Splunk Enterprise

4.6 (248)
Write a Review!
Machine data management and analytics

Overall rating

4.6 /5
(248)
Value for Money
4.3/5
Features
4.5/5
Ease of Use
4.1/5
Customer Support
4.3/5

96%
recommended this app
Sort by

248 Reviews

Muhamed
Muhamed
Overall rating
  • Industry: Information Technology & Services
  • Company size: 11–50 Employees
  • Used Daily for 1-5 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

A better business companion when integrated with RPA

Reviewed on 2022/12/29

Overall, the experience was positive; even with a free trial license, it was much easier, and on...

Overall, the experience was positive; even with a free trial license, it was much easier, and on the course and certification side, Splunk has a very good collection of videos and materials that help even a novice quickly setup the integration and indexing.

Pros

The most useful thing about Splunk is the ease of integration with application. With uipath on-premises it was very much helpful as the business users can monitor the actions of robots through spluink without entering into uipath orchestrator

Cons

Expression creation for indexing was bit hard as it is not user-friendly to business users if they wanted to create any new fields, also the forwarder was not able to directly connect with uipath cloud so that the logs has to be shifted to intermediate file before uploading into splunk, but that seems not an issue with splunk but more related to uipath cloud

Alternatives Considered

Microsoft Power BI

Reasons for Switching to Splunk Enterprise

Splunk was much cheaper than power bi and only little effort needed for implantation and the resources cost is also higher for power bi
Verified Reviewer
Overall rating
  • Industry: Health, Wellness & Fitness
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Splunk Enterprise, not just a SIEM

Reviewed on 2022/05/27

We have been using Splunk Enterprise, ES, ITSI, and other Splunk parts for 6+ years in production. ...

We have been using Splunk Enterprise, ES, ITSI, and other Splunk parts for 6+ years in production. This has helped us reduce staff in some cases, increase response time in most cases, and allow non-IT teams to get data and metrics in a fast efficient way.

Pros

The versatility is amazing. The same data in logs, such as IIS, can be used for Security, Application performance, and even error handling. This allows us to use one log to help multiple teams. This is just one example.

Cons

Start up takes someone who has had some training. While searching and output is easy, its the onboarding of custom apps that takes the know how.

Alternatives Considered

Sumo Logic

Reasons for Switching to Splunk Enterprise

Versatility with custom applications we create in house.
Alexia
Overall rating
  • Industry: Consumer Electronics
  • Company size: 11–50 Employees
  • Used Monthly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

I use Splunk Enterprise to analyze and visualize data for better decision-making.

Reviewed on 2024/08/29

Pros

Splunk Enterprise has powerful search capabilities and customizable dashboards.

Cons

The learning curve for setting up queries can be steep, and the pricing can be high for smaller teams.

Verified Reviewer
Overall rating
  • Industry: Government Administration
  • Company size: 51–200 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Great Choice for an SIEM

Reviewed on 2021/12/02

Pros

Provides a single location for collecting and analyzing logs. Provides ease of use for non-technical users, but powerful features for security and IT. There is an add-on/app for anything you could imagine.

Cons

Some documentation is vague, and when certain things don't work, it can be difficult to find out a solution to the problem.

Alternatives Considered

Sumo Logic

Reasons for Switching to Splunk Enterprise

We needed a product that we could host ourselves.
Verified Reviewer
Overall rating
  • Industry: Retail
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

nice tool with functionality for everyone

Reviewed on 2024/02/12

very good tool to see your logging and get alerts when something is wrong.

very good tool to see your logging and get alerts when something is wrong.

Pros

Splunk is easy to use, also non technical persons can also use and create their dashboards. Easy to implement and very easy to use the query language, the documentation is also sufficient

Cons

We cannot setup the alerts for realtime. we only us it for logging and not for metrics. the maintenance of the dashboards are very time offering.

Alvaro
Overall rating
  • Industry: Information Technology & Services
  • Company size: 11–50 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 10.0 /10

Platform that generates very good reports and data extraction

Reviewed on 2024/04/30

Pros

Produces analytical information with highly interactive tables, charts and graphics. Highly customizable to obtain specific data.

Cons

It can be complex at first to customize search queries since Slpunk handles its own terms and typing methods.

Francisco
Overall rating
  • Industry: Computer Software
  • Company size: 11–50 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk Enterprise is my go-to for analyzing large volumes of data quickly and effectively.

Reviewed on 2024/11/10

Pros

The software is user-friendly and has powerful data visualization tools.

Cons

I wish the pricing was more affordable for small businesses like mine, and some features can be overwhelming for beginners.

