Try our new research platform with insights from 80,000+ expert users

Commvault Cloud vs Rapid7 InsightIDR vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Backup and Recovery Market Share Distribution
ProductMarket Share (%)
Commvault Cloud4.0%
Veeam Data Platform7.0%
Rubrik3.9%
Other85.1%
Backup and Recovery
Security Information and Event Management (SIEM) Market Share Distribution
ProductMarket Share (%)
Rapid7 InsightIDR2.1%
Splunk Enterprise Security7.1%
Wazuh6.4%
Other84.4%
Security Information and Event Management (SIEM)
Security Information and Event Management (SIEM) Market Share Distribution
ProductMarket Share (%)
Splunk Enterprise Security7.1%
Wazuh6.4%
IBM Security QRadar5.4%
Other81.1%
Security Information and Event Management (SIEM)
 

Featured Reviews

Ankit Gagneja - PeerSpot reviewer
Cloud Solution Architect at Tata Consultancy
Hybrid backup strategy has improved recovery orchestration and now supports flexible DR planning
I think improvements could be made in Commvault Cloud. Lately what I have seen is that there are AI capabilities that different data protection organizations are coming up with, which basically revolves around tiering of not frequently accessible data to glacier kind of storage, plus bringing in a high level of compression and deduplication capabilities. All those features I believe are there in other customers and they are bringing in new use cases from the AI perspective which I have not recently seen in Commvault. I have seen that Dell does have such features. We recently pitched a solution to the customers where we talked about data tiering and the other AI use cases, identifying the data by itself and autonomously taking decisions on how to tier the data between the different storage classes that we have. Those kind of capabilities that we have proposed to the customer as far as the partner solutions are concerned. I would like to see AI capabilities in Commvault Cloud. The rest of the features pretty much align with the other enterprise solutions that we have in the market. It is just the AI capability that is being asked by the customers as well as that I see missing with Commvault.
SohailHyder - PeerSpot reviewer
Head Of Cyber Security at Super Secure
Has supported compliance needs for mid-sized organizations but lacks customization and advanced integration
If we pitch Rapid7 InsightIDR against solutions such as SIEMs from Splunk or LogRhythm, it is not as customizable as a SIEM solution is. This is where it can improve if we keep in front the feature sets of a complete SIEM solution. Most common in the market is QRadar, but it is depleting now. It has been taken over by some other products such as Splunk and LogRhythm. If we compare these things with Rapid7 InsightIDR, then there are definitely some gaps that need to be filled. Data retention is also one concern because Rapid7 InsightIDR is cloud-based and operates on a subscription model. Whatever data you want to retain, it has to be paid for separately or it has a cost. Other solutions that are on-premises can have their own infrastructure or they provide some data retention for a month or in some capacity-wise, they provide that solution to them which makes them more attractive.
reviewer1469784 - PeerSpot reviewer
Senior Manager at a financial services firm with 10,001+ employees
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The data is well-protected. It doesn't age off until it's copied. That's a big feature right there. When you reach the end of your retention, it does not expire until the secondary copy is completed. That allows you to hold onto data that otherwise would have aged off by retention. I like that feature. It's hard to just delete or lose data using the Commvault platform."
"The solution is easy to use and the duplication is quite good."
"It integrates redundant storage and preserves jams in a storage area, providing up to 70% compression rate."
"Cloud integration."
"HyperScale X is really user-friendly and has a lot of features. It's also cheaper, faster, and more stable than its competitors."
"It's great for getting data back."
"Commvault Cloud provides an excellent solution."
"It's a software-based solution so we just need a license to expand it."
"Very intuitive and easy to set up."
"InsightIDR helps us investigate an environment to discover information about incidents."
"It is a very stable solution."
"Log search allows us to dive deep into aggregated logs and query all event types at once.​"
"Features for user behavior analytics and the rules for attack review are good."
"Rapid7 InsightIDR is budget-friendly and has a good market position because not everybody can afford to go for LogRhythm or Splunk or QRadar."
"Simple configuration and automatically syncs to the cloud platform."
"The ability to ingest Office 365 log files, then process them into events and display them on a map."
"It is very stable. We have not had any problems."
"Splunk Enterprise Security helped us with faster detection of threats."
"It helps us uncover bottlenecks in the network."
"The integration and plugin availability are nice, the AI module is also great."
"It has a big user base, so the community is useful."
"Splunk stands out for its extensive application integrations."
"Exporting is a good feature. It helps me out when I have to do reports. I do a lot of exporting and crunching of the numbers. Dashboards are okay for showing to the leadership, but for doing statistics and updating tickets, the export feature is very beneficial for me."
"The ability to identify risks as they come in is quite good."
 

