SOC Agents (3)

Conversational Analyst Interface

Allow SOC teams to query agents via natural language about ongoing cases.

Manual Feedback Learning Loop

Improve agent performance through adaptive learning from security team corrections.

Explainability & Audit Trail

Provide human‑readable reasoning trails and decision justifications.

Show More

##### 
## Response & Remediation - AI SOC Agents (3)

Mean Time Reduction Metrics

Track and lower MTTD/MTTR/MTTC through autonomous reactions.

Playbook‑Free Dynamic Workflows

Adapt remediation actions without requiring static SOAR playbooks.

Automated Response Execution

Execute predefined or adaptive responses (e.g., isolate endpoints, revoke credentials).

Show More

[

 ![Intezer](https://images.g2crowd.com/uploads/product/hd_favicon/7460ac9956eddf606de6591b6f80e7af/intezer-intezer.svg "Intezer")

Sponsored

Intezer

4.5/5

(193)

Visit Website

](javascript:void(0))

## Top-Rated Alternatives

[

 ![Tines](https://images.g2crowd.com/uploads/product/hd_favicon/b06976e0682a1b57bcbcb2d2bb139018/tines.svg "Tines")

Tines

4.7/5

(396)

](https://www.g2.com/products/tines/reviews)

[

 ![Google Security Operations](https://images.g2crowd.com/uploads/product/hd_favicon/a76c8060b776e8177710dc1fcb388aed/google-security-operations.svg "Google Security Operations")

Google Security Operations

4.4/5

(46)

](https://www.g2.com/products/google-security-operations/reviews)

[

 ![Torq AI SOC Platform](https://images.g2crowd.com/uploads/product/hd_favicon/91b7676bea69b868cf98e5869930ec2c/torq-ai-soc-platform.svg "Torq AI SOC Platform")

Torq AI SOC Platform

4.8/5

(149)

](https://www.g2.com/products/torq-ai-soc-platform/reviews)

[
View All Alternatives
](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/competitors/alternatives)

Splunk SOAR (Security Orchestration, Automation and Response) Comparisons

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_8b3109519c061f3739371275d691098a/palo-alto-networks-cortex-xsoar.png "Product Avatar Image")

Palo Alto Networks Cortex...

4.6/5

(28)

[
Compare Now
](https://www.g2.com/compare/palo-alto-networks-cortex-xsoar-vs-splunk-soar-security-orchestration-automation-and-response)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_36e663c5aef396250151ac398ce58e18/tines.png "Product Avatar Image")

Tines

4.7/5

(401)

[
Compare Now
](https://www.g2.com/compare/splunk-soar-security-orchestration-automation-and-response-vs-tines)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_302d06f327b733f16ba68b6c105a6704/google-security-operations.png "Product Avatar Image")

Google Security Operations

4.4/5

(56)

[
Compare Now
](https://www.g2.com/compare/google-security-operations-vs-splunk-soar-security-orchestration-automation-and-response)

##### Categories on G2

[
Incident Response
](https://www.g2.com/categories/incident-response)[
Security Orchestration, Automation, and Response (SOAR)
](https://www.g2.com/categories/security-orchestration-automation-and-response-soar)[
AI SOC Agents
](https://www.g2.com/categories/ai-soc-agents)

##### Explore More

[
Best intuitive dam software for easy collaboration
](https://www.g2.com/discussions/best-intuitive-dam-software-for-easy-collaboration)[
Best tools for tracking display ad performance
](https://www.g2.com/discussions/what-are-the-best-tools-for-tracking-display-ad-performance)[
What platform integrates website monitoring with incident management tools?
](https://www.g2.com/discussions/what-platform-integrates-website-monitoring-with-incident-management-tools)

[
Best software for revenue management in software companies
](https://www.g2.com/discussions/best-software-for-revenue-management-in-software-companies)[
How does Trintech improve the financial close for accounting teams?
](https://www.g2.com/discussions/how-does-trintech-improve-the-financial-close-for-accounting-teams)[
Pros and Cons Details
](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/reviews?qs=pros-and-cons)

Show More

[
Best intuitive dam software for easy collaboration
](https://www.g2.com/discussions/best-intuitive-dam-software-for-easy-collaboration)[
Best tools for tracking display ad performance
](https://www.g2.com/discussions/what-are-the-best-tools-for-tracking-display-ad-performance)[
What platform integrates website monitoring with incident management tools?
](https://www.g2.com/discussions/what-platform-integrates-website-monitoring-with-incident-management-tools)

[
Best software for revenue management in software companies
](https://www.g2.com/discussions/best-software-for-revenue-management-in-software-companies)[
How does Trintech improve the financial close for accounting teams?
](https://www.g2.com/discussions/how-does-trintech-improve-the-financial-close-for-accounting-teams)[
Pros and Cons Details
](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/reviews?qs=pros-and-cons)