Try our new research platform with insights from 80,000+ expert users

Commvault Cloud vs Rapid7 InsightIDR vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Backup and Recovery
Security Information and Event Management (SIEM)
Security Information and Event Management (SIEM)
 

Featured Reviews

Matt Reller - PeerSpot reviewer
Provides extremely fast backup, is easy to manage, and is flexible
Commvault Cloud's automated policies provide the notification we need to ensure our data is secure and managed correctly. Commvault Cloud provides excellent visibility across all of our organization's data. It is extremely important to our organization that Commvault has a unified platform that offers recovery across cloud, on-prem, and SaaS workloads. It has helped our organization improve by simplifying the way we manage our environment. We could not manage the same environment with only half of our current staff. We have yet to find anything in our environment that Commvault does not support. Commvault Cloud's Risk Analysis helps us identify, categorize, and classify sensitive data enabling us to take the appropriate actions to protect it. Commvault does a good job helping us limit our exposure and ensure compliance. Commvault has helped us reduce our data management costs significantly. Compared to Dell Avamar, the costs are vastly different. Commvault is much more cost-effective. We are licensed by capacity, so we don't have to worry about licensing different features. We have all the features that are licensed by capacity. And as far as ongoing support costs and other expenses, they are much lower than what they were with Dell Avamar. Commvault also gives us the flexibility to use any storage we want, while Avamar is tied to the Data Domain, which is not cheap to support. It has helped us reduce our backup time unless we are using Data Domain. This is because we can perform deduplication and compression on the client layer, which reduces the load on the network. We cannot do this with Data Domain. In fact, if we even attempt to perform a quick progress check before sending data to the Data Domain, the system fails completely. We learned this the hard way. We are using many more advanced features in Commvault Cloud than we ever did in Dell Avamar, simply because we had to license each feature separately in Avamar. As a result, we did not perform many backups in Avamar, such as all database backups (DB2, SAP HANA, Oracle, and SQL). These backups were performed outside of Avamar. We are now using Direct Connect agents for all of our databases. This allows us to perform incremental backups, which we could not do with the previous method. As a result, we have reduced our backup times by two-thirds, or even more in some cases. Compared to when we were backing up directly to Data Domain, Commvault is now running our backups ten times faster. This has resulted in a significant reduction in our backup times. Commvault has helped us reduce the RPO. Even in Data Domain, it has reduced our storage times by about half. It has also helped us reduce the threat detection time. We reduced the RTO significantly with Commvault. Commvault has helped us reduce downtime primarily due to the increase in the performance of resources.
Asim Naeem - PeerSpot reviewer
Providing comprehensive insight into alerts while working towards AI enhancement
I definitely recommend Rapid7 InsightIDR. It is becoming better, with improvements being continuously made to the product. Right now, I do not have any advice about Rapid7 for other users because every organization or user has different criteria or multiple use cases, so I refrain from commenting on that. I rate the overall solution seven out of ten.
ROBERT-CHRISTIAN - PeerSpot reviewer
Has many predefined correlation rules and is brilliant for investigation and log analysis
It is very complicated to write your own correlation rules without the help of Splunk support. What Splunk could do better is to create an API to the standard SIEM tools, such as Microsoft Sentinel. The idea would be to make it less painful. In ELK Stack, Kibana is the query language with which you can search log files. I believe Splunk has also a query language in which they search their log files, but once you have identified the log file that you want to use for further security correlation, you want to very quickly transport that into your SIEM tool, such as Microsoft Sentinel. That is something that Splunk could make a little bit less painful because it is a lot of effort to find that log file and forward it. An API with Microsoft Sentinel or a similar SIEM tool would be a good idea.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The Commvault Complete Data Protection interface is straightforward to use."
"Commvault HyperScale X is also a good choice for regulations that require the backup system to be isolated from the rest of the infrastructure."
"It's great for getting data back."
"It's a complete software that can protect all the main applications. Perhaps that's the feature I like most. The integration with the NetApp and other apps is also very nice."
"Commvault is both very stable and scalable."
"Technical support is great."
"We use Commvault Command Center for backups and restores and for the creation of new clients. We use it for other functionalities as well. In terms of VMware, I can go directly to the Command Center, enter VMware, and I can search it directly. Command Center is very useful and it can be used for more advanced techniques."
"It runs all the tests and emails us the reports. We take daily, weekly, and monthly snapshots, and I integrate the storage snapshot scripts with the Commvault workflow. The Commvault workflow runs all the scripts and sends us the reports. It also features cloud-side reports and workflows. Commvault has many tools for backing up, restoring, and archiving things, but we use another service for our archives."
"Dashboards, including the main screen, provide much-needed information at a glance, without hours of coding and sifting through logs to find it. In case of an actual security incident, I have faith that insightIDR has retained all logs in a secure manner that prevents log tampering as well."
"I definitely recommend Rapid7 InsightIDR."
"I like that it's a cloud-based solution."
"The solution is very scalable in terms of the licensing model."
"I have seen that Rapid7 InsightIDR provides security to the networks and endpoints in the company."
"Rapid7 is easy to use and deploy. It is a simple solution and has easy data pulling."
"It is a very stable solution."
"InsightIDR helps us investigate an environment to discover information about incidents."
"Correlation search, in general, is valuable because it allows us to search multiple data sources easily."
"Easy to deploy and simple to use."
"It is easy to use, and easy to implement."
"Splunk setup is easy and straightforward. ​"
"It has been really good at consolidating a lot of data from different sources. It's really good at generating summaries."
"I like the ease with which dashboards can be created."
"Splunk Enterprise Security enhances business resilience and assists with threat detection by centralizing security data."
"The ability to view all of these different logs, then drilling down into specific times or into specific data sources, has proved to be the greatest aspect in decreasing our troubleshooting overhead time."
 

