What users are saying about
101 Ratings

Splunk Enterprise

<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow'>Customer Verified: Read more.</a>
191 Ratings
101 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow'>trScore algorithm: Learn more.</a>
Score 8.6 out of 101

Splunk Enterprise

<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow'>Customer Verified: Read more.</a>
191 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow'>trScore algorithm: Learn more.</a>
Score 8.5 out of 101

Add comparison

Likelihood to Recommend

Apache Spark

Spark is great as a workflow process and extract transform layer process tool. Is really good for machine learning especially for large datasets that can be processed in split file paralallelization. Spark streaming is scalable for close to real-time data workflow process.what it's not good for, is smaller subset of data processing.
Anson Abraham profile photo

Splunk Enterprise

Scenarios, where Splunk is well suited, would be a larger organization where multiple teams have their own logs and a web ops team is trying to come in and get a central location to be able to ingest and report on those logsScenarios, where Splunk wouldn't be as well suited, would be a small org where all their logs are in one place, easy to find and report on.
No photo available

Feature Rating Comparison

Security Information and Event Management (SIEM)

Apache Spark
Splunk Enterprise
8.6
Centralized event and log data collection
Apache Spark
Splunk Enterprise
9.2
Correlation
Apache Spark
Splunk Enterprise
8.0
Event and log normalization
Apache Spark
Splunk Enterprise
9.1
Deployment flexibility
Apache Spark
Splunk Enterprise
8.3
Integration with Identity and Access Management Tools
Apache Spark
Splunk Enterprise
8.0
Custom dashboards and views
Apache Spark
Splunk Enterprise
9.4
Host and network-based intrusion detection
Apache Spark
Splunk Enterprise
8.5

Pros

  • Machine Learning.
  • Data Analysis
  • WorkFlow process (faster than MapReduce).
  • SQL connector to multiple data sources
Anson Abraham profile photo
  • Splunk is great for visualizing your data in a format that can indicate trends.
  • Splunk can help you determine root cause and assimilate dissimilar data sources in a consistent manner.
  • Splunk can help you find "the needle in the haystack" problems without having to log into many different devices.
  • Splunk can be setup to look for symptoms that may cause issues in your environment and either alert report or trigger an action.
Richard Wilbert, MBA profile photo

Cons

  • Resource heavy, jobs, in general, can be very memory intensive and you will want the nodes in your cluster to reflect that.
  • Debugging, it has gotten better with every release but sometimes it can be difficult to debug an error due to ambiguous or misleading exceptions and stack traces.
No photo available
  • Splunk is not particularly hard to understand or deploy. The only problem I've really run in to is the 3-6 month use case exhaustion. Customers will have Splunk to solve a particular problem then stop once that problem is fixed. The use cases are only limited to their imagination and can blossom in the right hands.
Rick Yetter profile photo

Likelihood to Renew

No score
No answers yet
No answers on this topic
Splunk Enterprise7.7
Based on 15 answers
I think price would be the only reason why we would not renew
Clint Lavender profile photo

Usability

No score
No answers yet
No answers on this topic
Splunk Enterprise9.9
Based on 2 answers
You can literally throw in a single word into Splunk and it will pull back all instances of that word across all of your logs for the time span you select (provided you have permission to see that data). We have several users who have taken a few of the free courses from Splunk that are able to pull data out of it everyday with little help at all.
Kenneth Taitingfong profile photo

Reliability and Availability

No score
No answers yet
No answers on this topic
Splunk Enterprise10.0
Based on 1 answer
When properly setup and configured, Splunk is extremely reliable.
No photo available

Support

No score
No answers yet
No answers on this topic
Splunk Enterprise8.9
Based on 3 answers
Support from Splunk to our company is extremely good . Our team developed many dash boards , reports and alerts in Splunk which saved so many hours of our development time and made us very very efficient . We are extremely happy with current functionality provided by Splunk and have no complaints at all . I would definitely recommend it to everyone
No photo available

Implementation

No score
No answers yet
No answers on this topic
Splunk Enterprise8.0
Based on 1 answer
Engage professional service early on in the implementation
No photo available

Alternatives Considered

Even with Python, MapReduce is lengthy coding. Combination of Python with Apache Spark will not only shorten the code, but it will effectively increase the speed of algorithms. Occasionally, I use MapReduce, but Apache Spark will replace MapReduce very soon. It has many built-in and faster features.
Kartik Chavan profile photo
We've tried Sumo before and, while it did improve while we were using it, we ended up often pushing it to its limits, and at times it would fall over. The ingestion limits would at times be restrictive and our systems would generate more than it could handle, which would force us to develop a pipeline to handle logs and ensure they got to Sumo without being lost in translation.
No photo available

Scalability

No score
No answers yet
No answers on this topic
Splunk Enterprise9.1
Based on 1 answer
Splunk can scale in to the petabyte per day range which of course is awesome
Rick Yetter profile photo

Return on Investment

  • We were able to make batch job faster by 20 times as compared to MapReduce
  • With the language support like Scala, Java, and Python, easily manageable
No photo available
  • There are a lot of positive impacts that Splunk had made, we have real-time exception alerting which is very useful
  • We have report generation out of the logs which again helped us in many ways.
  • The only negative thing I can say is that it requires good learning and that takes a long time
Rounak Jangir profile photo

Pricing Details

Apache Spark

General
Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No
Additional Pricing Details

Splunk Enterprise

General
Free Trial
Yes
Free/Freemium Version
Yes
Premium Consulting/Integration Services
Entry-level set up fee?
No
Additional Pricing Details