Wir helfen Unternehmen in der Schweiz
seit 17 Jahren bei der Softwareauswahl

Über Splunk Enterprise

Mit Splunk kannst du alle Daten deines Unternehmens untersuchen, überwachen, analysieren und darauf reagieren. 92 der F100-Unternehmen sprachen Splunk ihr Vertrauen aus.

Erfahre mehr über Splunk Enterprise

Vorteile:

When you need to store, correlate, and search large amounts of data, especially System Log data, there is no tool that even comes close to Splunk. It's power and flexibility is amazing.

Nachteile:

So, first time user it can be difficult to use it.

Bewertungen zu Splunk Enterprise

Durchschnittliche Bewertung

Benutzerfreundlichkeit
4.1
Kundenservice
4.3
Funktionen
4.5
Preis-Leistungs-Verhältnis
4.3

Weiterempfehlungsquote

8.7/10

Splunk Enterprise hat eine Gesamtbewertung von 4.6 von 5 Sternen basierend auf 235 Nutzerbewertungen auf Capterra.

Haben Sie Splunk Enterprise bereits verwendet?

Teile deine Erfahrungen mit anderen Softwarekäufern.

Nutzerbewertungen filtern (235)

Shayla
Shayla
Human Resources Specialist in USA
Verifizierter Nutzer auf LinkedIn
Internet, 1’001–5’000 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

Big data is no problem for Splunk Enterprise

5.0 vor 2 Jahren

Kommentare: Splunk is a powerful and useful monitoring tool. Splunk's efficiency is enhanced by the ability to integrate third-party apps developed in-house. It's also interesting that we can incorporate a customs alert and dashboard. In most situations, it resolves the need to normalize data, allowing for the use of any and all data in business forecasting. It is analyzed for data that can be utilized to optimize spending plans and asset tracking.

Vorteile:

Without worrying too much about data type or normalization, Splunk Enterprise can efficiently manage massive amounts of data from numerous sources. Data may be accessed in a flash, and there are a number of options for tailoring and integrating data analysis workflows to create bespoke dashboards or utilizing apps from our other product partners.

Nachteile:

There isn't much I dislike about splunk, however if we have to be picky, it would be that it's more difficult to maintain as an administrator when splunk is installed on outdated architecture.

shabbir
security analyst in Vereinigte Arabische Emirate
Informationstechnologie & -dienste, 51–200 Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

Complete Security operations with Splunk

5.0 vor 3 Jahren

Kommentare: Splunk data visualization and its analytics handling chunks of data is exceptional.

Vorteile:

Data visualization, Analytics skills with AI-powered and can handle data in TB/per day without any interruptions in services. Live dashboards, developing use-cases and their capabilities (correlation).

Nachteile:

complex architecture and efficient skills are required, financial is also not feasible for small and medium customers. no inbuilt query builders for beginners to understand the platform.

Filippo
Support Specialist in Kanada
Computer-Software, 5’001–10’000 Mitarbeiter
Verwendete die Software für: 6-12 Monate
Herkunft der Bewertung

Powerful tool to perform db queries

3.0 letzten Monat Neu

Kommentare: I used Splunk to surface and review platform logs

Vorteile:

Possibility to export query results in a variety of formats.

Nachteile:

User interface is not intuitive and it requires a steep learning curve

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Finanzdienstleistungen, 10’000+ Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

In Betracht gezogene Alternativen:

Splunk is a great solution for SIEM and also for monitoring your infrastructure

5.0 vor 5 Jahren

Kommentare: We needed a way to monitor our internal environment and start to be more proactive with issues, so we started sending all of our logs to Splunk and we we able to get insights we did not know we needed. It is a great solution and they are constantly innovating.

Vorteile:

Splunk makes it easy to search through various data including logs. In the past I have had to pour through logs in order to find the one lines among the 100 of thousands of lines. Splunk allows me to search through those logs in a matter of seconds vs the hours it used to take.

