Try our new research platform with insights from 80,000+ expert users
reviewer1605462 - PeerSpot reviewer
Product Manager, FX Solutions at a tech services company with 10,001+ employees
MSP
Easy to use, informative documentation for data retrieval, and easy to install
Pros and Cons
  • "The most valuable features of the solution are it is straightforward to use and the documentation is good for finding out how to get the data you are looking for."
  • "The solution could improve by making it more business analysis oriented. The way it is now is designed more for developers."

What is our primary use case?

I use this solution for data visualization.

What is most valuable?

The most valuable features of the solution are it is straightforward to use and the documentation is good for finding out how to get the data you are looking for.

What needs improvement?

The solution could improve by making it more business analysis oriented. The way it is now is designed more for developers.

For how long have I used the solution?

I have been using Splunk for two weeks.

Buyer's Guide
Splunk Enterprise Security
April 2025
Learn what your peers think about Splunk Enterprise Security. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
851,823 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is stable, I have not experienced any bugs or glitches.

What do I think about the scalability of the solution?

The solution is scalable and it is a requirement of my company to have scalable solutions.

Which solution did I use previously and why did I switch?

I have used previously Qlik Sense and Kibana.

How was the initial setup?

I did the training with Slunk and once I had the training the installation was easy.

Which other solutions did I evaluate?

I have evaluated Tableau.

What other advice do I have?

My advice to others is not to be intimidated by the solution and to give it a try. It will become easier over time.

I rate Splunk an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user594183 - PeerSpot reviewer
Security Engineer at a retailer with 10,001+ employees
Real User
They provide predefined user cases. Scalability is always a question for this product.

What is most valuable?

They provide excellent predefined user cases.

How has it helped my organization?

This helps us in the footprinting of all the incidents.

What needs improvement?

When we deep dive into the events for the triggers, we have very little information in some instances.

For how long have I used the solution?

I have used Splunk for two years.

What do I think about the stability of the solution?

We raised support cases.

What do I think about the scalability of the solution?

Scalability is always a question for this product.

How are customer service and technical support?

Response from technical support can be improved. There was always a delay and we had to chase them.

Which solution did I use previously and why did I switch?

We didn’t have a previous solution.

How was the initial setup?

I was not present during the initial setup.

What's my experience with pricing, setup cost, and licensing?

Pricing and licensing are always high compared to other products in the market. Storage is very expensive as well.

What other advice do I have?

It is a good product, but expensive.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
MS Alam - PeerSpot reviewer
MS AlamSystem Administrator at Abdullah Al-Othaim Markets
Real User

Splunk license and storage pricing is high. please make it cheap then most off company can use this product.

Buyer's Guide
Splunk Enterprise Security
April 2025
Learn what your peers think about Splunk Enterprise Security. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
851,823 professionals have used our research since 2012.
it_user142623 - PeerSpot reviewer
CEO with 51-200 employees
Vendor
Pros and Cons of Splunk, Sumo Logic, LogStash and Others

Splunk, Sumo Logic, LogStash, GrayLog, Loggly, PaperTrails – did I miss someone? I’m pretty sure I did. Logs are like fossil fuels – we’ve been wanting to get rid of them for the past 20 years, but we’re not quite there yet. Well, if that’s the case I want a BMW!

To deal with the growth of log data a host of log management & analysis tools have been built over the last few years to help developers and operations make sense of the growing data. I thought it’d be interesting to look at our options and what are each tools’ selling point, from a developer’s standpoint.

Splunk

As the biggest tool in this space, I decided to put Splunk in a category of its own. That’s not to say it’s the best tool for what you need, but more to give credit to a product who essentially created a new category.

Pros

Splunk is probably the most feature rich solution in the space. It’s got hundreds of apps (I counted 537) to make sense of almost every format of log data, from security to business analytics to infrastructure monitoring. Splunk’s search and charting tools are feature rich to the point that there’s probably no set of data you can’t get to through its UI or APIs.

Cons

Splunk has two major cons. The first, that is more subjective, is that it’s an on-premise solution which means that setup costs in terms of money and complexity are high. To deploy in a high-scale environment you will need to install and configure a dedicated cluster. As a developer, it’s usually something you can’t or don’t want to do as your first choice.

Splunk’s second con is that it’s expensive. To support a real-world application you’re looking at tens of thousands of dollars, which most likely means you’ll need sign offs from high-ups in your organization, and the process is going to be slow. If you’ve got a new app and you want something fast that you can quickly spin up and ramp as things progress – keep reading.

Read the rest of this post here.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user159375 - PeerSpot reviewer
it_user159375Principal Program Manager at a consumer goods company with 1,001-5,000 employees
Real User

I don't want to oversimplify things but I am a 0 and 1 guy. Either you Splunk or you don't Splunk. Yes, Splunk has it's cost. Then again, if you try to go with a cheaper solution, OpenSource solution, or totally home grown, I can almost guarantee that the true cost will be much higher than Splunk. Think of it as meeting half-way. Splunk does half the work, and you need to do the other half, including the committing finances. A good trick is to leverage the free version or trial version for real-life solutions. Once you provide a solution to someone that they can't live without, then you got them hooked. Create a hunger first, then you got them hooked in (the people who will approve the cost).

See all 3 comments
reviewer1804125 - PeerSpot reviewer
Tech Lead Security at a comms service provider with 51-200 employees
Real User
A great product with good indexing and data collection capabilities
Pros and Cons
  • "The indexing and data collection are valuable."
  • "Its search or filtering capability is nice, but it can be improved. It is currently a bit complicated, and it should be simplified. If we can write the search filter in a more simplified way, it would be better."

