Splunk Enterprise Security is a must!
July 24, 2023

Splunk Enterprise Security is a must!

Joe Contreras | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk Enterprise Security (ES)

I am a security analyst and so I use it on a day to day basis to triage and troubleshoot alerts and security incidents in my organization. We have several dozen data sources going to our Splunk environment and then we build correlation alerts for them
  • Data detail
  • Timeline
  • Charts and data presentation
  • Data correlation
  • Third party app support
  • Simplify management
  • More automation
  • Faster incident response time
  • Compliance
  • Audits
  • Executive dashboards
I think deployment wise it works but could use some simplification processes
Splunk is way better. Support is awesome too

Do you think Splunk Enterprise Security (ES) delivers good value for the price?

Yes

Are you happy with Splunk Enterprise Security (ES)'s feature set?

Yes

Did Splunk Enterprise Security (ES) live up to sales and marketing promises?

Yes

Did implementation of Splunk Enterprise Security (ES) go as expected?

Yes

Would you buy Splunk Enterprise Security (ES) again?

Yes

Incident response, security event correlation, security posture analysis and preparation, presentation

Splunk Enterprise Security (ES) Feature Ratings

Centralized event and log data collection
7
Correlation
8
Event and log normalization/management
7
Deployment flexibility
7
Integration with Identity and Access Management Tools
7
Custom dashboards and workspaces
5
Host and network-based intrusion detection
6
Log retention
9
Data integration/API management
Not Rated
Behavioral analytics and baselining
5
Rules-based and algorithmic detection thresholds
5
Response orchestration and automation
4
Reporting and compliance management
4
Incident indexing/searching
8