


IBM Resilient and Splunk SOAR are competitive products in the SOAR market. Splunk SOAR appears to have the upper hand in flexibility and integration capabilities.
Features: IBM Resilient is valued for its stability, integration with IBM QRadar, and effective incident response features. It provides robust playbooks and a comprehensive feature set, reducing mean time to escalate metrics. Splunk SOAR is known for its extensive integration capabilities, automation, and versatile playbooks, supporting custom development and enhancing workflow efficiencies.
Room for Improvement: IBM Resilient needs to expand integration capabilities with more third-party tools and improve pricing competitiveness. Enhancements in documentation and support responsiveness are also required. Splunk SOAR requires better support for integrations and documentation, with improvements in price scalability, automation, and playbook management features.
Ease of Deployment and Customer Service: IBM Resilient primarily uses on-premises deployment, occasionally facing technical support delays. Splunk SOAR offers a mix of on-premises, private, and public cloud options, providing flexible deployment, though its support for integrations and updates is deemed average.
Pricing and ROI: IBM Resilient's pricing is generally seen as expensive, especially with a user-based licensing model affecting larger deployments. Despite costs, time savings are possible. Splunk SOAR is also perceived as costly for smaller organizations, with user-based pricing, yet its automation and workflow efficiencies often justify the investment, offering potential ROI when effectively implemented.
| Product | Market Share (%) |
|---|---|
| Splunk SOAR | 7.8% |
| Torq | 4.9% |
| IBM Resilient | 2.0% |
| Other | 85.3% |


| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 2 |
| Large Enterprise | 7 |
| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 7 |
| Large Enterprise | 33 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
The Resilient Incident Response Platform (IRP) is the leading platform for orchestrating and automating incident response processes.
The Resilient IRP quickly and easily integrates with your organization’s existing security and IT investments. It makes security alerts instantly actionable, provides valuable intelligence and incident context, and enables adaptive response to complex cyber threats.
Splunk SOAR offers features like automation and orchestration of manual tasks, speeding up work, detection and response to advanced and emerging threats.
Automate manual tasks. Address every alert, every day. Establish repeatable procedures that allow security analysts to stop being reactive and focus on mission-critical objectives to protect your business.
Orchestrate and automate repetitive tasks, investigation and response to increase efficiency and productivity, and do more with the people you already have. Make a team of three feel like a team of 10.
Work faster with Splunk SOAR. Respond to threats in seconds. Lower your mean time to respond (MTTR) by automating security tasks and workflows across all of your security tools.
Take advantage of Splunk Enterprise Security and Splunk SOAR joining forces to provide a seamless and intuitive SecOps platform to prevent, detect and respond to advanced and emerging threats.
We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.