Da 17 anni aiutiamo le aziende
a scegliere i migliori software

Informazioni su Splunk Enterprise

Scelto da 92 delle 100 aziende inserite nella lista Fortune 100, Splunk ti aiuta a indagare, monitorare, analizzare e ad agire su tutti i dati della tua organizzazione.

Ulteriori informazioni su Splunk Enterprise

Aspetti positivi:

When you need to store, correlate, and search large amounts of data, especially System Log data, there is no tool that even comes close to Splunk. It's power and flexibility is amazing.

Aspetti negativi:

So, first time user it can be difficult to use it.

Valutazioni di Splunk Enterprise

Punteggio medio

Facilità d'uso
4,1
Servizio clienti
4,3
Caratteristiche
4,5
Rapporto qualità-prezzo
4,3

Lo consiglieresti?

8,7/10

Splunk Enterprise ha una valutazione complessiva di 4,6 stelle su 5, calcolata sulla base di 230 recensioni degli utenti di Capterra.

Hai già usato Splunk Enterprise?

Condividi la tua esperienza con altri acquirenti.

Filtra le recensioni (230)

Roda
Data engineer (Italia)
Internet, 51-200 dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Software completo per analisi dei log

4,0 11 mesi fa

Commenti: Utilizzando un solo strumento sono in grado di: effettuare analisi sulla sicurezza basandomi sui log, definire allarmi per eventi indesiderati, raccogliere in un unico luogo tutti log, visualizzare i dati dei log in un formato maggiormente comprensibile.

Aspetti positivi:

Utiizzzo Splunk da molto tempo e si è rivelato sempre eccellente. Nel mio lavoro attuale lo uso per l’analisi dei log di sicurezza e, a mio parere, può essere considerato uno dei migliori strumenti in circolazione per questo scopo. È possibile effettuare approfondite analisi dei log, fornisce informazioni di sintesi di qualità e consente la creazione cruscotti che semplifica la visualizzazione e la comprensione dei dati. Splunk permette inoltre di crede allarmi personalizzati e report bassi sui log analizzati.

Aspetti negativi:

È avido di risorse, quindi bisogna stare attenti alla macchina e l’host che si utilizza inoltre è necessario una buona conoscenza di XML per utilizzarlo al meglio e creare ottimi report.

Utente Verificato
Utente LinkedIn Verificato
Servizi e tecnologie dell'informazione, 10.000+ dipendenti
Ha utilizzato il software per: 6-12 mesi
Fonte della recensione

Adatto ad uso professionale e continuativo

5,0 2 anni fa

Commenti: I principali vantaggi dell’utilizzo di Splunk sono legati alla sua versatilità in ambito di data visualization. Consente di creare grafici e Dashboard in modo rapido ed integrato utilizzando il proprio linguaggio SPL

Aspetti positivi:

Se cercare un SIEM stabile, affidabile e con cui monitorare costantemente i vostri sistemi Splunk è la soluzione giusta per voi. Nella soluzione cloud SaaS consente di gestire un elevatissimo numero di log. Ha un architettura complessa che consente la ridondanza e la gestione dei carichi di lavoro tramite bilanciamento. Permette una molteplicità di analisi che consentono all’analista di sicurezza di investigare a qualsiasi livello ciò che accade ed è accaduto. Il linguaggio SPL con il quale è possibile analizzare i dati è molto potente e versatile

Aspetti negativi:

A volte l’installazione su determinati sistemi operativi prevede un processo piuttosto complicato soprattutto se si ha intenzione di rispettare il principio del least priviledge e non installare il software con permessi di amministratore. Su determinati sistemi operativi come AIX e determinate versioni di Linux non è disponibile l’agent ma il solo inoltro dei log al cloud Splunk tramite protocollo syslog

Fabiano
Fabiano
Consulente IT (Italia)
Utente LinkedIn Verificato
Servizi e tecnologie dell'informazione, 501-1.000 dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Impossibile farne a meno in una grossa azienda

5,0 2 anni fa

Commenti: Lo utilizzo a lavoro ogni giorno poiché è il mezzo fondamentale per scoprire i bug nelle api o per monitorare l’applicazione in tutti i suoi layers di comunicazione tra frontend e backend

Aspetti positivi:

Aggregare più log è fondamentale quando c’è un flusso elevato di log. Lo trovo eccellente e rapido. Riesce a scalare senza problemi effettuando le ricerche in maniera intelligente per trovare prima i risultati. La sezione delle Dashboard è la cosa più interessante perché può mettere insieme diversi grafici consentendo di personalizzare l’interfaccia grafica con input e bottoni.