What is our primary use case?

I used it in the SOC environment to get logs, create dashboards, and filter out data.

What is most valuable?

The indexing and data collection are valuable. 

What needs improvement?

Its search or filtering capability is nice, but it can be improved. It is currently a bit complicated, and it should be simplified. If we can write the search filter in a more simplified way, it would be better.

Their sales support and tech support need improvement. Their support is really bad.

For how long have I used the solution?

I used it for nearly one year in my previous organization. I last used it about seven months ago.

What do I think about the stability of the solution?

It is stable.

What do I think about the scalability of the solution?

Its scalability is good.

How are customer service and support?

Their sales support and tech support are really bad. They take really long to respond.

Which solution did I use previously and why did I switch?

We were using AlienVault. We switched because we weren't really happy with it. So, we looked into different solutions, such as Splunk.

How was the initial setup?

Its initial setup was okay.

What about the implementation team?

We did it ourselves. We had around two people for deployment and maintenance, but we had around 15 users. They all were SOC people.

What's my experience with pricing, setup cost, and licensing?

We had a yearly subscription.

What other advice do I have?

I can recommend this solution to others. It is a great product. 

I would rate it an eight out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer905577 - PeerSpot reviewer
Principal Consultant at a computer software company with 51-200 employees
User
Positive features include replication capabilities, software development kits, and its architecture
Pros and Cons
  • "Positive features include replication capabilities, software development kits, and the architecture."
  • "The solution could use a different licensing model."
  • "An improved user interface along with multi-tenancy support would be beneficial."

What is our primary use case?

  • Cybersecurity defense
  • Web app monitoring
  • VMware monitoring

How has it helped my organization?

  • Troubleshooting
  • Cyber defense

What is most valuable?

  • Drill down
  • Apps
  • REST API
  • Software development kits
  • Architecture
  • Replication capabilities

What needs improvement?

  • Multi-tenancy support
  • Improved user interface
  • Non-proprietary search language
  • Different licensing model

For how long have I used the solution?

One to three years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Java Technical Lead at a insurance company
Real User
The visibility is amazing with easy dashboard creation
Pros and Cons
  • "It is easy to use in any environment."
  • "The visibility is amazing with easy dashboard creation."
  • "​Not even Splunk's support guy, who came to our firm, could help with defining proper role management.​"
  • "Make it easier to include roles and user controls, as it is horrible now."

What is our primary use case?

  • Log monitoring and alerts
  • Looking up information 
  • Dashboards for nice, fast information about various application servers.

How has it helped my organization?

  • It is easier to find problems and exceptions.
  • It is used by any factor in the firm.
  • Easy dashboards creation.
  • The visibility is amazing.  

What is most valuable?

  • Regex for fields creation is great.
  • High availability
  • Easy to use in any environment.

What needs improvement?

Make it easier to include roles and user controls, as it is horrible now.

For how long have I used the solution?

More than five years.

How is customer service and technical support?

Not even Splunk's support guy, who came to our firm, could help with defining proper role management.

What's my experience with pricing, setup cost, and licensing?

It is a pretty high cost solution, but if your organization has the funds, it can bring many benefits.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Sr. Program Manager at a consultancy with 51-200 employees
Consultant
It is able to configure and integrate various solutions into one tool and provide actionable results. You need a dedicated developer.

What is most valuable?

  • Can ingest data from various data sources.
  • Is very useful for organizations who are attempting to meet compliance requirements.
  • Is able to fully configure and integrate various solutions into one tool and provide actionable results.

How has it helped my organization?

My use of Splunk at my previous place of employment improved how we functioned.

For how long have I used the solution?

I have used Splunk for three years.

What do I think about the stability of the solution?

We didn’t have any stability issues.

What do I think about the scalability of the solution?

We didn’t have any scalability issues.

How are customer service and technical support?

During our use of Splunk, we had professional services assisting and not actual technical support. However, the professional services team was great.

Which solution did I use previously and why did I switch?

Our organization did not have an established SIEM tool.

How was the initial setup?

The initial setup is straightforward, depending on the level of implementation of the tool.

What's my experience with pricing, setup cost, and licensing?

Take into consideration the labor costs for a dedicated Splunk developer who can craft the required queries needed for each organization. Organizations usually have their own form of implementation of each tool.

Which other solutions did I evaluate?

We didn’t evaluate any alternatives.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1720563 - PeerSpot reviewer
Technical manager at a tech services company with 11-50 employees
Real User
Stable and easy to use
Pros and Cons
  • "The most valuable features are how stable and easy to use Splunk is."
  • "This solution could be improved by better pricing in general and by easier installation."

What is our primary use case?

My primary use case is for log management. It's mostly deployed on-premises, but it can be cloud-based as well. 

What is most valuable?

The most valuable features are how stable and easy to use Splunk is. 

What needs improvement?

This solution could be improved by better pricing in general and by easier installation. 

For how long have I used the solution?

I have been a partner of Splunk for three years. 

What do I think about the stability of the solution?

This solution is stable. 

How are customer service and support?

Technical support is customer-friendly. 

How was the initial setup?

The initial installation is not straightforward. It needs two or three days, depending on the size of the company. But it can be done with one senior engineer. 

What about the implementation team?

I implemented through an in-house team. 

What's my experience with pricing, setup cost, and licensing?

Splunk has a subscription and a perpetual license. 

This product could use better pricing. 

What other advice do I have?

I would rate Splunk a nine out of ten. I recommend this product to others who are considering implementing it. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Download our free Splunk Enterprise Security Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2025
Buyer's Guide
Download our free Splunk Enterprise Security Report and get advice and tips from experienced pros sharing their opinions.