No more typing reviews! Try our Samantha, our new voice AI agent.

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Splunk Enterprise Security offers robust log management capabilities, allowing organizations to efficiently collect, aggregate, and retain logs from multiple systems.
The risk-based alerting feature in Splunk Enterprise Security significantly impacts alert volume and analyst productivity by prioritizing alerts, reducing false positives, and enabling faster incident response.
Splunk Enterprise Security enhances business resilience by providing real-time monitoring, faster threat detection, and comprehensive investigation capabilities, improving security visibility.
The integration capabilities of Splunk Enterprise Security, including seamless interoperability with other security tools and extensive third-party application support, contribute to its effectiveness in security operations.
Splunk Enterprise Security's search function, combined with its data analysis and correlation capabilities, allows organizations to perform rapid threat detection, investigation, and response.

CONS

Splunk Enterprise Security incurs a significant cost, which is a common concern.
There is a steep learning curve associated with using Splunk Enterprise Security efficiently.
The technical support for Splunk Enterprise Security is often described as lacking in responsiveness and effectiveness.
Many users face difficulties with configuring and setting up Splunk Enterprise Security, finding it complex and cumbersome.
Alert fatigue is a common issue due to the high volume of false positives generated by Splunk Enterprise Security.
 

Splunk Enterprise Security Pros review quotes

Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Nov 13, 2025
The integration and plugin availability are nice, and the AI module is also great.
reviewer2136243 - PeerSpot reviewer
Risk Advisory Cyber Cloud Analyst at a consultancy with 1,001-5,000 employees
Nov 14, 2025
The query functionality is very easy to use and fast to retrieve logs in comparison to other SIEM solutions.
Prateek Dwivedi - PeerSpot reviewer
IT Analyst at cmc
Jul 13, 2026
Its biggest strength is giving organizations real-time visibility into their IT and security environment.
Learn what your peers think about Splunk Enterprise Security. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
908,834 professionals have used our research since 2012.
Vishwanath Singh - PeerSpot reviewer
Senior Engineer 3 at a financial services firm with 10,001+ employees
Jul 9, 2026
Overall, the performance of our applications has really gone up because of Splunk Enterprise Security because now we are able to track everything in the backend.
Krishnakumar Mahadevan - PeerSpot reviewer
CISO at Spink Solutions Private Limited
May 29, 2026
Bundling the solution in a single umbrella is the strongest point.
Kyle Vernham - PeerSpot reviewer
Threat Analyst at a manufacturing company with 10,001+ employees
Sep 9, 2025
When it comes to leveraging Splunk Enterprise Security's dashboards and visualizations to communicate security posture to executives, it's pretty straightforward for any type of information.
Venu Yenuganti - PeerSpot reviewer
Manager, Cyber Threat Management at a retailer with 10,001+ employees
Nov 26, 2025
Splunk Enterprise Security definitely improved our operations.
DB
Consultant at Principal Financial Group
Jul 27, 2026
Splunk Enterprise Security has helped reduce my team's average meantime to resolve.
Himanshu Vasoya - PeerSpot reviewer
Observability Engineer at Data Elicit Solutions Pvt. Ltd.
Apr 9, 2026
What I like the most about Splunk Enterprise Security is the flexibility and customization it offers, as you can create dashboards, write custom SPL queries, and design detections exactly as per your environment while leveraging strong correlation capabilities and visualizing everything in a single place, which makes analysis easier and far better than other solutions.
MatthewSnyder - PeerSpot reviewer
Principal Engineer at Aviatrix
Sep 9, 2025
While it might be an initial upfront investment on data onboarding, it's going to be something that makes your life incredibly easy once you get beyond that point.
 

Splunk Enterprise Security Cons review quotes

Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Nov 13, 2025
We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy.
reviewer2136243 - PeerSpot reviewer
Risk Advisory Cyber Cloud Analyst at a consultancy with 1,001-5,000 employees
Nov 14, 2025
The user interface is the main area for improvement.
Prateek Dwivedi - PeerSpot reviewer
IT Analyst at cmc
Jul 13, 2026
One of the biggest challenges is its licensing cost, especially for organizations that ingest large volumes of data.
Learn what your peers think about Splunk Enterprise Security. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
908,834 professionals have used our research since 2012.
Vishwanath Singh - PeerSpot reviewer
Senior Engineer 3 at a financial services firm with 10,001+ employees
Jul 9, 2026
The entire tool is a little slow. It can be improved, as the lagging is noticeable.
Krishnakumar Mahadevan - PeerSpot reviewer
CISO at Spink Solutions Private Limited
May 29, 2026
The setup and configuration process is very complex and tedious, and we often need to speak with support people.
Kyle Vernham - PeerSpot reviewer
Threat Analyst at a manufacturing company with 10,001+ employees
Sep 9, 2025
One main change I would suggest is related to the incident board: when an incident is resolved, it should not appear on the incident board. It's just a rare occurrence that we open up the incident.
Venu Yenuganti - PeerSpot reviewer
Manager, Cyber Threat Management at a retailer with 10,001+ employees
Nov 26, 2025
Pricing is certainly an area that could use improvement. While some vendors may offer lower prices, the value we receive here truly sets this solution apart.
DB
Consultant at Principal Financial Group
Jul 27, 2026
Regarding areas of Splunk Enterprise Security that I think could be improved or enhanced, I am continuously getting the task of upgrading the system. For example, we have multiple heavy forwarders, and every time we upgrade the system, there should be some issue after an upgrade.
Himanshu Vasoya - PeerSpot reviewer
Observability Engineer at Data Elicit Solutions Pvt. Ltd.
Apr 9, 2026
Regarding pricing, Splunk Enterprise Security is on the higher side in terms of cost. It is more suitable for enterprises that can fully utilize its capabilities, and smaller organizations might find it expensive, especially when dealing with large volumes of data and licensing models.
MatthewSnyder - PeerSpot reviewer
Principal Engineer at Aviatrix
Sep 9, 2025
When deploying Enterprise Security, the biggest challenge or the most amount of work that you're going to spend time on is onboarding your data and getting it into a position that allows you to search it uniformly. So applying things like the common information model is the biggest time investment that you'll have in the deployment.