Splunk Enterprise

Overview

Recent Reviews

Real-time smart meters

9
August 17, 2021
Splunk is being using to track the status of electric utility smart meters which record customer energy usage. Smart meters send power …
Read full review

Great for almost anything

9
July 19, 2021
We use this across our different departments for security, app performance monitoring, host monitoring, data intelligence, correlation, …
Read full review

Splunk leads the pack

9
April 14, 2020
Splunk is our one stop shop for all log data. We send logs from everything from servers, routers, firewalls, switches, sans and …
Read full review

Splunk Enterprise review

7
March 06, 2020
Currently our bank has different departments with their own Splunk infrastructure. We are currently building a larger infrastructure to …
Read full review

Won't you take me to Splunkytown

9
February 29, 2020
We're using Splunk Enterprise to assist us with IT Operations and IT Security. We came to look at Splunk because when I entered the …
Read full review

Reviewer Sentiment

N/A
Positive ()
N/A
Negative ()
Learn how we calculate reviewer sentiment

Awards

TrustRadius Award Top Rated 2020
TrustRadius Award Top Rated 2019

Popular Features

View all 13 features

Custom dashboards and workspaces (100)

9.8
98%

Correlation (49)

9.8
98%

Event and log normalization/management (98)

9.6
96%

Centralized event and log data collection (50)

9.4
94%

Reviewer Pros & Cons

View all pros & cons

Video Reviews

Leaving a video review helps other professionals like you evaluate products. Be the first one in your network to record a review of Splunk Enterprise, and make your voice heard!

Pricing

View all pricing
N/A
Unavailable

What is Splunk Enterprise?

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting / Integration Services

Would you like us to let the vendor know that you want pricing?

11 people want pricing too

Alternatives Pricing

What is AlienVault USM?

AlienVault® Unified Security Management® (USM) delivers threat detection, incident response, and compliance management in one unified platform. It is designed to combine all the essential security capabilities needed for effective security monitoring across cloud and on-premises environments,…

What is SolarWinds Kiwi Syslog Server?

Solarwinds® Kiwi Syslog® Server is a syslog management tool for network and systems engineers. It receives syslog messages and SNMP traps from network devices (routers, switches, firewalls, etc.), and Linux®/Unix® hosts. Users can filter and view these messages based on time, hostname, severity,…

Features Scorecard

Security Information and Event Management (SIEM)

9.0
90%

Product Details

What is Splunk Enterprise?

Splunk Enterprise enables users to find out what is happening in a business and take meaningful action. It automates the collection, indexing and alerting of machine data that's critical to operations, so that users can uncover the actionable insights from data — no matter the source or format. Leverage artificial intelligence and machine learning for predictive and proactive business decisions.

Splunk Enterprise Integrations

Splunk Enterprise Competitors

Splunk Enterprise Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Comparisons

View all alternatives

Frequently Asked Questions

What is Splunk Enterprise?

Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.

What is Splunk Enterprise's best feature?

Reviewers rate Correlation and Custom dashboards and workspaces highest, with a score of 9.8.

Who uses Splunk Enterprise?

The most common users of Splunk Enterprise are from Enterprises (1,001+ employees) and the Information Technology & Services industry.

Reviews

(1-25 of 67)
Companies can't remove reviews or game the system. Here's why
Score 10 out of 10
Vetted Review
Verified User
Review Source
  • Collect data from multiple data sources and correlate. Reduce alert noise from multiple monitoring systems.
  • Monitor alerts and report on data collected. Create custom dashboards.
  • Powerful machine learning and AiOPS functionality.
  • Helps with our security compliance and addresses the security team's need to remain PCI compliant.
  • Splunk data sizing and data collected. Worked with Professional Service to scale our environment.
  • Capacity data storage for Splunk data.
  • TuningSplunk analytics dashboards for performance.
Score 9 out of 10
Vetted Review
Verified User
Review Source
  • The power of it. It's a very good tool that does amazing things. Nothing comes close to it.
  • It can ingest any data and present it in a digestible, searchable format.
  • Flat file format makes it very fast and the best visualizations I've seen.
  • It can be cost prohibitive, but I still think it's worth it.
  • Training users is a little bit steeper, but once they have it, it's very powerful.
April 14, 2020

