Splunk Enterprise Pros and Cons: Top 5 Advantages and Disadvantages

Quick AI Summary Based on G2 Reviews

Generated from real user reviews

Users value the innovation of Splunk Enterprise, appreciating its user-friendly features and powerful analytics capabilities. (13 mentions)
Users value the customization features of Splunk Enterprise, enabling tailored insights and dynamic dashboards for effective monitoring. (12 mentions)
Users commend the ease of use of Splunk Enterprise, enhancing effective monitoring and quick issue resolution. (10 mentions)
Users value the efficient log management capabilities of Splunk Enterprise for accurate analysis and insights. (8 mentions)
Users value the powerful reporting features of Splunk Enterprise, enhancing data analysis and visualization capabilities significantly. (8 mentions)
Users find Splunk Enterprise to be expensive, especially as data volumes grow, impacting smaller teams' operations. (8 mentions)
Users face a steep learning curve with Splunk Enterprise, which can hinder quick mastery of its features. (8 mentions)
Users highlight the expensive licensing of Splunk Enterprise, making it difficult for some companies to adopt. (5 mentions)
Users face integration issues with Splunk Enterprise, requiring better add-ons and simpler architecture for easier deployment. (5 mentions)
Users feel that Splunk Enterprise has missing features, lacking important add-ons and more flexible data onboarding options. (5 mentions)

5 Pros or Advantages of Splunk Enterprise

5 Cons or Disadvantages of Splunk Enterprise

Splunk Enterprise Reviews (434)

View 2 Video Reviews
Reviews

Splunk Enterprise Reviews (434)

View 2 Video Reviews
4.3
434 reviews
Search reviews
Filter Reviews
Clear Results
G2 reviews are authentic and verified.
RaviShankar S.
RS
RaviShankar S.
Senior Enterprise Cloud Architect
Information Technology and Services
Enterprise (> 1000 emp.)
"Excellent Enterprise Observability and Log Management Solution for Hybrid Cloud Infrastructure"
4.5/5
What do you like best about Splunk Enterprise?

Splunk Enterprise is an excellent end-to-end Observability Platform for Enterprise Log management, Metrics, Event, and Traces, and enables AIOps to manage Large scale Global IT Infrastructure. Splunk Supports all major cloud platforms — Azure, GCP, AWS, and VMware — along with legacy and on-premises hosting platforms such as Linux, on-premises VMware, and Hyper-V. Splunk Web User Interface is really simple and understandable. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Splunk Enterpirse Solution's Daily Log Data size cap is bit low for the Global Enteprise Organizations running Thousands of critical workloads. Splunk Enterprise Solution's yearly Renewal costs are high. New Users Need formal Training to support efficiently and to manage the Splunk Platform. Review collected by and hosted on G2.com.

Darsh A.
DA
Darsh A.
Cyber Security Consultant
Small-Business (50 or fewer emp.)
"Customizable and Stable with Great Support, but Pricing and AI Lag Behind"
3.5/5
What do you like best about Splunk Enterprise?

Splunk Enterprise provides high level of customizability in terms of creating custom queries, integrations and other knowledge objects. Overall the UI/UX is good and the performance is highly stable. The Splunk support is excellent. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

The pricing is too expensive compared to other products and the use of AI is very less compared to the offerings by other solutions available in the market. Review collected by and hosted on G2.com.

Nishith J.
NJ
Nishith J.
Devops intern
Small-Business (50 or fewer emp.)
"SPL search and dashboards are really useful"
4/5
What do you like best about Splunk Enterprise?

What I like most about Splunk Enterprise is its powerful search capabilities using SPL, which make it easy to analyze large volumes of log data quickly. It’s very useful for monitoring systems, identifying issues, and building dashboards for real-time insights. The flexibility in creating custom queries and visualizations is a big advantage Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

One of the main drawbacks is the cost, especially as data ingestion increases. Review collected by and hosted on G2.com.

RB
Robert B.
Lead Support Engineer
Mid-Market (51-1000 emp.)
"Splunk Enterprise Makes Endpoint Data Collection and Troubleshooting Easy at Scale"
4/5
What do you like best about Splunk Enterprise?