Aspetti negativi:

Con una grossa mole di dati e effettuando ricerche nel tempo (es 30 gg) può metterci veramente tanto ma trovo che nel complesso si comporta egregiamente e ovviamente dipende da server su cui viene installato.

Subham
Subham
Incident responder (India)
Utente LinkedIn Verificato
Industria farmaceutica, 10.000+ dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Alternative considerate:

Best SIEM in the market

5,0 anno scorso

Commenti: My overall experience has been awsome so far. I would rate it 8.5/10.Splunk has been as effective soluntion when it comes to triaging and monitoring of day to alerts.

Aspetti positivi:

- Easy to triage and monitor alert (Very fast and gives effective results as compared to other produts)Arcsight,Devo etc- Customer Support is excellent- Threat Hunting can be done effectively with the help of Splunk(IOC based,Corellation based etc)- Log parising is very effective & intelligent.

Aspetti negativi:

- The only think i liked least about splunk is the cost involved/pricing model in case of high data volumes.

Shayla
Shayla
Human Resources Specialist (USA)
Utente LinkedIn Verificato
Internet, 1.001-5.000 dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Big data is no problem for Splunk Enterprise

5,0 anno scorso

Commenti: Splunk is a powerful and useful monitoring tool. Splunk's efficiency is enhanced by the ability to integrate third-party apps developed in-house. It's also interesting that we can incorporate a customs alert and dashboard. In most situations, it resolves the need to normalize data, allowing for the use of any and all data in business forecasting. It is analyzed for data that can be utilized to optimize spending plans and asset tracking.

Aspetti positivi:

Without worrying too much about data type or normalization, Splunk Enterprise can efficiently manage massive amounts of data from numerous sources. Data may be accessed in a flash, and there are a number of options for tailoring and integrating data analysis workflows to create bespoke dashboards or utilizing apps from our other product partners.

Aspetti negativi:

There isn't much I dislike about splunk, however if we have to be picky, it would be that it's more difficult to maintain as an administrator when splunk is installed on outdated architecture.

Guillermo
Consultant (Australia)
Computer e sicurezza della rete, 201-500 dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

Slunk comes with a hard to learn and proprietary Query Language

4,0 4 settimane fa Nuova

Commenti: That monitoring tool is a really good support for our daily operations

Aspetti positivi:

It's a really good tool for monitoring and query logs

Aspetti negativi:

The proprietary Query language is difficult to use

Alexia
CMO (Spagna)
Elettronica di consumo, 11-50 dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

I use Splunk Enterprise to analyze and visualize data for better decision-making.

3,0 2 settimane fa Nuova

Aspetti positivi:

Splunk Enterprise has powerful search capabilities and customizable dashboards.

Aspetti negativi:

The learning curve for setting up queries can be steep, and the pricing can be high for smaller teams.

Lilian
HR Manager (USA)
Gestione formativa, 11-50 dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

Bettering Cybersecurity With Splunk Enterprise

5,0 3 mesi fa

Aspetti positivi:

It has amazing firewall protection features It makes handling security monitoring and improving networks security easy log monitoring is easy

Aspetti negativi:

No regrets as Splunk Enterprise meets needs.

Utente Verificato
Utente LinkedIn Verificato
Servizi finanziari, 10.000+ dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Alternative considerate:

Splunk is a great solution for SIEM and also for monitoring your infrastructure

5,0 5 anni fa

Commenti: We needed a way to monitor our internal environment and start to be more proactive with issues, so we started sending all of our logs to Splunk and we we able to get insights we did not know we needed. It is a great solution and they are constantly innovating.

