Graylog vs Splunk Enterprise Security vs Stackify comparison

Cancel
You must select at least 2 products to compare!
Graylog Logo
10,317 views|8,658 comparisons
94% willing to recommend
Splunk Logo
27,900 views|22,601 comparisons
92% willing to recommend
Stackify Logo
226 views|167 comparisons
71% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Graylog, Splunk Enterprise Security, and Stackify based on real PeerSpot user reviews.

Find out what your peers are saying about Splunk, Datadog, Wazuh and others in Log Management.
To learn more, read our detailed Log Management Report (Updated: April 2024).
769,065 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Everything stands out as valuable, including the fact that I can quantify and qualify the logs, create pipelines and process the logs in any way I like, and create charts or data maps.""We run a containerized microservices environment. Being able to set up streams and search for errors and anomalies across hundreds of containers is why a log aggregation platform like Graylog is valuable to us.""The product is scalable. The solution is stable.""The solution's most valuable feature is its new interface.""The ability to write custom alerts is key to information security and compliance.""I am very proud of how very stable the solution is.""Real-time UDP/GELF logging and full text-based searching.""It is used as a log manager/SIEM. It provides visibility into the infrastructure and security related events."

More Graylog Pros →

"It allows the centralization of data and makes possible new sorts of correlations that were previously impossible using traditional SIEMs such as ArcSight or QRadar.""We can present to our management in real time the security of the batch management for the PCs, security regarding the network equipment. We're currently working in the Azure Cloud project, so we can send any logs from the cloud to Splunk. We can monitor them and we can present to the managers and customers. It's a very good solution for reporting. We use Splunk for reporting and monitoring of any solution in the company.""The most valuable feature is the log aggregation, being able to scan through all of the logs.""I like Splunk's data aggregation and search capabilities.""Good for log collection and log management.""The graph visualization is the most valuable feature.""From the class that I took this week, being able to create notable events from whatever you find in the data set is pretty useful.""The ability to view all of these different logs, then drilling down into specific times or into specific data sources, has proved to be the greatest aspect in decreasing our troubleshooting overhead time."

More Splunk Enterprise Security Pros →

"The filter feature on Stackify is one of the features I found valuable. It's awesome. When I want to get the application logs, the solution gives me many filters. For example, if I want to get logs from my test environment, the option is there for me to select the environment from Stackify, and you can also select the particular application, and you'll see the information you need there. The filter feature alone and the fact that Stackify offers a lot of different filters is what I like the most about the solution because I've used other tools with the filter feature, but the filtering was very difficult, versus Stackify that has good filtering. On Stackify, you can filter the information by the last one hour, or the last four hours, and you can also select the date range and specify the timestamp, then the solution will give you the information based on the date range you specified. Another feature I found valuable on Stackify is its rating feature because it tells you how your application is faring. For example, a rating of A means excellent, while a rating of F means very bad, or that your application is not doing well at all. The ratings are from A to F. I also like that Stackify helps you in terms of load management because the solution gives you information on overutilized resources. These are the most valuable features of the solution.""The performance dashboard and the accurate level of details are beneficial.""The deployment is very fast.""The solution is stable and reliable."

More Stackify Pros →

Cons
"Lacks sufficient documentation.""There should be some user groups and an auto sign-in feature.​""Elasticsearch recommendations for tuning could be better. Graylog doesn't have direct support for running the system inside of Kubernetes, so it can be challenging to fill in the gaps and set up containers in a way that is both performant and stable.""Graylog can improve the index rotation as it's quite a complex solution.""I would like to see a date and time in the Graylog Grok patterns so that I can save time when searching for a log. I like how the streams and the search query work, but adding a date and time will allow me to pull out a log in a milli-second.""More complex visualizations and the ability to execute custom Elasticsearch queries would be great.""We ran into problems with Elasticsearch throwing a circuit-breaking exception due to field data size being too large. It turned out that the heap size directly impacted this size in a high-throughput environment, causing unexplained instability in Graylog. We were able to troubleshoot on the Elasticsearch size, but we should have been able to reference some minimum requirements for Graylog to know that our settings weren't sufficient.""With technical support, you are on your own without an enterprise license."

More Graylog Cons →

"My company could benefit from doing more Splunk training with Splunk consultants teaching us how to use it.""My biggest struggle with Splunk in general is memorizing all the commands. If I want to know which users have logged in between certain hours, I cannot write that query out. It would be helpful to have AI so that I can explain in simple terms what I want and then the search gives that back to me. I am waiting for that.""Adding custom visualization in Splunk has been improved over the years but can still be made better by integrating more and more JavaScript visualization sources.""I would like Splunk to add more integration. QRadar has many indications with more products than Splunk.""The product was designed for security and IT with business intelligence needs, such as PDF exporting, but this has not been the highest priority. While the functionality is there, it could be developed more.""A lot of people are averse to using new tools so if they make it even more user-friendly than it already is, I think that could go a long way.""Their technical support sucks.""The analytics of Splunk could be improved."

