All Splunk Enterprise Reviews
1-25 of 221 Reviews
Sort by
Joe
Aviation & Aerospace, 10,001+ employees
Used less than 2 years
OVERALL RATING:
5
Reviewed January 2023
Splunk Enterprise
Idaly
Verified reviewer
Semiconductors, 10,000+ employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
4
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed February 2023
Powerful SIEM system that meets our expectations.
We are using Splunk Enterprise for log correlation, the analytics are accurate and it catches errors right away which improves our internal capabilities, it is a special service that collects data from different data sources very accurately to catch future issues, the reports are detailed and understandable. It has features that streamline manual work, improve our security and our protection in our IT infrastructure.
PROSI really like the platform, the data collection is ideal and the reports are detailed, it is the most appropriate SIEM service to monitor our IT infrastructure, it is an ideal software to take preventive measures, it is easy to customize the dashboards, the monitoring is constant and it gives us security in real time, the alerts are accurate and it helps us understand what is happening and fix it before it becomes serious.
CONSIt is a somewhat expensive service but with more powerful features than other free SIEM systems, and it is a bit complex to set up and use for inexperienced users, so a lot of help should be sought from experienced staff and support team at first.
shabbir
Information Technology and Services, 51-200 employees
Used daily for less than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
5
CUSTOMER SUPPORT
4
FUNCTIONALITY
4
Reviewed October 2021
Complete Security operations with Splunk
Splunk data visualization and its analytics handling chunks of data is exceptional.
PROSData visualization, Analytics skills with AI-powered and can handle data in TB/per day without any interruptions in services. Live dashboards, developing use-cases and their capabilities (correlation).
CONScomplex architecture and efficient skills are required, financial is also not feasible for small and medium customers. no inbuilt query builders for beginners to understand the platform.
Reason for choosing Splunk Enterprise
Not so feasible in handling data and its simple architecture cannot handle logs from all the data sources.
Reasons for switching to Splunk Enterprise
Its niche player was can handle only a few products data and not so feasible in terms of query building and customization in dashboards. Good for small businesses not for enterpraises.
Anonymous
1,001-5,000 employees
Used weekly for more than 2 years
OVERALL RATING:
3
EASE OF USE
3
VALUE FOR MONEY
4
CUSTOMER SUPPORT
3
FUNCTIONALITY
4
Reviewed November 2017
Great for aggregating systems information
Easily identifying trends between systems Helps identifying problems
PROSMakes it easy to identify trends within your environment. Once everything is aggregated it makes it easy for example, to see the knock on events of a network outage throughout the environment.
CONSWeb user interface is a bit clunky. Its very polished interface, but in many cases it's style over substance. When I'm debugging an issue I want to be able to drill down into the problem fast, and the shiny interface can be sluggish and slow you down.h
Anonymous
10,000+ employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
5
VALUE FOR MONEY
5
CUSTOMER SUPPORT
5
FUNCTIONALITY
4
Reviewed March 2020
Splunk is a great solution for SIEM and also for monitoring your infrastructure
We needed a way to monitor our internal environment and start to be more proactive with issues, so we started sending all of our logs to Splunk and we we able to get insights we did not know we needed. It is a great solution and they are constantly innovating.
PROSSplunk makes it easy to search through various data including logs. In the past I have had to pour through logs in order to find the one lines among the 100 of thousands of lines. Splunk allows me to search through those logs in a matter of seconds vs the hours it used to take.
CONSMost of enterprise setup is done through the command line. It would be nice to have cluster configuration (index creation) as part of the UI.
Reason for choosing Splunk Enterprise
Spelunking was simple to setup and the customer service is great. It performed very well and proved to be a valuable assets to run in Production.
Anonymous
1,001-5,000 employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
5
VALUE FOR MONEY
4
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed May 2022
Splunk Enterprise, not just a SIEM
We have been using Splunk Enterprise, ES, ITSI, and other Splunk parts for 6+ years in production. This has helped us reduce staff in some cases, increase response time in most cases, and allow non-IT teams to get data and metrics in a fast efficient way.
PROSThe versatility is amazing. The same data in logs, such as IIS, can be used for Security, Application performance, and even error handling. This allows us to use one log to help multiple teams. This is just one example.
CONSStart up takes someone who has had some training. While searching and output is easy, its the onboarding of custom apps that takes the know how.
Reason for choosing Splunk Enterprise
Versatility with custom applications we create in house.
Avinash
Computer & Network Security, 10,000+ employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
4
CUSTOMER SUPPORT
3
FUNCTIONALITY
4
Reviewed April 2021
Splunk - Onestop Log Management & Forensics
Overall i like the product but as the user base grows the logs grows too. This busts the limits of the licensing. We need to keep on doing housekeeping to ensure that our license limits is not crossed.
