Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

18 AWS reviews

External reviews

447 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Himanshu Tejwani

Enhanced efficiency with exceptional monitoring features

  • November 06, 2024
  • Review provided by PeerSpot

What is our primary use case?

Our use case for Splunk Enterprise Platform involved deploying the solution for a client requirement, focusing on their data monitoring and management needs.

How has it helped my organization?

Splunk Enterprise Platform has significantly improved operational efficiency by making it easier to monitor infrastructure, detect errors, and read logs. It has reduced troubleshooting efforts from one hundred percent to about twenty percent, thereby increasing productivity significantly. The platform's ability to monitor Docker containers directly has also been beneficial for us.

What is most valuable?

The most valuable features of Splunk Enterprise Platform include its performance, ease of implementation, and user interface, which are superior compared to other on-premises products.

What needs improvement?

Pricing is an area that needs improvement, as it is considered high. Additionally, the addition of AI capabilities would be beneficial for analyzing IP activity patterns and providing alerts. During the integration with Docker, we noticed that Splunk only shows container IDs and not their names, which is a drawback.

For how long have I used the solution?

I have used Splunk Enterprise Platform for one to two years for the projects I have mentioned.

What do I think about the stability of the solution?

Splunk Enterprise Platform is a stable solution, and I would rate its stability as nine out of ten.

What do I think about the scalability of the solution?

Splunk Enterprise Platform is scalable, though the implementation can be challenging. I would rate scalability as eight out of ten.

How are customer service and support?

We have not opted for paid support but have utilized community support, which is good but could benefit from more contributions. I rate the support a seven out of ten.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We have tried multiple products before, but they were difficult to implement. Splunk Enterprise Platform is much easier to implement and execute quickly, which is why we chose it.

How was the initial setup?

The initial setup was not considered easy and required learning and implementation by ourselves. It was an average difficulty process, not too difficult but not very easy either.

What about the implementation team?

The deployment and implementation were done by myself and one of my teammates, totaling two people involved in the process.

What was our ROI?

Monetary ROI was not directly measured, but using Splunk Enterprise Platform has reduced time spent on troubleshooting, therefore enhancing productivity.

What's my experience with pricing, setup cost, and licensing?

I would rate the pricing around three out of ten, considering the tool's cost. We haven't used any extra features, so I'm not sure about additional offerings.

Which other solutions did I evaluate?

We evaluated several other products, but they were found difficult to implement. Splunk was the easier solution.

What other advice do I have?

I highly recommend Splunk Enterprise Platform for organizations with large volumes of logs and multiple servers, as it provides good ROI for big companies. However, due to its cost, it may not be suitable for small organizations.


    shiboo s.

Splunk is great tool for the Security Incident monitoring and Investigation

  • October 23, 2024
  • Review provided by G2

What do you like best about the product?
It provides real-time insights and monitoring, which is crucial for identifying and addressing issues promptly. The search processing language (SPL) is powerful and flexible, allowing users to perform complex queries and analyses. Splunk is very user friendly, easy to implement and integrate.
What do you dislike about the product?
Cost is the one thing that i will keep under dislike but they have mow come up with diffrent licensing model that is competing with others.
What problems is the product solving and how is that benefiting you?
Splunk is effectively helping you monitor data from various log sources and conduct security incident investigations.


    Sudheer Kumar

Helps with monitoring and incident management

  • August 19, 2024
  • Review provided by PeerSpot

What is our primary use case?

I use the solution in my company to capture the events to deal with threat detection, incident response, and compliance reporting. For IT operation management, it gets complex to track the health and performance of IT infrastructure, including our network devices and applications, so Splunk Enterprise Platform can be used for centralized log management.

What is most valuable?

The most valuable feature of the tool for DevOps and from a continuous delivery perspective is that the tool is useful in areas like deployment, monitoring, and incident management.

What needs improvement?

If I compare Splunk Enterprise Platform with the other tools, the dashboard and the user interface need to be built at a console level and in a user-friendly mode. Sometimes, the tool looks a bit complex, and we can't find out the exact area where we need to make the changes in the configuration and changes for the log events monitoring. The dashboard and the console-level areas need to be made friendly.

The product's initial setup phase needs to be made easy since it looks like it is very complex compared to the other tools in the market.

For how long have I used the solution?

I have been using Splunk Enterprise Platform for three years.

What do I think about the stability of the solution?

From a stability perspective, the tool is good. If any breakdowns exist, remediation and support are provided, so it is not a problem.

What do I think about the scalability of the solution?

