External reviews
External reviews are not included in the AWS star rating for the product.
Splunk is great tool for the Security Incident monitoring and Investigation
What do you like best about the product?
It provides real-time insights and monitoring, which is crucial for identifying and addressing issues promptly. The search processing language (SPL) is powerful and flexible, allowing users to perform complex queries and analyses. Splunk is very user friendly, easy to implement and integrate.
What do you dislike about the product?
Cost is the one thing that i will keep under dislike but they have mow come up with diffrent licensing model that is competing with others.
What problems is the product solving and how is that benefiting you?
Splunk is effectively helping you monitor data from various log sources and conduct security incident investigations.
- Leave a Comment |
- Mark review as helpful
Splunk Review
What do you like best about the product?
a powerfull tool with alot of potencial to make more ease the work
What do you dislike about the product?
the app for integration for other tecnologys is limited after new version of splunk
What problems is the product solving and how is that benefiting you?
help to the monitoring infraestructure with dashboards and alerts to can more ease and simple to preven incidents
Good Product - Bad News Cisco
What do you like best about the product?
Easy to use
Easy To integrated Source
Easy to scale
Easy To integrated Source
Easy to scale
What do you dislike about the product?
The licensing model is not easy to sell or control, and the sale to a manufacturer like Cisco is creating difficulties in the sales process for companies dedicated to marketing cyber security solutions.
What problems is the product solving and how is that benefiting you?
monitoring, detection and response to security incidents.
SPlunk for SIEM
What do you like best about the product?
Its simplicity to gather/search the data that I need
What do you dislike about the product?
Not a lot of information about the product of easy access
What problems is the product solving and how is that benefiting you?
Integration of network elements to our SIEM
Splunk enterprise is best next GEN SIEM solution
What do you like best about the product?
Splunk is a multipurpose tool, which can be used for Visulizing the data in the form of Dashboards with dynamic drill downs, UBA, Incident review Dashboard, wide variety of integration support with existing Add-ons.
What do you dislike about the product?
Bundle replication & dispatch directories are two main reasons for Splunk Enterprise crash, these are not being addressed since long.
What problems is the product solving and how is that benefiting you?
Preventing the organisation from CyberAttacks with the existing usecase library to alert when there is a suspicious activity identified.
Dashboards that allows customers to visualize the data the way they want.
Multi correlation that allows to correlate & create the best usecase to minimise false positives.
Dashboards that allows customers to visualize the data the way they want.
Multi correlation that allows to correlate & create the best usecase to minimise false positives.
A tool to analyze your logs and data
What do you like best about the product?
It is easier to write SPL queries than SQL, and you can create your own custom Splunk commands where you can write your own Python scripts to handle complex data types like JSON, which has a nested level of 3 or 4. It is easy to create visualizations and get insights out of the data through commands like charts, stats, etc. It has a vast level of customer support, and when the developer or the user gets stuck, it has great documentation to resolve the issue.
What do you dislike about the product?
The resources splunk software takes when it handles a complex query makes you crazy and it has everything a developer needs, but when it comes to the licensing, it is a bit costly.
What problems is the product solving and how is that benefiting you?
The business problem that Splunk solved was creating a custom visualization using Java scripts for rendering a train track, like the current movement of the train on the map or track layout, and also the custom filters that are created with the help of Javascript. I think this is the best thing where I got the most out of Splunk Enterprise here.
Splunk is a quite famous vendor in managing IT infrastructure with SIEM - now Enterprise.
What do you like best about the product?
The capabilities of managing and integrating with other vendors are great! We can easy to implement it in any kind of networks & systems.
What do you dislike about the product?
The management UI might be hard to control with new guys. It's quite hard to use.
What problems is the product solving and how is that benefiting you?
It can easily manage log, systems, networks and give me a centralize monitoring one.
Splunk Enterprise Review
What do you like best about the product?
1) User friendly GUI.
2) Simple and powerful tool for SEIM.
3) Rich visualizations & Cutomizable dashboards to understand insights clearly.
4) Real time monitoring and alerting features are cheryy on top.
2) Simple and powerful tool for SEIM.
3) Rich visualizations & Cutomizable dashboards to understand insights clearly.
4) Real time monitoring and alerting features are cheryy on top.
What do you dislike about the product?
1) cost can be issue for some organizations.
2) It also offers free version but have very limited functionality.
2) It also offers free version but have very limited functionality.
What problems is the product solving and how is that benefiting you?
It is quite helpful in my SEIM process and visualization it offers that makes me easy to understand and generate reports.
The valuable information
What do you like best about the product?
That being a recognized brand, integrations are easier and there is plenty of documentation
What do you dislike about the product?
Storage costs and that there is still no Victoria experience in GCP
What problems is the product solving and how is that benefiting you?
Response to security events and incidents
Splunk your Issues
What do you like best about the product?
Usage of Indexes for identifying the logs and troubleshooting without using DB
What do you dislike about the product?
It needs a lot of storage, managing it will become quite complex
What problems is the product solving and how is that benefiting you?
Identify issues when the poller is down, when data is not transferring from one DB to other DB, through splunk logs we can find the resolution.
showing 1 - 10