Verified Reviewer
Overall rating
  • Industry: Information Technology & Services
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

really true nice monitoring tool if its nice implemented

Reviewed on 2023/10/20

For me it is a very good experience. It is necessary to develop a good implementation of IT INC...

For me it is a very good experience. It is necessary to develop a good implementation of IT INC Management

Pros

It helped me enormously in my job as IT INC Management including detailed reports and alerting any necessary information.

Cons

It has a somewhat complex paring curve and there are no simple tutorials or parallel design of tutorials for new managers

Verified Reviewer
Overall rating
  • Industry: Information Technology & Services
  • Company size: 10,000+ Employees
  • Used Monthly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Flexible reporting and dashboard constructing using Splunk

Reviewed on 2023/10/24

Overall Splunk is a good reporting tool you can use to show your data for decision-makers to...

Overall Splunk is a good reporting tool you can use to show your data for decision-makers to determine the business performance. Easy to integrate with data sources and providers. Requires a little knowledge of how to construct queries. But plenty of developer documentation is available.

Pros

Splunk offers a lot of ways to connect with multiple data providers and sources to populate the reports and dashboards you need to show your business performance or data.

Cons

Customer support was a little slow. Requires a little knowledge of how to construct queries.

Jason
Overall rating
  • Industry: Financial Services
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

A valuable SIEM tool that aids Cyber defences

Reviewed on 2023/09/20

Overall a rather good experience based on the Customer Service we receive and the extent to which...

Overall a rather good experience based on the Customer Service we receive and the extent to which they make our use of the tool a good experience

Pros

The saying "you only get out what you put in" is rather apt when utilising Splunk as a SIEM tool - i.e. the more logs / data you can feed into the solution the better the results. Ingesting multiple log files from numerous systems / applications is essential when reviewing security incidents and ensures everything is in one place.

Cons

For all that is good with Splunk, the costs are rather high and could force Customers to other solutions unless they make themselves more competitive in the pricing market

kartik
Overall rating
  • Industry: Financial Services
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best Siem solution in market.

Reviewed on 2022/10/04

Overall experience is amazing, we are happy with this software as it can ingest any form of data...

Overall experience is amazing, we are happy with this software as it can ingest any form of data and generate alerts quite swiftly.

Pros

Easy to install agents on servers, it can parse any form of data easily, Splunk can detect anomalies quite easily and the UBEA feature is amazing.

Cons

The cost of this solution is high, and customer service is bad. Apart from that Splunk SPL language is difficult to learn.

Alternatives Considered

ArcSight

Reasons for Switching to Splunk Enterprise

Cause its to implement as compared to other siems.
Davis
Overall rating
  • Industry: Computer Software
  • Company size: 11–50 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

The most expensive tool, requiring highly-skilled employees, capable of limitless value

Reviewed on 2022/09/19

Splunk's SPL is a flexible, straight forward query-language with aspects of SQL, R, Python, and...

Splunk's SPL is a flexible, straight forward query-language with aspects of SQL, R, Python, and Bash. The fact that an analyst can learn to be an engineer through using the platform provides ease of growth. It is unmatched in its automation to make data actionable, while providing reporting and visualization capabilities.

Pros

Splunk is provides a single tool for log aggregation, log analysis, and visualizations. Threat hunting, applying threat intelligence, and incident response are easily repeatable; pushing organizations to proactive security processes.

Cons

Splunk is expensive, especially when an organizations is exploring and building new security or data use cases. It also requires a lot of engineering maintenance, making the quality of the data highly-dependent on the skill(s) of those supporting it. Many organizations do not maximize its benefit because it is poorly managed or supported by low-skilled employees.

Alternatives Considered

Elastic Stack

Reasons for Switching to Splunk Enterprise

Splunk scales in all aspects except price. Organizations that are serious about security and SIEM tools will see the value in their investment almost immediately. The insights from the analytics and development capabilities are not available in other tools with this level of ease.
Verified Reviewer
Overall rating
  • Industry: Financial Services
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk is a great solution for SIEM and also for monitoring your infrastructure

Reviewed on 2020/03/03

We needed a way to monitor our internal environment and start to be more proactive with issues, so...

We needed a way to monitor our internal environment and start to be more proactive with issues, so we started sending all of our logs to Splunk and we we able to get insights we did not know we needed. It is a great solution and they are constantly innovating.

Pros

Splunk makes it easy to search through various data including logs. In the past I have had to pour through logs in order to find the one lines among the 100 of thousands of lines. Splunk allows me to search through those logs in a matter of seconds vs the hours it used to take.

Cons

Most of enterprise setup is done through the command line. It would be nice to have cluster configuration (index creation) as part of the UI.