The tool is used by around 5,000 employees and servers in my company.

How are customer service and support?

I have interacted with the solution's technical support. I rate the technical support a seven and a half out of ten.

How would you rate customer service and support?

Neutral

How was the initial setup?

The solution is deployed in an on-premises version.

What's my experience with pricing, setup cost, and licensing?

The tool is expensive.

What other advice do I have?

To first-time users, I can say that proper analysis and bandwidth utilization, cloud resource monitoring, and cost optimization are the things I would ask one to check in the tool.

It is not easy for beginners to use, and for freshers, it will take time to understand the tool.

From a security perspective, I rate the tool a nine out of ten. From a user and the console perspective, I rate the tool a seven out of ten.

In general, I rate the tool an eight out of ten.


    Luis P.

Splunk Review

  • July 16, 2024
  • Review provided by G2

What do you like best about the product?
a powerfull tool with alot of potencial to make more ease the work
What do you dislike about the product?
the app for integration for other tecnologys is limited after new version of splunk
What problems is the product solving and how is that benefiting you?
help to the monitoring infraestructure with dashboards and alerts to can more ease and simple to preven incidents


    reviewer2514855

Helps to filter and analyze log data

  • July 15, 2024
  • Review provided by PeerSpot

What is our primary use case?

We use the solution to manage a large volume of data from our servers for the project I'm currently working on. Since we don't need all the data, we filter out and extract the specific information required for our applications. Depending on our needs, we use it to filter, investigate, and analyze log data for any errors or requirements.

What is most valuable?

The most valuable feature I've found in the Splunk Enterprise Platform is its log readability and filtering capabilities. The filters on the left side are particularly useful, allowing me to quickly narrow down the data to what's relevant for any application or server service. The interesting fields feature helps me get the values I need most of the time.

Additionally, the dashboard and report creation aspects are excellent, especially for automation. Integrating Splunk Enterprise Platform with Power Automate and other automation tools allows me to create precise reports that keep my team updated. The tool is not difficult for a beginner to learn.

What needs improvement?

Splunk Enterprise Platform could improve in the area of basic log readability. When performing basic searches without advanced filters, the logs often contain timestamps and various unknown codes or other elements that can be confusing. Removing or simplifying these parts would make it easier for users who are not developers or do not have a development background to understand and find relevant information easily.

If I could add a feature to the Splunk Enterprise Platform to make my life easier, I'd like to add an internal automation tool. We can use third-party automation tools like Power Automate, but it would be better if Splunk Enterprise Platform had its built-in tool.

This tool could automate reports and make sending emails with Excel attachments or other formats to specific people easier. We're currently using third-party tools for this, but having it as a first-party feature would be better.

For how long have I used the solution?

I have been using the product for more than two years.

What do I think about the stability of the solution?

I haven't found any bugs while working with the application.

What do I think about the scalability of the solution?

My company has more than 100 product users.

How are customer service and support?

I haven't contacted the support team yet. I get information from my seniors and leads.

What other advice do I have?

Before using the Splunk Enterprise Platform, basic knowledge of log analytics tools like Logstash is beneficial. While it does not require specific prerequisites, having some background knowledge will help. Remember that Splunk is a paid service, unlike other log analytics tools like ELK Stack, which may offer free versions.

I rate the overall solution a nine out of ten.


    Luis S.

Good Product - Bad News Cisco

  • July 11, 2024
  • Review provided by G2

What do you like best about the product?
Easy to use
Easy To integrated Source
Easy to scale
What do you dislike about the product?
The licensing model is not easy to sell or control, and the sale to a manufacturer like Cisco is creating difficulties in the sales process for companies dedicated to marketing cyber security solutions.
What problems is the product solving and how is that benefiting you?
monitoring, detection and response to security incidents.


    Raymond De Rooij

Enables us to create dashboards and do analysis but has limitations

  • May 17, 2024
  • Review provided by PeerSpot

What is our primary use case?

We use Splunk to create dashboards and do analysis.

What is most valuable?


What needs improvement?

Splunk can be used primarily to port log files, allowing for easy and quick management of large amounts of logs. However, this can also be a drawback due to the configuration, parsing, and dashboard creation limitations. Communication is stream-based, which means you need to do a lot of pre-emptive setup to get a nice export. Another issue with Splunk is its streamlined nature; it reruns the query whenever you refresh a dashboard. This becomes problematic if you have a large volume of log files, as it can be slow, resource-intensive, and require significant storage space.

