Splunk Enterprise

4.6 (202)
Machine data management and analytics

Overall rating

4.6 /5
(202)
Value for Money
4.3/5
Features
4.5/5
Ease of Use
4.1/5
Customer Support
4.3/5

97%
recommended this app
Sort by

202 Reviews

Sachin
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Splunk: A Monitoring Tool for all your needs

Reviewed on 30/4/2022

If i have put a word it would say "Fantastic". The functionalities Splunk provides eases team to...

If i have put a word it would say "Fantastic". The functionalities Splunk provides eases team to manage/monitor their IT infrastructure and internal application you will be well aware about the performance of your applications. Setup alerting and take necessary actions in stipulated time to overcome all the issues which may affect your application performance.

Pros

Splunk offers various features whether you need to setup monitoring on your server, application logs based on logs ingestion set alerts so that teams got notified on real time and take actions accordingly. In this way, it helps to monitor application which are mission critical. You can make dashboards in Splunk where you can configure various components such indexes, data inputs and schedule reports as well. To achieve additional functionalities we can install third party apps as well such as AWS Add on for cloud watch log ingestion.

Cons

From Admin perspective, I found user access management a little difficult. The roles of access management becomes complicated because some time the config files for that didn't came very handy. Other then that I think all in all Splunk provides fulfill all of the requirements.

Ariev
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Aneeded for the industry on the basic to the best role.

Reviewed on 21/8/2022

It's a great tool and used for many years to come.

It's a great tool and used for many years to come.

Pros

Real time use. The ingestion of data and more.

Cons

Nothing yet.. maybe performance at times.

Alternatives Considered

IBM Security QRadar

Reasons for Switching to Splunk Enterprise

Better for the industry and real time use. More expensive.
Nav
Overall rating
  • Industry: Computer Software
  • Company size: 501–1,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 6.0 /10

Currently using this diagnostic tool for log analysis

Reviewed on 14/3/2018

Overall a decent product.

Overall a decent product.

Pros

- Ability to search logs across processes and services
- Ability to develop dashboards to Monitor critical metrics
- Ability to set up alerts based on threshold values

Cons

- Need to regex well in order to use the tool to its full ability
- Ability to extract values out of the log statements could be simpler
- Alerts usually end up being over alerting or false alerts.

Samuel
Overall rating
  • Industry: Telecommunications
  • Company size: 2–10 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Powerhouse in data management and analysis

Reviewed on 2/6/2023

A complex but rewarding journey of data exploration and anomaly detection.

A complex but rewarding journey of data exploration and anomaly detection.

Pros

Powerful and versatile data mining tool with excellent integration capabilities.

Cons

Challenging initial setup and learning curve, particularly with query language and high cost.

Idaly
Overall rating
  • Industry: Semiconductors
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Powerful SIEM system that meets our expectations.

Reviewed on 1/2/2023

We are using Splunk Enterprise for log correlation, the analytics are accurate and it catches...

We are using Splunk Enterprise for log correlation, the analytics are accurate and it catches errors right away which improves our internal capabilities, it is a special service that collects data from different data sources very accurately to catch future issues, the reports are detailed and understandable. It has features that streamline manual work, improve our security and our protection in our IT infrastructure.

Pros

I really like the platform, the data collection is ideal and the reports are detailed, it is the most appropriate SIEM service to monitor our IT infrastructure, it is an ideal software to take preventive measures, it is easy to customize the dashboards, the monitoring is constant and it gives us security in real time, the alerts are accurate and it helps us understand what is happening and fix it before it becomes serious.

Cons

It is a somewhat expensive service but with more powerful features than other free SIEM systems, and it is a bit complex to set up and use for inexperienced users, so a lot of help should be sought from experienced staff and support team at first.

Nana Kwame
Overall rating
  • Industry: Education Management
  • Company size: 201–500 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk Enterprise is a powerful data analytics software

Reviewed on 17/3/2023

I believe getting important data analysis in real-time saves us from threats

I believe getting important data analysis in real-time saves us from threats

Pros

Splunk Enterprise offers real-time data analysis tools makes it possible for my institution to see and take immediate action against security risks, performance difficulties, and other operational concerns.

Cons

Splunk Enterprise is really expensive and it is a huge part in our annual budget because we require add-ons.

Verified Reviewer
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Great platform for data analysis and visualization

Reviewed on 2/2/2023

Splunk Enterprise is a great data analysis and visualization platform to show real time status with...

Splunk Enterprise is a great data analysis and visualization platform to show real time status with live dashboards.

