If you're a developer, stay safe with splunk
March 14, 2022

If you're a developer, stay safe with splunk

Anonymous | TrustRadius Reviewer
Score 6 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk Enterprise Security (ES)

Splunk Enterprise Security (ES) is our monitoring tool of choice. To keep track of the health of my project's servers, services, and applications, I'm implementing a Fire application. All apps in the development, testing and production environments are monitored for logs and certificates expiration. When an error happens on our server due to OS patching, we use this tool to get a clearer picture of what happened. It features a variety of dashboards to suit various needs. If a problem develops during the course of daily activities, we export records of warning and error for further investigation.

Pros

  • 3rd party security logs
  • Integration & Deployment
  • Infra

Cons

  • Try to be more specific in your query messages.
  • Creating dashboards for multiple projects at the same time is difficult.
  • Managing those accounts necessitates a significant amount of education and training.
  • Improved command of security incidents
  • Reduced downtime
  • Efficiency in terms of the amount of time it takes to detect and respond to internal and external threats.
This has become the norm! In this day and age, having this kind of capability where scalability does not pose a problem is a big plus. With Splunk Enterprise Security's platform-wide functionality, businesses of all sizes can work more efficiently.

Do you think Splunk Enterprise Security (ES) delivers good value for the price?

Yes

Are you happy with Splunk Enterprise Security (ES)'s feature set?

Yes

Did Splunk Enterprise Security (ES) live up to sales and marketing promises?

Yes

Did implementation of Splunk Enterprise Security (ES) go as expected?

No

Would you buy Splunk Enterprise Security (ES) again?

Yes

Splunk Enterprise Security (ES) is well-suited to obtaining the best performance from a server farm. It may be difficult for a non-technical person to get started with the ES platform. However, for someone who has previously used it, it is simple to use. The license model, on the other hand, is adaptable as we grow and our resource needs to increase exponentially.

Splunk Enterprise Security (ES) Feature Ratings

Centralized event and log data collection
6
Correlation
9
Event and log normalization/management
7
Deployment flexibility
9
Integration with Identity and Access Management Tools
7
Custom dashboards and workspaces
5
Host and network-based intrusion detection
8
Log retention
8
Data integration/API management
9
Behavioral analytics and baselining
6
Rules-based and algorithmic detection thresholds
5
Response orchestration and automation
9
Reporting and compliance management
9
Incident indexing/searching
9

Comments

More Reviews of Splunk Enterprise Security (ES)