Try our new research platform with insights from 80,000+ expert users

Share your experience using Resolver Incident Management

The easiest route - we'll conduct a 15 minute phone interview and write up the review for you.

Use our online form to submit your review. It's quick and you can post anonymously.

Your review helps others learn about this solution
The PeerSpot community is built upon trust and sharing with peers.
It's good for your career
In today's digital world, your review shows you have valuable expertise.
You can influence the market
Vendors read their reviews and make improvements based on your feedback.
Examples of the 96,000+ reviews on PeerSpot:

Information Security Architect at UMMS
Real User
Top 5
Offers a wide range of advanced detection capabilities for identifying suspicious activities
Pros and Cons
  • "I would have to rate Splunk Security Essentials a 10 out of 10 because it's free and there's tons of usable content."
  • "They could add more AI content or AI and machine learning."

What is our primary use case?

We use Splunk Security Essentials to create new Splunk searches, as it has many pre-canned searches for security detection.

The advanced detection content is something I like the most about it.

SPL queries to detect, predict, and forecast future network attacks are examples of what I would like to see.

How has it helped my organization?

It has many advanced SPL queries that allow us to identify advanced malicious activity or suspicious activity within our IT environment.

The benefits of this app were immediately apparent after installation.

What is most valuable?

The benefits of this app were immediately apparent after installation.

It has many advanced SPL queries that allow us to identify advanced malicious activity or suspicious activity within our IT environment.

The advanced detection content is something I like the most about it.

What needs improvement?

I cannot say there is any room for improvement because it is free.

They could add more AI content or AI and machine learning.

For how long have I used the solution?

I have been using Splunk Security Essentials for three and a half years.

What was my experience with deployment of the solution?

The initial installation of this app is very easy.

It took about 10 minutes.

What do I think about the stability of the solution?

It's stable with no lagging, crashing, or downtime.

What do I think about the scalability of the solution?

It's scalable, making it easy to add more things to work with.

How are customer service and support?

I have never contacted their technical support regarding Splunk Security Essentials.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I managed a LogRhythm SIEM for 3 years and we also looked at Exabeam and Sentinel One.

How was the initial setup?

The initial installation of this app is very easy.

It took about 10 minutes.

What about the implementation team?

Just one person is required to implement this solution.

What was our ROI?

I cannot say there is any room for improvement because it is free.

What's my experience with pricing, setup cost, and licensing?

Our SecOps manager and CISO were more familiar with Splunk, and the price was right. That was probably the primary driver, and we did evaluation as well with strict criteria and Gartner ratings.

Which other solutions did I evaluate?

I haven't used any alternatives to it.

What other advice do I have?

We already talked about Enterprise Security on May 28th.

I'm using Splunk Enterprise.

We do use SOAR Mission Control, but not AppDynamics or Phantom.

We have another freemium app for infrastructure monitoring called ITSI, IT Essentials Work. We also have the ITSI module for virtualization.

I would have to rate Splunk Security Essentials a 10 out of 10 because it's free and there's tons of usable content.

Which deployment model are you using for this solution?

Omit

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Flag as inappropriate
UzairKhan - PeerSpot reviewer
Business General Manager at Mutex Systems
Reseller
Top 5
Delivers financial benefits and operational efficiency with impactful data analytics capabilities
Pros and Cons
  • "Splunk Enterprise enhances data analytics with its AI capabilities."

    What is our primary use case?

    The use cases for Splunk Enterprise Platform vary depending on the specific scenario.

    Splunk Enterprise Platform has different purposes, including data visualization and other applications.

    What is most valuable?

    In Splunk Enterprise Platform, the most impactful features for data analytics allow you to get into the repository.

    There are financial benefits from using Splunk Enterprise Platform, and as a retailer, it provides better profit margins.

    Splunk Enterprise enhances data analytics with its AI capabilities.

    What needs improvement?

    For future updates of Splunk Enterprise Platform, I would like to see integration by GUI.

    The integration should be improved with the UI.

    For how long have I used the solution?

    I have been using Splunk Enterprise Platform for about two years.

    What was my experience with deployment of the solution?

    There are no significant challenges in deploying Splunk Enterprise Platform.

    The challenges or pain points others should anticipate before implementing Splunk Enterprise Platform are mostly related to the integration part.

    How was the initial setup?

    The time it takes to deploy Splunk Enterprise Platform depends on the use cases.

    It may take anywhere from a couple of hours to a couple of weeks for Splunk Enterprise Platform deployment.

    What about the implementation team?

    The same three people take part in the deployment of Splunk Enterprise Platform.

    I do not take part in the deployment; my team does.

    What other advice do I have?

    My advice for those looking to implement Splunk Enterprise Platform is to know the product well and have hands-on workshops or create a lab to gain complete knowledge before proceeding.

    Regarding maintenance, it does not require much as it is on-premises.

    Overall, I would rate Splunk Enterprise Platform an eight.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
    Flag as inappropriate