Dynatrace vs Splunk Enterprise Security comparison

Cancel
You must select at least 2 products to compare!
Dynatrace Logo
19,806 views|12,033 comparisons
95% willing to recommend
Splunk Logo
27,900 views|22,601 comparisons
92% willing to recommend
Comparison Buyer's Guide
Executive Summary
Updated on Sep 22, 2023

We compared Dynatrace and Splunk Enterprise Security across several parameters based on our users' reviews. After reading the collected data, you can find our conclusion below:

  • Features: Dynatrace is highly regarded for its advanced AI engine and ability to identify infrastructure automatically. It also offers session replay and impressive visualization features. Splunk Enterprise Security stands out for its efficiency, extensive integration options, and powerful search functionality.

  • Room for Improvement: Some Dynatrace reviewers feel the learning curve is a little steep, and the documentation could be clearer. Users say that Dynatrace should offer more security options and improve integration with other tools.  Splunk users recommended improvements in AI capabilities, user-friendliness, and analytics.

  • Service and Support: Users generally found Dynatrace's customer service to be satisfactory, but some said that the response times and documentation have room for improvement. While some users found Splunk support to be responsive and helpful, others reported slow response times and a lack of expertise.

  • Ease of Deployment: Dynatrace's setup is simple, efficient, and requires minimal technical configuration. It takes a few hours at most. Some users thought Splunk Enterprise Security was easy to deploy, while others found it challenging and needed assistance from Splunk engineers or third-party integrators.

  • Pricing: Users say Dynatrace is expensive. Some noted that the licensing model is complicated and not transparent. Some said they struggled to accurately predict the number of units needed. Some users consider Splunk Enterprise Security to be expensive, but others said the price is reasonable. A few users expressed concerns about the cost of scaling up the solution and managing large volumes of data.

  • ROI: Dynatrace users said the solutions saved them money and reduced downtime. Users said that it’s challenging to calculate an ROI for Splunk Enterprise Security, and the return varies depending on individual circumstances. While some users have observed a substantial ROI, others have not actively explored or been engaged in ROI conversations.

Conclusion: Users appreciate Splunk for its efficient log aggregation, advanced data analytics, and visually appealing dashboards, but the interface could be more intuitive, and Splunk could leverage AI to enhance its feature set. Dynatrace is easy to set up and offers valuable features like automatic infrastructure detection and AI-powered problem identification. However, reviews suggest it could improve its user interface and integration with other tools.
To learn more, read our detailed Dynatrace vs. Splunk Enterprise Security Report (Updated: April 2024).
768,578 professionals have used our research since 2012.
Q&A Highlights
Question: What is the biggest difference between Dynatrace and Splunk?
Answer: The two things are entirely different. Splunk is primarily a log collection, analysis, and visualization solution. It can collect metrics now as well. Its purpose is after the fact forensics (what happened) as a part of a problem resolution process. That problem can span the entire gamut from security, to infrastructure operations to application operations. The primary competitors to Splunk are Elastic and Sumologic. Dynatrace is an Application Performance Management solution designed to automatically measure the performance of an application (or a micro-service), discover the topology and dependencies that the application relies upon, and determine if a problem is in the code or in the software and hardware infrastructure that supports the application. The key to Dynatrace's ability to do this is its real-time topology and dependency mapping engine called SmartScape. There is no similar capability in Splunk. The principal competitors to Dynatrace are AppDynamics, New Relic, and Instana. Rather than viewing these things as competitors, many companies use them together. In fact, Dynatrace has integration with Splunk, and Splunk has a Splunk App for Dynatrace up in Splunkbase. The most common use case for using them together is that Dynatrace finds the problem, determines if it is the code or not and if not determines where in the software and hardware infrastructure the problem resides. Splunk is then used to drill down into the part of the identified infrastructure to determine the exact nature of the problem (for example a security breach).
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Since we moved to OneAgent, we are much quicker to address live incidents and problems that occur in our systems.""We can see all the degradation of services in real-time, then we know exactly what the root cause of degradation is.""Helps in managing capacity planning, services performance, and tuning database performance and optimizing queries.""Dynatrace provides visibility into the application and its performance from the user to back-end services.""UEM (RUM)​: User Experience Management (real user monitoring) puts you in "user's seat" and gives you insight into how they experience the application. Often, this gives a totally different view than just watching the backend calls.""The most valuable features are end user visibility, Smartscape, and the entire visibility of our data center, including SQL queries.""Its ability to correlate a large source of information to pinpoint a root cause. This speeds up issue resolution and allow us to better reach our objectives.""The ability to drill down from an alert into a problem and pinpoint the source of an issue saves my client teams hours of time."