Pros

Security Information and Event management, log analytics, custom dashboards and workspaces

Cons

Auto upgrade management and notifications for Add-ons. Leaning more towards config file based implementation instead of UI based implementation

Alternatives Considered

New Relic

Reasons for Switching to Splunk Enterprise

Product Features and pricing
Stephan
Overall rating
  • Industry: Computer & Network Security
  • Company size: 2–10 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk is a great SIEM solution for anyone to use

Reviewed on 23/3/2023

Vey happy to user the product, it fits our client's need perfectly

Vey happy to user the product, it fits our client's need perfectly

Pros

The easy of setup and integration makes this one of my favorites As well as the real time dashboard

Cons

Not much i don't like yet, but maybe the interface can do with an update

Verified Reviewer
Overall rating
  • Industry: Chemicals
  • Company size: 1,001–5,000 Employees
  • Used Weekly for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Efficiently manage and analyze data with Splunk Enterprise

Reviewed on 5/3/2023

Pros

Splunk Enterprise's versatility is highly valued by its users, as it is capable of analyzing and managing data from a variety of sources, including machine data, logs, and structured and unstructured data formats. This makes it a valuable tool for organizations with diverse data management needs. In addition, users appreciate the software's efficiency in processing and analyzing large volumes of data quickly, allowing them to make faster and more informed decisions. This is particularly important for organizations that need to respond to data in real-time, as Splunk Enterprise's speed and efficiency can help them stay ahead of the curve.

Cons

Splunk Enterprise to be complex and difficult to use, particularly for those who are not familiar with data analysis and management tools. The software has a range of features and capabilities, which can be overwhelming.

Verified Reviewer
Overall rating
  • Industry: Information Technology & Services
  • Company size: 1,001–5,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 9.0 /10

Helpful tool for troubleshooting and analyzing data/logs

Reviewed on 10/11/2022

The overall experience has been good. Splunk definitely helped improve our troubleshooting...

The overall experience has been good. Splunk definitely helped improve our troubleshooting capabilities.

Pros

Splunk is great for monitoring, logging, and analyzing the large volume of data on the servers. Our support teams use Splunk to collect data/logs from the servers and troubleshoot product related issues. We introduced Splunk few years ago in our organization and it helped improve our defect/issue analysis and problem solving abilities

Cons

While Splunk is not too complex, it also requires a certain level of skillset to decipher the information. It may take a while to figure things out if you are a new user, or someone with limited technical knowledge

Amit
Overall rating
  • Industry: Telecommunications
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best tool for Distributed logs data analysis

Reviewed on 15/4/2020

We have several micro-services deployed in production which require to lookup application access as...

We have several micro-services deployed in production which require to lookup application access as well as server logs and analyze data for their usage. We created several reports/charts for visualization. We use splunk as security logs tool to see the firewall traffic, tracing any vulnerable access, any database related crash ..etc.
It helps easily to find issue and fixed quickly by black listed in system.

Pros

Splunk Enterprise is best tool to analyze the data based on different visualization. It help us to lookup distributed logs for micro-services . It enables field based lookup. For complex logging, we can use search query using expression. We can create multiple reports/charts for visualization such as a pie or bar chart for our data. Best feature what i like , We can visualize our search results and share them with others using dashboard panels. If Already have a dashboard, we can add a new panel from a report, clone from another dashboard, or add a prebuilt panel. Fully customization available. Interfaces is very flexible. We export it in different formats, or refresh it to visualize the newest data. Online Support is available through different community.

Cons

Search query builder is fully based on technical. for Non technical users, its really difficult to lookup logs. Sometimes, error thrown by query builder is more difficult to understand. Deep Learning is required to use splunk for production data. For Large application installation, it need to manage more.

devaun
Overall rating
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 7.0 /10

Query your log statements for your production apps in REAL TIME to triage and monitor...

Reviewed on 2/2/2018

XRAY vision on your production instances. Every day we code our applications so that we will be...

XRAY vision on your production instances. Every day we code our applications so that we will be splunk friendly with our app log statements. For example "featureX=value" allows you to query for every customer that engaged with featureX.

Pros

Splunk allows us to see exactly what is going on in production! I work on commerce for a fortune 100 company, and we use Splunk to monitor our apps in real time. Splunk gives you the ability to perform queries like you would with SQL against your log statements in real time. You will learn that you can place strategic log statements in your code that allows you to identify situations in production and be proactive at solving them. For example, you can log your customer's session cookie ID, and track any given customer's activity on your website via your app logs. It gives you dials and charting capabilities to monitor even the slightest drops in customer activities due to flaws in code or slowing network calls.

Cons

PRICE. The software is so powerful, and they seem to leverage this in the pricing of the licenses.

David
Overall rating
  • Industry: Entertainment
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Offers more than you think

Reviewed on 7/2/2018

We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening...

We've used the software to detect layer 7 attacks, unearth issues we didn't realize were happening and gives us end to end insight into our stack.