Cons

"The most common feedback I get in terms of Commvault is that it can be complex. I always refer my customers back to their own environment. Almost everything that goes into Commvault is a request by a customer. While it can be complex, it can also be very simple. You just need to understand your environment in order to make sure that you really need to turn on that extra feature or thing inside of Commvault. Maybe you don't need those things. It really depends on how simple or complex your environment is, whether you need all of Commvault's features."
"I just wanted to compare the features, which are there in EMC NetWorker, which are not available in Commvault. We have things using Networker."
"Endpoint backup."
"It is a little more complicated than it really needs to be."
"Commvault could make the product more cost-effective on the public cloud side. We are using this solution to back up whatever is still on-prem. We are not using it to back up what is on the public cloud because we have a native backup solution for that, which is provided by the vendor. As our footprint gets bigger, we will continue to evaluate this, but the last time that we did a cost analysis, the cost was not comparable to the solution that public clouds are offering."
"The workflow has room for improvement."
"When you deploy Complete Data Protection for past services, it's more complicated because you cannot directly back up from the previous service host. We have to build a proxy server, like a middleware, to directly access the past database server. It's complex and hard for beginners to figure out."
"I would like to see some of the code execute a little bit better when I add new licenses and assign licenses to users. I'd like to see that information update a little quicker."
"It takes time for the product's support team to resolve issues, making it an area of concern where improvements are required."
"Needs a better ability to customize the check within the console."
"InsightIDR is only available in a cloud version. Some of our customers prefer an on-prem solution because they want to manage the security within their environment."
"Tenable Nessus is easier to deal with. It's more efficient and accurate. InsightIDR is heavier than Tenable in terms of performance and scanning. Rapid7 would be much easier to use if it had a network connector like Tenable. Tenable's connector allows continuous monitoring over the B caps."
"The ability to tune the collector for custom logs would greatly help."
"The solution's XDR agents cannot compete with the XDR solutions out there yet."
"The APIs can be further improved in Rapid7."
"Cloud risk assessment is one area where I think they need a lot of improvement."
"Its pricing model and integration with third-party services can be improved. We had faced an issue with integration. The alerting feature is currently not available with Splunk, but it is definitely available with Datadog and PagerDuty. They should include this feature. A few dashboards in Splunk look quite old and are not that modern. They aren't bad, but improving these dashboards will definitely make Splunk more attractive and usable. I read in a few blog posts that there were a few security incidents related to Splunk agents. So, it can be made more secure."
"I do not have any pain points for Splunk Enterprise Security. I am still trying to learn it, but there can be more information on the education side for Splunk Enterprise Security. It would be nice if the certification path was more specific to what I use instead of being so broad."
"Delays in responses from the technical team can pose challenges for both vendors and clients, especially considering that Splunk applications and machine solutions are critical assets."
"Splunk Enterprise Security is complicated in terms of developing specific cybersecurity use cases."
"There is a definite learning curve to starting out."
"The initial setup is complex, but this is necessary. We needed to take into consideration how to direct log files from thousands of machines to Splunk, and how to ingest those files."
"I didn't face any major issues with Splunk Enterprise Security. There were only one or two issues related to the user account, but nothing major."
"I would like to see future development in terms of ML (Machine Learning)."
 