More Dynatrace Pros →

"Splunk Enterprise Security's dashboards are a key asset.""There are lots of free learning materials on their website.""We saw the granularity that we could get from Splunk far exceeded what we already had. We had the ability to have our security team really focus on the platform and stay within the platform, but they could correlate with a variety of other stakeholders, and our stakeholders were growing.""Alerts when a server is malfunctioning, monitors external attacks, and takes action to stop spreading viruses.""The solution has made us more secure.""Splunk has machine learning which is a valuable feature.""Splunk Enterprise Security comes with 300 pre-deployed use cases that can be easily customized to meet the specific needs of our organization, without the need to purchase additional tools.""The technical support is among the best in the market."

More Splunk Enterprise Security Pros →

Cons
"When compared with other tools, the experience needs improvement. I would like them to build out the interactions and make them friendlier.""It is not clear what are our long-term strategy should be to upgrade (Appmon vs Dynatrace).""Network monitoring is lacking and could be improved.""We sometimes have to run plugins on docker containers.""C language integration requires manual implementation through the SDK, which is rather difficult and time consuming.""Sometimes we have issues with the code on their side. We like to get it fixed.""Make it easier to define applications. E.g., provide an API for applications defined by REST services.""I think scalability is what we're struggling with. I would say it's okay, but there's a little bit of room for improvement."

More Dynatrace Cons →

"It is a good product, but the Achilles heel for a lot of organizations is the cost model for it because it gets expensive. That's because the model is based on how much data it processes a day, which can be prohibitive, especially if you have a lot of data. A lot of customers may not be ready for the sticker shock on how to fully leverage the product. I realized that the reason for that is that when it was originally designed, it was kind of like a big data modeling application. If they want to have a bigger customer base, they can come out with subsets of their product that are focused on specific things and have different pricing models. It may help with the cost.""Integrating tools and creating use cases could be easier. It's hard for a junior security engineer with only a couple of years of experience to write use cases. They can do it, but it's much easier in a solution like IBM QRadar. Setting conditions is like a multiple-choice type of thing. It's a more user-friendly process.""Splunk needs to be able to hold more days of data. At the moment it only holds three months of data.""I haven't found a way for me to create my own plugins and integrate them into Splunk, but this isn't necessarily a limitation; it could simply be a lack of knowledge on my part.""The solution could use a different licensing model.""The training was mostly sales-focused, like how to monitor your sales. It was hard to then come back from doing the training and try to switch it to a cybersecurity focus because all the training we did was sales oriented. The basic training didn't really touch on any kind of cybersecurity use cases or anything like that. That would have been great to see in the training.""Licensing costs can be a barrier for those with limited budgets.""If you monitor too much, you can lose performance on your systems."

More Splunk Enterprise Security Cons →

Pricing and Cost Advice
  • "Pricing is based on the number of servers monitored, so for big applications, it is a bit expensive."
  • "Licensing is a bit complicated for Dynatrace, and pricing is dependent on how much your organization invests."
  • "We found an issue within the first week of ownership that has been costing us more than the entire license cost."
  • "Product pricing can seem a little over complex, however this is minor and does not detract from the benefits of the solution."
  • "Getting the first agents installed, getting information, and coverage in a initial set of systems can be done in hours and with a low cost entry point."
  • "Price (of the product) is a major concern for all the clients I work with."
  • "The licensing model is confusing in solutioning clients for the number of hosts needed to deploy."
  • "The product is superior to others, but it comes with a price tag that is often difficult to position back to clients."
  • More Dynatrace Pricing and Cost Advice →

  • "Pricing and licensing is quite expensive. But for the value the product provides, it seems at par in the market."
  • "Although Splunk is an expensive product, it is designed to be utilized across your organization in order to maximize your ROI and lower your TCO."
  • "It is not cheap."
  • "Splunk Enterprise becomes extremely expensive after the 20GB/month license."
  • "You will eat up whatever you purchase quickly. The level of insights that Splunk empowers is addictive."
  • "Splunk licensing model might seem expensive but with all the gain in functionalities you will have compared to traditional SIEM solutions I think it’s worth the price."
  • "Pricing is pretty fair."
  • "While licensing can be a concern, there are ways to reduce the licensing costs including filtering some events."
  • More Splunk Enterprise Security Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Log Management solutions are best for your needs.
    768,578 professionals have used our research since 2012.
    Comparison Review
    Vinod Shankar
    Answers from the Community
    Miriam Tover
    Morne' O'Kennedy - PeerSpot reviewerMorne' O'Kennedy
    Real User

    As far as I know, Splunk is used as a syslog system only and DynaTrace is an application monitoring system. So you will use Splunk to collect events/logs from servers and devices and you will use DynaTrace to monitor applications and send alerts to end users, provide dashboards etc.

    HansChen  - PeerSpot reviewerHansChen
    Reseller

    Dynatrace is for APM / ITOM solution. Dynatrace trace can inspect the .net, Java, PHP Program. Splunk is for Log management and SIEM which Dynatrace does not focus on.
    They are two different function products.

