No more typing reviews! Try our Samantha, our new voice AI agent.

Elastic Security vs Splunk Cloud Platform comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.0
Elastic Security provides satisfactory ROI and cost savings, though users experience varied support levels and payback periods.
Sentiment score
6.1
Splunk Cloud Platform boosts operational visibility, efficiency, and ROI through enhanced integration, dashboard access, and reduced manual tasks.
It does not require hefty security budgets and can be deployed for enterprise security effectively.
Assistant Director at PTA
The overall cost saving from tool consolidation and automation delivered measurable return on investment within the first year.
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
In terms of ROI with Splunk Cloud Platform, I see major benefits such as improved efficiency and reduced manual effort.
SIEM Engineer at a tech services company with 11-50 employees
Splunk Cloud Platform has impacted operational costs; it's a bit expensive, but it provides value for money.
Business General Manager at Mutex Systems
 

Customer Service

Sentiment score
6.4
Elastic Security support is inconsistent; users favor community and documentation, while premium users seek more responsive and personalized help.
Sentiment score
6.0
Splunk Cloud's support varies, with praised resources but inconsistent response times and quality depending on account status.
Support is prompt and helpful.
Senior Cyber Security Manager at a tech services company with 11-50 employees
Most of the time when my team encounters issues, they receive responses within 24 hours.
Assistant Director at PTA
I have not faced any difficulties with Elastic Security, as we have a pretty good support service from them.
Chief Product Officer at ClusterPower
I feel that Splunk's documentation is highly maintained, regular updates seem to happen, and I don't have any suggestions for improvement as it is currently at its best.
Soc Analyst at Payatu
Support teams understand cloud and SOC issues and provide actionable guidelines quickly.
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
Sometimes, the support team may not be fully knowledgeable about the challenge you face, but through their internal escalation structure, they manage to find viable solutions sooner or later or provide updates on when issues will be fixed.
Splunk Certified Architect at Data Elicit Solutions Pvt. Ltd.
 

Scalability Issues

Sentiment score
7.3
Elastic Security offers scalable solutions adaptable to various environments, praised for flexibility and requiring careful planning for integration.
Sentiment score
6.7
Splunk Cloud Platform offers scalable, efficient expansion for large data, with ease of integration despite some cost and licensing concerns.
It allows us to think about specific use cases, such as gathering malicious IPs in a single view and analyzing threats based on geolocation.
Assistant Director at PTA
Elastic Security is quite scalable.
Chief Product Officer at ClusterPower
I think it's scalable due to the ease of integrating and deploying multiple indexers for data processing.
Soc Analyst at Payatu
Splunk Cloud Platform is scalable for multi-tenant environments, handling terabytes of logs daily across global customers without performance impact.
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
The back-end part is provided, so it is highly scalable.
Observability Engineer at Data Elicit Solutions Pvt. Ltd.
 

Stability Issues

Sentiment score
7.7
Elastic Security is generally stable and reliable but can face challenges with big data and requires careful configuration.
Sentiment score
7.8
Splunk Cloud Platform is highly reliable with quick issue resolution, despite minor outages mostly due to external factors.
In terms of stability, I would rate Elastic a solid eight out of ten.
Senior Cyber Security Manager at a tech services company with 11-50 employees
I rate Splunk Cloud Platform a ten out of ten for stability and reliability.
Soc Analyst at Payatu
Splunk Cloud Platform was stable, and I did not see any performance issues or downtime.
IT Security Operations Manager at a retailer with 5,001-10,000 employees
 

Room For Improvement

Elastic Security needs improvements in authentication, usability, automation, scalability, integration, and pricing, with user-friendly dashboards and documentation.
Users want better third-party integration, intuitive UI, improved support, simplified alerts, optimized performance, and lower pricing for Splunk Cloud.
CrowdStrike and Defender have more established threat intelligence integration due to having a larger client base.
Senior Cyber Security Manager at a tech services company with 11-50 employees
My security testing team continuously reports vulnerabilities, and we have to fix and update the versions frequently.
Assistant Director at PTA
Machine learning algorithms become better with time; as they ingest a huge volume of data, they become better.
Chief Product Officer at ClusterPower
I know there are tutorials on the website, but I feel if they rolled out more free courses on such things that provide a link to a free course for beginner training, I feel people would be interested in it.
Data Security Intern at a manufacturing company with 10,001+ employees
In terms of enhancement for Splunk Cloud Platform, I would say if we could create add-ons or if we get the capability to build add-ons directly through cloud, not talking about the add-on builder framework, but something editor-like where we will directly edit our conf files from any specific app or TA provided by Splunk Cloud Platform itself.
Splunk Engineer at Data Elicit Solutions Pvt. Ltd.
Splunk Cloud Platform needs improvement in its security offerings, specifically in cybersecurity.
Sr Manager at Continued
 

Setup Cost

Elastic Security provides a free open-source option, competitive pricing, and subscription plans, appealing to cost-conscious enterprises.
Splunk Cloud Platform's pricing is high but offers significant value, though cost predictability and transparency remain concerns.
The pricing is reasonable, especially for Small Medium Enterprises (SMEs), making it a viable option for businesses building their security infrastructure.
Senior Cyber Security Manager at a tech services company with 11-50 employees
This is beneficial for SMEs as they do not need extensive budgets for security solutions.
Assistant Director at PTA
Elastic Security is considered cost-effective, especially at lower EPS levels.
Performance Practice Specialist at a local government with 10,001+ employees
Once you are in the partnership with Splunk Cloud Platform and with Cisco, you can have good discounts, you can make the deal and discuss, and they are willing to help you as a partner in finding the solution and finding your target.
Innovation Service Manager at a computer software company with 51-200 employees
Splunk Cloud is considered too expensive, with its two product offerings both being costly.
Sr Manager at Continued
If I were to rate the price for the product from 1 to 10, I would rate it nine.
Business General Manager at Mutex Systems
 

