Splunk Enterprise Reviews

Splunk Enterprise

4.6 (217)
Machine data management and analytics

Overall rating

4.6 /5
(217)
Value for Money
4.3/5
Features
4.5/5
Ease of Use
4.1/5
Customer Support
4.3/5

97%
recommended this app
Sort by

217 Reviews

vikram
Overall rating
  • Industry: Banking
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Splunk for Log Monitoring

Reviewed on 28/02/2023

Splunk is best data monitoring and visualization tool. We can set alert for log and monitor log ....

Splunk is best data monitoring and visualization tool. We can set alert for log and monitor log . It provides different modes for searching Fast, Smart and verbose. By using Splunk we are getting all system log in one place .Splunk has capability to handle large and big size data. It has best GUI , one can easily adopt and do customization and based on requirments.

Pros

We are using Splunk for log monitoring . It is integrated with Kubernetes and pivot cloud via data bus. By Splunk we get Realtime log application. It provides best visualization of data generated by system. Splunk also provide option to filter data based on data range and time. We can configure email alert for specific issue. Splunk also provide ML model for data. Splunk use simple query to get data ,everyone can easily learn Splunk query.

Cons

I haven't found any issue yet the only problem with Splunk I have that log in Splunk is scattered . We need to build good query or better logging mechanism at application side.

kartik
Overall rating
  • Industry: Financial Services
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best Siem solution in market.

Reviewed on 04/10/2022

Overall experience is amazing, we are happy with this software as it can ingest any form of data...

Overall experience is amazing, we are happy with this software as it can ingest any form of data and generate alerts quite swiftly.

Pros

Easy to install agents on servers, it can parse any form of data easily, Splunk can detect anomalies quite easily and the UBEA feature is amazing.

Cons

The cost of this solution is high, and customer service is bad. Apart from that Splunk SPL language is difficult to learn.

Alternatives Considered

ArcSight

Reasons for Switching to Splunk Enterprise

Cause its to implement as compared to other siems.
Nav
Overall rating
  • Industry: Computer Software
  • Company size: 501–1,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 6.0 /10

Currently using this diagnostic tool for log analysis

Reviewed on 14/03/2018

Overall a decent product.

Overall a decent product.

Pros

- Ability to search logs across processes and services
- Ability to develop dashboards to Monitor critical metrics
- Ability to set up alerts based on threshold values

Cons

- Need to regex well in order to use the tool to its full ability
- Ability to extract values out of the log statements could be simpler
- Alerts usually end up being over alerting or false alerts.

Callum
Overall rating
  • Industry: Computer Networking
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 7.0 /10

Good tool

Reviewed on 22/08/2023

Pros

The search feature allows for quick searching of signatures for new KBs

Cons

It feels very clunky to set up, explained by the whole certification track just for using splunk..

Ariev
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Aneeded for the industry on the basic to the best role.

Reviewed on 21/08/2022

It's a great tool and used for many years to come.

It's a great tool and used for many years to come.

Pros

Real time use. The ingestion of data and more.

Cons

Nothing yet.. maybe performance at times.

Alternatives Considered

IBM Security QRadar

Reasons for Switching to Splunk Enterprise

Better for the industry and real time use. More expensive.
Verified Reviewer
Overall rating
  • Industry: Oil & Energy
  • Company size: 10,000+ Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

An excellent SIEM at a low cost

Reviewed on 01/02/2023

We have many programs that measure the performance and quality of the operation, of the production...

We have many programs that measure the performance and quality of the operation, of the production in chevron, I think it is important that they give extra barriers to what we do and splunk is an optimal collaborator so that we can track all these programs and not get intrusions through the network.

Pros

It is a very subtle program, when generating the setup it is not necessary to have a great knowledge of programming to install it, but to solve some configuration errors, when you start what I like the most is that you start from day one to organize your applications, then From that you can easily configure cybersecurity for each program, I particularly like the monitoring of data programs and that the program alerts you with notifications so that you see errors that sometimes jumps in the program.

Cons

What I don't like and I see that it is something widespread is that it has very poor support in technical help, I think that the old technical support collaborators have left and people who are not so qualified have arrived to answer the tickets.For my part it is not a big problem since I am a researcher and with the information that is on the splunk website it is enough for me to generate the resolutions of problems.

Nana Kwame
Overall rating
  • Industry: Education Management
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk Enterprise is a powerful data analytics software

Reviewed on 17/03/2023

I believe getting important data analysis in real-time saves us from threats

I believe getting important data analysis in real-time saves us from threats

Pros

Splunk Enterprise offers real-time data analysis tools makes it possible for my institution to see and take immediate action against security risks, performance difficulties, and other operational concerns.