Aspetti positivi:

Splunk makes it easy to search through various data including logs. In the past I have had to pour through logs in order to find the one lines among the 100 of thousands of lines. Splunk allows me to search through those logs in a matter of seconds vs the hours it used to take.

Aspetti negativi:

Most of enterprise setup is done through the command line. It would be nice to have cluster configuration (index creation) as part of the UI.

Utente Verificato
Utente LinkedIn Verificato
Salute, benessere e fitness, 1.001-5.000 dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Alternative considerate:

Splunk Enterprise, not just a SIEM

5,0 2 anni fa

Commenti: We have been using Splunk Enterprise, ES, ITSI, and other Splunk parts for 6+ years in production. This has helped us reduce staff in some cases, increase response time in most cases, and allow non-IT teams to get data and metrics in a fast efficient way.

Aspetti positivi:

The versatility is amazing. The same data in logs, such as IIS, can be used for Security, Application performance, and even error handling. This allows us to use one log to help multiple teams. This is just one example.

Aspetti negativi:

Start up takes someone who has had some training. While searching and output is easy, its the onboarding of custom apps that takes the know how.

Ajay
Lead it engineer (India)
Semiconduttori, 10.000+ dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Alternative considerate:

Best log monitoring tool

5,0 10 mesi fa

Aspetti positivi:

Powerful search language Advanced visualisation Flexibility to accept logs from any source High availability Ease of administration

Aspetti negativi:

The cost is too high compared to other log monitoring tools.

Muhamed
Muhamed
RPA Developer (India)
Utente LinkedIn Verificato
Servizi e tecnologie dell'informazione, 11-50 dipendenti
Ha utilizzato il software per: 1-5 mesi
Fonte della recensione

Alternative considerate:

A better business companion when integrated with RPA

5,0 2 anni fa

Commenti: Overall, the experience was positive; even with a free trial license, it was much easier, and on the course and certification side, Splunk has a very good collection of videos and materials that help even a novice quickly setup the integration and indexing.

Aspetti positivi:

The most useful thing about Splunk is the ease of integration with application. With uipath on-premises it was very much helpful as the business users can monitor the actions of robots through spluink without entering into uipath orchestrator

Aspetti negativi:

Expression creation for indexing was bit hard as it is not user-friendly to business users if they wanted to create any new fields, also the forwarder was not able to directly connect with uipath cloud so that the logs has to be shifted to intermediate file before uploading into splunk, but that seems not an issue with splunk but more related to uipath cloud

Filippo
Support Specialist (Canada)
Software informatici, 5.001-10.000 dipendenti
Ha utilizzato il software per: 6-12 mesi
Fonte della recensione

Powerful tool to perform db queries

3,0 2 settimane fa Nuova

Commenti: I used Splunk to surface and review platform logs

Aspetti positivi:

Possibility to export query results in a variety of formats.

Aspetti negativi:

User interface is not intuitive and it requires a steep learning curve

THOMAS
Management Reporting and Business Analyst (Zambia)
Telecomunicazioni, 51-200 dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

Splunk an Enterprise Business intelligent user tool

5,0 4 anni fa

Commenti: Is a robust and intelligent management tool that enables everyone with user computer knowledge to navigate in real-time, consolidate vast data into a visualized report of dashboard features , reliable and web based, no major equipment required for setup, user need a smartphone or compute to access the platform through the web, you can navigate the system as long as you have computer knowledge without any training required(user friendly) .

Aspetti positivi:

It an intelligent business tool that provided me an opportunity to customize and build report from large volume of data from different departments within the 13 Africa countries in telecommunication sectors. The platform allows data to be consolidated accordingly to the organization need and produces visualized reports of dashboard features. I also noted that the system can analyst unstructured large volume of data speedily and is reliable and web based allowing for user flexible accessible from any part of the world if you have internet. The systems have been reliable and secured from the time (2 years) I started using it without any system intermittent, system errors and cyber-attack.

