TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Carbon Black EDR

    Score7.5 out of 10
    N/ACarbon Black EDR is an on-premise incident response and threat hunting solution designed for security operations center (SOC) teams with offline environments or on-premises requirements.N/A

    Splunk On-Call

    Score6 out of 10
    N/AFormerly known as VictorOps, Splunk On-Call is an incident response system for developers, devops and operations teams that helps reduce outage time.N/A
    Pricing
    Carbon Black EDRSplunk On-Call
    Editions & Modules
    No answers on this topic
    No answers on this topic
    Offerings
    Pricing Offerings
    Carbon Black EDRSplunk On-Call
    Free Trial
    NoNo
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details——
    More Pricing Information
    Community Pulse
    Carbon Black EDRSplunk On-Call
    Considered Both Products
    Broadcom
    No answer on this topic
    Cisco
    No answer on this topic
    Key User Insights
    Would buy again
    No answers on this topic
    90%
    Would buy again
    9 Answers
    Delivers good value for the price
    No answers on this topic
    89%
    Delivers good value for the price
    8 Answers
    Happy with the feature set
    No answers on this topic
    90%
    Happy with the feature set
    9 Answers
    Lived up to sales and marketing promises
    No answers on this topic
    100%
    Lived up to sales and marketing promises
    5 Answers
    Implementation went as expected
    No answers on this topic
    100%
    Implementation went as expected
    8 Answers
    Features
    Carbon Black EDRSplunk On-Call
    Endpoint Security
    Comparison of Endpoint Security features of Carbon Black EDR and Splunk On-Call
    Feature
    Carbon Black EDR
    8.0
    1 Ratings
    8% below category average
    Splunk On-Call
    -
    Ratings
    Anti-Exploit Technology8.01 Ratings00 Ratings
    Infection Remediation8.01 Ratings00 Ratings
    Threat Intelligence
    Comparison of Threat Intelligence features of Carbon Black EDR and Splunk On-Call
    Feature
    Carbon Black EDR
    7.4
    1 Ratings
    13% below category average
    Splunk On-Call
    -
    Ratings
    Network Analytics8.01 Ratings00 Ratings
    Threat Recognition9.01 Ratings00 Ratings
    Vulnerability Classification8.01 Ratings00 Ratings
    Automated Alerts and Reporting7.01 Ratings00 Ratings
    Threat Analysis6.01 Ratings00 Ratings
    Threat Intelligence Reporting6.01 Ratings00 Ratings
    Automated Threat Identification8.01 Ratings00 Ratings
    Threat Hunting Tools
    Comparison of Threat Hunting Tools features of Carbon Black EDR and Splunk On-Call
    Feature
    Carbon Black EDR
    7.5
    1 Ratings
    10% below category average
    Splunk On-Call
    -
    Ratings
    Scanning for Vulnerabilities8.01 Ratings00 Ratings
    Behavioral Analytics7.01 Ratings00 Ratings
    User Ratings
    Carbon Black EDRSplunk On-Call
    Likelihood to Recommend
    7.0
    (3 ratings)
    6.0
    (11 ratings)
    Likelihood to Renew
    -
    (0 ratings)
    9.0
    (1 ratings)
    Usability
    6.0
    (1 ratings)
    7.0
    (2 ratings)
    Support Rating
    -
    (0 ratings)
    5.0
    (3 ratings)
    Implementation Rating
    -
    (0 ratings)
    9.0
    (1 ratings)
    User Testimonials
    Carbon Black EDRSplunk On-Call
    Likelihood to Recommend
    Broadcom
    Carbon Black was an effective system for automatic remediation. It was difficult to utilize regularly, however, and did give a number of false positive in our usage. However, it was integral and exceedingly important and performed as it was designed to. The user interface was not terribly intuitive, and while abundant technical information was available regarding the threats we were experiencing and remediating, the surface-level pane contained more information than was pragmatic given a large number of safeguarded systems and too few specialists.
    Incentivized
    Read full review
    Cisco
    I recommend Splunk on-call is more suited where there are high incident queues; multiple teams need to be involved in handling a P1 severity issue. Multiple levels of escalation are needed environment where automated action is required. I recommend the solution for large-scale & medium-scale business units. For small-scale business units, I see the functional value is less.
    Incentivized
    Read full review
    Pros
    Broadcom
    • Helps in tracking network connections made by machine
    • Process Tree which show series of workflow which clear and easy to understand.
    • Enables to go live into the machine and investigate
    Incentivized
    Read full review
    Cisco
    • Easily assign work/tickets between multiple users
    • Supports a wide variety of software integrations
    • Easy to manage scheduling tool
    • As part of the Splunk toolset, provides detailed levels of data analysis at our engineers fingertips
    Incentivized
    Read full review
    Cons
    Broadcom
    • Needs more defensive abilities
    Incentivized
    Read full review
    Cisco
    • The user interface can be furthe improved
    • Licensing needs to be simplified and packaged as a bundle with other Splunk product like Enterprise Security
    • Customer outreach can be further enhanced
    Incentivized
    Read full review
    Likelihood to Renew
    Broadcom
    No answers on this topic
    Cisco
    It was a good solution with a good comprimise prize/features for our use cases
    Incentivized
    Read full review
    Usability
    Broadcom
    The interface is crowded and overly technical, and took intensive learning efforts to understand and use granularly, effectively. We enjoyed using the product, but did not see a clear advantage in this area to competitors--most platforms work the same way and have a similar structure. Its threat detection capability was strong
    Incentivized
    Read full review
    Cisco
    Not a lot of love given to VO since the acquisition by Splunk from my POV
    Incentivized
    Read full review
    Support Rating
    Broadcom
    No answers on this topic
    Cisco
    VictorOps support has proven excellent for us. Because it is such a widely used tool, there is a lot of documentation on usage, and a large community of users to lean on. Also, many engineers have had experience working with VictorOps already, and the tool is so easy to setup / manage that much support isn't really necessary.
    Incentivized
    Read full review
    Implementation Rating
    Broadcom
    No answers on this topic
    Cisco
    It was a good solution with a good comprimise prize/features for our use cases
    Incentivized
    Read full review
    Alternatives Considered
    Broadcom
    It has better UI.
    Incentivized
    Read full review
    Cisco
    Splunk On-Call integrates better with our Splunk Cybersecurity and Reporting products due to the same family tree of the same eco system. We were previously using built-in on-call from individual applications and while adequate, they were difficult to manage and support SLA varied greatly across different applications. In addition we also used xMatters which did not integrate well with SAP products nor Citrix products so we were still using more than a single on-call product which was solved by implementing Splunk On-Call
    Incentivized
    Read full review
    Return on Investment
    Broadcom
    • Increased visibility across the enterprise for threats
    • Rapid ability to investigate and remediate threats
    Incentivized
    Read full review
    Cisco
    • It runs our on call rotation so it makes it easy for us.
    • It integrates with Slack so it makes it easy for us to manage through Slack.
    Incentivized
    Read full review
    ScreenShots