Try our new research platform with insights from 80,000+ expert users

Cisco Provider Connectivity Assurance vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Provider Connectivity...
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
24
Ranking in other categories
Application Performance Monitoring (APM) and Observability (46th), Network Monitoring Software (42nd)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.6
Number of Reviews
315
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. Cisco Provider Connectivity Assurance is designed for Application Performance Monitoring (APM) and Observability and holds a mindshare of 0.3%, down 0.3% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 9.4% mindshare, down 12.1% since last year.
Application Performance Monitoring (APM) and Observability
Security Information and Event Management (SIEM)
 

Featured Reviews

Pifu Lin - PeerSpot reviewer
Addresses connectivity issues with real-time monitoring while offering good local support
I had prepared for COC and the client. I work as a vendor for a client using Flow Mount for network performance monitoring. I focus on resolving client-side issues related to Packy Performance and quality use. This involves addressing network device issues, specifically Cisco network devices One…
ROBERT-CHRISTIAN - PeerSpot reviewer
Has many predefined correlation rules and is brilliant for investigation and log analysis
It is very complicated to write your own correlation rules without the help of Splunk support. What Splunk could do better is to create an API to the standard SIEM tools, such as Microsoft Sentinel. The idea would be to make it less painful. In ELK Stack, Kibana is the query language with which you can search log files. I believe Splunk has also a query language in which they search their log files, but once you have identified the log file that you want to use for further security correlation, you want to very quickly transport that into your SIEM tool, such as Microsoft Sentinel. That is something that Splunk could make a little bit less painful because it is a lot of effort to find that log file and forward it. An API with Microsoft Sentinel or a similar SIEM tool would be a good idea.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I always have the Skylight dashboard on one of my screens... Now you can create your own dashboard, specific to an application, specific to a server, or to something else."
"One valuable feature we have is real-time monitoring for connection issues."
"For us, the most valuable feature is something called TWAMP that allows for real-time traffic in a way that is 10 times lighter than things like SolarWinds. It's in the sub-milliseconds of accuracy, and you can divide tasks so that you can literally see things like the tagging for Quality of Service. That had been incorrect with the carrier, but there was no way on this planet you'd be able to tell a carrier that they're wrong. I have dozens of scenarios where we found "No, that's not right," and got it resolved instantly."
"The performance of Accedian Skylight is better than other vendors."
"The feature I used to like the most was its ability to decode layer seven protocols, although this is becoming less useful now that encryption is so widespread."
"If [the problem] is something related to HTTP or VoIP, then I can have a quick look into the protocols, a process which gives me some good ideas..."
"What I like most about Accedian Skylight is that it's a UI application, so using it is easy. I also like that the support for Accedian Skylight is helpful."
"It is about finding operational problems. When sites go down, we try to determine who is at fault. While there is not much finger-pointing, the solution is just trying to analyse when there is an outage and where do we start looking to fix it. The very nature of why organization chooses to use the solution is to accelerate the meantime to resolution and find where problems lie to get them rectified as quickly as possible."
"We have created a few custom use cases for Splunk that have helped us detect threats faster. For example, we set up endpoint-related data models and specialized setups for various scenarios. It's more efficient than some other products I've used."
"Overall, Splunk is among the top three SIEM tools due to its capabilities and agility in bridging business analytics with security needs."
"Splunk works based on parsing log files."
"It gives us the liberty to do more in terms of use cases."
"It's the completeness of the solution that we like the most."
"The dashboards are the most valuable feature. We like the ability to drill in and see what queries are under the dashboard, build new visualizations, edit the querying, and see the reports."
"There are lots of free learning materials on their website."
"They have approximately 50,000 predefined correlation rules, which is quite a lot, and I find that good."
 

