Splunk SOAR: A great orchestration and automation tool
March 29, 2023
Splunk SOAR: A great orchestration and automation tool
Score 8 out of 10
Vetted Review
Verified User
Overall Satisfaction with Splunk SOAR
There are only few really good SOAR available in market which excel at automation and Splunk SOAR is one of them. We used Splunk SOAR to automate blue team operations (SOC team). We have used playbooks for lots of repetitive task such as forwarding alerts to other 3rd party tools, open/close cases in case management tool, analyzing phishing emails etc.
Pros
- Excellent UI
- Easy to make playbooks
- Very good collaboration tools
- Lots of integrations
Cons
- Price
- Splunk SOAR has lots of integration, still needs more
- Should be easy to scale
- Reduced MTTR by almost 40-50% on average
- Automated response based on certain events
- Helps a lot with process standardisation
Do you think Splunk SOAR delivers good value for the price?
Yes
Are you happy with Splunk SOAR's feature set?
Yes
Did Splunk SOAR live up to sales and marketing promises?
No
Did implementation of Splunk SOAR go as expected?
Yes
Would you buy Splunk SOAR again?
Yes
Comments
Please log in to join the conversation