Splunk keeps our system safe from attacks.
April 14, 2022

Splunk keeps our system safe from attacks.

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk Enterprise Security (ES)

Splunk Enterprise Security has allowed us to identify possible incidents on our networks while allowing a deep position of disquisition into circumstances. It has addressed a gap in security intelligence by offering links to multiple intelligence feeds while performing active trouble analytics and threat-grounded reporting. Splunk Enterprise Security (ES) stores raw data and manages them according to different attributes. This allows a critic to dig into the data and find implicit pointers of concession to remediate security incidents.
  • Its best feature is its user interface, which is easy to navigate and understand. All you need is a little tutorial on how to use the Splunk query language and you're done.
  • Logs can be easily uploaded or shared across multiple platforms and display a highly insightful graphical representations of data using graphs, tables, and many other formats.
  • It has so many features that it took me a while to understand them.
  • Central dashboard for all vulnerability needs to log sources.
  • Graphical reporting using graphs, bars, and tables make understanding and presentation far better.
  • It has definitely reduced operating cost as this single tool does work of many tools.
I am indirectly associated with the security team and I am aware of the in and outs of the security of my organization. It is well protected with Splunk Professional Suite. We are an organization of 800+ employees and Splunk is well versed in managing our privacy and keeping our servers from attacks, It makes it highly scalable.

Do you think Splunk Enterprise Security (ES) delivers good value for the price?

Yes

Are you happy with Splunk Enterprise Security (ES)'s feature set?

Yes

Did Splunk Enterprise Security (ES) live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of Splunk Enterprise Security (ES) go as expected?

Yes

Would you buy Splunk Enterprise Security (ES) again?

Yes

Jira Software, Zoom, Splunk SOAR (Security Orchestration, Automation and Response) (formerly Phantom)
A quick dashboard for common issues. It is used for security so that you can see various servers' vulnerabilities, time, and page errors, employee logins, account changes, and incorrect login attempts. Most importantly, it is used against various malware and hackers trying to access it. In short, Splunk Enterprise Security (ES) should be in the toolbox of any organization that needs to protect itself from attack.

Splunk Enterprise Security (ES) Feature Ratings

Centralized event and log data collection
Not Rated
Correlation
Not Rated
Event and log normalization/management
9
Deployment flexibility
9
Integration with Identity and Access Management Tools
9
Custom dashboards and workspaces
9
Host and network-based intrusion detection
9
Log retention
9
Data integration/API management
9
Behavioral analytics and baselining
9
Rules-based and algorithmic detection thresholds
9
Response orchestration and automation
9
Reporting and compliance management
8
Incident indexing/searching
9