Nachteile:

Most of enterprise setup is done through the command line. It would be nice to have cluster configuration (index creation) as part of the UI.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Gesundheit, Wellness & Fitness, 1’001–5’000 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

In Betracht gezogene Alternativen:

Splunk Enterprise, not just a SIEM

5.0 vor 2 Jahren

Kommentare: We have been using Splunk Enterprise, ES, ITSI, and other Splunk parts for 6+ years in production. This has helped us reduce staff in some cases, increase response time in most cases, and allow non-IT teams to get data and metrics in a fast efficient way.

Vorteile:

The versatility is amazing. The same data in logs, such as IIS, can be used for Security, Application performance, and even error handling. This allows us to use one log to help multiple teams. This is just one example.

Nachteile:

Start up takes someone who has had some training. While searching and output is easy, its the onboarding of custom apps that takes the know how.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Staatsverwaltung, 51–200 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

In Betracht gezogene Alternativen:

Great Choice for an SIEM

5.0 vor 3 Jahren

Vorteile:

Provides a single location for collecting and analyzing logs. Provides ease of use for non-technical users, but powerful features for security and IT. There is an add-on/app for anything you could imagine.

Nachteile:

Some documentation is vague, and when certain things don't work, it can be difficult to find out a solution to the problem.

Muhamed
Muhamed
RPA Developer in Indien
Verifizierter Nutzer auf LinkedIn
Informationstechnologie & -dienste, 11–50 Mitarbeiter
Verwendete die Software für: 1-5 Monate
Herkunft der Bewertung

In Betracht gezogene Alternativen:

A better business companion when integrated with RPA

5.0 vor 2 Jahren

Kommentare: Overall, the experience was positive; even with a free trial license, it was much easier, and on the course and certification side, Splunk has a very good collection of videos and materials that help even a novice quickly setup the integration and indexing.

Vorteile:

The most useful thing about Splunk is the ease of integration with application. With uipath on-premises it was very much helpful as the business users can monitor the actions of robots through spluink without entering into uipath orchestrator

Nachteile:

Expression creation for indexing was bit hard as it is not user-friendly to business users if they wanted to create any new fields, also the forwarder was not able to directly connect with uipath cloud so that the logs has to be shifted to intermediate file before uploading into splunk, but that seems not an issue with splunk but more related to uipath cloud

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Einzelhandel, 10’000+ Mitarbeiter
Verwendete die Software für: 6-12 Monate
Herkunft der Bewertung

In Betracht gezogene Alternativen:

A tool which is one for all

5.0 vor 4 Jahren

Kommentare: Splunk has made me realize the ability to correlate different data from different realms altogether and generate valuable insights.

Vorteile:

The ability to use this software for security operations, data analysis, creating dashboards, generating tickets and everything else

Nachteile:

Splunk uses its own SPL, which is not very easy to learn. However, there are lots of documentation that Splunk provides to its customers. There is paid training available which is useful for beginners to learn.

Divyang
Divyang
Web Developer in Indien
Verifizierter Nutzer auf LinkedIn
Informationstechnologie & -dienste, 201–500 Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

Manipulate You Data

4.0 vor 4 Jahren

Kommentare: Splunk is widely used for manipulation of data and we encounter the use of this tool almostl twice a week. Even though it costs much more but still we have not found any alternative that is able to offer all these functionalities.

Vorteile:

Splunk is very easy to use due to high community support and many video tutorials available online for new users to learn. Functionalities are robust and simple to use. Data retrieval and visualisation is nice and easy if you know the right querying process. Machine Learning supports enhances performance for the cloud, especially. It collect wide variety of data and still it amaze you the way it retrievs it.

Nachteile:

There are many tools available in market which are potential competitors of this tool and that too at reasonable pricing. Splunk offers more functionalities but costs you too much if you look at the work it does. Complex queries may require large CPU usage and may even freeze or atleast slow down the system for a while. Need to be specific while querying the data.

Surabhi
Surabhi
Software Developer in Indien
Verifizierter Nutzer auf LinkedIn
Informationstechnologie & -dienste, 10’000+ Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

One of the best monitoring solutions for different platform.

