Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Splunk Enterprise

Splunk | 9.4.3

Linux/Unix, Amazon Linux 2023 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS customer

16 AWS reviews

External reviews

445 reviews
from and

External reviews are not included in the AWS star rating for the product.


5-star reviews ( Show all reviews )

    Stephan v.

Making Tenable.io talk to Splunk

  • October 25, 2022
  • Review provided by G2

What do you like best about the product?
Integrating Tenable.io with Splunk was far easier than I initially thought. All thanks to a nifty Plugin that does all the hard work for you.
Enter your details in the plugin for both sides of communication, and there you go. It can't get easier than that.
What do you dislike about the product?
The plugin only worked on version 4, which gave some issues in the beginning, but after upgrading, all went well.
Only other potential issue i foresee is that newbies might get a little overwhelmed with the cheer amount of data that can be imported.
What problems is the product solving and how is that benefiting you?
Importing any telemetry data into Splunk makes monitoring much easier as I don't nessacarily need to log into Tenable,io and Splunk Interface. Splunk can feed me all the info I need and want


    Filippo S.

Very powerful software for data analysis

  • October 13, 2022
  • Review provided by G2

What do you like best about the product?
Easy to create quick report and custom logs
What do you dislike about the product?
The dashboard could be more streamlined and intuitive
What problems is the product solving and how is that benefiting you?
Manage, store and analyze large amount of data


    VINAYAK J.

Integration with Zscaler

  • October 05, 2022
  • Review provided by G2

What do you like best about the product?
GUI is very easy to understand and configure.
It will not take more than 5mins to integrate with zscaler.
We can export the logs in pdf format which is very easy to read.
What do you dislike about the product?
Applying filters to search the logs because it is very difficult to apply the correct filter. Need some document for filters.
What problems is the product solving and how is that benefiting you?
In zscaler we can not check live logs without SIEM. So we integrated Splunk with Zscaler and that resolved our issue.


    Computer Software

Splunk is the tool to make sense of data

  • September 22, 2022
  • Review provided by G2

What do you like best about the product?
Versatility and flexibility, a vast range of add-ons, great community and support, various options for different budgets, good integration options with various tools and vendors.
What do you dislike about the product?
Splunk is not easy to start up with and it requires good Linux and Systems skills. A very steep learning curve should be anticipated. Deployment automation can be hard or not possible at all.
What problems is the product solving and how is that benefiting you?
We use Splunk for multiple purposes: data aggregation from variuos log and stream sources, correlation and analysis, reporting and alerting. Splunk's strongest suit is to ingest unstructured data and convert it to structured, thus providing us the sense of data.


    Nitish N.

Splunk

  • September 21, 2022
  • Review provided by G2

What do you like best about the product?
Splunk is the most effective but expensive tool for cybersecurity analysis
What do you dislike about the product?
The one factor that I dislike in splunk is the pricing for the licence
What problems is the product solving and how is that benefiting you?
It helps to identify the real time threats in the current world and alerts so that we could mitigate the issue quickly


    Pardeep K.

Splunk Enterprise Security provides simplified threat management

  • September 07, 2022
  • Review provided by G2

What do you like best about the product?
Splunk Enterprise Security provides simplified threat management that facilitates quick threat detection and response and minimizes risk.
What do you dislike about the product?
Pricing gets a bit higher for large data volumes. The optimization of searches is more of an art than just science. Dashboard is a bit harsh as compared to tableau. It is continuously making attempts to replace it with open source alternatives.
What problems is the product solving and how is that benefiting you?
Splunk Enterprise Security is an analytic-driven SIEM solution that can combat threats with actionable intelligence and advanced analytics at scale. With the goal of perfecting your security operations and reducing risks, Splunk is the security platform that enables you to detect, investigate, and respond in real-time.


    Security and Investigations

just imagine, you can do it with splunk!

  • July 11, 2022
  • Review provided by G2

What do you like best about the product?
SPL is one and only, whatever you can imagine, you can do it with SPL
What do you dislike about the product?
Data pipeline and conf files are still hard to understand if you have no enough knowledge.
What problems is the product solving and how is that benefiting you?
- Splunk gives you advanced visibility and correlation options with different data sources
- Statistical and ML approaches can be done so easily and with no coding.
- advanced dashboarding within a minute
- Splunk has the ability to do advanced threat hunting for security
Recommendations to others considering the product:
haven't started statistics and ML, and you don't know python as well. this is the best place to start.
game changer for log management system.


    Manzar A.

Splunk Review

  • May 13, 2022
  • Review provided by G2

What do you like best about the product?
Splunk is the most capable SIEM tool out there. Its query language SPL is very efficient and it returns the result very fast.
It takes less time than any other SIEM tool I have used, to return the result of the query.
Also, its capability to use and define a statistical model in rule is another feature that I like most.
What do you dislike about the product?
Its UI is not as rich as it should be due to which it takes time to onboard new Analysts into Splunk as they need more time to get familiar with SPL query language.
Also its little bit expensive and small organizations might not afford it.
What problems is the product solving and how is that benefiting you?
Real-time threat detection, alert generation, analysis, and investigation.
Log management and retention.
Historical co-relation of security events.
Data Analysis and visulation.


    Government Administration

Splunk review with trend Micro Vision One(XDR)

  • March 16, 2022
  • Review provided by G2

What do you like best about the product?
Very in-depth and informative. dashboards are easy to read and understand
What do you dislike about the product?
No dislikes so far. it has been everything we were looking for in log aggregation
What problems is the product solving and how is that benefiting you?
Which machines may have been compromised or any changes been made


    SANTOSH M.

Splunk Enterprise

  • March 01, 2022
  • Review provided by G2

What do you like best about the product?
Leading industry monitoring tool for performance,data analysis,data integration , Application sensors, custom application.
Virtual machines , hyper version and for cloud services.
What do you dislike about the product?
Worth using it and everything is upto the expectations.
Good to have product for IT industry
Need little UI improvements and on-time patches.
Apart from these no Dislikes.
What problems is the product solving and how is that benefiting you?
Application monitoring, Security logs, daily logs and weekly logs.
Data Virtulization and analysis.
Servers ,VMs and data center security logs.
It can be used for multiple vendor platform.