More Splunk Enterprise Security Cons →

"I would like to be able to see metrics about individual running containers on the host machines.""I've not used Stackify for a while, and I'm currently using a solution now that's not as good as Stackify. Among the solutions I've been using so far, Stackify has been one of the best for me, but there's always room for improvement. For example, I don't know if it's just me, but when I try to get the log from Stackify, sometimes it doesn't appear in real-time. It takes a few minutes before the logs appear. When I redeploy my solution and the application starts, I don't see the logs immediately, and it would take two to three minutes before I see the logs. I don't know if other customers have a similar experience. It's the wait time for the logs to appear that's a concern for me, could be improved, and is what the Stackify team should be looking into. In terms of any additional feature that I'd like added to the solution, I'm not sure if Stackify has a way to export logs out. I've been trying to do it. On the solution, you can click on a spiral-like icon and it shows you the entire error, and I'd prefer an export button that would let me download the error and save that into a text file, for example, so it'll be available on my local machine for me to reference it, especially because the log keeps going and as you're using the solution, the system keeps pushing messages on to Stackify, so if I'm looking at a particular error at 12:05 PM, for example, by the time I go back to my system and would like to revisit the error at 12:25 PM, on Stackify, the logs would have gone past that level and I won't see it again which makes it difficult. When you now go back to that timestamp, you don't tend to see it immediately, but if the solution had an export feature for me to save that particular error information on my local machine for reference at a later time, I won't have to go back to Stackify. I just go to that log, specifically to that particular export that I've received on my local machine. I can get it and review it, and it would be easier that way versus me going back to Stackify to find that particular error and request that particular information.""The search feature could be improved.""It should be easily scalable and configurable in different instances."

More Stackify Cons →

Pricing and Cost Advice
  • "Having paid official support is wise for projects."
  • "I am using a community edition. I have not looked at the enterprise offering from Graylog."
  • "If you want something that works and do not have the money for Splunk or QRadar, take Graylog.​​"
  • "​You get a lot out-of-the-box with the non-enterprise version, so give it a try first."
  • "Consider Enterprise support if you have atypical needs or setup requirements.​"
  • "I use the free version of Graylog."
  • "It's an open-source solution that can be used free of charge."
  • "We're using the Community edition."
  • More Graylog Pricing and Cost Advice →

  • "Pricing and licensing is quite expensive. But for the value the product provides, it seems at par in the market."
  • "Although Splunk is an expensive product, it is designed to be utilized across your organization in order to maximize your ROI and lower your TCO."
  • "It is not cheap."
  • "Splunk Enterprise becomes extremely expensive after the 20GB/month license."
  • "You will eat up whatever you purchase quickly. The level of insights that Splunk empowers is addictive."
  • "Splunk licensing model might seem expensive but with all the gain in functionalities you will have compared to traditional SIEM solutions I think it’s worth the price."
  • "Pricing is pretty fair."
  • "While licensing can be a concern, there are ways to reduce the licensing costs including filtering some events."
  • More Splunk Enterprise Security Pricing and Cost Advice →

  • "The price is variable. It depends on how much data we have received in that particular month. Usually, it goes up to $2,000, or, at times, $3,000 USD per month."
  • More Stackify Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Log Management solutions are best for your needs.
    769,065 professionals have used our research since 2012.
    Comparison Review
    Vinod Shankar
    Questions from the Community
    Top Answer:The product is scalable. The solution is stable.
    Top Answer:We are using the free version of the product. However, the paid version is expensive.
    Top Answer:Since it's a free tool, I don't have much to say. Troubleshooting is important to me. The initial setup is complex. I… more »
    Top Answer:For tools I’d recommend:  -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring… more »
    Top Answer:The performance dashboard and the accurate level of details are beneficial.
    Top Answer:The licensing cost is calculated on a per-user basis.
    Top Answer:When Stackify completes drill downs, sometimes there is a block of execution pipelines, and you cannot see the details… more »
    Ranking
    11th
    out of 95 in Log Management
    Views
    10,317
    Comparisons
    8,658
    Reviews
    6
    Average Words per Review
    802
    Rating
    7.3
    1st
    out of 95 in Log Management
    Views
    27,900
    Comparisons
    22,601
    Reviews
    63
    Average Words per Review
    958
    Rating
    8.4
    43rd
    out of 95 in Log Management
    Views
    226
    Comparisons
    167
    Reviews
    4
    Average Words per Review
    1,453
    Rating
    7.3
    Comparisons
    Also Known As
    Graylog2
    Learn More
    Overview

    Graylog is purpose-built to deliver the best log collection, storage, enrichment, and analysis. Graylog is:

    • Considerably faster analysis speeds.
    • More robust and easier-to-use analysis platform.
    • Simpler administration and infrastructure management.
    • Lower cost than alternatives.
    • Full-scale customer service.
    • No expensive training or tool experts required.