Pros

The system is highly intuitive to use. It is faster than other solutions I've used on the market and has a huge library of 3rd party plugins to get more from the system. It is easy to create scheduled searches, dashboards, reports etc. but there are a number of additional plugins (at an extra cost) to help with security, single pane of glass and metric collection.

Cons

It offers challenges for a decentralized working model. Where Splunk is centrally managed, it is easy to ensure that best practices are maintained. Where the system is opened up for an entire department to utilize and on-board their logs, it becomes more difficult. However, with some creative thinking and good process, this issue can be overcome.

Frank
Overall rating
  • Industry: Computer Software
  • Company size: 5,001–10,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Likelihood to recommend 10.0 /10

Doing setup redundant servers without Splunk

Reviewed on 20/12/2020

Saved my a$$ many times. In a multi-server environment, if you don't have Splunk or something like...

Saved my a$$ many times. In a multi-server environment, if you don't have Splunk or something like it, it will be a nightmare to try and coordinate the various log files involved.

Pros

Several of our applications are distributed across multiple systems. It is the same software running on each server but doing the same job for different users. Each server would generate its own log files. When things went wrong, we used Splunk to be able to see what was going on on each server. Click a few buttons and you get two logs from two different servers listed together coordinated by time. But that leads you to discover that the issue came from a separate upstream or downstream server, then bring in those logs too . . . all coordinated by time. Don't get me wrong, the IT guys love these tools for their own enterprise reasons, but as a server stack developer, this was a resource I used OFTEN.

Cons

I never fully grokked their SQL like language. I could do basic things daily without issue. However, I often had to hit the documentation to do anything more than a simple "find this" query.

Or
Overall rating
  • Industry: Computer Software
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 8.0 /10

Splunk helps us to walk in the darkness, for sure in the Prod arena

Reviewed on 18/12/2021

We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be...

We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be improved and even more useful

Pros

Dashboards feature is amazing, I use it much. Alerts and queries are easy to set up. Mostly it works fast so it's kind of Dev friendly so it's easy to onboard the new guys

Cons

Alerts should have a better way to manage it. There should be a way to promote alerts to different environments - so we will be able to set the Dev/Stg/Prod
Sometimes some things that we want to do take a while searching on the internet for a solution - they might think how to do it better - maybe some examples or better documentation

shashank
Overall rating
  • Industry: Information Technology & Services
  • Company size: 1,001–5,000 Employees
  • Used Weekly for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Best Tool for Monitoring Purposes.

Reviewed on 15/4/2019

As a user of Splunk, we generally used to monitor the log provided by the server clusters belonging...

As a user of Splunk, we generally used to monitor the log provided by the server clusters belonging to a tool called API Connect. As the logs are stored in Splunk, we tally the transaction count from API Connect tool and filter the log search in Splunk with a particular search query. We can download the logs of particular time and date of API Connect servers in case of transaction count issues. We create a dashboard for all the individual API's transaction count in terms of total transaction count of all API's. In this way, it makes our work easier to find out which API has the highest transaction count. We even use Splunk to know the state of the machine. Reports generated by the Splunk helps us to find out the API with the highest response time. In this way, Splunk makes our work a lot easier as it is very fast and highly secure.

Pros

1) Accepts multiple data formats like CSV, JSON, XML
2) Does the hard work for us i.e converting machine data to a human-readable format.
3) Can create customized alerts to serve our business purpose.
4) Searching on the based on queries is pretty simple.
5) We can create dashboards to analyze and visualize our search results.
6) Can export the log content to our Personal computers.
7) Setting up plugins and integrating with any tool that needs monitoring is pretty easy.
8) Technical support for the Splunk is very quick as they have a dedicated staff for that.

Cons

I did not find any flaws with this software.

Verified Reviewer
Overall rating
  • Industry: Computer Software
  • Company size: 51–200 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 7.0 /10

Number 1 SIEM

Reviewed on 18/9/2022

I was very happy with splunk and I suggest it to everyone

I was very happy with splunk and I suggest it to everyone

Pros

I think Splunk is first and best software in the field, easy to use, does what it had promised,

Cons

pricing could be better, they could be more flexible, support is a bit slow

Verified Reviewer
Overall rating
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

A tool that every sys admin needs to have

Reviewed on 14/2/2018

Pros

I'm not sure from where to start in this case.

We use splunk for many things but mostly to analyze the traffic on the network / firewalls. It provides us with a nice overview of what's going on. It makes it very easy to spot spikes on the network and it will provide you also with deep analyzes.

For us it's an indispensable tool, probably the best tool we have.

Cons

To search for something is not always easy, however there are a lot of forums online, so finding help is not that difficult.

Mark
Overall rating
  • Industry: Religious Institutions
  • Company size: 1,001–5,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Excellent logging and troubleshooting tool

Reviewed on 8/11/2018

As a software quality assurance engineer, I love that I can setup a single dashboard where I can...

