Splunk Security is as Resourceful as it is Robust
February 22, 2022

Splunk Security is as Resourceful as it is Robust

Alpa Wali | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk Enterprise Security (ES)

We use Splunk Enterprise Security currently to centralize our business data on a single platform then analyze all possible risks and threats thereafter send necessary security alerts. It basically migrates software security protocols from traditional tedious tasks to the utilization of intelligent tools for software security maintenances. By providing security alerts when triggered, we have been able to work with the IT analysts to investigate and attend to these potential threats on our firm.
  • It sends alerts when software performance is low
  • Troubleshooting is quick and executed really well
  • Splunk is generally a complex software and all novices can confirm this, more investment could be made on increasing the available learning resources.
  • we have cut down on the triage time
  • Our networks are secure most of the times.
  • Threats on our servers are realized on time and attended to immediately
From the very beginning, Splunk has been an essential security tool that allows us very high degrees of customization. We are able to monitor our servers in real-time, receiving report alerts of threats on the system as they happen. We strive to ensure websites and servers remain safe for the benefit of the entire firm and Splunk helps us to realize this.

Do you think Splunk Enterprise Security (ES) delivers good value for the price?

Yes

Are you happy with Splunk Enterprise Security (ES)'s feature set?

Yes

Did Splunk Enterprise Security (ES) live up to sales and marketing promises?

Yes

Did implementation of Splunk Enterprise Security (ES) go as expected?

Yes

Would you buy Splunk Enterprise Security (ES) again?

Yes

Splunk delivers extra; there was a time our servers had DDoS attacks that overwhelmed them with traffic. There were thousands of incoming requests for the home-landing page (per second). Fortunately, Splunk detected the attacks and the issue was fixed when I suggested for implementation of up to level 7 firewalls on our networks. I would definitely recommend ES for tights security evaluations and reporting.

Splunk Enterprise Security (ES) Feature Ratings

Centralized event and log data collection
8
Correlation
10
Event and log normalization/management
7
Deployment flexibility
6
Integration with Identity and Access Management Tools
6
Custom dashboards and workspaces
10
Host and network-based intrusion detection
9
Log retention
10
Data integration/API management
10
Behavioral analytics and baselining
10
Rules-based and algorithmic detection thresholds
10
Response orchestration and automation
5
Reporting and compliance management
7
Incident indexing/searching
8