Try our new research platform with insights from 80,000+ expert users

Splunk Enterprise Security vs eG Enterprise comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

eG Enterprise
Average Rating
8.2
Reviews Sentiment
7.7
Number of Reviews
21
Ranking in other categories
Application Performance Monitoring (APM) and Observability (38th), Network Monitoring Software (48th), IT Infrastructure Monitoring (43rd)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.6
Number of Reviews
306
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. eG Enterprise is designed for Application Performance Monitoring (APM) and Observability and holds a mindshare of 0.3%, down 0.3% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 9.5% mindshare, down 12.6% since last year.
Application Performance Monitoring (APM) and Observability
Security Information and Event Management (SIEM)
 

Featured Reviews

Jose Ramon Crespo - PeerSpot reviewer
Utilize artificial intelligence for faster issue response and seamless ITSM integration
The data gathering capabilities and the automation, which utilizes artificial intelligence, are the most valuable features. These capabilities help us gather more information and analyze it faster, leading to better responses to issues. The tool is also excellent at integrating with ITSM ( /categories/it-service-management-itsm ) services, providing a seamless alerting system for our customers.
ROBERT-CHRISTIAN - PeerSpot reviewer
Has many predefined correlation rules and is brilliant for investigation and log analysis
It is very complicated to write your own correlation rules without the help of Splunk support. What Splunk could do better is to create an API to the standard SIEM tools, such as Microsoft Sentinel. The idea would be to make it less painful. In ELK Stack, Kibana is the query language with which you can search log files. I believe Splunk has also a query language in which they search their log files, but once you have identified the log file that you want to use for further security correlation, you want to very quickly transport that into your SIEM tool, such as Microsoft Sentinel. That is something that Splunk could make a little bit less painful because it is a lot of effort to find that log file and forward it. An API with Microsoft Sentinel or a similar SIEM tool would be a good idea.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"What I like about eG Enterprise is that it's easy to use. It's a simple product. You can get up to seventy-five to eighty percent of the required information based on real user experience and diagnostics."
"Enormous capability to monitor Citrix environments."
"Sometimes when we face issues with the new technologies or very old technologies where we cannot enhance the service, they move to work with us directly and start doing some development on this area which is very good for us."
"The ability to see what the end user response is, so I can get a better understanding of what the end user is seeing when they connect to the Citrix servers."
"The product is simple to use."
"User session details"
"The GUI is nicer than all the other graphical interfaces out there."
"Single pane of glass to review status of the full environment."
"The tool drastically reduces SOC overhead. Its integration with our tool suite is great and helps us correlate events. The solution is also a lot faster than our standalone instances."
"The integration is seamless with many devices and operating systems."
"It gives us the liberty to do more in terms of use cases."
"The correlation capabilities are the first value that our clients say they like with Splunk."
"Its usability is the best part. It is easy for our developers to use if they want to search their logs, etc."
"We solve issues that we previously could not since we now have the data."
"The initial setup is simple, not very complex. Initial deployment takes around 10 to 15 minutes to set up the entire base for Splunk including all three tiers."
"Its alerting is most valuable. We have alerts set up in our environment for certain attacks, such as an SQL injection attempt. We have a front-facing server for the website. It is out there, and anybody can access it. When those SQL injection attempts come in, we are able to detect that with the alert."
 

Cons

"eG Enterprise's licensing could be cheaper. Even compared to Dynatrace, I think the price is quite expensive considering the APM functionalities, even though they have other benefits such as info monitoring."
"There should be more price flexibility to adapt to different kinds of customers. For small and medium businesses, eG Enterprise is usually too expensive."
"Back-end configuration is not easy to implement."
"The interface could be improved as it is not real intuitive. It is not user-friendly."
"would like to see improvements in the alarm display console."
"In terms of areas for improvement in eG Enterprise, we are now moving most of our services to the OpenShift platform, and we need a way to monitor even containerized services or any service deployed on OpenShift, but that feature is still not available in eG Enterprise, so it's not good enough for us."
"Needs to improve the networking monitor capabilities."
"Application TCP latency is an area with room for improvement, but I believe this is already on the roadmap."
"The support that is included with the standard licensing fee is very bad."
"Delays in responses from the technical team can pose challenges for both vendors and clients, especially considering that Splunk applications and machine solutions are critical assets."
"The analytics of Splunk could be improved."
"Their technical support sucks."
"A problem that we had recently had was we licensed it based on how much data you upload to them every day. Something changed in one our applications, and it started generating three to four times as many logs and. So now, we are trying to assemble something with parts of the Splunk API to warn ourselves, then turn it off and throttle it back more. However it would be better if they had something systematically built into the product that if you're getting close to your license, then to shut things down."
"It needs integration with a configuration management solution."
"The solution is expensive."
"It's costly."
 

Pricing and Cost Advice

"eG Enterprise is much cheaper than the other products it competes with."
"They gave us a good price, when they were found out we were looking at other products because their price was very high. We were looking at another solution, then we came back to them was because they brought the price down. We selected them for three years."
"It is not expensive."
"It'd be nice if the price was lower. That would be an improvement."
"The cost for eG Enterprise is almost $100,000 for one hundred and fifty services. It's subscription-based and the payment is yearly."
"The product is very cheap."
"If using eG for virtual desktops, carefully calculate whether per named user, per concurrent user, or per server"
"There are two licensing options: Perpetual and SaaS-based. The main offering, in terms of what eG prefers to offer, is the subscription-based rather than the Perpetual License. The price could be cheaper."
"The licensing model can be expensive, but the value it provides is significant."
"Regarding the product's pricing, I think it has always been difficult to have a conversation with Splunk."
"Splunk Enterprise Security is an expensive solution."
"Splunk Enterprise Security is expensive."
"Setup cost is cheap: It is free, it is user-friendly, and it is fast."
"The tool's licensing is good and we haven't received any complaints from the team handling it."
"The pricing is very complicated, and it is very pricey. You do require a lot of different licenses in order to get a comprehensive solution that is not just the SIEM solution."
"I am fine with the licensing, but in terms of the cost, it is expensive for the data that we have. We have an open discussion with our account rep about this."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
850,671 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
13%
Government
12%
Manufacturing Company
8%
Financial Services Firm
15%
Computer Software Company
14%
Manufacturing Company
8%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Any advice about APM solutions?
Could you please share your requirements ? There are a lot tools can be added to the list. I spent almost 6 months to test and check many tools then I select eG enterprise.
Do you recommend eG Enterprise? Why or why not?
I feel that eG Enterprise is one of the top APM tools available on the market. Out of the solutions I have tried, it is the best for monitoring, diagnosis, analytics, and reporting of key IT servic...
What do you like most about eG Enterprise?
eG Enterprise has a single pane of glass for observability and monitoring.
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Overview

 

Sample Customers

20th Century Fox, Allscripts, Anthem Blue Cross and Blue Shield, Aviva, AXA, Biogen, Cox Communications, Denver Health, eBay, JP Morgan Chase, PayPal, Southern California Edison, Samsung, and many more.
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Splunk Enterprise Security vs. eG Enterprise and other solutions. Updated: May 2023.
850,671 professionals have used our research since 2012.