Aspetti negativi:

The system is built and use-able with structured and unstructured organization though the price in foreign currency could hamper small and medium organization to use it especially in most Africa country where the local currency has depreciated against the major trading foreign currency.so the Forex pricing is a challenge. The navigation of the platform will require minor training though if the user is computer proficient, they would management with minor challenge and interpretation of the data. So, first time user it can be difficult to use it It will depend on internet for access and internet tend to be pricey in most African country and therefore could increase the business cost for small and medium enterprise. It can increase business cost if not fully used

Amit
Solution Architect (USA)
Telecomunicazioni, 10.000+ dipendenti
Ha utilizzato il software per: 6-12 mesi
Fonte della recensione

Best tool for Distributed logs data analysis

5,0 4 anni fa

Commenti: We have several micro-services deployed in production which require to lookup application access as well as server logs and analyze data for their usage. We created several reports/charts for visualization. We use splunk as security logs tool to see the firewall traffic, tracing any vulnerable access, any database related crash ..etc.
It helps easily to find issue and fixed quickly by black listed in system.

Aspetti positivi:

Splunk Enterprise is best tool to analyze the data based on different visualization. It help us to lookup distributed logs for micro-services . It enables field based lookup. For complex logging, we can use search query using expression. We can create multiple reports/charts for visualization such as a pie or bar chart for our data. Best feature what i like , We can visualize our search results and share them with others using dashboard panels. If Already have a dashboard, we can add a new panel from a report, clone from another dashboard, or add a prebuilt panel. Fully customization available. Interfaces is very flexible. We export it in different formats, or refresh it to visualize the newest data. Online Support is available through different community.

Aspetti negativi:

Search query builder is fully based on technical. for Non technical users, its really difficult to lookup logs. Sometimes, error thrown by query builder is more difficult to understand. Deep Learning is required to use splunk for production data. For Large application installation, it need to manage more.

Nana Kwame
Teaching Assistant (Ghana)
Gestione formativa, 201-500 dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

Splunk Enterprise is a powerful data analytics software

4,0 anno scorso

Commenti: I believe getting important data analysis in real-time saves us from threats

Aspetti positivi:

Splunk Enterprise offers real-time data analysis tools makes it possible for my institution to see and take immediate action against security risks, performance difficulties, and other operational concerns.

Aspetti negativi:

Splunk Enterprise is really expensive and it is a huge part in our annual budget because we require add-ons.

Utente Verificato
Utente LinkedIn Verificato
Software informatici, 10.000+ dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Alternative considerate:

Great platform for data analysis and visualization

5,0 2 anni fa

Commenti: Splunk Enterprise is a great data analysis and visualization platform to show real time status with live dashboards.

Aspetti positivi:

Security Information and Event management, log analytics, custom dashboards and workspaces

Aspetti negativi:

Auto upgrade management and notifications for Add-ons. Leaning more towards config file based implementation instead of UI based implementation

Chetan
Analyst (India)
Servizi e tecnologie dell'informazione, 11-50 dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

Splunk the best analytic tool

4,0 2 anni fa

Commenti: It gives best Return on Investment as analyzing the data and giving proper insights in form of Dashboards and notifying with help of Alerts if any kind of threat running in infrastructure and apart from that Deployment and use is very easy.

Aspetti positivi:

There are lot of features which Splunk offers - 1) We can onboard data from any server, device or system using Universal Forwarder 2) Onboarded data are later stored in Indexers and searched further in Search Head for analyzing the internal logs 3) Using the data we can create customizable Dashboards and get proper insights of data and create Alerts to identify any kind of Threat or anomalies running in environment 4) Deployment is very easy on-prem servers 5) We can also use Hybrid Deployment on Cloud as well.

Aspetti negativi:

1) As it give large amount of features but licensing is too high 2) There are lot of other Open Source software which can be used as alternative of Splunk as Analytic tool because Splunk is paid one.