Splunk Enterprise stands out because it makes it easy to collect data from endpoints at scale. It can pull in logs, events, and machine data from many different systems, then centralize that information so it is searchable and useful. That makes troubleshooting, monitoring, and security investigations much faster, because the data is already in one place instead of scattered across servers and devices. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Splunk Enterprise can be expensive, and at times it feels like you don’t have enough control over your own data. Running into licensing limits is also frustrating, especially when data volume grows unexpectedly and starts impacting visibility or how the platform can be used. Another concern is that vulnerabilities in Windows collectors can add extra security risk and increase ongoing maintenance overhead. Taken together, these issues can make the platform feel restrictive, costly, and more difficult to manage than it should be. Review collected by and hosted on G2.com.

Verified User in Broadcast Media
UB
Verified User in Broadcast Media
Enterprise (> 1000 emp.)
"Splunk Enterprise Delivers Powerful Real-Time Search and Actionable Insights"
5/5
What do you like best about Splunk Enterprise?

Splunk Enterprise excels at real-time data indexing and search, allowing you to quickly correlate disparate logs into actionable insights using its powerful Search Processing Language (SPL).

Its versatile visualization tools and massive Splunkbase app ecosystem make it a top choice for centralized security monitoring and high-scale IT operations. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Splunk Enterprise is often criticized for its complex and expensive licensing based on data volume, which can become unpredictable as your infrastructure grows.

Users also find its Search Processing Language (SPL) has a steep learning curve, and the platform can be resource-intensive to maintain and scale. Review collected by and hosted on G2.com.

Verified User in Information Technology and Services
UI
Verified User in Information Technology and Services
Mid-Market (51-1000 emp.)
"Splunk Enterprise Excels at Analyzing Large Machine-Generated Logs"
4.5/5
What do you like best about Splunk Enterprise?

The best about Splunk Enterprise is its log analyzing capabilities. It can analyse large machine generated logs Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

Its licensing is very costly for analysing large machine generated logs. It requires much fine tuning to support large log analysis Review collected by and hosted on G2.com.

MO
Marco O.
Soc Manager
Information Technology and Services
Mid-Market (51-1000 emp.)
"Splunk’s for SOC Operations"
5/5
What do you like best about Splunk Enterprise?

What I like most about Splunk is how well it integrates with many well-known products, along with its very clear, easy-to-use dashboards. On top of that, the search system is incredibly versatile and works especially well for SOC operations. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

The main downside of Splunk is that it’s still quite expensive compared to other vendors. As a service provider, I also find it difficult to position with clients, because the costs can climb quickly and the overall price becomes high. Review collected by and hosted on G2.com.

Verified User in Telecommunications
AT
Verified User in Telecommunications
Small-Business (50 or fewer emp.)
"Centralized, Reliable, and Easy to Use Daily"
5/5
What do you like best about Splunk Enterprise?

I love how fast and flexible Splunk is. The search and reporting tools make it really easy to dig through logs, spot issues, and monitor system performance. It integrates well with other tools we use, and honestly, we use it every single day. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

It can get expensive as your data grows, and some of the more advanced features take a while to learn. But once you get the hang of it, it’s extremely powerful. Review collected by and hosted on G2.com.

Sujit S.
SS
Sujit S.
Senior Associate Consultant
Mid-Market (51-1000 emp.)
"Effortless Integration and Dynamic Dashboards Enhance Incident Management"
4/5
What do you like best about Splunk Enterprise?

It is easy to integrate with Ms Purview DLP technology. Dynamic Dashboard are very useful for incident management. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

What I dislike about Splunk Enterprise is that it can get expensive, especially as the data volume grows. The initial setup and writing queries can also feel complex for new users, and it often takes skilled resources to manage it efficiently. As a result, day-to-day operations can be a bit challenging for smaller teams. Review collected by and hosted on G2.com.

Dominika T.
DT
Dominika T.
Cybersecurity Engineer - Data Protection
Enterprise (> 1000 emp.)
"Real-Time Log Analysis and Aggregation That Delivers"
3.5/5
What do you like best about Splunk Enterprise?

That it lets you to analyze and aggregate logs in real time. Review collected by and hosted on G2.com.

What do you dislike about Splunk Enterprise?

At the beginning it’s a lot of False positives and it requires tunning. Review collected by and hosted on G2.com.

Product Avatar Image
Splunk Enterprise
4.3/5(434)