PROSThe ablitity to configure and tweak the use cases. Building Intelligence into forensics. The AI feature is gud but needs more enhancements.
CONSThe log management needs to be efficient , If the auditing logs is enabled then a huge influx of logs are pumed into splunk but no meaningful meaning can be derived.
Reason for choosing Splunk Enterprise
Splunk is a one whole package with features like AI & Forensics and also keeps you updated with the latest and newest threats..
Anonymous
51-200 employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
5
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed December 2021
Great Choice for an SIEM
Provides a single location for collecting and analyzing logs. Provides ease of use for non-technical users, but powerful features for security and IT. There is an add-on/app for anything you could imagine.
CONSSome documentation is vague, and when certain things don't work, it can be difficult to find out a solution to the problem.
Reason for choosing Splunk Enterprise
We needed a product that we could host ourselves.
Anonymous
10,000+ employees
Used daily for less than 12 months
OVERALL RATING:
5
EASE OF USE
3
VALUE FOR MONEY
5
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed October 2020
A tool which is one for all
Splunk has made me realize the ability to correlate different data from different realms altogether and generate valuable insights.
PROSThe ability to use this software for security operations, data analysis, creating dashboards, generating tickets and everything else
CONSSplunk uses its own SPL, which is not very easy to learn. However, there are lots of documentation that Splunk provides to its customers. There is paid training available which is useful for beginners to learn.
Reason for choosing Splunk Enterprise
Splunk has much more capabilities than IBM QRadar. The ability to automate things using Splunk is extraordinary which makes Splunk the market leader.
Divyang
Verified reviewer
Information Technology and Services, 201-500 employees
Used daily for less than 2 years
OVERALL RATING:
4
EASE OF USE
5
VALUE FOR MONEY
2
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed September 2020
Manipulate You Data
Splunk is widely used for manipulation of data and we encounter the use of this tool almostl twice a week. Even though it costs much more but still we have not found any alternative that is able to offer all these functionalities.
PROSSplunk is very easy to use due to high community support and many video tutorials available online for new users to learn. Functionalities are robust and simple to use. Data retrieval and visualisation is nice and easy if you know the right querying process. Machine Learning supports enhances performance for the cloud, especially. It collect wide variety of data and still it amaze you the way it retrievs it.
CONSThere are many tools available in market which are potential competitors of this tool and that too at reasonable pricing. Splunk offers more functionalities but costs you too much if you look at the work it does. Complex queries may require large CPU usage and may even freeze or atleast slow down the system for a while. Need to be specific while querying the data.
Thomas
Information Services, 5,001-10,000 employees
Used daily for more than 2 years
OVERALL RATING:
4
EASE OF USE
3
FUNCTIONALITY
5
Reviewed September 2023
Swiss Knife for everything about logs
The product has a ton of Features. Everything what you Need when working with logs is already implemented
CONSDue to the rich set of capabilities regarding, searching, transforming and vizualzing data it‘s sometimes quite tricky to find all necessary query commands
Gabe
Information Technology and Services, 5,001-10,000 employees
Used daily for less than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
3
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed February 2018
A powerful log aggregation solution with immensely useful tools built-in for popular applications.
- Free to use for small 500MB or less daily ingress, quite nice for small use cases and learning - No development work required to deploy and provide value. - Deployment flexibility: client agents are available to use, or clientless configurations for multiple OS platforms. It's also very easy to deploy, not just flexible. its a very simple affair. - Segmentation of logs: You can create separate instances of of logs to aggregate, based on organization needs. And those instances can have their own individual storage policies to optimize consumption of storage resources. - Configuration design: Thoughtful and mature documentation and design of the application regarding enterprise-class scaling on network storage. -POWERFUL tools: The user interface lends itself to learning more about your organization from the logs you collect, through metrics of trends of the logs being gathered. There are also specific modules/add-ons for popular applications to provide more value and event-based monitoring, all without having to develop in-house dashboards and intelligence of those logs. - Customization: You can create your own queries of logs, and event-based alerts. - Web-based GUI that clean is powerful - Sales/Technical Reps are top notch in fielding questions and evaluating environment for deployment. They were extremely helpful in helping our organization develop procedures and scaling our environment for expansion with our existing infrastructure.
CONS- Price: This product is not free for more than the minimal use. Pricing can be very expensive, relative to open source offerings. That is the trade-off you pay for not having in-house development of open source offerings. As this product is priced based on gigabytes of indexed logs, it is important to understand the scope of licensing necessary for your environment to determine if it is a good fit for your organization. - Watch your saved queries and hardware resources: Users have the ability to create and save queries. Like in database queries, some are more efficient than others. Large inefficient queries can be very resource-intensive. If you notice slowness in day-to-day queries, or navigation in the UI, or resource use in contention, keep an eye on saved queries and user practices.
