Ladies & Gentlemen ! Splunk SOAR with you anywhere and everywhere.
Overall Satisfaction with Splunk SOAR
The product has a lot of capabilities and lives up to expectations when it works. We have experienced many issues around deployment, installation, scaling, and certain integrations that proved more difficult or had fewer features than expected. Business problems and outcomes: * Automation anywhere and everywhere for the security department * almost zero downtime * Great dashboarding for both analyst and C-Suite or managers * easy to create playbooks regarding MITRE, NIST, etc.
Pros
- Automation
- War room.
- Dashboarding
- Playbook management.
Cons
- TI procedures.
- more playbooks for small SOC teams.
- You'd probably need to create more custom playbooks and automation, so these most used actions should be created by Splunk.
- MTTR
- Dashboard and war room for analysts and C suite - easy to show them results and benefits of Splunk soar.
- Faster process execution, playbook action and results.
- IBM Resilient Security Orchestration, Automation and Response (SOAR) and Palo Alto Networks Cortex XSOAR
If you use Splunk SIEM, you might wanna use Splunk soar, too. one vendor for SIEM and SOAR, and you do not need to think about integration, etc. Easy to use if we compare to other SOARs, chat and war rooms are great, and almost every action that we need is already created in Splunk SOAR.
Do you think Splunk SOAR delivers good value for the price?
Not sure
Are you happy with Splunk SOAR's feature set?
Yes
Did Splunk SOAR live up to sales and marketing promises?
Yes
Did implementation of Splunk SOAR go as expected?
Yes
Would you buy Splunk SOAR again?
Yes
Comments
Please log in to join the conversation