What users are saying about
<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
235 Ratings
2 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8.8 out of 101

Splunk Enterprise

<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
235 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8.7 out of 101

Likelihood to Recommend

Anomali Threat Platform

Being the best threat intelligence platform/tool on the market, it is fantastic in terms of performance and it has taken a lot of burden of curating and weeding through false positives off of our team freeing them up to focus on manual threat hunting and content building.
No photo available

Splunk Enterprise

Splunk is a great data analytics tool for you if you have a large amount of data to analyze. Splunk provides accurate and real-time analysis of data through its dashboard. But if you not quite a technical person or not willing to learn Splunk before using it, I will not recommend it to you. Also, Splunk is less appropriate for static data.
Rahul Shinde profile photo

Feature Rating Comparison

Security Information and Event Management (SIEM)

Anomali Threat Platform
Splunk Enterprise
8.7
Centralized event and log data collection
Anomali Threat Platform
Splunk Enterprise
9.2
Correlation
Anomali Threat Platform
Splunk Enterprise
8.5
Event and log normalization
Anomali Threat Platform
Splunk Enterprise
9.0
Deployment flexibility
Anomali Threat Platform
Splunk Enterprise
8.0
Integration with Identity and Access Management Tools
Anomali Threat Platform
Splunk Enterprise
7.8
Custom dashboards and views
Anomali Threat Platform
Splunk Enterprise
9.2
Host and network-based intrusion detection
Anomali Threat Platform
Splunk Enterprise
8.8

Pros

Anomali Threat Platform

  • Fantastic UI
  • STAXXX for sharing intelligence
  • Threat Intelligence feeds
  • Automation and collaboration cuts work down for the analysts
No photo available

Splunk Enterprise

  • Parsing data without manual intervention is a true time saver. Not to say you can't tweak the parsing, but unlike my experiences with the ELK stack, Splunk's ingestion and parsing is so good you can focus on other priorities.
  • Splunk offers many free technology add-ons that provides real value immediately. For example, the Distributed Management Console (DMC) helps pull all the Splunk Architecture management together in one set of dashboards. To me, this is a true differentiator compared to its competitors.
  • Searching for data nuggets is fast. Even dense datasets returns results surprisingly fast.
  • Splunk works well with external data sources too. DBConnect is a feature that allows Splunk to interact with an existing data warehouse. So there's no need to move legacy data into Splunk indices since you can just use a SQL-like (dbquery) command to pull the data in for analysis.
No photo available

Cons

Anomali Threat Platform

No answers on this topic

Splunk Enterprise

  • We are using Splunk 6.0 version which is better in terms of performance as compared to its older versions, but it slows down, started using more server resources like memory, cpu time etc than expected, I guess this is one area where improvement is needed.
  • Splunk queries are slightly complex when it comes to new or less experienced people, if we can make it more simple that will be awesome. But I must say it is doing its job very well.
No photo available

Likelihood to Renew

Anomali Threat Platform

No score
No answers yet
No answers on this topic

Splunk Enterprise

Splunk Enterprise 10.0
Based on 16 answers
Over time, Splunk becomes a part of the core business and the usefulness grows as the amount of data ingested grows.
Rick Yetter profile photo

Usability

Anomali Threat Platform

No score
No answers yet
No answers on this topic

Splunk Enterprise

Splunk Enterprise 9.0
Based on 3 answers
You can literally throw in a single word into Splunk and it will pull back all instances of that word across all of your logs for the time span you select (provided you have permission to see that data). We have several users who have taken a few of the free courses from Splunk that are able to pull data out of it everyday with little help at all.
Kenneth Taitingfong profile photo

Reliability and Availability

Anomali Threat Platform

No score
No answers yet
No answers on this topic

Splunk Enterprise

Splunk Enterprise 10.0
Based on 1 answer
When properly setup and configured, Splunk is extremely reliable.
No photo available

Support

Anomali Threat Platform

No score
No answers yet
No answers on this topic

Splunk Enterprise

Splunk Enterprise 9.0
Based on 4 answers
Support has been good and prompt when needed.
No photo available

Implementation

Anomali Threat Platform

No score
No answers yet
No answers on this topic

Splunk Enterprise

Splunk Enterprise 9.0
Based on 2 answers
Smooth without too many major issues.
No photo available

Alternatives Considered

Anomali Threat Platform

No answers on this topic

Splunk Enterprise

Loggly, LogLogic, AppSumo. Every one of these products have a scalability problem beyond the terabyte range and gets tremendously expensive in the long run keeping data in the cloud
Rick Yetter profile photo

Scalability

Anomali Threat Platform

No score
No answers yet
No answers on this topic

Splunk Enterprise

Splunk Enterprise 9.1
Based on 1 answer
Splunk can scale in to the petabyte per day range which of course is awesome
Rick Yetter profile photo

Return on Investment

Anomali Threat Platform

  • After the Initial startup cost, it has overall had a positive impact by increasing efficiency of the team and freeing up analysts to do manual threat hunting
No photo available

Splunk Enterprise

  • There are a lot of positive impacts that Splunk had made, we have real-time exception alerting which is very useful
  • We have report generation out of the logs which again helped us in many ways.
  • The only negative thing I can say is that it requires good learning and that takes a long time
Rounak Jangir profile photo

Pricing Details

Anomali Threat Platform

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Splunk Enterprise

General

Free Trial
Yes
Free/Freemium Version
Yes
Premium Consulting/Integration Services
Entry-level set up fee?
No

Add comparison