Anonymous
1,001-5,000 employees
Used daily for more than 2 years
OVERALL RATING:
4
EASE OF USE
3
VALUE FOR MONEY
3
CUSTOMER SUPPORT
3
FUNCTIONALITY
4
Reviewed May 2021
Great, wholistic centralized monitoring solution
I've been using Splunk for over 8 years. I've seen it constantly improve and change a lot. I do enjoy it. Cloud is getting better and much better parity with on-prem
PROSWe use this as our SIEM. The ability to have the data ingest, visualization, alerting and correlation all in one product is very important to me from a security standpoint. We're cloud-first so having that ability with large cloud providers is important to me (AWS, Okta, GCP, etc)
CONSThe cost can be a little concerning and htere is a bit of a learning curve when you first get into Splunk. User groups, their forum and pro serv all help with that.
Reason for choosing Splunk Enterprise
Better product.
Anonymous
10,000+ employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
5
CUSTOMER SUPPORT
5
FUNCTIONALITY
4
Reviewed October 2022
Best friend for debugging
Splunk basically makes debugging and monitoring easier and touch less. I can easily debug by starring the rolling logs from different instances in single screen. I can monitor multiple components and multiple metrics, without running commands manually with custom plugins.
PROSSplunk comes with lot of in-built templates for each and every feature like log visualisation, dashboarding, traces,etc This makes the developers life lot easier. I can't think of any other logging tool that is snappy as well as accurate. I love the fact how easily I can plug it in my docker-compose to push container logs.
CONSEven though, it offers numerous features for different needs, each feature has its own learning curve. For instance log visualisation needs querying skills, which may be in natural language but it takes bit of time to get familiar.
Reasons for switching to Splunk Enterprise
Splunk enterprise offers better support and has lot of advanced features.
David
Verified reviewer
Entertainment
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
5
VALUE FOR MONEY
4
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed February 2018
Offers more than you think
We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening and gives us end to end insight into our stack.
PROSThe system is highly intuitive to use. It is faster than other solutions I've used on the market and has a huge library of 3rd party plugins to get more from the system. It is easy to create scheduled searches, dashboards, reports etc. but there are a number of additional plugins (at an extra cost) to help with security, single pane of glass and metric collection.
CONSIt offers challenges for a decentralized working model. Where Splunk is centrally managed, it is easy to ensure that best practices are maintained. Where the system is opened up for an entire department to utilize and on-board their logs, it becomes more difficult. However, with some creative thinking and good process, this issue can be overcome.
Frank
Computer Software, 5,001-10,000 employees
Used weekly for more than 2 years
OVERALL RATING:
5
EASE OF USE
3
FUNCTIONALITY
4
Reviewed December 2020
Doing setup redundant servers without Splunk
Saved my a$$ many times. In a multi-server environment, if you don't have Splunk or something like it, it will be a nightmare to try and coordinate the various log files involved.
PROSSeveral of our applications are distributed across multiple systems. It is the same software running on each server but doing the same job for different users. Each server would generate its own log files. When things went wrong, we used Splunk to be able to see what was going on on each server. Click a few buttons and you get two logs from two different servers listed together coordinated by time. But that leads you to discover that the issue came from a separate upstream or downstream server, then bring in those logs too . . . all coordinated by time. Don't get me wrong, the IT guys love these tools for their own enterprise reasons, but as a server stack developer, this was a resource I used OFTEN.
CONSI never fully grokked their SQL like language. I could do basic things daily without issue. However, I often had to hit the documentation to do anything more than a simple "find this" query.
mitchelle
Verified reviewer
Information Technology and Services, 5,001-10,000 employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
5
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed September 2022
The best tool for log collection and analysis.
Splunk enterprise has improved our IT security through collection of logs. It centralizes large amounts of log data and efficiently manages it. We use it for analyzing the collected logs and report on metrics found from the logs.
PROSThrough its robust log analysis and ability to collect data from different sources, we can easily perform analysis on various data and predict any future operational hazards. Splunk enterprise efficiently monitors our log activities and and gives results to any queries at faster speed than most SIEM tools.
CONSThe searches can be complex at times and the messages on query errors aren't always specific.
Alex
Telecommunications, 1,001-5,000 employees
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
5
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed February 2022
Excellent product
It is an easy to use solution, the implementation is a bit more difficult.
CONSSo far, this is a good solution that I use every day.