Cons

"With so many features, sometimes you cannot find what you are looking for in the interface and you have to dig into books online to find out how to solve an issue."
"They don't market their products well. They don't do a lot of marketing to enable them to move forward."
"The initial setup was complicated."
"They can improve the VMware recovery and VMware backup. There is an improvement area on the VMware infrastructure. They can make available what they call a VSA proxy. They can have an appliance-type setup to deploy VSA backups and help recover quicker. They can have an appliance ready. Instead of having to have a server dedicated to that and installing software on a server, they can just provide an actual appliance for that."
"The pricing of the solution can be improved and made cheaper."
"They should move the CommServe outside of Windows machines and the database should be distributed among servers. It's still a single point of failure."
"Improved documentation and user training resources could contribute to a smoother onboarding process and more effective utilization of the platform's capabilities."
"I would like to see some of the code execute a little bit better when I add new licenses and assign licenses to users. I'd like to see that information update a little quicker."
"The main problem lies in the processes within the client's operating systems."
"The interface for doing investigation needs to be enhanced with minor improvements that would make it more useful."
"I would like the ability to adjust the threshold of certain existing alerts. Currently the only option is to change the notifications or create my own alert."
"One of the things that could be better is digital forensics. It is there, but it can be better. They could provide more on the endpoint detection level."
"Customised alert recipients need to be added to allow better first-line action and quicker response. Configurable honeypots would be a welcome addition."
"It takes time for the product's support team to resolve issues, making it an area of concern where improvements are required."
"Sometimes, it is hard to get the right queries to use. Currently, the tool lacks a pre-made set of queries."
"The APIs can be further improved in Rapid7."
"Splunk Enterprise Security can provide more details and help CISOs resolve vulnerability situations better. The reason is that the tools we choose for data analysis and log collection cannot collect all the data and logs. Splunk Enterprise Security should help me with this, but it cannot."
"The user access control could be much more granular, so that the admins can control r/w/x access for specific features of the product like dashboards, etc."
"The solution could improve by increasing the performance. We have run into problems when large amounts of data are processed."
"We're planning to incorporate UBA and SOAR. It would be good to have everything in one place."
"The user interface is the main area for improvement."
"We can only increase the environment. For instance, with an ES server, we cannot make a cluster of ES. If you have two servers and want to make a cluster of these two servers for ES, that is not possible."
"Splunk could enhance its offerings by incorporating modules for network detection and response and fraud management, along with improving its threat intelligence management capabilities."
"It needs to improve the way to install third-party apps and enable installation without logging into splunk.com."
 

