TrustRadius: an HG Insights company
Splunk Enterprise Logo

Splunk Enterprise Reviews and Ratings

Rating: 8.6 out of 10
Score
8.6 out of 10

Community insights

TrustRadius Insights for Splunk Enterprise are summaries of user sentiment data from TrustRadius reviews and, when necessary, third party data sources.

Pros

Valuable Log Gathering and Summarization: Users have expressed positive opinions about Splunk's ability to gather and summarize log messages from multiple sources. Many reviewers find this feature valuable, as it allows them to easily access and analyze log data in a centralized location without the need for manual aggregation.

Simplicity and Advanced Search Capabilities: Splunk's reporting functionality is highly regarded by users for its simplicity and advanced search capabilities. Several reviewers appreciate how easy it is to use Splunk's reporting features, while also being able to perform complex searches that provide detailed insights into their data.

Effective Web Traffic Catching and Dashboards: The effectiveness of Splunk in catching web traffic and providing helpful dashboards is another aspect praised by users. Many reviewers highlight how Splunk's web monitoring capabilities enable them to track website activity effectively, while the intuitive dashboards allow for quick visualization and analysis of important metrics.

Reviews

104 Reviews

Splunk Enterprise for you

Rating: 10 out of 10
Incentivized

Use Cases and Deployment Scope

We use Splunk Enterprise for everything!It retrieves logs from everything, and although this creates storage issues, it gives us complete visibility over everything!As a result, we were able to create dashboards for better visibility.Whether it's for the network firewall or Active Directory!We can see everything that's happening in real time, as well as view a history over time and see how things have evolved.Plus, we get several alerts!Admittedly, we don't use SOAP yet, but we have been able to set up several alerts based on logs to warn us and protect us from a lot of things.It feels like being in a control tower and seeing everything that is being managed.I highly recomme

Pros

  • dashboard
  • alerting

Cons

  • cisco log !
  • Splunk base with other solution +++

Likelihood to Recommend

Price sadly but it's worth the effort!In fact, there have been so many cases where it has enabled us to solve problems quickly.Log management is so much simpler, as are visibility and reading.It helps at every level: at the start of integration, implementation, production at any time, upgrades, and bugs.In the end, we connect directly to Splunk Enterprise to find out what's going on because we have the entire chain, which allows us to find out directly instead of going through each element one by one to identify the problem.

Vetted Review
Splunk Enterprise
3 years of experience

Splunk Enterprise review

Rating: 9 out of 10
Incentivized

Use Cases and Deployment Scope

I use Splunk Enterprise in my organization and company to gather logs and data and analyze them. This tool allow us to monitor multiple apps, server and working station on multiple operating system, windows or linux or redhat.Thanks to Splunk Enterprise we can also detect any issue in our architecture or raise an alert, this allow us to be reactive when creating incident to solve any issue detected.

Pros

  • parsing
  • indexing
  • dashboarding

Cons

  • dashboard studio
  • performance
  • price

Likelihood to Recommend

Splunk Enterprise can be user friendly even for people not used to this kind of application thanks to an easy dashboard creation and alerting. It can also be used to create more complex dahsboard for specific needs. Splunk Enterprise also provide a wide range of data collector allowing us to retreive data from multiple sources and operating system.

Vetted Review
Splunk Enterprise
10 years of experience

Very Good

Rating: 10 out of 10
Incentivized

Use Cases and Deployment Scope

I use Splunk Enterprise to monitor logs from our servers and also application logs. We monitors those logs to keep a check on the server and application health (e.g., create an email alert if CPU usage is more than the threshold defined). Also, we have built many custom dashboards to display the keys metrics for applications/infrastructure.

Pros

  • collecting logs from servers
  • parsing machine logs very well
  • Build custom dashboards with visualizations

Cons

  • Support for third-party visualizations in dashboard studio.
  • More AI features in Enterprise version
  • More robust parsing for nested json data

Likelihood to Recommend

For machine/server logs, Splunk Enterprise is probably the best solution available out there in the market. It has pretty solid logs parsing capabilities. The thing is to use it as a monitoring tool and not as a data lake (to archive huge amounts of data for long periods). The custom dashboards support is also pretty solid.

Good observability

Rating: 10 out of 10

Use Cases and Deployment Scope

Splunk is our primary observability and log aggregation platform in the datacenter.

It centralizes logs from multiple systems, supports incident investigation, and provides dashboards and alerts for operational monitoring.

We also use it to analyze Tufin usage statistics and track security policy management activity.

Pros

  • well in log aggregation and search performance
  • nice dashboards
  • customization

Cons

  • Resource consumption and performance
  • Licensing and cost

Likelihood to Recommend

Splunk Enterprise is well suited for large, complex environments that require centralized log aggregation, cross-system event correlation, real-time monitoring, and security analysis. It is particularly effective for incident investigation and operational dashboards.

