Skip to main content
TrustRadius
Splunk Enterprise

Splunk Enterprise

Overview

What is Splunk Enterprise?

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

Read more
Recent Reviews

Splunk enterprise stable solution

7 out of 10
January 05, 2024
Splunk Enterprise is used in the company by the IT department. Mainly to monitor security events on process-relevant systems where the …
Continue reading

TrustRadius Insights

Valuable Log Gathering and Summarization: Users have expressed positive opinions about Splunk's ability to gather and summarize log …
Continue reading

Great if you have the money

7 out of 10
October 24, 2023
We use Splunk Enterprise as a SIEM and a separate pool to use for medical record auditing. The SIEM catalogues information from multiple …
Continue reading

Real-time smart meters

9 out of 10
August 17, 2021
Incentivized
Splunk is being using to track the status of electric utility smart meters which record customer energy usage. Smart meters send power …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 13 features
  • Custom dashboards and workspaces (54)
    8.5
    85%
  • Centralized event and log data collection (53)
    6.5
    65%
  • Event and log normalization/management (53)
    6.0
    60%
  • Correlation (52)
    6.0
    60%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Splunk Enterprise?

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

40 people also want pricing

Alternatives Pricing

What is Blumira?

Blumira’s cloud SIEM platform offers both automated threat detection and response, enabling organizations of any size to more defend against cybersecurity threats in near real-time. It's goal is to ease the burden of alert fatigue, complexity of log management and lack of IT visibility.

Return to navigation

Product Demos

Splunk Incident Review Demo

YouTube

Splunk Threat Intelligence Demo

YouTube

Splunk Enterprise Security | Splunk Enterprise Installation | Splunk Training | Edureka

YouTube
Return to navigation

Features

Security Information and Event Management (SIEM)

Security Information and Event Management is a category of security software that allows security analysts to look at a more comprehensive view of security logs and events than would be possible by looking at the log files of individual, point security tools

7.4
Avg 7.8
Return to navigation

Product Details

What is Splunk Enterprise?

Splunk Enterprise enables users to find out what is happening in a business and take meaningful action. It automates the collection, indexing and alerting of machine data that's critical to operations, so that users can uncover the actionable insights from data — no matter the source or format. Leverage artificial intelligence and machine learning for predictive and proactive business decisions.

Splunk Enterprise Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

SolarWinds Loggly and LogRhythm NextGen SIEM Platform are common alternatives for Splunk Enterprise.

Reviewers rate Incident indexing/searching highest, with a score of 8.9.

The most common users of Splunk Enterprise are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(455)

Community Insights

TrustRadius Insights are summaries of user sentiment data from TrustRadius reviews and, when necessary, 3rd-party data sources. Have feedback on this content? Let us know!

Valuable Log Gathering and Summarization: Users have expressed positive opinions about Splunk's ability to gather and summarize log messages from multiple sources. Many reviewers find this feature valuable, as it allows them to easily access and analyze log data in a centralized location without the need for manual aggregation.

Simplicity and Advanced Search Capabilities: Splunk's reporting functionality is highly regarded by users for its simplicity and advanced search capabilities. Several reviewers appreciate how easy it is to use Splunk's reporting features, while also being able to perform complex searches that provide detailed insights into their data.

Effective Web Traffic Catching and Dashboards: The effectiveness of Splunk in catching web traffic and providing helpful dashboards is another aspect praised by users. Many reviewers highlight how Splunk's web monitoring capabilities enable them to track website activity effectively, while the intuitive dashboards allow for quick visualization and analysis of important metrics.

Confusing User Interface: Some users have reported that the user interface in Splunk can be perplexing, leading to difficulties in quickly performing tasks and navigating the software.

Limited Integration with Excel: Users have expressed their desire for improved integration between Splunk and Excel when it comes to creating reports and dashboards. They feel that better connectivity and seamless data transfer would enhance their workflow.

Steep Learning Curve: Several users have mentioned the complexity of Splunk's architecture, requiring a dedicated team of engineers to effectively manage and optimize its performance. This steep learning curve can pose challenges for new users who may need additional time and resources to fully grasp the intricacies of the platform.

