---
title: Splunk SOAR (Security Orchestration, Automation and Response) Reviews
meta_title: 'Splunk SOAR (Security Orchestration, Automation and Response) Reviews
  2026: Details, Pricing, & Features | G2'
meta_description: Filter 41 reviews by the users' company size, role or industry to
  find out how Splunk SOAR (Security Orchestration, Automation and Response) works
  for a business like yours.
aggregate_rating:
  rating_value: 4.4
  review_count: 41
  scale: '5'
date_modified: '2026-08-07'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---


# Splunk SOAR (Security Orchestration, Automation and Response) Reviews
**Vendor:** Cisco  
**Category:** [Security Orchestration, Automation, and Response (SOAR) Software](https://www.g2.com/categories/security-orchestration-automation-and-response-soar)  
**Average Rating:** 4.4/5.0  
**Total Reviews:** 41
## About Splunk SOAR (Security Orchestration, Automation and Response)
Splunk SOAR provides security orchestration, automation and response capabilities that allow security analysts to work smarter by automating repetitive tasks; respond to security incidents faster with automated detection, investigation, and response; increase productivity, efficiency and accuracy; and strengthen defenses by connecting and coordinating complex workflows across their team and tools. Splunk SOAR also supports a broad range of security operations center (SOC) functions including event and case management, integrated threat intelligence, collaboration tools and reporting.



## Splunk SOAR (Security Orchestration, Automation and Response) Pros & Cons
**What users like:**

- Users value the **automation capabilities** of Splunk SOAR, enhancing security and response efficiency dramatically. (16 reviews)
- Users value the **effective incident management** of Splunk SOAR, enhancing security response and automation in their workflows. (13 reviews)
- Users value the **flexibility and integration** of Splunk SOAR, allowing seamless workflow orchestration for enhanced security. (9 reviews)
- Users appreciate the **easy threat detection** capability of Splunk SOAR, enhancing security analysis and response efficiency. (8 reviews)
- Users value the **ease of use** of Splunk SOAR, appreciating its intuitive UI and seamless integration capabilities. (7 reviews)
- Users value the **real-time monitoring** capabilities of Splunk SOAR, enhancing threat detection and response efficiency. (7 reviews)
- Users appreciate the **real-time threat alerts** from Splunk SOAR, enhancing security response and reducing human error. (6 reviews)
- Users value the **detection accuracy** of Splunk SOAR, enhancing their ability to automate and secure workflows effectively. (6 reviews)
- Users value the **smooth integrations** of Splunk SOAR, enhancing their security workflows and overall efficiency. (6 reviews)
- Support (5 reviews)

**What users dislike:**

- Users find the **high cost** of Splunk SOAR prohibitive, making it difficult for average users to afford. (16 reviews)
- Users find the **learning curve steep** , requiring extensive knowledge and training to effectively use Splunk SOAR. (7 reviews)
- Users find the **difficult learning curve** to be challenging, especially for beginners new to automation platforms. (6 reviews)
- Users find the **complexity** of Splunk SOAR challenging, requiring extensive learning for effective use. (5 reviews)
- Users find the **poor interface design** of Splunk SOAR challenging, particularly for those new to automation platforms. (4 reviews)
- Users find a significant **lack of guidance** , requiring external help to understand complex workflows and configurations. (3 reviews)
- Users face **poor customer support** , making it challenging to resolve issues quickly and efficiently. (3 reviews)
- Users find the **complex implementation** of Splunk SOAR to be time-consuming and often requiring significant resources and expertise. (2 reviews)
- Complex Setup (2 reviews)
- False Positives (2 reviews)


## Splunk SOAR (Security Orchestration, Automation and Response) Discussions
  - [What is Splunk SOAR (Security Orchestration, Automation and Response) used for?](https://www.g2.com/discussions/what-is-splunk-soar-security-orchestration-automation-and-response-used-for)