Splunk Enterprise review

Rating: 10 out of 10
Incentivized

Use Cases and Deployment Scope

I use Splunk Enterprise in my organization and company to gather logs and data and analyze them. This tool allow us to monitor multiple apps, server and working station on multiple operating system, windows or linux or redhat.

Thanks to Splunk Enterprise we can also detect any issue in our architecture or raise an alert, this allow us to be reactive when creating incident to solve any issue detected.

Pros

  • gather data
  • search logs
  • raise alert
  • monitore with dashboard

Cons

  • manage HUGE volume of data on a long period of time
  • better managerment of local dashboard version

Likelihood to Recommend

Few months ago, we had a complex application we monitored that had an abnormal behaviour, it was sending multiple file from few months or years ago, this was causing an issue on our plateform because it was sending a huge amount of data, causing a network saturation, thanks to Splunk Enterprise we could detect this issue quickly and manage to solve this problem quickly.

Vetted Review
Splunk Enterprise
3 years of experience

Splunk Enterprise

Rating: 8 out of 10
Incentivized

Use Cases and Deployment Scope

In my organization, I use Splunk Enterprise to monitor data from different applications to prevent errors and oversights. I also use it to create alert of my different applications when I have strange values or too much or not enough. I also use to parse data and then extract it with saved search to send it in AWS.

Pros

  • Dashboarding
  • Parsing data
  • Indexing storage
  • Transform

Cons

  • Dashboard studio
  • Pre built panel
  • Performance

Likelihood to Recommend

It is well suited to check missing files when knowing how much you should have. It is good to use Splunk Enterprise for Cyber security in case of overload that can be detected with trend. It is also great for dashboarding of supermarket trend, such as tendance over time for some article or how does someone navigate a website before buying something.

Vetted Review
Splunk Enterprise
2 years of experience

Feedback fro experienced customer

Rating: 8 out of 10
Incentivized

Use Cases and Deployment Scope

Used for Global company Log Monitoring for Business follow-up in order to analyze and prevent issues. Accurate data stored as raw data allowing us to define or update any parsing for any new / future needs? Variety of Data collect connectors from SplunkBase allowing us to access through various ways: Database, HEC, SQS, UF

Pros

  • parsing using standard connectors
  • File collect with robust buffering

Cons

  • Rolling restart cutting Search Head end-user queries !
  • No possible and robust UF Duplicate outputs with filtering capabilities in order to get bot Prod and Val environment getting real data.
  • Ingest action not robust, industrialized with CICD

Likelihood to Recommend

-Very good for Log Monitoring, saved searches, Dashboarding, data model etc

-Very bad for Industrial Metrics vizualization: ex Drilling tool curve metrics ==> Display with zoom in/out not efficient generating average curves not usable for industrial analysis.

- Very bad for Tooling alowing Business ChargeBack:

Your cost model license based is costly and you do not support your customer in order to drill down easily on data usage analysis and chargeback. Today we have problem of huge index and business consumption and we would like to charge back showing that Allocated memory (bundlesize) is full at x % used by this container same for number of searches , processing duration, S3 consumption ==> WE ARE MISSING OVERVIEW OF OUR USAGE IN ORDER TO SAVE MONEY

Vetted Review
Splunk Enterprise
7 years of experience

Splunk Enterprise Review

Rating: 7 out of 10
Incentivized

Use Cases and Deployment Scope

In our organization, We have a massive data lake.. trying to all bring it together and visiualize our insights

Pros

  • I think Splunk Enterprise is easy to use
  • In my experience, Splunk Enterprise gives speedy results
  • In my experience, Splunk Enterprise is affordable

Likelihood to Recommend

If asked, I think I am likely to recommend Splunk Enterprise to a colleague because, in my opinion, Splunk Enterprise is well suited in the applications insights space

Vetted Review
Splunk Enterprise
5 years of experience

observe

Rating: 9 out of 10
Incentivized

Use Cases and Deployment Scope

In our organization, We use Splunk Enterprise for some specific uses cases on a bespoke basis for customers

Pros

  • In my opinion, observability is done well in Splunk Enterprise

Likelihood to Recommend

If asked about Splunk Enterprise, I think I am likely to tell a colleague that, in my opinion, a couple of good Splunk Enterprise use cases : end to end observability across contact center, end to end observability of teams

From data to insights

Rating: 9 out of 10
Incentivized

Use Cases and Deployment Scope

In our organization, we use Splunk Enterprise for Insights into logs from network security products.

Pros

  • Visualize data
  • Correlation
  • Alerts

Cons

  • Native timeline graphs

Likelihood to Recommend

If asked, I think I am likely to recommend Splunk Enterprise to a colleague because, in my experience, Splunk Enterprise is Very good for dashboards and ad-hoc queries about your data.

Vetted Review
Splunk Enterprise
3 years of experience

Video reviews