It is designed to process and analyze log files. You feed log files into the platform, automatically extracting different fields. This allows you to filter and manipulate the data in a stream-based manner. Essentially, you pass a log file through various filters sequentially, enhancing or reducing its size by adding or removing information. However, this stream-based approach can make it challenging to create detailed dashboards easily. The platform primarily focuses on log files and is unsuitable for real-time data analysis.

For how long have I used the solution?

I have been using Splunk Enterprise Platform for one or two years.

What do I think about the stability of the solution?

The product is stable.

I rate the solution’s stability a six out of ten.

What do I think about the scalability of the solution?

It can be very slow if you have a lot of data, and scaling it up for better performance can be quite expensive.

A thousand users use this solution. We have many systems and a lot of data.
It is centrally deployed and used extensively across various systems. I use it daily, but sometimes I only use it once a month. It depends on the data I need or the issue I'm investigating.

I rate the solution’s scalability a four out of ten.

How was the initial setup?

The initial setup is straightforward.

What other advice do I have?

I wouldn't recommend Splunk Enterprise Platform because it's slow and has significant limitations.

Overall, I rate the solution a six out of ten.


    Bagi Vijender Reddy

Useful to set up alerts and reports to manage the logs and log metrics

  • May 11, 2024
  • Review provided by PeerSpot

What is our primary use case?

We use the solution for patching.

What is most valuable?

It's not just one feature I like the most. Every person wants to collect and rate logs, and I value how the Splunk Enterprise Platform handles this.The most valuable part for us is setting up the alerts and reports to manage the logs and log metrics. We use it to support every tool across the entire bank.We are the ones who manage all the data, and if there's any issue, everything depends on the Splunk Enterprise Platform.

The tool uses upgraded rules restricting access to specific people, ensuring that only certain individuals can edit. Everyone else has read-only access. Splunk Enterprise Platform's dashboard and visualization features are good. These features are some of the best parts of the software because you can customize the dashboard however you need. The user interface is perfect and keeps getting better with new updates. It's very user-friendly, allowing everyone to create their dashboards easily.

What needs improvement?

The Splunk Enterprise Platform has room for improvement, particularly in automating the permissions process during app promotions. Currently, permissions are manually set when different teams request an application move to production, which is time-consuming. Automating this process would streamline operations by automatically assigning the appropriate permissions and roles to specific services or teams, reducing the need to review each request ticket manually.

For how long have I used the solution?

I have been using the tool for one year and five months.

What do I think about the stability of the solution?

I would rate the tool's stability as ten out of ten. It provides outstanding security and is also very user-friendly.

What do I think about the scalability of the solution?

We have encountered issues with scaling up and handling increasing data volumes, but we address them according to customer requirements. As for scalability, I would rate it a nine out of ten.

How are customer service and support?

The solution's support uses a ticketing system to address dashboards, alerts, reports, etc. If server issues or alerts are triggered, they respond by raising a ticket. They investigate the problem by checking logs and assessing any impact on disk storage.

I handle smaller support tasks myself but escalate them to my head for high-priority issues.

What about the implementation team?

My company's senior SMEs help with the deployment process.

What's my experience with pricing, setup cost, and licensing?

The solution's pricing increases with the amount of data used. This pricing model is acceptable because it aligns with the security features provided. It ensures that the price reflects the level of security and the amount of data we're managing.

What other advice do I have?

Currently, we are on-prem. However, we have started cloud migration in the last few months. I rate the overall solution a ten out of ten. In daily life, every IT company should use it to monitor its logs. It is an emerging tool.


    Computer & Network Security

SPlunk for SIEM

  • May 07, 2024
  • Review provided by G2

What do you like best about the product?
Its simplicity to gather/search the data that I need
What do you dislike about the product?
Not a lot of information about the product of easy access
What problems is the product solving and how is that benefiting you?
Integration of network elements to our SIEM


    Inayath K.

Splunk enterprise is best next GEN SIEM solution

  • April 28, 2024
  • Review provided by G2

What do you like best about the product?
Splunk is a multipurpose tool, which can be used for Visulizing the data in the form of Dashboards with dynamic drill downs, UBA, Incident review Dashboard, wide variety of integration support with existing Add-ons.
What do you dislike about the product?
Bundle replication & dispatch directories are two main reasons for Splunk Enterprise crash, these are not being addressed since long.
What problems is the product solving and how is that benefiting you?
Preventing the organisation from CyberAttacks with the existing usecase library to alert when there is a suspicious activity identified.

Dashboards that allows customers to visualize the data the way they want.

Multi correlation that allows to correlate & create the best usecase to minimise false positives.