Try our new research platform with insights from 80,000+ expert users

Cisco Secure IPS (NGIPS) vs Splunk User Behavior Analytics comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 19, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.1
Cisco Secure IPS improves threat detection, though setup costs impact ROI recognition, yet users acknowledge enhanced network protection.
Sentiment score
6.4
Users report varied ROI from Splunk, with productivity gains and security cost savings, but costs remain a concern.
The solution can save costs by improving incident resolution times and reducing security incident costs.
 

Customer Service

Sentiment score
7.3
Cisco Secure IPS customer service is responsive and expert, though regional variability suggests room for improvement in initial response times.
Sentiment score
6.8
Splunk User Behavior Analytics support is mostly praised, with professional service, tiered options, and valuable user groups enhancing experience.
Fortinet, on the other hand, offers quicker response times and same-day RMAs, which gives them an edge in customer service.
The response was fast, and they provided experts to solve our issues quickly.
The support quality is excellent for paid tiers, following enterprise-grade SLAs with proactive support and deep expertise.
Mission-critical offering a dedicated team, proactive monitoring, and fast resolution.
Splunk's technical support is amazing.
 

Scalability Issues

Sentiment score
7.1
Cisco Secure IPS scales well for various organizations but faces hardware constraints and high costs affecting flexibility.
Sentiment score
7.5
Splunk User Behavior Analytics is scalable and adaptable across environments, though storage limitations may affect scalability.
Splunk User Behavior Analytics is highly scalable, designed for enterprise scalability, allowing expansion of data ingestion, indexing, and search capabilities as log volumes grow.
 

Stability Issues

Sentiment score
7.6
Cisco Secure IPS is generally stable and reliable, though some users report bugs and mixed feelings about its dependability.
Sentiment score
8.1
Splunk User Behavior Analytics offers reliable performance and stability, with 99.9% uptime and ease of configuration in enterprises.
With built-in redundancy across zones and regions, 99.9% uptime is achievable.
Splunk User Behavior Analytics is highly stable and reliable, even in large-scale enterprise environments with high log injection rates.
Splunk User Behavior Analytics is a one hundred percent stable solution.
 

Room For Improvement

Cisco Secure IPS users desire better SIEM integration, user-friendliness, third-party tools support, and enhanced management with AI and cloud integration.
Splunk User Behavior Analytics needs better pricing, integration, user-friendly interfaces, enhanced features, and improved scalability and infrastructure.
Incorporating AI capabilities would enhance its functionality.
Global reach allows deployment of apps and services closer to users worldwide, but data sovereignty concerns exist and region selection must align with compliance requirements.
I encountered several issues while trying to create solutions for this advanced version, which seem unrelated to query or data issues.
High data ingestion costs can be an issue, especially for large enterprises, as Splunk charges based on the amount of data processed.
 

Setup Cost

Cisco Secure IPS is costly but valued for strong security, with potential deals and discounts available through vendor negotiation.
Enterprise buyers find Splunk's User Behavior Analytics costly, with variable pricing based on data, hardware, and additional applications.
It's cheaper to integrate with existing IT security solutions compared to other expensive brands with subscription costs.
Reserved instances with one or three-year commitments offer lower rates, providing up to 70% savings.
Comparing with the competitors, it's a bit expensive.
The pricing is based on the amount of data processed, and it is considered a high-level investment for enterprises.
 

Valuable Features

Cisco Secure IPS offers robust threat detection, seamless integration, and adaptable security features for comprehensive and cost-effective network protection.
Splunk User Behavior Analytics provides scalable, user-friendly threat detection with advanced analytics, machine learning, and seamless data integration and reporting.
Cisco Secure IPS (NGIPS) is quite powerful for threat detection and includes botnet detection.
I also utilize it for anomaly detection and behavior analysis, particularly using Splunk's machine learning environment.
It is highly scalable and stable, even in large-scale enterprise environments.
I evaluate the automation capabilities for threat detection in Splunk User Behavior Analytics, which uses automated machine learning models and behavioral analytics to detect complex and hidden threats.
 

Categories and Ranking

Cisco Secure IPS (NGIPS)
Ranking in Intrusion Detection and Prevention Software (IDPS)
9th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
68
Ranking in other categories
No ranking in other categories
Splunk User Behavior Analytics
Ranking in Intrusion Detection and Prevention Software (IDPS)
12th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
24
Ranking in other categories
User Entity Behavior Analytics (UEBA) (4th)
 

Mindshare comparison

As of June 2025, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Cisco Secure IPS (NGIPS) is 4.5%, down from 4.7% compared to the previous year. The mindshare of Splunk User Behavior Analytics is 2.2%, down from 2.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Yosevan Sinaga Sinaga - PeerSpot reviewer
Effectively identifies malicious behavior while future automation and AI advancements hold potential
Cisco Secure IPS (NGIPS) ( /products/cisco-secure-ips-ngips-reviews ) is quite powerful for threat detection and includes botnet detection. It effectively blocks unwanted software, hashes, and suspicious behaviors. The tool is easy to integrate with other IT security solutions due to similar protocols. The system offers effective threat detection features, although automation capabilities are not yet fully utilized.
Subhayu Chakraborty - PeerSpot reviewer
Automatic reports streamline tasks and offers easy report gathering
The dashboard part could be improved. While using it, I noticed two options: Classic, which is adequate yet only in black and white, and another one that is more advanced or smart, though I forgot the exact term. I encountered several issues while trying to create solutions for this advanced version, which seem unrelated to query or data issues.
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
859,129 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
University
14%
Financial Services Firm
9%
Comms Service Provider
6%
Computer Software Company
17%
Financial Services Firm
12%
Government
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cisco NGIPS?
The product's initial setup phase was easy.
What is your experience regarding pricing and costs for Cisco NGIPS?
Cisco is one of the top brands known for cost-effectiveness, making it worth the money. It's cheaper to integrate with existing IT security solutions compared to other expensive brands with subscri...
What needs improvement with Cisco NGIPS?
In the future, I hope to see automation features like automatic blocking and rule creation. Additionally, incorporating AI capabilities would enhance its functionality.
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
The pricing is based on the amount of data processed, and it is considered a high-level investment for enterprises. Costs can be cut through efficient use and implementation.
What needs improvement with Splunk User Behavior Analytics?
High data ingestion costs can be an issue, especially for large enterprises, as Splunk charges based on the amount of data processed. Complex dashboards may require additional scripting. Some integ...
 

Also Known As

Sourcefire NGIPS, Firepower NGIPS
Caspida, Splunk UBA
 

Overview

 

Sample Customers

American Electric Power, Huntington Bank, Keycorp, Nationwide, Transunion, Marriott, Inova Health, Ford, Thomson Reuters, Dow Chemical, Equifax, Chevron, Walmart, Coca Cola
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Cisco Secure IPS (NGIPS) vs. Splunk User Behavior Analytics and other solutions. Updated: June 2025.
859,129 professionals have used our research since 2012.