Cons

"The UI interface of Accedian Skylight could improve."
"Because of the policies in Vietnam, we cannot connect the system to the Accedian cloud. It would be good if Accedian could provide a local cloud. In the next release, I would like them to focus on improving and adding more reporting features. This will help the operations teams."
"If you want a new version, you go to the website. The hardest part is finding the link, where is that .bin file? Sometimes it's pretty hidden in a document... it's hidden in the release notes or in another file somewhere. And it's usually not on the first page either."
"The Accedian Skylight user interface still has room for improvement."
"Human resource costs can be high when dealing with connection issues."
"It's a bit slow. When I execute a query, something general with a short timeframe that covers one month, for instance, and I do not specify the IP source or IP destination, it can take ages because it has to query the whole database."
"Some of the Skylight applications are a little newer, and they're still moving through initial revs. There are certain bugs, but nothing is insurmountable... It will just take a little bit of time for their user interface to get a little bit better."
"Human resource costs can be high when dealing with connection issues."
"It needs to improve the way to install third-party apps and enable installation without logging into splunk.com."
"I think the tech support response time could be a bit better. Sometimes I need to wait more than 24 hours for a response to my tickets."
"Splunk Enterprise Security can be improved mainly from the user interface regarding the visualizations."
"The Web Application Firewall will send you too much information because it's more dedicated to security than a normal firewall."
"I would like some additional AI capabilities to provide additional information about things going wrong and things going well."
"The biggest problem is data compression. Splunk is an outstanding product, but it is a resource hog. There should be better data compression for being able to maintain our data repositories. We end up having to buy lots of additional storage just to house our Splunk data. This is my only complaint about it."
"It can be tough to get a hold of somebody in technical support depending on the complexity of the issue."
"There can be a bit of complexity around some fields during the initial setup."
 

Pricing and Cost Advice

"Pricing is a little bit expensive."
"It provides value and the cost is not huge."
"The price is competitive overall, depending on the type of customer."
"We understand there's a significant cost difference, but have yet to investigate fully."
"The pricing of Accedian Skylight is really good. The sensors are low cost. Their model to analytics for sensors is by license, endpoint, or session. With the probes for their analytics, if they get deployed virtually, they are free. The licensing is only based on flows. So, you can effectively deploy probes everywhere in your network. Then, if you want to look at a specific type of traffic, you can enter into it with a very low cost license. You can just use things like spam ports, mirrors, TAPs, and aggregators to optimize what sort of traffic you send to these analysis tools. Then, if you want to start looking at more, you can up your licensed as you go. You are not getting forced into expensive appliances or subscription models."
"It's not for free, clearly. But on the other hand, it offers very interesting functionality. We pay around €100,000."
"If you look into Riverbed, it's a licensing nightmare. You need to pay for every type of analysis... If you don't look into licensing, Riverbed and SolarWinds are pretty comparable. But if you look into licensing it would not be smart to go for either of them. On the pure, bare-metal basis, it's the same. But when you get the bare metal and a few basic licenses, then you need all those other licenses just to be sure that there's no issue... One of the great things about Skylight is you have them all, and you actually need them all."
"The solution was previously well-regarded, but after being acquired by Accedian, the prices have significantly increased. This has made it challenging to sell the product due to its high cost. It is an expensive solution."
"Splunk Enterprise Security is priced lower than competitors."
"Splunk is expensive based on our current requirements, but it's obviously worth what we pay."
"The price of Splunk Enterprise Security fluctuates based on the customer, but I believe it's quite costly, especially for our clientele."
"From what I have seen so far, Splunk has multiple cost models. The one that we are using is pretty good when it comes to ingesting data into the environment. It has worked out pretty well."
"I think we recently switched to the SVC pricing compared to the ingest pricing."
"As a team, we prefer the old pricing model with a perpetual license. We are still evaluating the whole subscription-based model."
"It would be nice if the pricing were cheaper. However, we did purchase it."
"The tool's pricing model is great. You can choose between workloads or volume."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
860,711 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
37%
Financial Services Firm
10%
Manufacturing Company
7%
Government
6%
Computer Software Company
14%
Financial Services Firm
14%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What needs improvement with Accedian Skylight?
Human resource costs can be high when dealing with connection issues. I require more tools to file and resolve these issues efficiently.
What is your primary use case for Accedian Skylight?
I had prepared for COC and the client. I work as a vendor for a client using Flow Mount for network performance monitoring. I focus on resolving client-side issues related to Packy Performance and ...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Also Known As

Accedian Skylight, Accedian SkyLIGHT PVX, SkyLIGHT PVX, SecurActive, Performance Vision
No data available
 

Overview

 

Sample Customers

T-Systems, Thomson Reuters, Bordeaux Metropole, CGI, Citadelle Regional Hospital Center, Lorraine Institute of Oncology, Luxembourg Institute of Health, Groupe BPCE, Group S, Splitpoint, Horus-Net, Audatex, Indexis, Province de Liège, EASI, Spie Batignolles, Faymonville
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Cisco Provider Connectivity Assurance vs. Splunk Enterprise Security and other solutions. Updated: May 2023.
860,711 professionals have used our research since 2012.