4.0 vor 2 Jahren

Vorteile:

Best tracking and data analysis tool which help to monitor and manage the server and system component in very effective way. Real time Visualization helps to take the quick decision so that desired action can be taken to avoid failure.Best data collection in the forms of log and which helps to define the best set of automation jobs to fix the issue.

Nachteile:

There are few components or observation like,1. most of the time observes the slowness in the performance.2. Sometime observe the delay in the issue or updated log reflection on the portal. 3. Need more storage to manage and maintain the lo g which impact organizational costing and budget.

Gabe
IT Administrator in USA
Informationstechnologie & -dienste, 5’001–10’000 Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

A powerful log aggregation solution with immensely useful tools built-in for popular applications.

5.0 vor 7 Jahren

Vorteile:

- Free to use for small 500MB or less daily ingress, quite nice for small use cases and learning - No development work required to deploy and provide value. - Deployment flexibility: client agents are available to use, or clientless configurations for multiple OS platforms. It's also very easy to deploy, not just flexible. its a very simple affair. - Segmentation of logs: You can create separate instances of of logs to aggregate, based on organization needs. And those instances can have their own individual storage policies to optimize consumption of storage resources. - Configuration design: Thoughtful and mature documentation and design of the application regarding enterprise-class scaling on network storage. -POWERFUL tools: The user interface lends itself to learning more about your organization from the logs you collect, through metrics of trends of the logs being gathered. There are also specific modules/add-ons for popular applications to provide more value and event-based monitoring, all without having to develop in-house dashboards and intelligence of those logs. - Customization: You can create your own queries of logs, and event-based alerts. - Web-based GUI that clean is powerful - Sales/Technical Reps are top notch in fielding questions and evaluating environment for deployment. They were extremely helpful in helping our organization develop procedures and scaling our environment for expansion with our existing infrastructure.

Nachteile:

- Price: This product is not free for more than the minimal use. Pricing can be very expensive, relative to open source offerings. That is the trade-off you pay for not having in-house development of open source offerings. As this product is priced based on gigabytes of indexed logs, it is important to understand the scope of licensing necessary for your environment to determine if it is a good fit for your organization. - Watch your saved queries and hardware resources: Users have the ability to create and save queries. Like in database queries, some are more efficient than others. Large inefficient queries can be very resource-intensive. If you notice slowness in day-to-day queries, or navigation in the UI, or resource use in contention, keep an eye on saved queries and user practices.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Computer-Software, 1’001–5’000 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

In Betracht gezogene Alternativen:

Great, wholistic centralized monitoring solution

4.0 vor 3 Jahren

Kommentare: I've been using Splunk for over 8 years. I've seen it constantly improve and change a lot. I do enjoy it. Cloud is getting better and much better parity with on-prem

Vorteile:

We use this as our SIEM. The ability to have the data ingest, visualization, alerting and correlation all in one product is very important to me from a security standpoint. We're cloud-first so having that ability with large cloud providers is important to me (AWS, Okta, GCP, etc)

Nachteile:

The cost can be a little concerning and htere is a bit of a learning curve when you first get into Splunk. User groups, their forum and pro serv all help with that.

Nana Kwame
Teaching Assistant in Ghana
Bildungsmanagement, 201–500 Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

Splunk Enterprise is a powerful data analytics software

4.0 vor 2 Jahren

Kommentare: I believe getting important data analysis in real-time saves us from threats

Vorteile:

Splunk Enterprise offers real-time data analysis tools makes it possible for my institution to see and take immediate action against security risks, performance difficulties, and other operational concerns.

Nachteile:

Splunk Enterprise is really expensive and it is a huge part in our annual budget because we require add-ons.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Computer-Software, 10’000+ Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

In Betracht gezogene Alternativen:

Great platform for data analysis and visualization

5.0 vor 2 Jahren

Kommentare: Splunk Enterprise is a great data analysis and visualization platform to show real time status with live dashboards.

