My company's use of Splunk Incident Intelligence ranges from log correlation to security incidents.
What is our primary use case?
What is most valuable?
The most valuable features of the solution for my company are log correlation, dashboards, and the possibility to customize our own use cases.
What needs improvement?
The response time of Splunk's workflow should be improved.
For how long have I used the solution?
I have been using Splunk Incident Intelligence for four years.
What do I think about the stability of the solution?
Stability-wise, I rate the solution a nine out of ten.
What do I think about the scalability of the solution?
It is a scalable solution.
Not everybody in our company has access to the solution, but my team does get involved in the collection of logs for all the employees.
My company operates as an enterprise-sized business.
How are customer service and support?
The solution's technical support is not perfect. My company has dealt with situations where we had to wait for a response from Splunk's technical support. I rate the technical support a six out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I previously used SonarQube, but now it is the responsibility of another team in my company to manage it. Apart from Splunk, I also deal with NetWitness.
What other advice do I have?
The solution's maintenance part is easy. In my company, we have many people in our team, amongst whom some are involved with the maintenance part of the solution.
If the ones planning to use the solution are willing to fine-tune their use cases, I would say that this solution works very well and doesn't give too many false positives.
I rate the solution a nine out of ten.
![Splunk Incident Intelligence [EOL] Logo](https://images.peerspot.com/image/upload/c_scale,dpr_3.0,f_auto,q_100,w_100/jtn756w7mm1vpr320w4a61p118gg.png?_a=BACAGSGT)