As a software quality assurance engineer, I love that I can setup a single dashboard where I can then view the same data from any lane I select from a dropdown. If I see a problem in the Test lane, I can quickly check all of the other lanes for the same issue by simply changing the dropdown value.

Pros

Splunk can give you extreme insights into how your systems and software are functioning. Not only is the search very flexible and powerful, the customizable dashboards give a status report at a glance into trends, problems and performance. You can also set up email alerts when errors occur limiting the need to have Splunk opened on your machine all the time.

Cons

Splunk has a learning curve. They have extensive documentation but it isn't intuitive and some features are buried pretty deep. We have an onsite expert who holds bimonthly meetings to answer questions in a group forum.

André
Overall rating
  • Industry: Chemicals
  • Company size: 201–500 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Very reliable and powerful resource

Reviewed on 3/3/2021

On business side we have a lot of logs, informations provided for a very different resources, the...

On business side we have a lot of logs, informations provided for a very different resources, the most beautiful thing about Splunk is to consolidate everything on just one place, and the ease to extract this information make Splunk the most powerful resource to gather and extract data from every resource that you have logs, even if you are using Windows or Linux, Splunk covers both.

Pros

Ease of use, you can extract any kind of information using commands provided by the software vendor. The other good thing about this software is the easy implentation on the servers, and the configuration is basic.

Cons

For people that are not used to use command lines, it might be a liitle bit difficult on the beggining.

Parth
Overall rating
  • Industry: Computer Software
  • Company size: 501–1,000 Employees
  • Used Weekly for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Monitoring Tool Splunk

Reviewed on 4/12/2021

With Splunk anything identified with the application backend logs and observing, it's extremely...

With Splunk anything identified with the application backend logs and observing, it's extremely suitable to utilize, in light of which we can make different dashboards. For server Monitoring, Splunk logs are not exceptionally accommodating. It totally depends on log explanations, assuming articulation isn't organized in standard organization, and it gives mistaken outcomes.

Pros

Splunk Light is ideal for independent on-premise organization.
Augment endpoint logging.
Can find and store logs from a wide range of resources.
Customization of dashboards.
Making applications dependent on your requirements.

Cons

Complex generally design.
Long execution time.
The instrument needs to incorporate AI to comprehend the framework logs and alarming ought to be founded on the auto learning.

Lina
Overall rating
  • Industry: Banking
  • Company size: 1,001–5,000 Employees
  • Used Daily for 1+ year
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 9.0 /10

Master of multiple event log data collection with excellent intrusion detection capability

Reviewed on 4/7/2022

Flexible product with extensive data collection capability for complete visibility to ensure...

Flexible product with extensive data collection capability for complete visibility to ensure effective threat investigation.

Pros

Advanced security analytics to quickly detect malicious threats within our networks and devices with rapid response and effective alert prioritization to accelerate investigation.

Cons

Great integration to collect multiple data easily and in built-threat intelligence that helps to accelerate our investigations. Full of incredible features, there is nothing to dislike.

Edward
Overall rating
  • Industry: Banking
  • Company size: 10,000+ Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Splunk Enterprise Review

Reviewed on 14/1/2023

Good overall experience. It’s an expensive product and there is a learning curve, but it’s an...

Good overall experience. It’s an expensive product and there is a learning curve, but it’s an amazing ing product once you are accustomed to using it

Pros

The ability to set up queries and get data back quickly is invaluable

Cons

Learning to structure queries is a bit of a challenge in the beginning

Joevanne
Overall rating
  • Industry: Financial Services
  • Company size: 1,001–5,000 Employees
  • Used Daily for 2+ years
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Very cool but pricey

Reviewed on 8/8/2017

Pros

Splunk integrates with many different solutions. They also have pre written apps that contain pre written dashboards and other features. It can inherit logs from many products with just several clicks.

Cons

Pricing model is outdated and can get really pricey really fast. It's very simple to over your daily license.

vikas
Overall rating
  • Industry: Information Technology & Services
  • Company size: 10,000+ Employees
  • Used Daily for 6-12 months
  • Review Source

Overall rating

  • Value for Money
  • Ease of Use
  • Customer Support
  • Likelihood to recommend 10.0 /10

Best application for monitoring of SAP system, server and database health

Reviewed on 13/7/2022

Overall Splunk Enterprise is excellent and one of the best business application for early analysis...

Overall Splunk Enterprise is excellent and one of the best business application for early analysis of system performance. Also, tool is really fast and provides analytical report of every system, which is really useful for detailed analysis.

Pros

Sofware is really excellent and best suited for small and large scale business who would like their systems, interfaces, server space and database health check to be performed.

Cons

Sometimes the Splunk alerts creates multiple tickets in ITSM tool during issue. Hence it may result in spending sometime for closure of open incidents.