Based on user reviews, the following recommendations emerged for using Splunk:

  • Ensure the correct subscription: Users emphasized the importance of having the correct subscription for Splunk to avoid login issues and fully utilize its features. They recommend careful planning of the deployment and learning as much as possible before implementing a large installation.

  • Thoroughly investigate anomalies: While Splunk's great dashboards for troubleshooting are praised, users advise against relying solely on system alerts generated by Splunk. They suggest continuing to investigate any anomalies and carefully setting up sources and background data in Splunk.

  • Utilize Splunk's log analysis capabilities: Many users recommend Splunk as a valuable tool for log analysis and improving the quality of current processes. They find it helpful for debugging integration issues and consider it suitable for large-scale applications/systems. Users appreciate its ability to connect to individual boxes and view multiple logs simultaneously.

It should be noted that some users suggest that there may be better and cheaper alternatives for small to medium-sized businesses, while others propose improvements to the search result UI and pricing structure to attract more users in the industry.

Attribute Ratings

Reviews

(51-69 of 69)
Companies can't remove reviews or game the system. Here's why
Sumant Murke | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Spunk is a great log analyzing tool if the data is quite large and accepts widely used data format. It provides accurate real time analyzing. Most importantly, it is extensible. The problem with the free version is the data indexing limit whereas the professional version is quite costly for an individual.
Kenneth Taitingfong | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Splunk is well suited in both small and very large environments almost regardless of the types of devices. However, depending on how Splunk is architected, it can require a number of devoted engineers to onboard, normalize, and present the data. So for organizations that are unable to-provide dedicated resources, the day-to-day operations and backend duties can be overwhelming. Since Splunk is so flexible, it's easy to overwhelm its available resources when a large number of inefficient searches are running. Splunk users need to be trained to not run "sloppy" searches. The community help forums are a wealth of information but in some cases, without professional support, you're going to be lost. The Splunk licensing can also be costly and in some situations, Splunk virtual environments don't perform well.
February 25, 2015

Good Tool for log mining

Ajinkya Karande | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
For queries with more than a week's data usually will time-out also sometimes query doing lot of things for a days' worth data can time out. There are options where the process can be executed in the background but there isn't a way of knowing if the job failed to fetch the data.
Score 5 out of 10
Vetted Review
Verified User
Incentivized
Price is the biggest draw back for us. We could not justify the cost especially when there are alternate products that cost less and even free products that do most of what we want out of Splunk.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
When a company has a lot of services with a lot of logging, Splunk is very useful to find anything you want. Basically, we can see it as grep, plus there are a lot of libraries to manipulate data. If you have a small company with few products, using Splunk could be an overhead.
Score 9 out of 10
Vetted Review
Verified User
Splunk is very well suited to our ecosystem. We have very complex distributed SOA based environment where applications are running on multiple jvm's configured on multiple servers to support high traffic load. Splunk has made everything transparent and now we can dig deep to figure out problems in no time. With Splunk, performance monitoring has reached the level where we are able to capture minor details, do analysis and take steps to improve.
Bryan Ignatow | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Its the Swiss army knife of log collection and searching. I'd recommend it wholeheartedly. I consider it to be the gold standard for products in this industry. Working with the vendor is easy, as they have a very open and helpful attitude. And you can try the product for free to get a feel for it before investing heavily in it (which you will want to once you decide how it benefits your organization).
Richard Wilbert, MBA | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
It is very well suited for large environments that have sensitive data or have a lot of devices. It is also well suited for IT management that likes pretty pictures of how their environment is running. It is very suitable for companies that spend too much of their IT engineers' time on audits, compliance and reporting to groups outside of IT.
Rajesh Jain | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
I would suggest that Splunk is best suited if

- If you are drowned in log files and don't have any clue of where your problems are?
- If you are reactive and not looking at patterns or problem bottlenecks?
- Would like to get Business Intelligence from your Operational / Log file or / dynaTrace Performance Data
May 14, 2014

Splunk: a review

Score 8 out of 10
Vetted Review
Verified User
Splunk is very well suited for monitoring IT systems. It allows you to have almost real-time access to data as it is being generated. This allows for extremely useful alert monitoring. As a customer facing tool, which is not a standard use-case, Splunk is slightly lacking. You can set-up many reports with the data you need, but they have a technical feel that is not suited for some external clients.
Return to navigation