Valuable Features

Elastic Security provides scalable, customizable threat response with fast search, real-time analysis, and strong community support for actionable insights.
Splunk Cloud Platform offers enterprise-grade capabilities enhancing operational insights with easy deployment, cost-saving management, and robust security features.
Elastic Security offers good insight regarding alerts, reports, and cases.
Senior Cyber Security Manager at a tech services company with 11-50 employees
Elastic Security offers advanced features such as machine learning and integration with ChatGPT.
Performance Practice Specialist at a local government with 10,001+ employees
We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data.
Assistant Director at PTA
The most valuable feature of Splunk Cloud Platform is its robustness and ability to ingest logs.
Sr Manager at Continued
The search capability utilizes the same compute assigned, and compared to on-premises, it is very efficient and fast because on-premises we had fixed compute assigned with limits set for searching per role or application.
Senior Software Engineer at WorldPay US
The platform's alerting mechanism is valuable, as there is software that makes alarms in case of attacks.
Chief Executive Officer at ENAD
 

Categories and Ranking

Elastic Security
Average Rating
7.8
Reviews Sentiment
6.8
Number of Reviews
66
Ranking in other categories
Log Management (9th), Security Information and Event Management (SIEM) (5th), Endpoint Detection and Response (EDR) (15th), Security Orchestration Automation and Response (SOAR) (7th), Extended Detection and Response (XDR) (8th)
Splunk Cloud Platform
Average Rating
8.2
Reviews Sentiment
5.9
Number of Reviews
69
Ranking in other categories
Data Visualization (3rd), IT Alerting and Incident Management (2nd)
 

Mindshare comparison

While both are Systems Management solutions, they serve different purposes. Elastic Security is designed for Log Management and holds a mindshare of 3.0%, down 3.7% compared to last year.
Splunk Cloud Platform, on the other hand, focuses on Data Visualization, holds 1.0% mindshare, up 0.6% since last year.
Log Management Mindshare Distribution
ProductMindshare (%)
Elastic Security3.0%
Wazuh7.5%
Splunk Enterprise Security6.8%
Other82.7%
Log Management
Data Visualization Mindshare Distribution
ProductMindshare (%)
Splunk Cloud Platform1.0%
Tableau Enterprise11.0%
Domo5.7%
Other82.3%
Data Visualization
 

Featured Reviews

Laurentiu Popescu - PeerSpot reviewer
Chief Product Officer at ClusterPower
Has improved threat detection with deep log analysis and streamlined investigation workflows
The most useful features I find in Elastic Security are the forensic ones that allow us to carry deeper analysis into the logs for in-depth investigations, and the dashboards, with the reporting dashboard being quite user-friendly. Elastic Security is quite good at identifying threats, as it is part of the deep investigation tool that I mentioned before. Unless we need to look further into a certain log, we can carry out a deeper analysis and forensics on those particular logs. I can assess the impact of Elastic Security's real-time data analysis on our threat response efficiency as working pretty good. We are looking for real-time analysis because we have a continuous inflow of logs from different sources: from our cloud, from Active Directory, from our network. So it works pretty well.
Shivam Dhang - PeerSpot reviewer
IT Infrastructure & Cloud Manager at Softcell Technologies Limited
Centralized monitoring has transformed our multi-tenant security operations and automated response
The best features Splunk Cloud Platform offers are the multi-tenant data isolation plus role-based access control, secure index-level segregation for managing multiple global customers in a shared Splunk Cloud Platform environment. Additionally, features such as native integrations with SIEM, SOAR, and ITSM enable us to automate incident response, ticketing, and end-to-end security workflows across client environments. The high-scale injection plus SPL correlation process handles large volumes of infrastructure security logs with real-time analytics for managing SOC and cloud operations. Splunk Cloud Platform has positively impacted our organization as we have achieved faster incident detection and response, lower MTTR with real-time SPL alerts and automated workflows. It has also improved our multi-tenant visibility and centralized monitoring, reducing tool sprawl. We also saw better compliance and audit readiness with consistent log retention and reporting.
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
885,667 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Government
9%
Comms Service Provider
9%
Manufacturing Company
7%
Computer Software Company
15%
Financial Services Firm
10%
Construction Company
9%
Manufacturing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business40
Midsize Enterprise11
Large Enterprise15
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise9
Large Enterprise49
 

Questions from the Community

Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
What do you like most about Elastic Security?
Elastic provides the capability to index quickly due to the reverse indexes it offers. This data is crucial as it contains critical information. The reverse index allows fast data indexing because ...
What is your experience regarding pricing and costs for Elastic Security?
I am satisfied with the pricing, setup cost, and licensing cost. It is a pure 10.
What do you like most about Splunk Cloud Platform?
Splunk has sped up our response and reduced the time we spend manually monitoring any logs for ticketing tools or servers. It saves us around two hours daily.
What needs improvement with Splunk Cloud Platform?
I don't see any new requirements in terms of improvements for Splunk Cloud Platform at this time. Splunk's dashboarding, reporting, and visualizations are evolving at a larger scale with the new Sp...
 

Also Known As

Elastic SIEM, ELK Logstash
No data available
 

Overview

 

Sample Customers

Texas A&M, U.S. Air Force, NuScale Power, Martin's Point Health Care
Mindtouch
Find out what your peers are saying about Elastic Security vs. Splunk Cloud Platform and other solutions. Updated: March 2023.
885,667 professionals have used our research since 2012.