Pricing and Cost Advice

"Compared to other competitors and vendors the pricing is fair."
"The price could always be lower."
"We like that there is no extra cost for SharePoint, Teams, or OneDrive. It is all mimicking Microsoft's model. Every user has one terabyte of space. When users start using OneDrive, everybody has one terabyte that will be backed up included in the price."
"It is a bit more than other products, but when you consider the time savings, it is saving money."
"The tool is cost-effective."
"It is not the cheapest solution. I think the pricing is fair for mid-side customers. It is between all the other options."
"Commvault is more expensive than Veeam, which is the reason that we are changing to Veeam for cloud environments."
"The price of Commvault HyperScale X is a lot higher than competitors. As a government institution, we have annual costs. We made a budget for one year in advance. It was difficult to calculate the other solution's costs because each solution has another way of licensing. The solution is expensive but it is very good and we know the good quality we will be receiving."
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"​I am sure that there are cheaper products out there, but none that meet so many of our needs whilst maintaining stability and usability.​"
"Rapid7 InsightIDR is priced very well and is cost-effective."
"Licensing is straightforward. If, for some reason, you don’t meet the minimum licensing requirements, there is a third-party managed service that can help."
"Rapid7 InsightIDR's pricing is reasonable."
"Rapid7 InsightIDR's pricing is reasonable but we have challenges with the Minimum Order Quantity. It is not reasonable for customers who have less than one hundred devices. If they can reduce Minimum Order Quantity, it is good. You have to pay around 5000-6000 dollars per year for the product. The pricing includes maintenance and support costs."
"It is more reasonably priced than other vendors."
"It is possible to use a developer's license, which is up to 10GB per day of volume traffic, which is usually enough for most use cases."
"The pricing can be better. We are already considering Elastic because Splunk is too expensive. You have to pay based on per-day ingestion. There should be a more flexible model for the use cases where one day you have a huge amount, and on other days, it is quite less."
"The pricing of Splunk Enterprise Security is high."
"It's a yearly subscription."
"Splunk Enterprise Security is not a cheap product, but I think it is worth every dollar that you pay."
"Splunk is not a cheap solution and the license is billed annually."
"It can be tough to determine if you are getting all of the value out of your investment at times."
"Splunk is a bit pricier, but the benefits and ROI are huge."
report
Use our free recommendation engine to learn which Backup and Recovery solutions are best for your needs.
859,438 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
11%
Manufacturing Company
9%
Government
7%
Computer Software Company
15%
Financial Services Firm
8%
Manufacturing Company
8%
Government
6%
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for Commvault?
The tool is affordable. I rate the pricing a six out of ten. Implementation requires additional costs because we need...
What needs improvement with Commvault?
Data center backup must be improved. We also want the product to provide us with a cloud-based backup. If we use Micr...
What do you like most about Commvault Complete Data Protection?
IntelliSnap and file system backups are valuable features.
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
What do you like most about Rapid7 InsightIDR?
During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, ...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingest...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitor...
What do you like most about Splunk?
There are a lot of third-party applications that can be installed.
 

Also Known As

Commvault Complete Data Protection, Commvault Backup & Recovery, Commvault HyperScale X, Metallic, ThreatWise
InsightIDR
No data available
 

Overview

 

Sample Customers

Aberdeenshire Council, Acxiom, BAM Group Ireland, Catholic Education Diocese of Parramatta, CI Investments, Clifford Chance, American Municipal Power, American Pacific Mortgage, AstraZeneca, Dongbu Steel, Denver Health, Dow Jones, Emirates Steel, Penn State Health, Prime Healthcare, Sonic Healthcare, Sony Network Communications, TiVO, UCONN Health, The Weitz Company
Liberty Wines, Pioneer Telephone, Visier
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Veeam Software, Zerto, Commvault and others in Backup and Recovery. Updated: June 2025.
859,438 professionals have used our research since 2012.