External reviews
External reviews are not included in the AWS star rating for the product.
Very powerful software for data analysis
What do you like best about the product?
Easy to create quick report and custom logs
What do you dislike about the product?
The dashboard could be more streamlined and intuitive
What problems is the product solving and how is that benefiting you?
Manage, store and analyze large amount of data
- Leave a Comment |
- Mark review as helpful
Integration with Zscaler
What do you like best about the product?
GUI is very easy to understand and configure.
It will not take more than 5mins to integrate with zscaler.
We can export the logs in pdf format which is very easy to read.
It will not take more than 5mins to integrate with zscaler.
We can export the logs in pdf format which is very easy to read.
What do you dislike about the product?
Applying filters to search the logs because it is very difficult to apply the correct filter. Need some document for filters.
What problems is the product solving and how is that benefiting you?
In zscaler we can not check live logs without SIEM. So we integrated Splunk with Zscaler and that resolved our issue.
Splunk is the tool to make sense of data
What do you like best about the product?
Versatility and flexibility, a vast range of add-ons, great community and support, various options for different budgets, good integration options with various tools and vendors.
What do you dislike about the product?
Splunk is not easy to start up with and it requires good Linux and Systems skills. A very steep learning curve should be anticipated. Deployment automation can be hard or not possible at all.
What problems is the product solving and how is that benefiting you?
We use Splunk for multiple purposes: data aggregation from variuos log and stream sources, correlation and analysis, reporting and alerting. Splunk's strongest suit is to ingest unstructured data and convert it to structured, thus providing us the sense of data.
Splunk
What do you like best about the product?
Splunk is the most effective but expensive tool for cybersecurity analysis
What do you dislike about the product?
The one factor that I dislike in splunk is the pricing for the licence
What problems is the product solving and how is that benefiting you?
It helps to identify the real time threats in the current world and alerts so that we could mitigate the issue quickly
Splunk Enterprise Security provides simplified threat management
What do you like best about the product?
Splunk Enterprise Security provides simplified threat management that facilitates quick threat detection and response and minimizes risk.
What do you dislike about the product?
Pricing gets a bit higher for large data volumes. The optimization of searches is more of an art than just science. Dashboard is a bit harsh as compared to tableau. It is continuously making attempts to replace it with open source alternatives.
What problems is the product solving and how is that benefiting you?
Splunk Enterprise Security is an analytic-driven SIEM solution that can combat threats with actionable intelligence and advanced analytics at scale. With the goal of perfecting your security operations and reducing risks, Splunk is the security platform that enables you to detect, investigate, and respond in real-time.
Splunk Enterprises
What do you like best about the product?
Fetching data & creating visualisation both in one application.
What do you dislike about the product?
There is nothing i dislike about splunk Enterprise
What problems is the product solving and how is that benefiting you?
We can fetch data from database using commands & create visualisation of the data extract with only one line code.
With splunk enterprise we quickly detect the drawbacks
What do you like best about the product?
It has an alert system that warns us in real time of any vulnerability in the system, any funnel or any error and in this way we can solve it quickly. It also allows the easy creation of custom work panels and customize the platform interface to work and have at hand, the tools we use the most.
What do you dislike about the product?
It can have a high learning curve, even for educated employees, so time is required for training. I wish that some basic functions could work without the need for internet access, no doubt my work would be faster. From the installation of the software to its use, it is a long process, because to configure it is confusing and sometimes we need the help of technical staff.
What problems is the product solving and how is that benefiting you?
This is one of the best programs we have used for monitoring data from our computers and applications, getting to know in real time the problems that may arise and thanks to its alerts and notifications, to solve the problem. I love that we can easily monitor application data, as well as know the performance of each one. It is simply a great tool.
Sophos Integration with Splunk
What do you like best about the product?
Splunk is easy to integrate with all other applications through agent and heavy forwarder.
What do you dislike about the product?
Need to build so many use cases for building so alerts.
What problems is the product solving and how is that benefiting you?
Monitor the environment from soc end and mail notification with alerts. It solved our manual monitoring.
Splunk Enterprise integration for SOPHOS
What do you like best about the product?
it is easy to integrate between splunk and Sophos threat Management system.
What do you dislike about the product?
Some queries for test cases should be there to help the implementation team.
What problems is the product solving and how is that benefiting you?
We are getting all the events in our splunk and we are able to take necessary action in SOC.
Best Application for monitoring and analysis.
What do you like best about the product?
It's been quite some time since I started using Splunk and I must say it's really easy and convenient to use and clearly does its job. My company uses Splunk for log analysis and as per my experience, it's easy to get knowledge on most of the features. No hard training is required. Creating a dashboard requires some deep knowledge but once created it will be easier to understand logs. It is a really helpful tool for security analysis.
What do you dislike about the product?
Nothing much but yes, it is costly and it requires high memory uses from the system it's running on. Just because of this it is not preferred in small organizations.
What problems is the product solving and how is that benefiting you?
A clear understanding of Raw logs which are unreadable and then the major use is for security analysis based on alerts created. Monitoring and analysis are quite easy based on search strings in logs.
showing 81 - 90