Splunk Implementor review
September 16, 2016

Splunk Implementor review

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk

We implement Splunk for various use cases, but are mostly focused on security. Many companies do not have the visibility into their IT infrastructure to see potential issues in time to detect and resolve them in a timely manner. Splunk provides that visibility to allow companies to react to problems fast, be proactive, and even automate first steps of SOC investigations.
  • Collecting logs and event information from disparate sources.
  • Make correlating log information easier.
  • Search and report on large volumes of machine data.
  • Enterprise level management.
  • Certificate management.
  • We implement Splunk for a living.
  • HP Arcsight
Cost, flexibility, management overhead.
Appropriate for any case where the collection of large volumes of machine data and reporting on it is needed. Less appropriate for service monitoring such as "up/down"

Splunk Enterprise Feature Ratings

Centralized event and log data collection
8
Correlation
7
Event and log normalization/management
10
Deployment flexibility
10
Integration with Identity and Access Management Tools
6
Custom dashboards and workspaces
10