Vorteile:

Security Information and Event management, log analytics, custom dashboards and workspaces

Nachteile:

Auto upgrade management and notifications for Add-ons. Leaning more towards config file based implementation instead of UI based implementation

Chetan
Analyst in Indien
Informationstechnologie & -dienste, 11–50 Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

Splunk the best analytic tool

4.0 vor 2 Jahren

Kommentare: It gives best Return on Investment as analyzing the data and giving proper insights in form of Dashboards and notifying with help of Alerts if any kind of threat running in infrastructure and apart from that Deployment and use is very easy.

Vorteile:

There are lot of features which Splunk offers - 1) We can onboard data from any server, device or system using Universal Forwarder 2) Onboarded data are later stored in Indexers and searched further in Search Head for analyzing the internal logs 3) Using the data we can create customizable Dashboards and get proper insights of data and create Alerts to identify any kind of Threat or anomalies running in environment 4) Deployment is very easy on-prem servers 5) We can also use Hybrid Deployment on Cloud as well.

Nachteile:

1) As it give large amount of features but licensing is too high 2) There are lot of other Open Source software which can be used as alternative of Splunk as Analytic tool because Splunk is paid one.

Mohammed
CISO in Bahrain
Finanzdienstleistungen, 201–500 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

In Betracht gezogene Alternativen:

Best SIEM

4.0 vor 2 Jahren

Kommentare: Great SIEM that beats the competition, we utilized it for various functions

Vorteile:

Splunk appsStrength and capabilitiesIntegration with most solutions

Nachteile:

Resource utilizationLimited local partner support

shashank
Software Trainee in Indien
Verifizierter Nutzer auf LinkedIn
Informationstechnologie & -dienste, 1’001–5’000 Mitarbeiter
Verwendete die Software für: 6-12 Monate
Herkunft der Bewertung

Best Tool for Monitoring Purposes.

5.0 vor 5 Jahren

Kommentare: As a user of Splunk, we generally used to monitor the log provided by the server clusters belonging to a tool called API Connect. As the logs are stored in Splunk, we tally the transaction count from API Connect tool and filter the log search in Splunk with a particular search query. We can download the logs of particular time and date of API Connect servers in case of transaction count issues. We create a dashboard for all the individual API's transaction count in terms of total transaction count of all API's. In this way, it makes our work easier to find out which API has the highest transaction count. We even use Splunk to know the state of the machine. Reports generated by the Splunk helps us to find out the API with the highest response time. In this way, Splunk makes our work a lot easier as it is very fast and highly secure.

Vorteile:

1) Accepts multiple data formats like CSV, JSON, XML 2) Does the hard work for us i.e converting machine data to a human-readable format. 3) Can create customized alerts to serve our business purpose. 4) Searching on the based on queries is pretty simple. 5) We can create dashboards to analyze and visualize our search results. 6) Can export the log content to our Personal computers. 7) Setting up plugins and integrating with any tool that needs monitoring is pretty easy. 8) Technical support for the Splunk is very quick as they have a dedicated staff for that.

Nachteile:

I did not find any flaws with this software.

Mark
Network Admin in Kanada
Metallabbau, 5’001–10’000 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

Great for log analysis

5.0 vor 5 Jahren

Kommentare: Splunk has been key in sever major issue root causes by analyzing logs and from that being able to build reports and determine causes of issues. In addition being able to trend and look for the data in the many logs is very helpful.

Vorteile:

We use this tool primarily as a repository for syslog messages for infrastructure. It allows us to quickly analyze the logs and patterns to determine issues based on patterns. In addition it alerts very well from text based trigger alerts. These features are very easy to use and dependable.

Nachteile:

I do not have any cons for this software. Mainly as a user it does exactly what I need it to do with no overhead and confusing interfaces.

neha
Software Engineer in Indien
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

Great log analysis software

5.0 vor 7 Jahren

Vorteile:

Integrates with almost all the software seamlessly..where there is a software application that produces log, splunk can be easily integrated. Gives very powerful insights into the logs Alerts can be setup on the logs, and notifications sent out which is great again for managing the health of your application

Nachteile:

The query language, though powerful, has a learning curve. Particularly as one goes towards complex queries. If it could be made closer to natural language, it would be so much smoother to learn. Hope that will happen sometime in future.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

A tool that every sys admin needs to have

5.0 vor 7 Jahren

Vorteile:

I'm not sure from where to start in this case. We use splunk for many things but mostly to analyze the traffic on the network / firewalls. It provides us with a nice overview of what's going on. It makes it very easy to spot spikes on the network and it will provide you also with deep analyzes. For us it's an indispensable tool, probably the best tool we have.