Cons

Splunk Enterprise is really expensive and it is a huge part in our annual budget because we require add-ons.

Verified Reviewer
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Great platform for data analysis and visualization

Reviewed on 02/02/2023

Splunk Enterprise is a great data analysis and visualization platform to show real time status with...

Splunk Enterprise is a great data analysis and visualization platform to show real time status with live dashboards.

Pros

Security Information and Event management, log analytics, custom dashboards and workspaces

Cons

Auto upgrade management and notifications for Add-ons. Leaning more towards config file based implementation instead of UI based implementation

Alternatives Considered

New Relic

Reasons for Switching to Splunk Enterprise

Product Features and pricing
Stephan
Overall rating
  • Industry: Computer & Network Security
  • Company size: 2–10 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk is a great SIEM solution for anyone to use

Reviewed on 23/03/2023

Vey happy to user the product, it fits our client's need perfectly

Vey happy to user the product, it fits our client's need perfectly

Pros

The easy of setup and integration makes this one of my favorites As well as the real time dashboard

Cons

Not much i don't like yet, but maybe the interface can do with an update

Verified Reviewer
Overall rating
  • Industry: Chemicals
  • Company size: 1,001–5,000 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Efficiently manage and analyze data with Splunk Enterprise

Reviewed on 05/03/2023

Pros

Splunk Enterprise's versatility is highly valued by its users, as it is capable of analyzing and managing data from a variety of sources, including machine data, logs, and structured and unstructured data formats. This makes it a valuable tool for organizations with diverse data management needs. In addition, users appreciate the software's efficiency in processing and analyzing large volumes of data quickly, allowing them to make faster and more informed decisions. This is particularly important for organizations that need to respond to data in real-time, as Splunk Enterprise's speed and efficiency can help them stay ahead of the curve.

Cons

Splunk Enterprise to be complex and difficult to use, particularly for those who are not familiar with data analysis and management tools. The software has a range of features and capabilities, which can be overwhelming.

Amit
Overall rating
  • Industry: Telecommunications
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best tool for Distributed logs data analysis

Reviewed on 15/04/2020

We have several micro-services deployed in production which require to lookup application access as...

We have several micro-services deployed in production which require to lookup application access as well as server logs and analyze data for their usage. We created several reports/charts for visualization. We use splunk as security logs tool to see the firewall traffic, tracing any vulnerable access, any database related crash ..etc.
It helps easily to find issue and fixed quickly by black listed in system.

Pros

Splunk Enterprise is best tool to analyze the data based on different visualization. It help us to lookup distributed logs for micro-services . It enables field based lookup. For complex logging, we can use search query using expression. We can create multiple reports/charts for visualization such as a pie or bar chart for our data. Best feature what i like , We can visualize our search results and share them with others using dashboard panels. If Already have a dashboard, we can add a new panel from a report, clone from another dashboard, or add a prebuilt panel. Fully customization available. Interfaces is very flexible. We export it in different formats, or refresh it to visualize the newest data. Online Support is available through different community.

Cons

Search query builder is fully based on technical. for Non technical users, its really difficult to lookup logs. Sometimes, error thrown by query builder is more difficult to understand. Deep Learning is required to use splunk for production data. For Large application installation, it need to manage more.

Verified Reviewer
Overall rating
  • Industry: Financial Services
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Best friend for debugging

Reviewed on 13/10/2022

Splunk basically makes debugging and monitoring easier and touch less. I can easily debug by...

Splunk basically makes debugging and monitoring easier and touch less. I can easily debug by starring the rolling logs from different instances in single screen.
I can monitor multiple components and multiple metrics, without running commands manually with custom plugins.

Pros

Splunk comes with lot of in-built templates for each and every feature like log visualisation, dashboarding, traces,etc This makes the developers life lot easier. I can't think of any other logging tool that is snappy as well as accurate.
I love the fact how easily I can plug it in my docker-compose to push container logs.

Cons

Even though, it offers numerous features for different needs, each feature has its own learning curve. For instance log visualisation needs querying skills, which may be in natural language but it takes bit of time to get familiar.

David
Overall rating
  • Industry: Entertainment
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Offers more than you think

Reviewed on 07/02/2018

We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening...

We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening and gives us end to end insight into our stack.

