What users are saying about
17 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>Score 6.8 out of 100
Based on 17 reviews and ratings
374 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>Score 8.9 out of 100
Based on 374 reviews and ratings
Feature Set Ratings
Security Information and Event Management (SIEM)
ITM
Feature Set Not Supported
N/A

9.0
Splunk Enterprise
90%
Splunk Enterprise ranks higher in 13/13 features
Splunk Enterprise ranks higher in 13/13 features
Centralized event and log data collection
N/A
0 Ratings

9.4
94%
50 Ratings
Correlation
N/A
0 Ratings

9.8
98%
49 Ratings
Event and log normalization/management
N/A
0 Ratings

9.6
96%
98 Ratings
Deployment flexibility
N/A
0 Ratings

9.4
94%
46 Ratings
Integration with Identity and Access Management Tools
N/A
0 Ratings

9.2
92%
46 Ratings
Custom dashboards and workspaces
N/A
0 Ratings

9.8
98%
100 Ratings
Host and network-based intrusion detection
N/A
0 Ratings

8.0
80%
35 Ratings
Data integration/API management
N/A
0 Ratings

9.0
90%
2 Ratings
Behavioral analytics and baselining
N/A
0 Ratings

7.5
75%
2 Ratings
Rules-based and algorithmic detection thresholds
N/A
0 Ratings

9.5
95%
2 Ratings
Response orchestration and automation
N/A
0 Ratings

7.0
70%
2 Ratings
Reporting and compliance management
N/A
0 Ratings

9.5
95%
2 Ratings
Incident indexing/searching
N/A
0 Ratings

9.0
90%
2 Ratings
Attribute Ratings
- Splunk Enterprise is rated higher in 1 area: Likelihood to Recommend
Likelihood to Recommend
2.0
ITM
20%
1 Rating

9.3
Splunk Enterprise
93%
67 Ratings
Likelihood to Renew
ITM
N/A
0 Ratings

10.0
Splunk Enterprise
100%
17 Ratings
Usability
ITM
N/A
0 Ratings

9.0
Splunk Enterprise
90%
3 Ratings
Availability
ITM
N/A
0 Ratings

10.0
Splunk Enterprise
100%
2 Ratings
Support Rating
ITM
N/A
0 Ratings

8.4
Splunk Enterprise
84%
33 Ratings
Implementation Rating
ITM
N/A
0 Ratings

9.0
Splunk Enterprise
90%
4 Ratings
Product Scalability
ITM
N/A
0 Ratings

9.1
Splunk Enterprise
91%
1 Rating
Likelihood to Recommend
ITM
If you are looking for a software that looks decent but is not something you truly rely on, this is it. I have had bad experiences with IBM Tivoli Monitoring reporting on system errors that were not evident on the systems themselves at all. There is a lot of specific alerting you can set up which is nice.

Verified User
Administrator in Information Technology
Education Management Company, 51-200 employeesSplunk Enterprise
Pros: Splunk is very well suited if you have multiple log sources of related data. All of them can be correlated and tasks can be automated based on the requirement. Other than alerts, Splunk can also run a specific script of your choice, based on some defined conditions. Cons: If you have a few logs but a large number of log sources, Splunk can be very expensive.
Security Analyst
University of Colorado DenverHigher Education, 5001-10,000 employees
Pros
ITM
- The GUI is easy to read.
- The software is fairly easy to configure.
- Almost real-time.

Verified User
Administrator in Information Technology
Education Management Company, 51-200 employeesSplunk Enterprise
- Real-time + Scheduled alerts - i-e you can set up alerts which are actively monitoring your logs
- Pretty good response time for search results. With our key/value logging, Splunk makes it blazing fast to query the data.
- Dashboards provide insights into historical data
- Love how Splunk indexes all of the data and provides keys to search on
Engineering Tech Lead
Qventus, IncHospital & Health Care, 51-200 employees
Cons
ITM
- The software is not reliable at all.
- Reports errors that are false-negatives.
- Hard to configure alarms/alerts.
- Bulky installation (takes up quite a bit of space).

Verified User
Administrator in Information Technology
Education Management Company, 51-200 employeesSplunk Enterprise
- At times some queries can run slowly if indices are not on a portion of the query you use.
- Setup time initially can be difficult if your logs aren't stored in common locations or in a common way to write the log.
- Ability to ingest logs from different locations without having to change code to put logs in a certain place (pro and con).
- Searches can be a bit more difficult to look through if your log isn't pulled in a manner that is easy to read through splunk.