- [View Splunk SOAR (Security Orchestration, Automation and Response) pricing details and edition comparison](https://www.g2.com/products/splunk-soar-security-orchestration-automation-and-response/reviews?page=2&section=pricing&secure%5Bexpires_at%5D=2026-08-07+19%3A37%3A48+-0500&secure%5Bsession_id%5D=bed4c442-545e-42c5-a7a6-ff9edbcd17b5&secure%5Btoken%5D=76b028075ee84c01e25be52d5eb96a4d5ebdfb8629427cbe338fd7952c271b92&format=llm_user)

## Splunk SOAR (Security Orchestration, Automation and Response) Features
**AI/Machine Learning**
- AI/Machine Learning

**Reporting/Analytics**
- Reporting/Analytics

**Endpoint Protection**
- Endpoint Protection

**Threat Propagation Visualization**
- Threat Propagation Visualization

**Performance Metrics**
- Performance Metrics

**Natural Language Security Querying**
- Natural Language Security Querying

**Threat Response**
- Threat Response

**Activity Monitoring**
- Activity Monitoring

**Network Security**
- Network Security

**Automated Threat Containment**
- Automated Threat Containment

**Intelligent Alert Noise Reduction**
- Intelligent Alert Noise Reduction

**Explainable AI (XAI) Audit Trail**
- Explainable AI (XAI) Audit Trail

**Predefined Protocols**
- Predefined Protocols

**Threat Detection & Triage - AI SOC Agents**
- Anomaly Detection & Correlation
- False‑Positive Suppression
- AI‑Driven Alert Triage

**Response**
- Resolution Automation
- Resolution Guidance
- System Isolation
- Threat Intelligence
- Incident Investigation

**Automation**
- Workflow Mapping
- Workflow Automation
- Automated Remediation
- Log Monitoring

**Investigation & Enrichment - AI SOC Agents**
- Autonomous Case Investigation
- Contextual Enrichment from Multiple Sources
- Attack Path Mapping

**Records**
- Incident Logs
- Incident Reports

**Orchestration**
- Security Orchestration
- Data Collection
- Threat Intelligence
- Data Visualization

**Response & Remediation - AI SOC Agents**
- Mean Time Reduction Metrics
- Playbook‑Free Dynamic Workflows
- Automated Response Execution

**Management**
- Incident Alerts
- Incident Case Management
- Workflow Management

**Response**
- Alerting
- Performance Baselin
- High Availability/Disaster Recovery

**InfoSec Experience & Governance - AI SOC Agents**
- Conversational Analyst Interface
- Manual Feedback Learning Loop
- Explainability & Audit Trail

**Additional Functionality**
- Generative AI
- Collaboration Tools
- Incident Management
- AI Copilot
- Reporting/Analytics
- Threat Response
- Key Performance Indicators
- Risk Alerts
- Performance Metrics
- Third-Party Integrations

**Generative AI**
- AI Text Generation
- AI Text Summarization
- Generative AI

**Additional Functionality**
- SSL Security
- HIPAA Compliant
- API
- Threat Response
- Endpoint Protection
- Maintenance Scheduling
- Third-Party Integrations
- Security Auditing
- Application Security
- Encryption
- Network Security
- Real-Time Reporting
- AI Copilot
- Reporting/Analytics
- Authentication
- Financial Data Protection
- Anti Virus
- Secure Data Storage
- Virus Definition Update
- Activity Dashboard
- VPN
- Audit Trail
- Anti Spam
- Access Controls/Permissions
- Data Visualization
- Alerts/Escalation
- Data Security

## Top Splunk SOAR (Security Orchestration, Automation and Response) Alternatives
  - [Tines](https://www.g2.com/products/tines/reviews) - 4.7/5.0 (400 reviews)
  - [Google Security Operations](https://www.g2.com/products/google-security-operations/reviews) - 4.4/5.0 (70 reviews)
  - [Torq AI SOC Platform](https://www.g2.com/products/torq-ai-soc-platform/reviews) - 4.8/5.0 (149 reviews)