Alternatives Considered

Elastic Stack

Reasons for Switching to Splunk Enterprise

Spelunking was simple to setup and the customer service is great. It performed very well and proved to be a valuable assets to run in Production.
Thomas
Overall rating
  • Industry: Information Services
  • Company size: 5,001–10,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 7.0 /10

Swiss Knife for everything about logs

Reviewed on 2023/09/07

Pros

The product has a ton of Features. Everything what you Need when working with logs is already implemented

Cons

Due to the rich set of capabilities regarding, searching, transforming and vizualzing data it‘s sometimes quite tricky to find all necessary query commands

Callum
Overall rating
  • Industry: Computer Networking
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 7.0 /10

Good tool

Reviewed on 2023/08/22

Pros

The search feature allows for quick searching of signatures for new KBs

Cons

It feels very clunky to set up, explained by the whole certification track just for using splunk..

Cameron
Overall rating
  • Industry: Financial Services
  • Company size: 201–500 Employees
  • Used Monthly for 1-5 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk, a great tool for a security team's tool belt.

Reviewed on 2024/09/25

Pros

Splunk is a great tool for cyber security professionals wanting to build out their security infrastructure.

Cons

There are other options out there that doesn't require as much configuration.

Samuel
Overall rating
  • Industry: Telecommunications
  • Company size: 2–10 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Powerhouse in data management and analysis

Reviewed on 2023/06/02

A complex but rewarding journey of data exploration and anomaly detection.

A complex but rewarding journey of data exploration and anomaly detection.

Pros

Powerful and versatile data mining tool with excellent integration capabilities.

Cons

Challenging initial setup and learning curve, particularly with query language and high cost.

Sathiyan
Sathiyan
Overall rating
  • Industry: Nonprofit Organization Management
  • Company size: 1,001–5,000 Employees
  • Used Weekly for Free Trial
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

log Master

Reviewed on 2023/04/27

Overall i'm happy to use for any malicious activity is happened in the forwarder system its giving...

Overall i'm happy to use for any malicious activity is happened in the forwarder system its giving immediate alert system

Pros

It's giving live alert, triggers, dashboard system based on rules we already set. the dashboard helps to see and virtualize the data.

Cons

The only concern I feel it consumes the system space due to this my system running slow. without knowledge of Splunk query language, it is difficult to handle.

Idaly
Idaly
Overall rating
  • Industry: Semiconductors
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Powerful SIEM system that meets our expectations.

Reviewed on 2023/02/01

We are using Splunk Enterprise for log correlation, the analytics are accurate and it catches...

We are using Splunk Enterprise for log correlation, the analytics are accurate and it catches errors right away which improves our internal capabilities, it is a special service that collects data from different data sources very accurately to catch future issues, the reports are detailed and understandable. It has features that streamline manual work, improve our security and our protection in our IT infrastructure.

Pros

I really like the platform, the data collection is ideal and the reports are detailed, it is the most appropriate SIEM service to monitor our IT infrastructure, it is an ideal software to take preventive measures, it is easy to customize the dashboards, the monitoring is constant and it gives us security in real time, the alerts are accurate and it helps us understand what is happening and fix it before it becomes serious.

Cons

It is a somewhat expensive service but with more powerful features than other free SIEM systems, and it is a bit complex to set up and use for inexperienced users, so a lot of help should be sought from experienced staff and support team at first.

vikram
vikram
Overall rating
  • Industry: Banking
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Splunk for Log Monitoring

Reviewed on 2023/02/28

Splunk is best data monitoring and visualization tool. We can set alert for log and monitor log ....

Splunk is best data monitoring and visualization tool. We can set alert for log and monitor log . It provides different modes for searching Fast, Smart and verbose. By using Splunk we are getting all system log in one place .Splunk has capability to handle large and big size data. It has best GUI , one can easily adopt and do customization and based on requirments.

Pros

We are using Splunk for log monitoring . It is integrated with Kubernetes and pivot cloud via data bus. By Splunk we get Realtime log application. It provides best visualization of data generated by system. Splunk also provide option to filter data based on data range and time. We can configure email alert for specific issue. Splunk also provide ML model for data. Splunk use simple query to get data ,everyone can easily learn Splunk query.

Cons

I haven't found any issue yet the only problem with Splunk I have that log in Splunk is scattered . We need to build good query or better logging mechanism at application side.

THOMAS
Overall rating
  • Industry: Telecommunications
  • Company size: 51–200 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Splunk an Enterprise Business intelligent user tool

Reviewed on 2021/02/18

Is a robust and intelligent management tool that enables everyone with user computer knowledge to...

