Rubrik is cloud data management and enterprise backup software provided by Palo Alto-based Rubrik, Inc. It is a software platform that provides backup, instant recovery, archival, search, analytics, compliance, and copy data management in one secure fabric across data centers and clouds.
N/A
Splunk SOAR
Score 8.3 out of 10
N/A
Splunk now offers a security orchestration, automation, and response (SOAR) platform via its acquisition of Phantom. Splunk Security Orchestration and Automation (Splunk SOAR) provides playbook automation and is available as a standalone solution.
Rubrik is still a relatively new product when compared to other solutions which tackle total data protection. The feature set is quite broad but still needs some refinements. Most of the User Interface is quite straightforward and easy, but some areas are a bit lacking in a description of what the option is used for, or the option is missing. While making the user experience easy, many tunables aren’t present and require a Support Tunnel to be open for a Support person to make a change in the customer’s environment. Seems the first question Support always asks is if you can open a tunnel for them to remote in. Then you’re not able to monitor exactly what they’re doing.
Our company has very complex and dynamic security operations because of the large number of security tools and systems that we need to manage and coordinate. Moreover, it helps us to meet many regulatory and compliance requirements because it helps us to automate and document our security operations. We also use it to streamline our security operations and improve our response to potential threats.
Automated test restores. I would love to setup automated and random test restores on a regular basis where Rubrik's system will restore a random file or directory to a test SharePoint folder, send a full report, and provide a path to the folder for review and confirmation.
A lack of instruction It can be difficult to contact the support staff. Limited experience from current users.
It takes some effort to set up and learn new technology at first. More assistance is required from the support staff. The product's price needs to go down.
The support has been incredible. Any time we have had a question, it has always been answered within 24hrs. Also, the team is always will to hop on a Zoom call to help walk us through the dashboard and troubleshoot any issues we are having. Also, having the peace of mind that our data is protected should anything happen in our system.
As we already have a lot of clients being catered with Splunk SOAR and because Splunk SOAR is robust and efficient, we are already using it, and we have understood the product to a certain extent, I feel we are personally more enticed to use and scale it to a lot of business.
The support is top notch both tech and sales team, the tools are simple to use and yet still is feature rich. Security is top of the list, the product is sold and reliable, easy to configure and intuitive to use.
Building playbooks through the visual editor is fine for basic tasks, but once you start chaining complex logic or integrating 3rd party APIs you hit a wall that requires deep scripting knowledge.
Rubrik's brik is designed with redundancy in mind, ensuring that if one node experiences issues, others can continue to provide backup and recovery services.
We are able to automate almost every one of our use cases, even our threat-hunting, and threat intel procedures. We have 20+ playbooks and cover almost everything, even searching logs into Splunk, looking into TIP and external systems, enrichment, and collecting evidence for analysts; it can perform concurrent playbooks running.
Rubrik support has been pretty good. There have been a few issues with new releases we have experienced and are still considering if we want to make the jump to version nine. There are a few things we are concerned about which are giving us pause. That being said, support is working hard to answer our questions.
Easy to follow and very thorough. Trainer was knowledgeable and helpful answering any questions and providing detailed answers where possible. It's also nice to gain another badge :) There is also the Rubrik University online tutorials to refer back to and keep updated with new innovations. I would say the exam was very hard.
From experience the implementation was smooth and easy, like a simple plug and play format but would need coordination from your network team to be able to see the entire IT infrastructure.
Having all our backups under one umbrella made product management easier, with not need to manage myltip contracts.
The additional analysis of the data after the fact gave insights into our user data, without the need for an addition product, or the impact on live data sets.
Splunk Phantom integrates well with Splunk ES and has many integrations. One thing that I liked about XSOAR as compared to Phantom is that it has an "app-store" where you can download not only app integrations (similar to Phantom) but Playbooks and dashboards as well.
We are fine with the 1 year or 3 year support options that Rubrik has had. The support for the on-prem hardware has been great too. We've had them for quite a while (4+ years) and no end of support yet.
The playbooks are valuable. They are the core component. Being able to implement and build a code process to work through and scale out what we want to do is valuable
Before its use, analyzing each email would take at least 15 to 20 minutes, with some complex cases taking up to 30 minutes...With the automation provided by Splunk Phantom, we could significantly reduce the amount of time and human effort required to complete this task