Pros

The system is highly intuitive to use. It is faster than other solutions I've used on the market and has a huge library of 3rd party plugins to get more from the system. It is easy to create scheduled searches, dashboards, reports etc. but there are a number of additional plugins (at an extra cost) to help with security, single pane of glass and metric collection.

Cons

It offers challenges for a decentralized working model. Where Splunk is centrally managed, it is easy to ensure that best practices are maintained. Where the system is opened up for an entire department to utilize and on-board their logs, it becomes more difficult. However, with some creative thinking and good process, this issue can be overcome.

Frank
Overall rating
  • Industry: Computer Software
  • Company size: 5,001–10,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 10.0 /10

Doing setup redundant servers without Splunk

Reviewed on 20/12/2020

Saved my a$$ many times. In a multi-server environment, if you don't have Splunk or something like...

Saved my a$$ many times. In a multi-server environment, if you don't have Splunk or something like it, it will be a nightmare to try and coordinate the various log files involved.

Pros

Several of our applications are distributed across multiple systems. It is the same software running on each server but doing the same job for different users. Each server would generate its own log files. When things went wrong, we used Splunk to be able to see what was going on on each server. Click a few buttons and you get two logs from two different servers listed together coordinated by time. But that leads you to discover that the issue came from a separate upstream or downstream server, then bring in those logs too . . . all coordinated by time. Don't get me wrong, the IT guys love these tools for their own enterprise reasons, but as a server stack developer, this was a resource I used OFTEN.

Cons

I never fully grokked their SQL like language. I could do basic things daily without issue. However, I often had to hit the documentation to do anything more than a simple "find this" query.

Or
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk helps us to walk in the darkness, for sure in the Prod arena

Reviewed on 18/12/2021

We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be...

We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be improved and even more useful

Pros

Dashboards feature is amazing, I use it much. Alerts and queries are easy to set up. Mostly it works fast so it's kind of Dev friendly so it's easy to onboard the new guys

Cons

Alerts should have a better way to manage it. There should be a way to promote alerts to different environments - so we will be able to set the Dev/Stg/Prod
Sometimes some things that we want to do take a while searching on the internet for a solution - they might think how to do it better - maybe some examples or better documentation

shashank
Overall rating
  • Industry: Information Technology & Services
  • Company size: 1,001–5,000 Employees
  • Used Weekly for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best Tool for Monitoring Purposes.

Reviewed on 15/04/2019

As a user of Splunk, we generally used to monitor the log provided by the server clusters belonging...

As a user of Splunk, we generally used to monitor the log provided by the server clusters belonging to a tool called API Connect. As the logs are stored in Splunk, we tally the transaction count from API Connect tool and filter the log search in Splunk with a particular search query. We can download the logs of particular time and date of API Connect servers in case of transaction count issues. We create a dashboard for all the individual API's transaction count in terms of total transaction count of all API's. In this way, it makes our work easier to find out which API has the highest transaction count. We even use Splunk to know the state of the machine. Reports generated by the Splunk helps us to find out the API with the highest response time. In this way, Splunk makes our work a lot easier as it is very fast and highly secure.

Pros

1) Accepts multiple data formats like CSV, JSON, XML
2) Does the hard work for us i.e converting machine data to a human-readable format.
3) Can create customized alerts to serve our business purpose.
4) Searching on the based on queries is pretty simple.
5) We can create dashboards to analyze and visualize our search results.
6) Can export the log content to our Personal computers.
7) Setting up plugins and integrating with any tool that needs monitoring is pretty easy.
8) Technical support for the Splunk is very quick as they have a dedicated staff for that.

Cons

I did not find any flaws with this software.

Verified Reviewer
Overall rating
  • Industry: Computer Software
  • Company size: 51–200 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 7.0 /10

Number 1 SIEM

Reviewed on 18/09/2022

I was very happy with splunk and I suggest it to everyone

I was very happy with splunk and I suggest it to everyone

Pros

I think Splunk is first and best software in the field, easy to use, does what it had promised,

Cons

pricing could be better, they could be more flexible, support is a bit slow

Verified Reviewer
Overall rating
  • Industry: Consumer Services
  • Company size: 201–500 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Software is fantastic once you get it fed the data. Setup can be a bear.

Reviewed on 09/07/2018

Software saves a great deal of time tracking down errors and issues in the network. Was able to...

Software saves a great deal of time tracking down errors and issues in the network. Was able to spot a security issue using the software we might never have even noticed otherwise.

Pros

Fast consolidation of disparate logs in an easy to search way for troubleshooting. I can find problems within my organization very quickly. Sales team was very responsive in getting me a trial license to estimate my needs.

