BigPanda is designed to enable enterprise IT to intelligently automate and scale service operations to meet the complex demands of the modern datacenter. The vendor says their algorithmic service operations platform turns IT noise from fragmented clouds, teams, applications and monitoring tools into actionable insights to speed the resolution of IT incidents. Customers include Intel, Workday, News Corp, Macy’s and Cisco.
N/A
Splunk Cloud Platform
Score 8.3 out of 10
N/A
Splunk Cloud Platform is a data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts.
If the organization has a proper CMDB asset record then BigPanda features can be utilized to their true potential as it has alert correlation capability. The alert can be redirected to the proper support team using the auto-share feature. This wouldn't be the case where asset records are not updated and the Operations have to manually assign the alerts to support groups.
Splunk is excellent when all your data is in one location. Its ability to correlate all that data is intuitive (once the hurdle of learning the query language is overcome). It is also easy to standardize the presentation of information to the company. When data is siloed/standalone, other systems can be cheaper and faster to implement.
This SIEM consolidates multiple data points and offers several features and benefits, creating custom dashboards and managing alert workflows.
Splunk Cloud provides a simple way to have a central monitoring and security solution. Though it does not have a huge learning curve, you should spend some time learning the basics.
Splunk Cloud enables me to create and schedule statistical reports on network use for Management.
Overall, it is very usable. I would like if recent searches were saved for longer because I always have to refer to my notes when I'm looking for something specific and it's been a few weeks. But that's a small issue, and the actual search and browsing interface is easy to use and powerful.
Splunk Cloud support is sorely lacking unfortunately. The portal where you submit tickets is not very good and is lacking polish. Tickets are left for days without any updates and when chased it is only sometimes you get a reply back. I get the feeling the support team are very understaffed and have far too much going on. From what I know, Splunk is aware of this and seem to be trying to remedy it.
TrueSight didn't provide many customization options. The features provided were primitive as compared to BigPanda. TrueSight was being used just for alert visibility and assignment to a proper support group from a single console. Although Moogsoft had similar features as compared to BigPanda, the user administration and ease of use were a bit complicated. BigPanda provides a much simpler user interface.
Splunk Cloud blows Sumo Logic out of the water. The experience is night and day. We went from several highly stressed IT security professionals who were unsure if the data they were getting was valuable, to very happy IT security professionals who can now be more proactive and get all the information they need.