Try our new research platform with insights from 80,000+ expert users

Cisco Secure IPS (NGIPS) vs Splunk User Behavior Analytics comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 19, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.4
Cisco Secure IPS delivers effective threat detection and aligns with security needs, but setup costs concern some users' ROI evaluations.
Sentiment score
5.9
Splunk User Behavior Analytics improves productivity and ROI, with significant investment offset by enhanced data integration and strategic implementation.
The solution can save costs by improving incident resolution times and reducing security incident costs.
Enterprise Architect at Wipro Limited
 

Customer Service

Sentiment score
7.1
Cisco Secure IPS support is generally well-regarded for responsiveness and skill, despite some regional inconsistencies and initial contact issues.
Sentiment score
6.8
Splunk User Behavior Analytics support is generally well-rated, with satisfaction varying by support tier and community resources valued.
Fortinet, on the other hand, offers quicker response times and same-day RMAs, which gives them an edge in customer service.
Head Of Technical Operations at ITE
The response was fast, and they provided experts to solve our issues quickly.
IT Infrastructure Manager at TMLI
A few years ago, I had a very bad situation. We lost a lot of money, and I opened for the first time in my life, a case with priority one. The person responsible for the ticket didn't respond for two days.
System Engineer at a tech services company with 11-50 employees
Mission-critical offering a dedicated team, proactive monitoring, and fast resolution.
Enterprise Architect at Wipro Limited
From the responsiveness perspective, Splunk is very responsive with SLA-bound support for premium tiers.
Enterprise Architect at Wipro Limited
I would rate their technical support as 8.5 out of 10.
Director at Techpace
 

Scalability Issues

Sentiment score
7.0
Cisco Secure IPS is praised for scalability and centralized management but criticized for hardware limitations and high scaling costs.
Sentiment score
7.3
Splunk User Behavior Analytics excels in scalability, supporting vast data and devices, despite some storage limitations for long-term logs.
Splunk User Behavior Analytics is highly scalable, designed for enterprise scalability, allowing expansion of data ingestion, indexing, and search capabilities as log volumes grow.
Enterprise Architect at Wipro Limited
 

Stability Issues

Sentiment score
7.5
Cisco Secure IPS is mostly stable but experiences software glitches, upgrade issues, and faces preferences for alternative solutions.
Sentiment score
7.9
Splunk User Behavior Analytics is stable, reliable, and user-friendly, excelling in enterprise environments with high log volumes.
The software situation with Cisco is problematic.
System Engineer at a tech services company with 11-50 employees
I recommend it to other users, but I am concerned about stability, as the stability is not adequate.
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
With built-in redundancy across zones and regions, 99.9% uptime is achievable.
Enterprise Architect at Wipro Limited
Splunk User Behavior Analytics is a one hundred percent stable solution.
Cloud Solution Architect at Tech Mahindra Limited
Splunk User Behavior Analytics is highly stable and reliable, even in large-scale enterprise environments with high log injection rates.
Enterprise Architect at Wipro Limited
 

Room For Improvement

Cisco Secure IPS requires better SIEM integration, enhanced user-friendliness, centralized management, intuitive UI, and improved support and documentation.
Splunk User Behavior Analytics needs enhancements in dashboards, integration, pricing, support, automation, machine learning, configuration, and storage management.
Incorporating AI capabilities would enhance its functionality.
IT Infrastructure Manager at TMLI
CLI is very important in professional working, and it was an unwise decision by Cisco to remove it.
System Engineer at a tech services company with 11-50 employees
I am aware that we are not measuring some metrics or tracking access through Cisco Secure IPS (NGIPS).
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
Global reach allows deployment of apps and services closer to users worldwide, but data sovereignty concerns exist and region selection must align with compliance requirements.
Enterprise Architect at Wipro Limited
I encountered several issues while trying to create solutions for this advanced version, which seem unrelated to query or data issues.
System Engineer at Infosys
High data ingestion costs can be an issue, especially for large enterprises, as Splunk charges based on the amount of data processed.
Enterprise Architect at Wipro Limited
 

Setup Cost

Cisco Secure IPS is seen as expensive, justified by robust features, but less cost-effective for smaller businesses.
Splunk User Behavior Analytics is costly, with pricing based on processed data, transitioning to subscription models, and includes additional costs.
It's cheaper to integrate with existing IT security solutions compared to other expensive brands with subscription costs.
IT Infrastructure Manager at TMLI
I would rate the price for Cisco Secure IPS (NGIPS) as high.
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
Reserved instances with one or three-year commitments offer lower rates, providing up to 70% savings.
Enterprise Architect at Wipro Limited
Compared to all other products in the market, it is the most expensive one in all aspects including professional service and licenses, even the cloud version.
Director at Techpace
Comparing with the competitors, it's a bit expensive.
Regional Director at iSecureMind
 

