Splunk Enterprise Review
February 10, 2026

Splunk Enterprise Review

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review

Software Version

Splunk Light (legacy)

Overall Satisfaction with Splunk Enterprise

We use Splunk as our data analytics and SIEM platform. It helps us to better understand our logs, correlate the data and detect attackers before they could do any harm.

Pros

  • Detecting anomalies in Logs
  • Normalize our data
  • Correlating information across data domains

Cons

  • Monitoring endpoint agents
  • auto updates
  • better scripting functionality for the edge processor
  • it speeds up a lot of investigation work
Splunk is quite flexible to use and can be adapted to a lot of use cases. The creation of dashboards is quite simple and can be done really quickly.

Do you think Splunk Enterprise delivers good value for the price?

Yes

Are you happy with Splunk Enterprise's feature set?

Yes

Did Splunk Enterprise live up to sales and marketing promises?

Yes

Did implementation of Splunk Enterprise go as expected?

Yes

Would you buy Splunk Enterprise again?

Yes

In our organization, it helps us to collect data from multiple sources and ingest that on a single platform. This helps us in terms of having data available and searchable in a single place. We can also better secure this data on this platform and consider a redundant setup. It also helps us to detect anomalies and attackers that are hidden in our logs.

Splunk Enterprise Feature Ratings

Centralized event and log data collection
10
Correlation
10
Event and log normalization/management
9
Deployment flexibility
8
Integration with Identity and Access Management Tools
6
Custom dashboards and workspaces
9
Host and network-based intrusion detection
7
Log retention
10
Data integration/API management
10
Behavioral analytics and baselining
7
Rules-based and algorithmic detection thresholds
10
Response orchestration and automation
8
Reporting and compliance management
10
Incident indexing/searching
9

Comments

More Reviews of Splunk Enterprise