--- title: Splunk SOAR (Security Orchestration, Automation and Response) Reviews meta_title: 'Splunk SOAR (Security Orchestration, Automation and Response) Reviews 2026: Details, Pricing, & Features | G2' meta_description: Filter 40 reviews by the users' company size, role or industry to find out how Splunk SOAR (Security Orchestration, Automation and Response) works for a business like yours. aggregate_rating: rating_value: 4.4 review_count: 40 scale: '5' date_modified: '2026-09-23' parent_category: name: System Security url: https://www.g2.com/categories/system-security ---

Splunk SOAR (Security Orchestration, Automation and Response) Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users appreciate the automation capabilities of Splunk SOAR, enabling efficient threat detection and response with minimal human error. (16 mentions)
Users value the end-to-end security management of Splunk SOAR, enhancing incident response and threat detection efficiency. (13 mentions)
Users appreciate the flexibility and integration capabilities of Splunk SOAR for tailoring security workflows to their needs. (9 mentions)
Users commend the easy threat detection and analysis capabilities, enhancing security response with flexible workflows. (8 mentions)
Users appreciate the ease of use in Splunk SOAR, benefiting from a user-friendly interface and seamless integrations. (7 mentions)
Users find Splunk SOAR expensive, making it difficult for normal users to afford and implement effectively. (16 mentions)
Users find the learning curve steep for Splunk SOAR, requiring extensive knowledge and training for effective use. (7 mentions)
Users find the difficult learning curve of Splunk SOAR challenging, especially for beginners and new users of automation tools. (6 mentions)
Users find the software's complexity challenging to navigate, particularly for beginners needing extensive training. (5 mentions)
Users find the poor interface design of Splunk SOAR challenging, particularly for beginners navigating its features. (4 mentions)

5 Pros or Advantages of Splunk SOAR (Security Orchestration, Automation and Response)

5 Cons or Disadvantages of Splunk SOAR (Security Orchestration, Automation and Response)

Dheeraj T.
DT
Dheeraj T.
Risk Analyst
Mid-Market (51-1000 emp.)
"Splunk SOAR is a good software for automation"
5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

The platform is packed with features and once you get used to it, building and deploying playbooks becomes a regular part of our workflow. We use it daily to automate repetitive security tasks, and it integrates smoothly with our existing tools. Support has also been helpful during onboarding and when we had questions early on. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

Getting started wasn’t the easiest—there’s a bit of a learning curve at the beginning, especially if you're new to automation platforms. Some parts of the UI could be more intuitive, and while the features are powerful, it takes time to fully understand and implement them. Review collected by and hosted on G2.com.

Noor  Z.
NZ
Noor Z.
icicibank
Mid-Market (51-1000 emp.)
"Splunk SOAR is an awesome automation and security software"
5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

Splunk SOAR is such a tool that has features and options that will make everyone's work life as easier as mine with its security, automation features, and many good implementations. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

Splunk SOAR is such an implementation and easy-to-use tool that no one can ever dislike... Review collected by and hosted on G2.com.

Josephine C.
JC
Josephine C.
IT Coordinator
Small-Business (50 or fewer emp.)
"A great tool to orchestrate, automate and respond to security threats"
4.5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

-Easy to analyse and detect security threats

-Flexibility in orchestrating workflows and integrating with other security tools.

_Easy to customize and fit our business security needs. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

Its complex to learn when new to the software and its very costly for small business enterprise but the support team is very responsive. Review collected by and hosted on G2.com.

Srinivas G.
SG
Srinivas G.
Sr security engineer
Mid-Market (51-1000 emp.)
"Leading log management tool"
4/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

Automated playbooks. Splunk allows you to automate security and IT actions at machine speed. This can save security analysts a lot of time and effort, and it can also help to improve the accuracy and consistency of incident response.

Integration with other tools. Splunk can integrate with a wide range of other security tools, which can help to streamline your security operations. This can make it easier to get a complete view of an incident, and it can also help to automate tasks that would otherwise be manual.

Visual playbook editor is the best feature Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

The current documentation available is not enough and the cost is also expensive Review collected by and hosted on G2.com.

Anakshi C.
AC
Anakshi C.
Technical Lead
Enterprise (> 1000 emp.)
"Interesting and excellent way to hunt threats using automated actions"
4.5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

The visual playbook editor feature is the most appealing and the fact that various security technologies can be integrated into SOAR and build actions all from these under one roof. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

The user interface has a lot of information that is difficult to understand and process for a beginner. Also the cost often becomes a significant point to consider while purchasing for projects, smaller projects usually prefer inexpensive solutions. Review collected by and hosted on G2.com.

marenyane m.
MM
marenyane m.
Web Developer
Mid-Market (51-1000 emp.)
"Are you struggling with automation in your team work? Try Splunk SOAR the best tool"
4/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

I like the fact that I am able to track all the repeatable tasks and alerts on a schedule. It makes it easy to engage with my teammates I am able to respond to any threats that may notify me while connecting with my team Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

I think they should at least allow us a period of 2 months to try it out. It is then that I can say that I have tried fully. I wouldn't say I like things that offer a short trial period. The ends without fully realizing the capability of a product Review collected by and hosted on G2.com.

DD
Diane D.
Mid-Market (51-1000 emp.)
"Enhanced our ability to respond to threats"
4.5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

It has reduced human error in response and remediation efforts, we are able to respond more accurately to threats in our environment.

The playbooks are easy to understand and use.

It provides continuous and real time threats response 24/7.

I like that it has flexible deployment options, we are able to deploy on site and to our cloud resources.

The customer support is very knowledgeable, responsive and very helytere Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

It's a very high prices product, well much like eveyother splunk product. I also don't like that it's not possible to scale automation features. Review collected by and hosted on G2.com.

Jay P.
JP
Jay P.
Cyber Security Intern
Mid-Market (51-1000 emp.)
"Splunk SOAR review"
4.5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

In my opinion, Splunk is the best network monitoring tool which is really helpful for me to manage my infrastructure network and security and real-time analysis. Best for my company. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

There are several reasons why I dislike this. The points are mentioned below:

1. Cost is a major problem because it is too high. A normal user cannot afford it.

2. Complexity to use, because it requires a full course to learn for beginners. Review collected by and hosted on G2.com.

Yashasvi J.
YJ
Yashasvi J.
Cloud and DevOps Trainee
Small-Business (50 or fewer emp.)
"Great tool for IT management, Data retrieved was pretty precise."
4/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

It's less complex provided it's scalability and it's usage as a cloud application is one of the most attractive features that would make it an interesting tool as it is pretty compatible with any platform. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

Not many, maybe the price if considered as a flaw. But in terms of its application didn't find many disadvantages. Review collected by and hosted on G2.com.

Manthan G.
MG
Manthan G.
DevOps Engineer
Information Technology and Services
Small-Business (50 or fewer emp.)
"Splunk SOAR Review"
5/5
What do you like best about Splunk SOAR (Security Orchestration, Automation and Response)?

I have used Splunk in my career to solve the purpose of security and automation detection which helped me to fulfill my requirement as compared to the other tools available in the market. Review collected by and hosted on G2.com.

What do you dislike about Splunk SOAR (Security Orchestration, Automation and Response)?

It has quite high pricing compared to the tools available in the market, and it is quite complex, but the features are mostly useful, so it's a great thing. Review collected by and hosted on G2.com.