Valuable Features

Cisco Secure IPS provides advanced threat detection, scalability, integration capabilities, and centralized management, enhanced by Talos and Cisco Firepower.
Splunk User Behavior Analytics offers advanced threat detection, scalability, and integration for robust security and data analysis solutions.
Cisco Secure IPS (NGIPS) helps me with the visibility component, providing visibility across more than 3,000 applications using Firepower IPS.
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
Cisco Secure IPS (NGIPS) is quite powerful for threat detection and includes botnet detection.
IT Infrastructure Manager at TMLI
They can discover new versions of malware, which is very beneficial.
System Engineer at a tech services company with 11-50 employees
I also utilize it for anomaly detection and behavior analysis, particularly using Splunk's machine learning environment.
Cloud Solution Architect at Tech Mahindra Limited
The dashboards themselves are nice, very good, and very helpful, but the accuracy of the data or the information that will be presented on the dashboard is something that needs to be questioned.
Director at Techpace
Features like alerts and auto report generation are valuable.
System Engineer at Infosys
 

Categories and Ranking

Cisco Secure IPS (NGIPS)
Ranking in Intrusion Detection and Prevention Software (IDPS)
9th
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
69
Ranking in other categories
No ranking in other categories
Splunk User Behavior Analytics
Ranking in Intrusion Detection and Prevention Software (IDPS)
12th
Average Rating
8.2
Reviews Sentiment
6.6
Number of Reviews
25
Ranking in other categories
User Entity Behavior Analytics (UEBA) (4th)
 

Mindshare comparison

As of March 2026, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Cisco Secure IPS (NGIPS) is 3.3%, up from 2.9% compared to the previous year. The mindshare of Splunk User Behavior Analytics is 2.8%, up from 1.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS) Mindshare Distribution
ProductMindshare (%)
Cisco Secure IPS (NGIPS)3.3%
Splunk User Behavior Analytics2.8%
Other93.9%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

reviewer373227 - PeerSpot reviewer
System Engineer at a tech services company with 11-50 employees
Marketing strengths shine but regaining user trust needs significant effort
There are numerous things that could be improved about Cisco Secure IPS (NGIPS) to get it back on track. Sollution for small branches: when we have to connect a lot very small branches (or sometimes only an ATM) we need something small, with LTE and with reasonable price. Cisco response is SDWAN but it is not always the case. Recently Cisco released some small firewalls but I have not tried them yet. Central management with FMC is a very good idea, but sometimes local management or monitoring is helpfull. With Cisco You have to decide: central or local. You cannot have both. Regarding usability, when you commit configuration on Cisco, it sometimes takes very long. Commits also take some time for the competition, but Cisco is definitely lagging behind the rest in this respect. Last but not least, for me as a professional is lack of CLI. With CLI, I can configure every firewall on the market except Cisco. CLI is very important in professional working, and IMHO it was an unwise decision by Cisco to remove it. Graphical interfaces are very nice, but when you've got thousands of objects in a big installation and have to configure many things, CLI is a much faster way to do it.
SK
Enterprise Architect at Wipro Limited
Offers intuitive deployment with strong customer support and advanced analytics features
There are improvements that could be made to Splunk User Behavior Analytics as any product will have advantages and disadvantages. Scalability is one consideration. For example, the advantages include rapid auto scaling to meet demand. A disadvantage is that it can lead to cost overrun if not properly factored or governed. The speed of deployment offers faster provisioning as an advantage, but it can require substantial automation skills and infrastructure as code expertise, which can be challenging. Cloud provides major operational benefits such as agility, automation, resilience, and global access when setting up on Cloud. However, it introduces challenges such as cost control, complexity, and vendor dependency. For example, global reach allows deployment of apps and services closer to users worldwide, but data sovereignty concerns exist and region selection must align with compliance requirements.
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Comms Service Provider
9%
Marketing Services Firm
9%
Educational Organization
8%
Computer Software Company
10%
Financial Services Firm
10%
Government
9%
University
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business28
Midsize Enterprise16
Large Enterprise27
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise6
Large Enterprise12
 

Questions from the Community

What is your experience regarding pricing and costs for Cisco NGIPS?
I would rate the price for Cisco Secure IPS (NGIPS) as high.
What needs improvement with Cisco NGIPS?
I am aware that we are not measuring some metrics or tracking access through Cisco Secure IPS (NGIPS). In my opinion, Cisco could improve the Web GUI for Cisco Secure IPS (NGIPS).
What is your primary use case for Cisco NGIPS?
Our main use case for Cisco Secure IPS (NGIPS) is in-line traffic control, and we are using IPS in an in-line mode.
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
Splunk User Behavior Analytics is a premium product. Compared to all other products in the market, it is the most expensive one in all aspects including professional service and licenses, even the ...
What needs improvement with Splunk User Behavior Analytics?
Splunk User Behavior Analytics is still an immature product, so it still needs some R&D to be able to be mature in the market. The prediction, algorithms, and ML codes behind Splunk User Behavi...
 

Also Known As

Sourcefire NGIPS, Firepower NGIPS
Caspida, Splunk UBA
 

Overview

 

Sample Customers

American Electric Power, Huntington Bank, Keycorp, Nationwide, Transunion, Marriott, Inova Health, Ford, Thomson Reuters, Dow Chemical, Equifax, Chevron, Walmart, Coca Cola
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Cisco Secure IPS (NGIPS) vs. Splunk User Behavior Analytics and other solutions. Updated: March 2026.
884,873 professionals have used our research since 2012.