Nachteile:

To search for something is not always easy, however there are a lot of forums online, so finding help is not that difficult.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Software für die Automobilindustrie, 10’000+ Mitarbeiter
Verwendete die Software für: Mehr als 1 Jahr
Herkunft der Bewertung

Splunk is a lifesaver!

5.0 vor 2 Jahren

Kommentare: It’s been wonderful. I was able to take most of my forwarded lambdas and charts them to watch duration and throughput. Notifications and alerts let me know if things are out of whack. Such a relief to know Splunk is watching my back!

Vorteile:

If you need real-time grokking into your infrastructure, look no further than Splunk. I love love love the dashboards. It’s easy to tell a story with your data, and the live search is so FAST!

Nachteile:

SPL is a little hard to get used to, but once you get the hang of it, it’s not so bad. I recommend downloading their community edition for some great examples of queries and dashboards.

Biswajit
Production Engineer in USA
Informationstechnologie & -dienste, 10’000+ Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

This is the tool every devops should have expertise on!

4.0 vor 7 Jahren

Kommentare: Made life easier for all SRE/DevOps oncall.

Vorteile:

First of all you don't need to login to your servers. Just configure splunk forwarder on all of your server and have peace of mind. During outages you dont have to panic and just rely on Splunk and be sure that you will have your root cause visible in splunk.

Nachteile:

Kernel huge page issues, Search head clustering, Index clusetering. These features are as good as costly too. For SHC and IC it does need all same config hosts.

yuval
IR Analyst in Israel
Bankwesen, 201–500 Mitarbeiter
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

Best SIEM out there.

5.0 vor 9 Monaten

Vorteile:

I used a lot of SIEMs in my career, Splunk is the best one out there. Comfortable, Easy to use, Great big data platform.

Nachteile:

Easy to use, versatile, A lot of options, dashboards

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Informationstechnologie & -dienste, Selbstständig
Verwendete die Software für: Mehr als 2 Jahre
Herkunft der Bewertung

Excellent product

5.0 vor 4 Jahren

Kommentare: I have worked with dozens of companies to implement Splunk. My experiences have bee overwhelming positive.

Vorteile:

When you need to store, correlate, and search large amounts of data, especially System Log data, there is no tool that even comes close to Splunk. It's power and flexibility is amazing.

Nachteile:

Very expensive. Difficult to implement until all moving parts are understood. Steep learning curve for beginners.

Verifizierter Rezensent
Verifizierter Nutzer auf LinkedIn
Computer-Software, 201–500 Mitarbeiter
Verwendete die Software für: 6-12 Monate
Herkunft der Bewertung

Premium but pricey log management and analytics tool

4.0 vor 5 Jahren

Kommentare: Having a enterprise-ready centralized logging tool is critical for production success.

Vorteile:

Splunk integrates with almost all popular enterprise software products including VMware, AWS, Azure, etc. Most customers use it primarily to do log analysis but it can also perform data analytics for business reporting. The UI is very straightforward and enables you to quickly search through large datasets using SPL. We were able to quickly locate the source of the issues by using Splunk to triangulate logs from several different components. There is a Splunk Cloud version with a free trial if you are aiming to do some integration work and testing. Finally, like all monitoring tools, Splunk offers AI and machine learning for even better predictive analytics.

Nachteile:

Splunk is expensive and probably not for smaller startup companies. The pricing is tiered and is subscription-based so if you start to ingest a lot of data, look out. It can eat into most of your IT budget and Splunk by itself doesn't handle all the Day 2 operations that are needed.