Try our new research platform with insights from 80,000+ expert users

Cisco Secure IPS (NGIPS) vs Splunk User Behavior Analytics comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 19, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.7
Cisco Secure IPS effectively detects threats and integrates with NIST, yielding positive ROI despite setup costs and financial quantification challenges.
Sentiment score
5.5
Users report varied ROI from Splunk UBA, emphasizing productivity gains, time savings, and improved incident resolution efficiency.
The solution can save costs by improving incident resolution times and reducing security incident costs.
Enterprise Architect at Wipro Limited
 

Customer Service

Sentiment score
7.2
Cisco Secure IPS customer service is praised for expertise but noted for inconsistent response times and initial contact challenges.
Sentiment score
6.9
Splunk User Behavior Analytics support is praised for its professionalism, extensive knowledge base, and prompt, reliable assistance despite regional limitations.
Fortinet, on the other hand, offers quicker response times and same-day RMAs, which gives them an edge in customer service.
Head Of Technical Operations at ITE
The response was fast, and they provided experts to solve our issues quickly.
IT Infrastructure Manager at TMLI
A few years ago, I had a very bad situation. We lost a lot of money, and I opened for the first time in my life, a case with priority one. The person responsible for the ticket didn't respond for two days.
System Engineer at a tech services company with 11-50 employees
Mission-critical offering a dedicated team, proactive monitoring, and fast resolution.
Enterprise Architect at Wipro Limited
From the responsiveness perspective, Splunk is very responsive with SLA-bound support for premium tiers.
Enterprise Architect at Wipro Limited
I would rate their technical support as 8.5 out of 10.
Director at Techpace
 

Scalability Issues

Sentiment score
7.0
Cisco Secure IPS scalability varies; effective for large environments but may need upgrades for extensive user capacity.
Sentiment score
7.2
Splunk User Behavior Analytics excels in scalable deployment, flexible expansion, and efficient data handling, overcoming on-premises storage challenges.
Splunk User Behavior Analytics is highly scalable, designed for enterprise scalability, allowing expansion of data ingestion, indexing, and search capabilities as log volumes grow.
Enterprise Architect at Wipro Limited
 

Stability Issues

Sentiment score
7.5
Cisco Secure IPS is stable but has bugs; continuous improvements are needed to compete with Fortinet and Palo Alto.
Sentiment score
7.8
Splunk User Behavior Analytics is stable, reliable, easy to configure, and effective, achieving 99.9% uptime with proper deployment.
The software situation with Cisco is problematic.
System Engineer at a tech services company with 11-50 employees
With built-in redundancy across zones and regions, 99.9% uptime is achievable.
Enterprise Architect at Wipro Limited
Splunk User Behavior Analytics is a one hundred percent stable solution.
Cloud Solution Architect at Tech Mahindra Limited
Splunk User Behavior Analytics is highly stable and reliable, even in large-scale enterprise environments with high log injection rates.
Enterprise Architect at Wipro Limited
 

Room For Improvement

Cisco Secure IPS needs better SIEM integration, user interface, stability, reporting, scalability, pricing, support, and cloud and endpoint integration.
Splunk User Behavior Analytics needs better pricing, integration, automation, and machine learning to enhance functionality and user experience.
Incorporating AI capabilities would enhance its functionality.
IT Infrastructure Manager at TMLI
CLI is very important in professional working, and it was an unwise decision by Cisco to remove it.
System Engineer at a tech services company with 11-50 employees
Global reach allows deployment of apps and services closer to users worldwide, but data sovereignty concerns exist and region selection must align with compliance requirements.
Enterprise Architect at Wipro Limited
I encountered several issues while trying to create solutions for this advanced version, which seem unrelated to query or data issues.
System Engineer at Infosys
High data ingestion costs can be an issue, especially for large enterprises, as Splunk charges based on the amount of data processed.
Enterprise Architect at Wipro Limited
 

Setup Cost

Cisco Secure IPS is costly, especially versus competitors, with pricing influenced by features, support, and potential bundling discounts.
Splunk User Behavior Analytics pricing is perceived as complex and expensive, influenced by data volume, licensing, and integration needs.
It's cheaper to integrate with existing IT security solutions compared to other expensive brands with subscription costs.
IT Infrastructure Manager at TMLI
Reserved instances with one or three-year commitments offer lower rates, providing up to 70% savings.
Enterprise Architect at Wipro Limited
Compared to all other products in the market, it is the most expensive one in all aspects including professional service and licenses, even the cloud version.
Director at Techpace
Comparing with the competitors, it's a bit expensive.
Regional Director at iSecureMind
 