Is a robust and intelligent management tool that enables everyone with user computer knowledge to navigate in real-time, consolidate vast data into a visualized report of dashboard features , reliable and web based, no major equipment required for setup, user need a smartphone or compute to access the platform through the web, you can navigate the system as long as you have computer knowledge without any training required(user friendly) .

Pros

It an intelligent business tool that provided me an opportunity to customize and build report from large volume of data from different departments within the 13 Africa countries in telecommunication sectors. The platform allows data to be consolidated accordingly to the organization need and produces visualized reports of dashboard features. I also noted that the system can analyst unstructured large volume of data speedily and is reliable and web based allowing for user flexible accessible from any part of the world if you have internet. The systems have been reliable and secured from the time (2 years) I started using it without any system intermittent, system errors and cyber-attack.

Cons

The system is built and use-able with structured and unstructured organization though the price in foreign currency could hamper small and medium organization to use it especially in most Africa country where the local currency has depreciated against the major trading foreign currency.so the Forex pricing is a challenge.
The navigation of the platform will require minor training though if the user is computer proficient, they would management with minor challenge and interpretation of the data. So, first time user it can be difficult to use it
It will depend on internet for access and internet tend to be pricey in most African country and therefore could increase the business cost for small and medium enterprise. It can increase business cost if not fully used

mitchelle
mitchelle
Overall rating
  • Industry: Information Technology & Services
  • Company size: 5,001–10,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

The best tool for log collection and analysis.

Reviewed on 2022/09/11

Splunk enterprise has improved our IT security through collection of logs. It centralizes large...

Splunk enterprise has improved our IT security through collection of logs. It centralizes large amounts of log data and efficiently manages it. We use it for analyzing the collected logs and report on metrics found from the logs.

Pros

Through its robust log analysis and ability to collect data from different sources, we can easily perform analysis on various data and predict any future operational hazards. Splunk enterprise efficiently monitors our log activities and and gives results to any queries at faster speed than most SIEM tools.

Cons

The searches can be complex at times and the messages on query errors aren't always specific.

Cedeno
Cedeno
Overall rating
  • Industry: Marketing & Advertising
  • Company size: 201–500 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Robust Solution for Enhancing Security and Resilience

Reviewed on 2022/06/17

Monitor endpoints to detect and remediate cyber threats in real-time.

Monitor endpoints to detect and remediate cyber threats in real-time.

Pros

Block security threats on endpoints.

It enhances applications development.

Cons

The price is high but the results are remarkable.

Divyang
Divyang
Overall rating
  • Industry: Information Technology & Services
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Manipulate You Data

Reviewed on 2020/09/28

Splunk is widely used for manipulation of data and we encounter the use of this tool almostl twice...

Splunk is widely used for manipulation of data and we encounter the use of this tool almostl twice a week. Even though it costs much more but still we have not found any alternative that is able to offer all these functionalities.

Pros

Splunk is very easy to use due to high community support and many video tutorials available online for new users to learn.
Functionalities are robust and simple to use. Data retrieval and visualisation is nice and easy if you know the right querying process.
Machine Learning supports enhances performance for the cloud, especially. It collect wide variety of data and still it amaze you the way it retrievs it.

Cons

There are many tools available in market which are potential competitors of this tool and that too at reasonable pricing. Splunk offers more functionalities but costs you too much if you look at the work it does.
Complex queries may require large CPU usage and may even freeze or atleast slow down the system for a while. Need to be specific while querying the data.

Amit
Overall rating
  • Industry: Telecommunications
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best tool for Distributed logs data analysis

Reviewed on 2020/04/15

We have several micro-services deployed in production which require to lookup application access as...

We have several micro-services deployed in production which require to lookup application access as well as server logs and analyze data for their usage. We created several reports/charts for visualization. We use splunk as security logs tool to see the firewall traffic, tracing any vulnerable access, any database related crash ..etc.
It helps easily to find issue and fixed quickly by black listed in system.

Pros

Splunk Enterprise is best tool to analyze the data based on different visualization. It help us to lookup distributed logs for micro-services . It enables field based lookup. For complex logging, we can use search query using expression. We can create multiple reports/charts for visualization such as a pie or bar chart for our data. Best feature what i like , We can visualize our search results and share them with others using dashboard panels. If Already have a dashboard, we can add a new panel from a report, clone from another dashboard, or add a prebuilt panel. Fully customization available. Interfaces is very flexible. We export it in different formats, or refresh it to visualize the newest data. Online Support is available through different community.

Cons

Search query builder is fully based on technical. for Non technical users, its really difficult to lookup logs. Sometimes, error thrown by query builder is more difficult to understand. Deep Learning is required to use splunk for production data. For Large application installation, it need to manage more.