Exabeam Fusion vs. Splunk User Behavior Analytics (UBA)

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Exabeam Fusion
Score 7.7 out of 10
N/A
Exabeam headquartered in San Mateo, Exabeam Fusion, a SIEM + XDR. The vendor states the modular Exabeam platform allows analysts to collect unlimited log data, use behavioral analytics to detect attacks, and automate incident response. The Exabeam platform can be deployed on-premise or from the cloud. Exabeam can also integrate information from the Exabeam Threat Intelligence Service, or into a third-party SIEM.N/A
Splunk User Behavior Analytics (UBA)
Score 5.6 out of 10
N/A
Splunk supplies security analytics as a standalone solution or priced as an add-on for users of its popular SIEM products, to protect enterprises against unknown threats and malicious behavior, via the Splunk User Behavior Analytics (UBA) application.N/A
Pricing
Exabeam FusionSplunk User Behavior Analytics (UBA)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Exabeam FusionSplunk User Behavior Analytics (UBA)
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Exabeam FusionSplunk User Behavior Analytics (UBA)
Top Pros
Top Cons
Best Alternatives
Exabeam FusionSplunk User Behavior Analytics (UBA)
Small Businesses

No answers on this topic

ActivTrak
ActivTrak
Score 8.8 out of 10
Medium-sized Companies
InsightIDR
InsightIDR
Score 8.6 out of 10
ActivTrak
ActivTrak
Score 8.8 out of 10
Enterprises
InsightIDR
InsightIDR
Score 8.6 out of 10
Darktrace
Darktrace
Score 8.7 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Exabeam FusionSplunk User Behavior Analytics (UBA)
Likelihood to Recommend
8.5
(2 ratings)
10.0
(2 ratings)
Usability
9.0
(2 ratings)
-
(0 ratings)
Support Rating
9.0
(2 ratings)
9.0
(1 ratings)
User Testimonials
Exabeam FusionSplunk User Behavior Analytics (UBA)
Likelihood to Recommend
Exabeam
As a SIEM tool for investigations, Exabeam is the best in class. The AI assigns numeric values to observed logs them presents high scores to the analyst in a simple dashboard. We can see what is a real threat and ignore so many false positives. Exabeam is the best SIEM was used from an alert fatigue perspective. The simple interface allows other teams not just InfoSec to utilize the tool; helpdesk for asset diagnoses, HR for staffing questions, etc.
Read full review
Splunk
Splunk User Behavior Analytics application is necessary when any company wants to capture the threat based on user behavior instead of just counting the number of occurrences of particular event. With Splunk UBA, we can analyse number of anomalies captured and which in turn creating threats which are nearly true positive.
Read full review
Pros
Exabeam
  • Fast search times, unlike other competing solutions.
  • The ability for engineers to obtain access to the command line interface for troubleshooting, at least for on-premise deployments.
  • License is suitable for organisations with lots of logs to ingest.
  • Hardware required for on premise deployments is well supported.
Read full review
Splunk
  • Monitor and troubleshoot for any system errors.
  • Get the insights on application data sets and do some predictive analysis.
Read full review
Cons
Exabeam
  • More and better drop-down menus, some items in threat hunter require you know subsets.
  • Less dashboards, combine AA and DL without having separate logins.
  • More complete playbooks are already built out. You have the structure set up for templates like malware and phishing, go further and completely build them out from start to finish, most companies would just use them and not personalize their configurations.
  • Quarterly health checkup diagnostics of systems sent out to users.
Read full review
Splunk
  • Performance-wise, it can be improved. Queries take a long time.
  • Dataset exploration - More data visualization charts can be added.
Read full review
Usability
Exabeam
Exabeam is very good at processing lots of logs without excessive licensing costs. It has a professional support team that's very quick to resolve any issues and provides custom parsers quickly and enables our analysts to search vast data sets without having to wait long for results to be returned. The product is getting more mature with new features every major release.
Read full review
Splunk
No answers on this topic
Support Rating
Exabeam
Exabeam Fusion has so many diffferent out reach meetings, webinars, community virtual coffees, and events that you can always stay abreast of what if happening and get new ideas for use cases. Their support actually answers their phones and can respond in chat instantly. With our cloud deployment Exabeam support teams can instantly see our systems and help us.
Read full review
Splunk
No answers on this topic
Alternatives Considered
Exabeam
No answers on this topic
Splunk
Easier we were using Splunk Enterprise on heavy forwarder on which all the add-on were installed and were using Splunk Cloud with respect to search head and indexers stack. And with Splunk Enterprise Security premium app, we were relying on correlation rules which were throwing more number of false positive but after implementing Splunk UBA, we are now getting real-time true positive threat or incidents.
Read full review
Return on Investment
Exabeam
  • Reduced time to triage alerts.
  • Reduced number of alerts which need escalation to senior tiers.
  • The ability for analysts to quickly run playbooks for additional information and enrichment.
  • Ability to retain data for longer periods for forensics purposes.
  • Improved search performance compared with other SIEM solutions.
Read full review
Splunk
  • Fewer team members to work on real threats.
  • Less time required to deal with real incidents.
  • Easy to implement across the network.
Read full review
ScreenShots