Valuable Features

Cisco Secure IPS provides robust protection with strong integration, intelligence, and ease of use for comprehensive cybersecurity measures.
Splunk User Behavior Analytics offers advanced threat detection, real-time data collection, and customizable dashboards for enhanced monitoring and decision-making.
Cisco Secure IPS (NGIPS) is quite powerful for threat detection and includes botnet detection.
IT Infrastructure Manager at TMLI
They can discover new versions of malware, which is very beneficial.
System Engineer at a tech services company with 11-50 employees
I also utilize it for anomaly detection and behavior analysis, particularly using Splunk's machine learning environment.
Cloud Solution Architect at Tech Mahindra Limited
The dashboards themselves are nice, very good, and very helpful, but the accuracy of the data or the information that will be presented on the dashboard is something that needs to be questioned.
Director at Techpace
Features like alerts and auto report generation are valuable.
System Engineer at Infosys
 

Categories and Ranking

Cisco Secure IPS (NGIPS)
Ranking in Intrusion Detection and Prevention Software (IDPS)
11th
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
69
Ranking in other categories
No ranking in other categories
Splunk User Behavior Analytics
Ranking in Intrusion Detection and Prevention Software (IDPS)
13th
Average Rating
8.2
Reviews Sentiment
6.6
Number of Reviews
25
Ranking in other categories
User Entity Behavior Analytics (UEBA) (5th)
 

Mindshare comparison

As of January 2026, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Cisco Secure IPS (NGIPS) is 3.5%, up from 2.8% compared to the previous year. The mindshare of Splunk User Behavior Analytics is 2.1%, up from 1.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS) Market Share Distribution
ProductMarket Share (%)
Cisco Secure IPS (NGIPS)3.5%
Splunk User Behavior Analytics2.1%
Other94.4%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

reviewer373227 - PeerSpot reviewer
System Engineer at a tech services company with 11-50 employees
Marketing strengths shine but regaining user trust needs significant effort
There are numerous things that could be improved about Cisco Secure IPS (NGIPS) to get it back on track. Sollution for small branches: when we have to connect a lot very small branches (or sometimes only an ATM) we need something small, with LTE and with reasonable price. Cisco response is SDWAN but it is not always the case. Recently Cisco released some small firewalls but I have not tried them yet. Central management with FMC is a very good idea, but sometimes local management or monitoring is helpfull. With Cisco You have to decide: central or local. You cannot have both. Regarding usability, when you commit configuration on Cisco, it sometimes takes very long. Commits also take some time for the competition, but Cisco is definitely lagging behind the rest in this respect. Last but not least, for me as a professional is lack of CLI. With CLI, I can configure every firewall on the market except Cisco. CLI is very important in professional working, and IMHO it was an unwise decision by Cisco to remove it. Graphical interfaces are very nice, but when you've got thousands of objects in a big installation and have to configure many things, CLI is a much faster way to do it.
SK
Enterprise Architect at Wipro Limited
Offers intuitive deployment with strong customer support and advanced analytics features
There are improvements that could be made to Splunk User Behavior Analytics as any product will have advantages and disadvantages. Scalability is one consideration. For example, the advantages include rapid auto scaling to meet demand. A disadvantage is that it can lead to cost overrun if not properly factored or governed. The speed of deployment offers faster provisioning as an advantage, but it can require substantial automation skills and infrastructure as code expertise, which can be challenging. Cloud provides major operational benefits such as agility, automation, resilience, and global access when setting up on Cloud. However, it introduces challenges such as cost control, complexity, and vendor dependency. For example, global reach allows deployment of apps and services closer to users worldwide, but data sovereignty concerns exist and region selection must align with compliance requirements.
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
University
10%
Educational Organization
9%
Performing Arts
7%
Computer Software Company
12%
Financial Services Firm
9%
Government
9%
Educational Organization
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business27
Midsize Enterprise16
Large Enterprise27
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise5
Large Enterprise12
 

Questions from the Community

What do you like most about Cisco NGIPS?
The product's initial setup phase was easy.
What is your experience regarding pricing and costs for Cisco NGIPS?
Cisco is one of the top brands known for cost-effectiveness, making it worth the money. It's cheaper to integrate with existing IT security solutions compared to other expensive brands with subscri...
What needs improvement with Cisco NGIPS?
There are numerous things that could be improved about Cisco Secure IPS (NGIPS) to get it back on track. Sollution for small branches: when we have to connect a lot very small branches (or sometime...
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
Splunk User Behavior Analytics is a premium product. Compared to all other products in the market, it is the most expensive one in all aspects including professional service and licenses, even the ...
What needs improvement with Splunk User Behavior Analytics?
Splunk User Behavior Analytics is still an immature product, so it still needs some R&D to be able to be mature in the market. The prediction, algorithms, and ML codes behind Splunk User Behavi...
 

Also Known As

Sourcefire NGIPS, Firepower NGIPS
Caspida, Splunk UBA
 

Overview

 

Sample Customers

American Electric Power, Huntington Bank, Keycorp, Nationwide, Transunion, Marriott, Inova Health, Ford, Thomson Reuters, Dow Chemical, Equifax, Chevron, Walmart, Coca Cola
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Cisco Secure IPS (NGIPS) vs. Splunk User Behavior Analytics and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.