Splunk leads the pack

Score 9 out of 10
Vetted Review
Verified User
Review Source
  • Single source of truth for all log files.
  • Alerting system based on captured log data.
  • Reporting/Dashboard system to present data.
  • Complex overall architecture.
  • Long implementation time.
  • High cost.
  • Requires on-going staff time to keep running effectively.
Ahmet Fatih IRKLI | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Review Source
  • Maximize endpoint logging.
  • Can find and store logs from all types of assets.
  • Customization of dashboards.
  • Creating apps based on your needs.
  • Alarm feature alerts relevant people in the organization.
  • Data visualization.
  • Search queries can be saved for future or even can be converted to apps.
  • Slow interface.
Fraser Clark | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Review Source
  • Dashboards/visualisations.
  • Can ingest any type of data.
  • Flexibility with filtering, etc.
  • Steep learning curve.
  • Full stack reporting (though with SignalFX being purchased by Splunk, this is clearly a high priority).
  • Team needed to manage large installations.
Score 9 out of 10
Vetted Review
Verified User
Review Source
  • Fast, efficient
  • Solid community of experts and training materials
  • Ingests data from many sources, with a large number of partner relationships
  • There is a high learning curve. If you go to a Splunk demo or class, get inspired, then install it yourself, you'll have no idea what you're meant to do. It's not intuitive to the first-time user in any way.
  • Pricing can be confusing. People ask how much data you want to ingest, and you don't know until after you've been using Splunk. It's not easy to sign up and start without guesswork.
  • I found online help pages are broken or out-of-date, or incomplete. e.g. pages on setting up the Java-based SQL Server driver don't even tell you where to download it or where to install it.
Daniel Garrett | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Review Source
  • Quick log queries across different types of infrastructure
  • Adaptable dashboards for digesting large amounts of continuous data
  • Easy access and sharing of information via URL links
  • Building Splunk queries can be comber some without intricate knowledge of Splunk and the applications involved
  • Dashboard duplication for different areas can be difficult
  • Capturing all necessary data from cloud platforms is not always straightforward
November 20, 2019

Splunk: The log expert

Kuntal Das | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Review Source
  • It is very useful in creating custom rules for analyzing system logs and display relevant information. The query language is very easy to learn.
  • We can create custom UI to visualize the output of our data. The interface is very flexible. It also allows the sharing of rules among users.
  • There is an open online community to help others. Stackoverflow also has a splunk community. These resources make it more convenient to learn.
  • They can introduce a query builder for non-technical users.
  • The query error messages could be more specific.
Score 8 out of 10
Vetted Review
Verified User
Review Source
  • Captures multiple different information about a customer and his/her session.
  • Intuitive and informative search options.
  • Option to set up precise alerts for different KPIs.
  • The speed of the tool could be improved.
  • It could store and allow to search for historical data older than 60 days (may be related to our company license).
  • Dashboard creation could be more user-friendly.
Score 6 out of 10
Vetted Review
Verified User
Review Source
  • Monitoring and Alerting: Creating custom actions based on log entries was the largest unexpected bonus for us. While we had other software configured to do this job Splunk was easy to implement and could be managed by a larger number of our team members.
  • Cross-Device Analysis: Seeing data from all of your devices in one location makes following event chains much easier.
  • Vendor Specific Add-ons: There is a large library of vendor-specific add-ons for the software allowing for automatic formatting and action for certain types of logs, greatly reducing the man-hours required to get started.
  • Splunk Light doesn't include the ability to create data models or tables without paying for a large upgrade. This is a rather basic feature, I wish it had been included.
  • High Availability is another basic feature that is excluded, greatly limiting Splunk Light's usefulness.
Score 9 out of 10
Vetted Review
Verified User
Review Source
  • Tight access control via a variety of mechanisms to restrict users to specific logs.
  • Solves regulatory controls by providing access control and archival storage capabilities.
  • Provides a quick mechanism to search across multiple logs for issues between systems.
  • Splunk can be expensive since it's based on the amount of logging you do. The capabilities definitely make up for the cost, but there is a high bar to entry.
  • Splunk can be overly confusing for new users. The capabilities are quite vast and sometimes daunting.
Score 10 out of 10
Vetted Review
Verified User
Review Source
  • Simplifies analyzing of big logs finds and helps in finding issues faster.
  • Splunk Alerts are great to be notified of possible issues so that necessary actions can be taken to avoid it from becoming a problem to our end users.
  • Dashboard reports can be scheduled to be generated and share with key stakeholders.
  • Comparison of two or more time series data in a single graph.
  • Search and make suggestions on Splunk commands as we type on the search window.
Rounak Jangir | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Review Source
  • Log search is very good with this tool.
  • Splunk search query language is just very good. You can easily run some analysis using this language
  • Generating reports is a very good feature of this tool.
  • Detecting anomalies and reporting them is just fantastic.
  • Splunk requires some learning to use all of its features. Understanding its SPL is not very easy, and it will take long enough time to learn it.
  • Regular expression is a bit tedious to learn and then use, it needs a good understanding of regular expression.
  • I don't know why, but sometimes its search keeps on going forever and then I had to manually kill that job to start it again.