Cons

Set up takes some time and planning. The Licensing scheme can be pretty expensive and until you've got it up and running it can be hard to estimate how much license you need.

Chintan
Overall rating
  • Industry: Information Technology & Services
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Carry out data analysis with Splunk

Reviewed on 02/01/2022

It has been a great experience working with Splunk , we have been using it since past 3 years.
It...

It has been a great experience working with Splunk , we have been using it since past 3 years.
It is integrated tool with fuse component for real time data analysis of the data flow from source system to target system

Pros

-Easy to use tool
-Simple graphical interface which makes it easy for a new user to understand the features easily
-Real time data analysis can be carried out

Cons

When we try to search for data which is more than 30 days old, then sometimes we see slowness

Verified Reviewer
Overall rating
  • Industry: Oil & Energy
  • Company size: 10,000+ Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Helps you predict IT problems

Reviewed on 23/07/2023

Splunk Enterprise's real-time monitoring keeps us ahead of potential problems. A must-have tool!

Splunk Enterprise's real-time monitoring keeps us ahead of potential problems. A must-have tool!

Pros

Splunk Enterprise is a great tool for security analytics, IT operations, and business intelligence. I especially like the way it can help me identify potential threats and improve our IT infrastructure.

Cons

The pricing for Splunk Enterprise may be out of reach for some small businesses.

André
Overall rating
  • Industry: Chemicals
  • Company size: 201–500 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Very reliable and powerful resource

Reviewed on 03/03/2021

On business side we have a lot of logs, informations provided for a very different resources, the...

On business side we have a lot of logs, informations provided for a very different resources, the most beautiful thing about Splunk is to consolidate everything on just one place, and the ease to extract this information make Splunk the most powerful resource to gather and extract data from every resource that you have logs, even if you are using Windows or Linux, Splunk covers both.

Pros

Ease of use, you can extract any kind of information using commands provided by the software vendor. The other good thing about this software is the easy implentation on the servers, and the configuration is basic.

Cons

For people that are not used to use command lines, it might be a liitle bit difficult on the beggining.

Parth
Overall rating
  • Industry: Computer Software
  • Company size: 501–1,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Monitoring Tool Splunk

Reviewed on 04/12/2021

With Splunk anything identified with the application backend logs and observing, it's extremely...

With Splunk anything identified with the application backend logs and observing, it's extremely suitable to utilize, in light of which we can make different dashboards. For server Monitoring, Splunk logs are not exceptionally accommodating. It totally depends on log explanations, assuming articulation isn't organized in standard organization, and it gives mistaken outcomes.

Pros

Splunk Light is ideal for independent on-premise organization.
Augment endpoint logging.
Can find and store logs from a wide range of resources.
Customization of dashboards.
Making applications dependent on your requirements.

Cons

Complex generally design.
Long execution time.
The instrument needs to incorporate AI to comprehend the framework logs and alarming ought to be founded on the auto learning.

Lina
Overall rating
  • Industry: Banking
  • Company size: 1,001–5,000 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Master of multiple event log data collection with excellent intrusion detection capability

Reviewed on 04/07/2022

Flexible product with extensive data collection capability for complete visibility to ensure...

Flexible product with extensive data collection capability for complete visibility to ensure effective threat investigation.

Pros

Advanced security analytics to quickly detect malicious threats within our networks and devices with rapid response and effective alert prioritization to accelerate investigation.

Cons

Great integration to collect multiple data easily and in built-threat intelligence that helps to accelerate our investigations. Full of incredible features, there is nothing to dislike.

mattt
Overall rating
  • Industry: Transportation/Trucking/Railroad
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 10.0 /10

Splunk is great for finding things in server logs

Reviewed on 09/05/2018

Pros

The server logs are all stored in the same location and you can easy subdivide them by application. So different servers or processes or whatever can be in different buckets. This makes troubleshooting easier.

Cons

Sometimes depending on far back you are trying to go the product can be a little sluggish. Beyond that nothing.

Shalinee
Overall rating
  • Industry: Information Technology & Services
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best thing for monitoring application

Reviewed on 09/10/2018

good log monitoring tool

good log monitoring tool

Pros

We are using this tool for monitoring our services log. It is easy to monitor the data using this. For each service, you can configure which log file should be shown on the UI(web). On UI, it provides lot of features like finding pattern in logs, doing analysis and generating reports and much more.

Cons

Learning is slow. Initially, it takes time to understand the reports and pattern it finds out of the log. But it's worth learning it.