Splunk Enterprise Security Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users value the ease of use of Splunk Enterprise Security, enhancing their monitoring and log management experience. (15 mentions)
Users appreciate the easy integrations of Splunk Enterprise Security, enabling seamless connection with various platforms and systems. (13 mentions)
Users highlight the impressive threat detection capabilities of Splunk Enterprise Security, enhancing security focus and reducing false alarms. (13 mentions)
Users value the effective features of Splunk Enterprise Security, enhancing security analysis with comprehensive logs and insights. (12 mentions)
Users appreciate the user-friendly interface of Splunk Enterprise Security, enabling efficient monitoring and attractive dashboards. (11 mentions)
Users note that the high cost of Splunk Enterprise Security is a major drawback for smaller organizations. (17 mentions)
Users find the initial implementation complex, needing expert resources and time to onboard Splunk Enterprise Security effectively. (8 mentions)
Users find the complex implementation of Splunk Enterprise Security challenging, requiring extensive expertise and resources. (6 mentions)
Users find the complexity and extensive setup of Splunk Enterprise Security to be time-consuming and challenging. (6 mentions)
Users find the difficult learning curve of Splunk Enterprise Security a challenge for beginners and costly to set up. (6 mentions)

5 Pros or Advantages of Splunk Enterprise Security

5 Cons or Disadvantages of Splunk Enterprise Security

Splunk Enterprise Security Reviews (247)

View 2 Video Reviews
Reviews

Splunk Enterprise Security Reviews (247)

View 2 Video Reviews
4.3
247 reviews
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
MK
Mohammed K.
Senior Engineer -Cyber Security
Enterprise (> 1000 emp.)
"User Friendly Security Monitoring and Response Tool"
5/5
What do you like best about Splunk Enterprise Security?

Searching, Apps for each type of devices, Incident Review and Response, Asset Center are few of the excellent features in Enterprise Security.

All these features are very user friendly and provide the easy incident investigation interface. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Correlation of Packet data and End Point Detection and Response data with event logs are not the feature in Enterprise security. Hence lag the complete security analytics of organization data of each layer. Review collected by and hosted on G2.com.

SK
Sherry K.
Network Administrator
Mid-Market (51-1000 emp.)
"Prevents threats and minimizes system failure cases"
4.5/5
What do you like best about Splunk Enterprise Security?

I like splunk ES because it continuously monitors our system for potential threats and alerts us in real time so that we are able to prevent the threats before they ness up our system. I like its access anomalies dashboard which allows us to identify any breach and suspicious activity from users, this makes it easy for us to prevent any unauthorized and suspicious access and helps us protect our IT infrastructure and keep our sensitive data safe. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

I don't like that i can only monitor the privileged accounts for suspicious activity or access breach it would be very helpful if i can monitor all accounts thisbwould hwlp see which account have anomalies and may pose a threat to our system. Review collected by and hosted on G2.com.

Verified User in Banking
CB
Verified User in Banking
Enterprise (> 1000 emp.)
"Urged to filter Security data to manage the costs can be dangerous or fatal"
1.5/5
What do you like best about Splunk Enterprise Security?

very nice visualization and Analytics Engine with easy to create Dashboards, many 3rd party integrations and a vast and active community to support in case spluk support did not answer. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Lack of out-of-the-box features, another Toolbox additional to all other Splunk "tools" rather than an integrated Product. Integration, maintenance and customization effort needed are very high. The subscription fee is exploding, and we need to filter now the ingested logs dramatically ... which adds a new vulnerability. Splunk products have too many product vulnerabilities themself for a Security Product. Review collected by and hosted on G2.com.

Kartik S.
KS
Kartik S.
Information Security Engineer
Enterprise (> 1000 emp.)
"One of the Best SIEM in industry"
5/5
What do you like best about Splunk Enterprise Security?

It's easy to deploy, the agent /forwarder is very lightweight, and it can parse almost all log sources, which makes it the best in the industry. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Customer service needs improvement and the tool is a bit expensive, apart from that there are no issues with this product. Review collected by and hosted on G2.com.

Mubeen A.
MA
Mubeen A.
SOC - Security Engineering Lead
Mid-Market (51-1000 emp.)
"Splunk Enterprise Security Review"
5/5
What do you like best about Splunk Enterprise Security?

Great product for security monitoring and reporting. Blazing fast searches, superb user interface and excellent visualization options. Also, reporting and other features are great as well. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Scalability is an issue and licensing costs are very high which makes this great tool hard to procure for SMEs. Also, support can improve to enhance the overall experience. Review collected by and hosted on G2.com.

SD
Seereeram D.
Information Technology Security Specialist
Enterprise (> 1000 emp.)
"Enterprise Security a Security Team Must Have"
5/5
What do you like best about Splunk Enterprise Security?

Enterprise Security has a built-in Risk Analysis Dashboard. This allows an executive-level overview of what is going on in an understandable format which can be viewed by non-technical personnel. It incorporates MITRE, NIST as well as CIS identifiers for threat activity, allowing high-level classification of assets, identity, and communication behavior. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

If you are deploying this product for yourself, it is quite a challenge. Enterprise Security offers the single pane of glass for your investigation and monitoring needs, but to get everything onboarded can be daunting. The identity and assets enrichment was not straightforward and required a lot of manual work. For it to be optimized for full benefit, there is a layer of complexity along the journey Review collected by and hosted on G2.com.

BM
B M.
Senior IT Security Engineer
Enterprise (> 1000 emp.)
"Wow!! Wonderful experience!! Everything you need at the tip of your fingers."
5/5
What do you like best about Splunk Enterprise Security?

All the features were great. From the correlation rules to all the details in the reporting were actually great. Indeed a useful product when it comes to granular security. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

Nothing to be disliked of. However it could have been great if they had a handy dashboard template for different enterprises. Review collected by and hosted on G2.com.

Seereeram D.
SD
Seereeram D.
IT Security Specialist
Enterprise (> 1000 emp.)
"World Class Threat Intelligience, Analytics and Risk Monitoring"
5/5
What do you like best about Splunk Enterprise Security?

Splunk Enterprise Security allows us to actively perform threat intelligence and analysis while providing results in an easy-to-understand manner. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

As with Splunk in general proper configuration and deployment requires a steep learning curve. In general, this is my only issue with Splunk, the complexity of configuration and deployment. Review collected by and hosted on G2.com.

Rohit S.
RS
Rohit S.
Senior Technical Account Manager
Mid-Market (51-1000 emp.)
Business partner of the seller or seller's competitor, not included in G2 scores.
"Splunk - Looking for troubles :)"
5/5
What do you like best about Splunk Enterprise Security?

Splunk is a great SIEM solution and its integration with almost any network and security device makes it a unique player in market. Its apps and super fast search options are best in class Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

No problems with splunk so far. Its been working very good Review collected by and hosted on G2.com.

Nikhil P.
NP
Nikhil P.
Engineer trainee
Enterprise (> 1000 emp.)
"Smart, efficient and powerful tool to gather and organize raw logs from multiple sources."
4.5/5
What do you like best about Splunk Enterprise Security?

The best feature would be the user interface which is easy to navigate and understand. A little training on how to use the Splunk query language, and you are good to go! Easy to download or share the logs across various platforms and has a very insightful pictorial representation of data in graphs, tables, and various other forms. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise Security?

It has an overwhelming amount of features that may go unused in some cases. It would be better if Splunk could be altered according to a user's needs. Splunk doesn't use MFA as far as I know, so it would be better if it is included. If queries aren't precise, your job (output) will be running for a long time. Review collected by and hosted on G2.com.

Product Avatar Image
Splunk
4.3/5(247)