    Gregor Oesch - PeerSpot reviewerGregor Oesch (Julius Baer)
    Vendor

    We use Dynatrace for deep dive transaction tracking to find performance issues of applications. We use Splunk various log analysis tasks mainly in the area of security.

    Stacy Ness - PeerSpot reviewerStacy Ness
    User

    It really depends on the use case. Dynatrace can actually enrich the data collected by Splunk and Dynatrace has an out of the box connection to Splunk. If the goal is application performance and end-user analytics then Dynatrace is the better solution. If the goal is security and threat analytics then Splunk is the right solution.

    informat792312 - PeerSpot reviewerinformat792312 (Information Technology Solutions Architect at a tech services company with 10,001+ employees)
    Real User

    Splunk and Dynatrace are two different solutions. Most organizations use both of them. Splunk can aggregate logs from Dynatrace. It also depends on what is the purpose of the usage. If you intend to measure end to end application performance and the application logs are instrumenting the metrics, then Splunk alone can do the job. It also allows you to correlate other events like firewall, network and other dependent applications/services.

    Dawid Van Der Merwe - PeerSpot reviewerDawid Van Der Merwe (SUSE)
    Vendor

    Dynatrace and Splunk are two different solutions that provide insight from different perspectives. Dynatrace is installed on servers/applications to provide APM and Splunk is more a log and data analytics solution that processes logs (traps/syslog/Windows Events/Firewall Logs/etc.).

    Dynatrace provides application performance management (APM), artificial intelligence for operations (AIOps), cloud infrastructure monitoring, and digital experience management (DEM), with products for the information technology departments and digital business owners of medium and large businesses. The company's services include performance management software for programs running on-premises and in the cloud. This software manages the availability and performance of software applications and the impact on user experience in the form of deep transaction tracing, synthetic monitoring, real user monitoring, and network monitoring.

    Splunk (the product) captures, indexes, and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards, and visualizations.
    Splunk makes machine data accessible across an organization by identifying data patterns, providing metrics, diagnosing problems, and providing intelligence for business operations. Splunk is a horizontal technology used for application management, security and compliance, as well as business and web analytics.

    Ref - from experience, their own websites and other related sites.

    Questions from the Community
    Top Answer:The key is to have a holistic view over the complete infrastructure, the ones you have listed are great for APM if you need to monitor applications end to end. I have tested them all and have not… more »
    Top Answer:While the environment does matter in the selection of an APM tool, I prefer to use Dynatrace to manage the entire stack. Both production and Dev/Test. I find it to be quite superior to anything else… more »
    Top Answer:There are many factors and we know little about your requirements (size of org, technology stack, management systems, the scope of implementation). Our goal was to consolidate APM and infra… more »
    Top Answer:For tools I’d recommend:  -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also,… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log… more »
    Top Answer:Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we… more »
    Ranking
    4th
    out of 95 in Log Management
    Views
    19,806
    Comparisons
    12,033
    Reviews
    15
    Average Words per Review
    468
    Rating
    8.5
    1st
    out of 95 in Log Management
    Views
    27,900
    Comparisons
    22,601
    Reviews
    63
    Average Words per Review
    958
    Rating
    8.4
    Comparisons
    Learn More
    Overview

    Dynatrace is an AI-powered software intelligence monitoring platform that accelerates digital transformation and simplifies cloud complexities. Dynatrace is an entirely automated full-stack solution that provides data and answers about the performance of your applications and deep insight into every transaction throughout every application, including the end-user experience. By modernizing and automating enterprise cloud operations, users can deliver an optimal digital experience with higher quality software to customers faster.

    Dynatrace offers an all-in-one automated artificial intelligence solution that brings together application performance, cloud and infrastructure, and digital experience monitoring. Dynatrace accelerates performance-driven results through operations, development, and business teams with a shared metrics platform. In addition, users are provided a full-stack monitoring experience with three patented technologies:

    • Smartscape - visualization mechanism that maps the totality of everything working in your environment and detects any casual dependencies between your applications, processes, websites, services, hosts, cloud infrastructure, and networks.

    • OneAgent - a technology that analyzes, gathers ,and unifies all business performance metrics throughout every layer of your technology stack.

    • PurePath Technology - code-level context and timings are captured from the mainframe to the cloud for all end-to-end transactions.

    What does Dynatrace offer?

    Dynatrace redefines how organizations monitor their digital ecosystems. The solution offers:

    • Cloud Automation: With AI engine Davis®, users can see the exact reason for problems and facilitate quick auto-remediation and intelligent cloud orchestration.

    • Application Security: With automated application vulnerability management, users can deliver applications faster and more securely.

