Control of accounts, malware and anomalies in a single software.
Updated March 16, 2023

Control of accounts, malware and anomalies in a single software.

jacod Jones | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk Enterprise Security (ES)

This software notifies the advances in the possible anomalies in the systems or in the applications with a search capacity system, which provides us with a more general vision of the risks that our systems may have. It is also widely used to always have a security tool working to completely fix and eliminate threats to our IT infrastructure with malware detection, suspicious activity, suspicious activity isolation with account classification feature based on privilege.
  • Classifying accounts according to privileges allows for better control.
  • Malware detection.
  • Account monitoring requires advanced knowledge and also prior configuration.
  • Dashboard customization can improve them.
  • Malware detection is a factor of great importance to be able to have security in our systems.
  • The customization of the board and the difficulty of use can delay the return on investment for a few months.
Normally it can be implemented in different areas that require security, scalability is a strong point of this software.

Do you think Splunk Enterprise Security (ES) delivers good value for the price?

Yes

Are you happy with Splunk Enterprise Security (ES)'s feature set?

Yes

Did Splunk Enterprise Security (ES) live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of Splunk Enterprise Security (ES) go as expected?

I wasn't involved with the implementation phase

Would you buy Splunk Enterprise Security (ES) again?

Yes

Splunk detects malware and all anomalies, there is no possibility of missing anything, we also have account control according to the privileges assigned by the company, which allows constant account monitoring and also avoids the danger of unauthorized access. Splunk does not have the best dashboard customization, nor is it the easiest to use, but I do think it is the one that keeps everything in order and allows us to comply with the entire complex security system.

Splunk Enterprise Security (ES) Feature Ratings

Centralized event and log data collection
10
Correlation
10
Event and log normalization/management
10
Deployment flexibility
10
Integration with Identity and Access Management Tools
10
Custom dashboards and workspaces
10
Host and network-based intrusion detection
10
Log retention
10
Data integration/API management
10
Behavioral analytics and baselining
10
Rules-based and algorithmic detection thresholds
10
Response orchestration and automation
10
Reporting and compliance management
10
Incident indexing/searching
10

Using Splunk Enterprise Security (ES)

  • Advanced monitoring of our protocols.
  • Security in environments with a high flow of information
  • Expand the total scope of this software by more than 20%