Mohammed
CISO (Bahrein)
Servizi finanziari, 201-500 dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Alternative considerate:

Best SIEM

4,0 2 anni fa

Commenti: Great SIEM that beats the competition, we utilized it for various functions

Aspetti positivi:

Splunk appsStrength and capabilitiesIntegration with most solutions

Aspetti negativi:

Resource utilizationLimited local partner support

Or
Sr. Software Eng (Israele)
Software informatici, 10.000+ dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Splunk helps us to walk in the darkness, for sure in the Prod arena

4,0 3 anni fa

Commenti: We are in Autodesk, use it much, as part of the monitoring tool. We like it and would like it to be improved and even more useful

Aspetti positivi:

Dashboards feature is amazing, I use it much. Alerts and queries are easy to set up. Mostly it works fast so it's kind of Dev friendly so it's easy to onboard the new guys

Aspetti negativi:

Alerts should have a better way to manage it. There should be a way to promote alerts to different environments - so we will be able to set the Dev/Stg/Prod Sometimes some things that we want to do take a while searching on the internet for a solution - they might think how to do it better - maybe some examples or better documentation

Mark
Network Admin (Canada)
Industria mineraria, 5.001-10.000 dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Great for log analysis

5,0 5 anni fa

Commenti: Splunk has been key in sever major issue root causes by analyzing logs and from that being able to build reports and determine causes of issues. In addition being able to trend and look for the data in the many logs is very helpful.

Aspetti positivi:

We use this tool primarily as a repository for syslog messages for infrastructure. It allows us to quickly analyze the logs and patterns to determine issues based on patterns. In addition it alerts very well from text based trigger alerts. These features are very easy to use and dependable.

Aspetti negativi:

I do not have any cons for this software. Mainly as a user it does exactly what I need it to do with no overhead and confusing interfaces.

neha
Software Engineer (India)
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

Great log analysis software

5,0 7 anni fa

Aspetti positivi:

Integrates with almost all the software seamlessly..where there is a software application that produces log, splunk can be easily integrated. Gives very powerful insights into the logs Alerts can be setup on the logs, and notifications sent out which is great again for managing the health of your application

Aspetti negativi:

The query language, though powerful, has a learning curve. Particularly as one goes towards complex queries. If it could be made closer to natural language, it would be so much smoother to learn. Hope that will happen sometime in future.

Utente Verificato
Utente LinkedIn Verificato
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

A tool that every sys admin needs to have

5,0 7 anni fa

Aspetti positivi:

I'm not sure from where to start in this case. We use splunk for many things but mostly to analyze the traffic on the network / firewalls. It provides us with a nice overview of what's going on. It makes it very easy to spot spikes on the network and it will provide you also with deep analyzes. For us it's an indispensable tool, probably the best tool we have.

Aspetti negativi:

To search for something is not always easy, however there are a lot of forums online, so finding help is not that difficult.

Utente Verificato
Utente LinkedIn Verificato
Settore automobilistico, 10.000+ dipendenti
Ha utilizzato il software per: Più di 1 anno
Fonte della recensione

Splunk is a lifesaver!

5,0 2 anni fa

Commenti: It’s been wonderful. I was able to take most of my forwarded lambdas and charts them to watch duration and throughput. Notifications and alerts let me know if things are out of whack. Such a relief to know Splunk is watching my back!

Aspetti positivi:

If you need real-time grokking into your infrastructure, look no further than Splunk. I love love love the dashboards. It’s easy to tell a story with your data, and the live search is so FAST!

Aspetti negativi:

SPL is a little hard to get used to, but once you get the hang of it, it’s not so bad. I recommend downloading their community edition for some great examples of queries and dashboards.

Biswajit
Production Engineer (USA)
Servizi e tecnologie dell'informazione, 10.000+ dipendenti
Ha utilizzato il software per: Più di 2 anni
Fonte della recensione

This is the tool every devops should have expertise on!

4,0 7 anni fa

Commenti: Made life easier for all SRE/DevOps oncall.

Aspetti positivi:

First of all you don't need to login to your servers. Just configure splunk forwarder on all of your server and have peace of mind. During outages you dont have to panic and just rely on Splunk and be sure that you will have your root cause visible in splunk.

Aspetti negativi:

Kernel huge page issues, Search head clustering, Index clusetering. These features are as good as costly too. For SHC and IC it does need all same config hosts.