


Splunk SOAR and Tines are products in the security orchestration, automation, and response industry. Tines holds an advantage for those seeking simplicity and advanced configuration options, while Splunk SOAR benefits those needing robust integrations and scalability for large enterprises.
Features: Splunk SOAR features extensive integration capabilities and comprehensive analytics suited for complex environments needing a variety of integrations and thorough data analysis. Tines stands out with its ease of use and high customization, providing flexibility for organizations requiring tailored automation workflows.
Room for Improvement: Splunk SOAR could improve by simplifying its deployment process and reducing complexity for new users. Additionally, enhancing user-interface intuitiveness and integration ease with non-Splunk products would be beneficial. Tines might benefit from expanding its integration ecosystem to cover more third-party tools, improving analytics features to match extensive competitors, and possibly introducing more advanced reporting features.
Ease of Deployment and Customer Service: Splunk SOAR requires an enterprise-focused, complex deployment model, often needing specialized teams. Its customer service supports extensive enterprise needs well. Tines offers straightforward deployment aimed at efficiency with minimal technical overhead, and its customer service is nimble, supporting rapid setup.
Pricing and ROI: Splunk SOAR generally involves higher setup costs, offering substantial ROI through its extensive capabilities, primarily benefiting larger enterprises. Tines provides a cost-efficient structure with lower setup costs and quick ROI, appealing to businesses aiming for rapid returns.
| Product | Mindshare (%) |
|---|---|
| Splunk SOAR | 7.4% |
| Torq | 3.7% |
| Tines | 4.5% |
| Other | 84.4% |

| Company Size | Count |
|---|---|
| Small Business | 1 |
| Midsize Enterprise | 3 |
| Large Enterprise | 4 |
| Company Size | Count |
|---|---|
| Small Business | 16 |
| Midsize Enterprise | 8 |
| Large Enterprise | 37 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
Splunk SOAR focuses on automating security operations with seamless third-party integrations and customizable workflows, enhancing incident response and threat management.
Splunk SOAR offers robust playbook automation and powerful API connectivity, allowing organizations to streamline workflows and integrate extensively with tools like Salesforce and ServiceNow. With its capabilities in real-time data visualization and automated threat responses, it significantly enhances security and reduces manual efforts. Users appreciate the ease of creating playbooks, which reduces mean time to detect and resolve. However, attention to its integration challenges with Microsoft products, the need for more playbooks, and improved customization tools is necessary. Enhancements in the development process, visibility, scalability, and case management options are also beneficial. Improving documentation and training resources would add more depth and accessibility.
What are the top features of Splunk SOAR?Organizations implement Splunk SOAR in industries to automate tasks in Security Operation Centers, addressing incidents such as phishing, brute force, and ransomware. It integrates with third-party applications for threat intelligence enrichment, commonly deployed both on-premise and cloud, enhancing cybersecurity efforts.
Tines offers no-code and low-code automation for users to automate tasks without coding expertise, integrating seamlessly with APIs to enhance incident management and security operations.
Known for a vendor-neutral approach, Tines provides detailed documentation and live chat support, allowing for effective integration with other tools, scheduling capabilities, and streamlined processes that save time and effort. Users find it intuitive for efficient task handling, making manual intervention unnecessary. Challenges include the need for more comprehensive documentation and instructional videos, as well as improvements in AI integration and reporting aesthetics. Pricing is also noted as higher compared to alternatives.
What are the most important features of Tines?Tines primarily serves organizations in the security sector, automating security operations such as alert detection and managed detection and response. It's utilized extensively in security operation centers for tasks like phishing email processing, ticket creation, IOC investigations, and ticket assignments within enterprise security frameworks, with multiple teams delivering Tines services to enhance task handling efficiency.
We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.