    • Infrastructure Monitoring: Convenient broad visibility across your environments is provided with streamlined, automated infrastructure monitoring.

    • Digital Experience Monitoring (DEM): Optimize your applications, provide better support, and improve user experience with a combination of Real User Monitoring (RUM), Session Replay, and synthetic monitoring throughout your environment.

    • Applications and Microservices: For complex cloud environments, Dynatrace can automatically provide visibility and root-cause answers. It can also monitor microservices.

    • Digital Business Analytics: Get AI-powered, real-time answers to analytical business queries with KPIs and metrics that are already flowing through applications.

    Reviews from Real Users

    Dynatrace is the only solution that provides answers to organizations based on deep insight into each user, transaction, and organization's environment.

    Barry P., a managing performance engineer at Medica Health Plans, writes, "With Dynatrace, we have synthetic checks and real-user monitoring of all of our websites, places where members and providers can interact with us over the web. We monitor the response times of those with Dynatrace, and it's all integrated into one place."

    A consultant at a tech service company notes, "A feature that's one of the highlights of Dynatrace is the AI. The second most valuable feature is OneAgent. Between infrastructures, applications, operating systems, you can deploy with just a single agent and can practically install and forget about it."

    Splunk Enterprise Security is a SIEM, log management, and IT operations analytics tool. The solution provides users with the ability to secure their information and manage their data in the cloud, data centers, or other applications. Splunk Enterprise Security also offers visibility from different areas, levels, and devices, rather than from a single system, thus, providing its users with flexibility. Splunk Enterprise Security can monitor data and analyze, detect, and prevent intrusions. This benefits users as it provides alerts to possible intrusions, helps users to be proactive, and reduces risk factors. 

    Full visibility across your environment

    Break down data silos and gain actionable intelligence by ingesting data from multicloud and on-premises deployments. Get full visibility to quickly detect malicious threats in your environment.

    Fast threat detection

    Defend against threats with advanced security analytics, machine learning and threat intelligence that focus detection and provide high-fidelity alerts to shorten triage times and raise true positive rates.

    Efficient investigations

    Gather all the context you need and initiate flexible investigations with security analytics at your fingertips. The built-in open and extensible data platform boosts productivity and drives down fatigue.

    Open and scalable

    Built on an open and scalable data platform, you can stay agile in the face of evolving threats and business needs. Splunk meets you where you are on your cloud journey, and integrates across your data, tools and content.

    Sample Customers
    Audi, Best Buy, LinkedIn, CISCO, Intuit, KRONOS, Scottrade, Wells Fargo, ULTA Beauty, Lenovo, Swarovsk, Nike, Whirlpool, American Express
    Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
    Top Industries
    REVIEWERS
    Financial Services Firm28%
    Insurance Company9%
    Computer Software Company9%
    Manufacturing Company8%
    VISITORS READING REVIEWS
    Educational Organization28%
    Financial Services Firm18%
    Computer Software Company8%
    Manufacturing Company6%
    REVIEWERS
    Computer Software Company18%
    Financial Services Firm15%
    Government10%
    Energy/Utilities Company7%
    VISITORS READING REVIEWS
    Financial Services Firm15%
    Computer Software Company14%
    Government9%
    Manufacturing Company7%
    Company Size
    REVIEWERS
    Small Business17%
    Midsize Enterprise13%
    Large Enterprise71%
    VISITORS READING REVIEWS
    Small Business11%
    Midsize Enterprise33%
    Large Enterprise56%
    REVIEWERS
    Small Business31%
    Midsize Enterprise12%
    Large Enterprise57%
    VISITORS READING REVIEWS
    Small Business19%
    Midsize Enterprise13%
    Large Enterprise68%
    Buyer's Guide
    Dynatrace vs. Splunk Enterprise Security
    April 2024
    Find out what your peers are saying about Dynatrace vs. Splunk Enterprise Security and other solutions. Updated: April 2024.
    768,578 professionals have used our research since 2012.

    Dynatrace is ranked 4th in Log Management with 340 reviews while Splunk Enterprise Security is ranked 1st in Log Management with 228 reviews. Dynatrace is rated 8.8, while Splunk Enterprise Security is rated 8.4. The top reviewer of Dynatrace writes "AI identifies all the components of a response-time issue or failure, hugely benefiting our triage efforts". On the other hand, the top reviewer of Splunk Enterprise Security writes "It has a drag-and-drop interface, so you don't need to know SQL or Java to construct a query ". Dynatrace is most compared with Datadog, New Relic, AppDynamics, Azure Monitor and Elastic Observability, whereas Splunk Enterprise Security is most compared with Wazuh, IBM Security QRadar, Microsoft Sentinel, Elastic Security and Azure Monitor. See our Dynatrace vs. Splunk Enterprise Security report.

    See our list of best Log Management vendors.

    We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.