Splunk Enterprise Rocks !!
June 17, 2022

Splunk Enterprise Rocks !!

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Software Version

Other

Overall Satisfaction with Splunk Enterprise

We use Splunk Enterprise to do various types of monitoring across organizations using a clustered environment with distributed indexers, search heads, UF, and HFW i.e. Application Monitoring of various ETL tools such as Mulesoft, Airflow, Stream sets, etc REST API Monitoring Database monitoring HEC monitoring
  • Act as a Search Head, Indexer and Forwarder
  • Have full features to install Add-Ons
  • Is On-Prem, so we have full control on created lookups on file system
  • Better SPL Intelligence
  • Add-On's auto upgrade management and notifications
  • Implement more features on UI instead of config based implementations
  • Splunk Flexibility for acting as different nodes
  • Splunk Distributed scaling
  • Splunk SPL performance
  • Cost saver
  • Analyze risks
  • Alert alarming situations
Data remains On-Prem and doesn't need encryption as in case of Cloud

Do you think Splunk Enterprise delivers good value for the price?

Yes

Are you happy with Splunk Enterprise's feature set?

Yes

Did Splunk Enterprise live up to sales and marketing promises?

Yes

Did implementation of Splunk Enterprise go as expected?

Yes

Would you buy Splunk Enterprise again?

Yes

This is best suited for limited and known scaling of nodes and where we don't want data to flow outside the organization otherwise we can switch to Splunk Cloud for better automatic scaling where scaling need is unknown but has an overhead of data to be encrypted

Splunk Enterprise Feature Ratings

Centralized event and log data collection
8
Correlation
8
Event and log normalization/management
8
Deployment flexibility
9
Integration with Identity and Access Management Tools
8
Custom dashboards and workspaces
8
Host and network-based intrusion detection
8
Log retention
9
Data integration/API management
7
Behavioral analytics and baselining
7
Rules-based and algorithmic detection thresholds
7
Response orchestration and automation
7
Reporting and compliance management
8
Incident indexing/searching
9