Pricing and Cost Advice

"We have checked some other products, but we are not testing them because price-wise, Commvault is better than the other solutions."
"The license for Commvault HyperScale X is paid annually."
"Based on the customer's needs, their pricing and model is very confusing sometimes. You need to check with their sales to make sure you are getting the right pricing on whatever you are using. I know that they have simplified a lot regarding the licensing model nowadays, but it is good to always double check and make sure it has everything that you really need."
"Commvault Backup & Recovery is priced fairly, and its performance-to-cost ratio is also better than fair."
"The complete license gives us options for all the features. Commvault does not license based on storage or the management components. It can integrate with any storage vendor. That means that when we are out of storage and need more, we can integrate without additional licensing. In my opinion, Commvault needs to reduce the licensing cost by 20 to 40 percent to make it cost-efficient."
"The price could perhaps be lower as well."
"Using a subscription-based license has been advantageous."
"The price is not cheap, but when you compare it to the other products they are all almost the same level in terms of price."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"The pricing of the solution depends on the user. But there is a yearly licensing cost."
"The solution has a mid-range price point in the market"
"It is on a yearly basis. For our own company, for about 250 users, it was 16,000 euros a year."
"The pricing and licensing are competitive."
"Rapid7 InsightIDR charges us based on the endpoints we connect to."
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"Rapid7 InsightIDR's pricing is reasonable but we have challenges with the Minimum Order Quantity. It is not reasonable for customers who have less than one hundred devices. If they can reduce Minimum Order Quantity, it is good. You have to pay around 5000-6000 dollars per year for the product. The pricing includes maintenance and support costs."
"I am not personally involved with the pricing of the solution."
"While licensing can be a concern, there are ways to reduce the licensing costs including filtering some events."
"It is pretty straightforward and based on the sizing. If I compare it with other competitors, it makes sense."
"Splunk ES is quite expensive compared to some products on the market."
"Splunk is definitely not a cheap solution. It is an expensive product."
"Luckily, we come under a large federal agency, and before the pandemic, they signed a large enterprise license agreement. It worked out great and to our advantage because we are a small organization. We got a 300 gig license, and we just did not have the buying power to be able to get products cheaply. Because we all partnered together under the agency umbrella, we were able to get Splunk Enterprise Security, UBA, and ITSI for cheap. This was good considering the fact that some of these premium apps require a minimum number of users, and we do not have the number of people needed to even justify buying it."
"Splunk is really expensive compared to all the other tools on the market, including Microsoft Sentinel."
"Splunk Enterprise Security is a worthwhile investment given the comprehensive range of features it offers."
report
Use our free recommendation engine to learn which Backup and Recovery solutions are best for your needs.
881,757 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
11%
Manufacturing Company
10%
Government
5%
Computer Software Company
12%
Financial Services Firm
9%
Manufacturing Company
8%
Government
7%
Financial Services Firm
13%
Computer Software Company
10%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise24
Large Enterprise82
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise5
Large Enterprise6
By reviewers
Company SizeCount
Small Business109
Midsize Enterprise50
Large Enterprise264
 

Questions from the Community

What do you like most about ThreatWise?
Security measures, including encryption and threat detection, contribute significantly to data protection, safeguardi...
What is your experience regarding pricing and costs for ThreatWise?
Commvault Cloud is expensive, and there is room for the price to be 10-15 percent lower than what they are charging c...
What needs improvement with ThreatWise?
I think improvements could be made in Commvault Cloud. Lately what I have seen is that there are AI capabilities that...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
What do you like most about Rapid7 InsightIDR?
During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, ...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingest...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitor...
What do you like most about Splunk?
There are a lot of third-party applications that can be installed.
 

Also Known As

Commvault Complete Data Protection, Commvault Backup & Recovery, Commvault HyperScale X, Metallic, ThreatWise
InsightIDR
No data available
 

Overview

 

Sample Customers

Aberdeenshire Council, Acxiom, BAM Group Ireland, Catholic Education Diocese of Parramatta, CI Investments, Clifford Chance, American Municipal Power, American Pacific Mortgage, AstraZeneca, Dongbu Steel, Denver Health, Dow Jones, Emirates Steel, Penn State Health, Prime Healthcare, Sonic Healthcare, Sony Network Communications, TiVO, UCONN Health, The Weitz Company
Liberty Wines, Pioneer Telephone, Visier
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Veeam Software, Hewlett Packard Enterprise, Commvault and others in Backup and Recovery. Updated: January 2026.
881,757 professionals have used our research since 2012.