Great if you have the money
October 24, 2023

Great if you have the money

Anonymous | TrustRadius Reviewer
Score 7 out of 10
Vetted Review
Verified User

Software Version

Splunk Light (legacy)

Overall Satisfaction with Splunk Enterprise

We use Splunk Enterprise as a SIEM and a separate pool to use for medical record auditing. The SIEM catalogues information from multiple courses to provide efficiency and security data to the organization. Our medical record audit system is a custom written Splunk Enterprise app that takes audits from our EHR to determine suspicious activities
  • Searching of information.
  • Report building
  • Flexibility
  • Cost
  • Easier guides
  • Data normalization.
  • Too expensive in my opinion.
We used this first but are considering moving away due to log space limitations because of cost.

Do you think Splunk Enterprise delivers good value for the price?

No

Are you happy with Splunk Enterprise's feature set?

Yes

Did Splunk Enterprise live up to sales and marketing promises?

Yes

Did implementation of Splunk Enterprise go as expected?

Yes

Would you buy Splunk Enterprise again?

No

Primary issue with Splunk Enterprise is cost. The licenses can get extremely expensive very quickly in my opinion. If the organization can afford to have all of their data in it then the program is amazing. We have been able to solve multiple problems or find things that would normally take hours within seconds with the tool

Splunk Enterprise Feature Ratings

Centralized event and log data collection
7
Correlation
4
Event and log normalization/management
4
Deployment flexibility
9
Integration with Identity and Access Management Tools
8
Custom dashboards and workspaces
8
Host and network-based intrusion detection
Not Rated
Log retention
6
Data integration/API management
10
Behavioral analytics and baselining
Not Rated
Rules-based and algorithmic detection thresholds
Not Rated
Response orchestration and automation
Not Rated
Reporting and compliance management
Not Rated
Incident indexing/searching
10