

Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
It does not require hefty security budgets and can be deployed for enterprise security effectively.
The overall cost saving from tool consolidation and automation delivered measurable return on investment within the first year.
In terms of ROI with Splunk Cloud Platform, I see major benefits such as improved efficiency and reduced manual effort.
Splunk Cloud Platform has impacted operational costs; it's a bit expensive, but it provides value for money.
Support is prompt and helpful.
Most of the time when my team encounters issues, they receive responses within 24 hours.
I have not faced any difficulties with Elastic Security, as we have a pretty good support service from them.
I feel that Splunk's documentation is highly maintained, regular updates seem to happen, and I don't have any suggestions for improvement as it is currently at its best.
Support teams understand cloud and SOC issues and provide actionable guidelines quickly.
Sometimes, the support team may not be fully knowledgeable about the challenge you face, but through their internal escalation structure, they manage to find viable solutions sooner or later or provide updates on when issues will be fixed.
It allows us to think about specific use cases, such as gathering malicious IPs in a single view and analyzing threats based on geolocation.
Elastic Security is quite scalable.
I think it's scalable due to the ease of integrating and deploying multiple indexers for data processing.
Splunk Cloud Platform is scalable for multi-tenant environments, handling terabytes of logs daily across global customers without performance impact.
The back-end part is provided, so it is highly scalable.
In terms of stability, I would rate Elastic a solid eight out of ten.
I rate Splunk Cloud Platform a ten out of ten for stability and reliability.
Splunk Cloud Platform was stable, and I did not see any performance issues or downtime.
CrowdStrike and Defender have more established threat intelligence integration due to having a larger client base.
My security testing team continuously reports vulnerabilities, and we have to fix and update the versions frequently.
Machine learning algorithms become better with time; as they ingest a huge volume of data, they become better.
I know there are tutorials on the website, but I feel if they rolled out more free courses on such things that provide a link to a free course for beginner training, I feel people would be interested in it.
In terms of enhancement for Splunk Cloud Platform, I would say if we could create add-ons or if we get the capability to build add-ons directly through cloud, not talking about the add-on builder framework, but something editor-like where we will directly edit our conf files from any specific app or TA provided by Splunk Cloud Platform itself.
Splunk Cloud Platform needs improvement in its security offerings, specifically in cybersecurity.
The pricing is reasonable, especially for Small Medium Enterprises (SMEs), making it a viable option for businesses building their security infrastructure.
This is beneficial for SMEs as they do not need extensive budgets for security solutions.
Elastic Security is considered cost-effective, especially at lower EPS levels.
Once you are in the partnership with Splunk Cloud Platform and with Cisco, you can have good discounts, you can make the deal and discuss, and they are willing to help you as a partner in finding the solution and finding your target.
Splunk Cloud is considered too expensive, with its two product offerings both being costly.
If I were to rate the price for the product from 1 to 10, I would rate it nine.
Elastic Security offers good insight regarding alerts, reports, and cases.
Elastic Security offers advanced features such as machine learning and integration with ChatGPT.
We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data.
The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs.
The search capability utilizes the same compute assigned, and compared to on-premises, it is very efficient and fast because on-premises we had fixed compute assigned with limits set for searching per role or application.
The platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks.
| Product | Mindshare (%) |
|---|---|
| Elastic Security | 3.0% |
| Wazuh | 7.5% |
| Splunk Enterprise Security | 6.8% |
| Other | 82.7% |
| Product | Mindshare (%) |
|---|---|
| Splunk Cloud Platform | 1.0% |
| Tableau Enterprise | 11.0% |
| Domo | 5.7% |
| Other | 82.3% |


| Company Size | Count |
|---|---|
| Small Business | 40 |
| Midsize Enterprise | 11 |
| Large Enterprise | 15 |
| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 9 |
| Large Enterprise | 49 |
Elastic Security combines the features of a security information and event management (SIEM) system with endpoint protection, allowing organizations to detect, investigate, and respond to threats in real time. This unified approach helps reduce complexity and improve the efficiency of security operations.
Additional offerings and benefits:
Finally, Elastic Security benefits from a global community of users who contribute to its threat intelligence, helping to enhance its detection capabilities. This collaborative approach ensures that the solution remains on the cutting edge of cybersecurity, with up-to-date information on the latest threats and vulnerabilities.
Splunk Cloud Platform enhances operational efficiency with streamlined log management and real-time data analysis, offering customizable dashboards, seamless system integration, and a user-friendly interface that simplifies infrastructure management.
Splunk Cloud Platform stands out for its robust indexing and powerful search capabilities, delivering end-to-end visibility across environments. AI-driven security measures enhance cybersecurity intelligence, while its flexible log management reduces resolution times. The platform integrates effortlessly with diverse systems, supporting centralized log management, security monitoring, and application performance analysis. Users leverage its comprehensive analytics for troubleshooting, alerting, and visualization, optimizing costs and ensuring compliance with unified data sources.
What are the key features of Splunk Cloud Platform?In many industries, Splunk Cloud Platform is implemented primarily for unified log management, cybersecurity initiatives, and application performance monitoring. Businesses utilize it to streamline IT operations, integrate data sources, and leverage insights for troubleshooting and strategic decision-making, ensuring compliance and optimized resource use.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.