Verified User
Engineer in Engineering
Computer Software Company, 201-500 employeesPricing Details
ITM
General
Free Trial
—Free/Freemium Version
—Premium Consulting/Integration Services
—Entry-level set up fee?
No
Starting Price
—Splunk Enterprise
General
Free Trial
Yes
Free/Freemium Version
Yes
Premium Consulting/Integration Services
—Entry-level set up fee?
No
Starting Price
—Likelihood to Renew
ITM
No score
No answers yet
No answers on this topic
Splunk Enterprise
Splunk Enterprise 10.0
Based on 17 answers
We are using Splunk extensively in our projects and we have recently upgraded to Splunk version 6.0 which is quite efficient and giving expected results. We keep track of updates and new features Splunk introduces periodically and try to introduce those features in our day to day activities for improvement in our reporting system and other tasks.

Verified User
Consultant in Information Technology
Retail Company, 10,001+ employeesUsability
ITM
No score
No answers yet
No answers on this topic
Splunk Enterprise
Splunk Enterprise 9.0
Based on 3 answers
You can literally throw in a single word into Splunk and it will pull back all instances of that word across all of your logs for the time span you select (provided you have permission to see that data). We have several users who have taken a few of the free courses from Splunk that are able to pull data out of it everyday with little help at all.
Splunk Architect / Engineer
CRGT Inc.Information Technology and Services, 1001-5000 employees
Reliability and Availability
ITM
No score
No answers yet
No answers on this topic
Splunk Enterprise
Splunk Enterprise 10.0
Based on 2 answers
When properly setup and configured, Splunk is extremely reliable.

Verified User
Engineer in Other
Computer Software Company, 1001-5000 employeesSupport Rating
ITM
No score
No answers yet
No answers on this topic
Splunk Enterprise
Splunk Enterprise 8.4
Based on 33 answers
Splunk maintains a well resourced support system that has been consistent since we purchased the product. They help out in a timely manner and provide expert level information as needed. We typically open cases online and communicate when possible via e-mail and are able to resolve most issues with that method.

Verified User
Engineer in Information Technology
Information Technology & Services Company, 201-500 employeesImplementation Rating
ITM
No score
No answers yet
No answers on this topic
Splunk Enterprise
Splunk Enterprise 9.0
Based on 4 answers
Smooth without too many major issues.

Verified User
Consultant in Information Technology
Transportation/Trucking/Railroad Company, 1001-5000 employeesAlternatives Considered
ITM
We selected IBM Tivoli Monitoring as a bundle deal, other than that I would have probably gone with another vendor. We use Brocade Network Advisor for our SAN also which I would suggest to anyone over this software. The software has not been that reliable for me since we started using it.

Verified User
Administrator in Information Technology
Education Management Company, 51-200 employeesSplunk Enterprise
I wanted to learn a new language that I can quickly master and implement. Splunk is easy, fun to use and best of all, it can be developed in hours not days or weeks. Splunk is fundamentally a programming language that is minimal but yet powerful enough to collect, analyze and visualize data.

Verified User
Professional in Information Technology
Investment Management Company, 1001-5000 employeesScalability
ITM
No score
No answers yet
No answers on this topic
Splunk Enterprise
Splunk Enterprise 9.1
Based on 1 answer
Splunk can scale in to the petabyte per day range which of course is awesome
Regional Director
ePlus inc.Information Technology and Services, 501-1000 employees
Return on Investment
ITM
- I would not purchase this again.
- Other software monitoring tools have been more reliable and easier to manage.
- Difficult to manage, if you patch the server the software is installed on and have to reboot it, IBM Tivoli Monitoring does not come up clean.

Verified User
Administrator in Information Technology
Education Management Company, 51-200 employeesSplunk Enterprise
- Overall very positive. It has provided visibility to what is going on within our network.
- One drawback is the time it takes to get up to speed with the application, but this is up to the user, and Splunk education is excellent.
- In my field, IT Security, there are few other friends to have in your back pocket better than Splunk. They are just that good.

Verified User
Manager in Information Technology
Higher Education Company, 501-1000 employees