Anonymous
51-200 employees
Used daily for less than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
4
CUSTOMER SUPPORT
4
FUNCTIONALITY
4
Reviewed September 2022
Number 1 SIEM
I was very happy with splunk and I suggest it to everyone
PROSI think Splunk is first and best software in the field, easy to use, does what it had promised,
CONSpricing could be better, they could be more flexible, support is a bit slow
Anonymous
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
4
VALUE FOR MONEY
4
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed February 2018
A tool that every sys admin needs to have
I'm not sure from where to start in this case. We use splunk for many things but mostly to analyze the traffic on the network / firewalls. It provides us with a nice overview of what's going on. It makes it very easy to spot spikes on the network and it will provide you also with deep analyzes. For us it's an indispensable tool, probably the best tool we have.
CONSTo search for something is not always easy, however there are a lot of forums online, so finding help is not that difficult.
Anonymous
10,000+ employees
Used daily for less than 2 years
OVERALL RATING:
5
EASE OF USE
3
VALUE FOR MONEY
3
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed January 2023
Splunk is a lifesaver!
It’s been wonderful. I was able to take most of my forwarded lambdas and charts them to watch duration and throughput. Notifications and alerts let me know if things are out of whack. Such a relief to know Splunk is watching my back!
PROSIf you need real-time grokking into your infrastructure, look no further than Splunk. I love love love the dashboards. It’s easy to tell a story with your data, and the live search is so FAST!
CONSSPL is a little hard to get used to, but once you get the hang of it, it’s not so bad. I recommend downloading their community edition for some great examples of queries and dashboards.
Anonymous
1,001-5,000 employees
Used weekly for less than 2 years
OVERALL RATING:
4
EASE OF USE
4
VALUE FOR MONEY
4
CUSTOMER SUPPORT
3
FUNCTIONALITY
4
Reviewed March 2023
Efficiently manage and analyze data with Splunk Enterprise
Splunk Enterprise's versatility is highly valued by its users, as it is capable of analyzing and managing data from a variety of sources, including machine data, logs, and structured and unstructured data formats. This makes it a valuable tool for organizations with diverse data management needs. In addition, users appreciate the software's efficiency in processing and analyzing large volumes of data quickly, allowing them to make faster and more informed decisions. This is particularly important for organizations that need to respond to data in real-time, as Splunk Enterprise's speed and efficiency can help them stay ahead of the curve.
CONSSplunk Enterprise to be complex and difficult to use, particularly for those who are not familiar with data analysis and management tools. The software has a range of features and capabilities, which can be overwhelming.
Anonymous
1 employee
Used daily for more than 2 years
OVERALL RATING:
5
EASE OF USE
3
VALUE FOR MONEY
4
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed July 2020
Excellent product
I have worked with dozens of companies to implement Splunk. My experiences have bee overwhelming positive.
PROSWhen you need to store, correlate, and search large amounts of data, especially System Log data, there is no tool that even comes close to Splunk. It's power and flexibility is amazing.
CONSVery expensive. Difficult to implement until all moving parts are understood. Steep learning curve for beginners.
Parth
Verified reviewer
Computer Software, 501-1,000 employees
Used weekly for more than 2 years
OVERALL RATING:
4
EASE OF USE
4
VALUE FOR MONEY
5
CUSTOMER SUPPORT
4
FUNCTIONALITY
5
Reviewed December 2021
Monitoring Tool Splunk
With Splunk anything identified with the application backend logs and observing, it's extremely suitable to utilize, in light of which we can make different dashboards. For server Monitoring, Splunk logs are not exceptionally accommodating. It totally depends on log explanations, assuming articulation isn't organized in standard organization, and it gives mistaken outcomes.
PROSSplunk Light is ideal for independent on-premise organization. Augment endpoint logging. Can find and store logs from a wide range of resources. Customization of dashboards. Making applications dependent on your requirements.
CONSComplex generally design. Long execution time. The instrument needs to incorporate AI to comprehend the framework logs and alarming ought to be founded on the auto learning.
shaik
Verified reviewer
201-500 employees
Used daily for less than 2 years
OVERALL RATING:
5
EASE OF USE
5
VALUE FOR MONEY
5
CUSTOMER SUPPORT
5
FUNCTIONALITY
5
Reviewed February 2018
One of the best place to check large amount of the logs information.Every companies best tool.
make our business life easy
PROSThe best thing about this software is i love its UI part and its dashboard where it provides the logs of all the enterprise application every business which has large amount of the transactions being held are required to maintain this tool and its logging and search frequency are very much loved and dash board has very colourful UI and easily understandable
CONSThere is no least about this software but we are looking for some more enhanced featured like optimisation and all