    Splunk Enterprise Security is a SIEM, log management, and IT operations analytics tool. The solution provides users with the ability to secure their information and manage their data in the cloud, data centers, or other applications. Splunk Enterprise Security also offers visibility from different areas, levels, and devices, rather than from a single system, thus, providing its users with flexibility. Splunk Enterprise Security can monitor data and analyze, detect, and prevent intrusions. This benefits users as it provides alerts to possible intrusions, helps users to be proactive, and reduces risk factors. 

    Full visibility across your environment

    Break down data silos and gain actionable intelligence by ingesting data from multicloud and on-premises deployments. Get full visibility to quickly detect malicious threats in your environment.

    Fast threat detection

    Defend against threats with advanced security analytics, machine learning and threat intelligence that focus detection and provide high-fidelity alerts to shorten triage times and raise true positive rates.

    Efficient investigations

    Gather all the context you need and initiate flexible investigations with security analytics at your fingertips. The built-in open and extensible data platform boosts productivity and drives down fatigue.

    Open and scalable

    Built on an open and scalable data platform, you can stay agile in the face of evolving threats and business needs. Splunk meets you where you are on your cloud journey, and integrates across your data, tools and content.

    Stackify is an application performance management (APM) solution that combines application performance monitoring with logs, errors, and reporting. It is a SaaS solution that is developer-focused. Users can quickly scan, identify, and repair issues with applications. Stackify APM offers valuable tools, such as Prefix and Retrace, which help to make it a comprehensive and valuable APM solution. Stackify is now part of the Netreo family of IT Infrastructure Management (ITIM), which is considered one of the fastest-growing IT organizations in the marketplace today.

    Stackify Prefix

    Stackify Prefix helps developers write better code, faster. The tool examines, tests, and approves code as it is being written. Almost every new application is code-perfect, negating the need for exhausting troubleshooting and frustrating time-consuming code review.

    Prefix is able to discover poor-performing SQL queries, ORM queries, potential bottlenecks, and concealed exceptions prior to moving the application into production.

    Prefix offers Summary Dashboards, intuitive suggestions, integrated logs, and distributed tracing. Distributed tracing expands visibility to cloud-native applications, microservices, and containers and can also provide additional transparency to cache services, web services, third-party services, and more. Users are able to easily move from logs to traces and back.

    This valuable tool ensures developers are able to consistently release the best code possible in the least amount of time, while improving performance, productivity, and profitability.

    Prefix is a very robust and easy-to-use tool. It can be used seamlessly with Linux, macOS, and Windows. Prefix integrates well with numerous languages, such as Java, Python, Ruby, PHP, Node.js, .Net, and .Net Core.

    Stackify Retrace

    Stackify Retrace is a user-friendly, trusted APM solution used in more than fifty countries worldwide. Users know that Retrace is able to ensure they can complete quicker, more efficient application development and consistently enhance overall application performance by suggesting important intuitive suggestions users need. 

    This solution is beneficial to both developers (Dev) and operations (Ops) personnel to learn to improve code and immediately finetune issues by:

    • Establishing effortless collaboration between Dev and Ops personnel via an easy-to-use GUI dashboard.

    • Delivering complete transparency of all stages of the application development process, from pre-development to production.

    • Utilizing performance protocols, such as error tracking, application logs, and code profiling, in real time in order to thoroughly understand how long a code will take to complete various tasks.

    • Improving overall efficiency and productivity by immediately discovering and repairing application issues.

    Retrace Real User Monitoring (RUM) uses both front-end and back-end monitoring to give users a complete picture of what is going on with the applications. This intuitive dashboard displays performance with a complete breakdown of resource usage and integrates the server-side and client traces into one engaging, user-friendly, extensive view. 

    Retrace is an out-of-the-box solution that works seamlessly with Java stacks, PHP, Node.js, Ruby, Python, .Net, and .Net Core. It is also compatible with many of today’s popular frameworks, such as AWS, Azure, Elasticsearch, MongoDB, MySQL, Oracle, PostgreSQL, Redis, and SQL Server. Additionally, Retrace will work effectively with many cloud providers, containers, and languages, and offers excellent and easy integration with today's favorite tools such as Jira, Slack, Jenkins, and more.

    Sample Customers
    Blue Cross Blue Shield, eBay, Cisco, LinkedIn, SAP, King.com, Twilio, Deutsche Presse-Agentur
    Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
    MyRacePass, ClearSale, Newitts, Carbonite, Boston Software, Children's International, Starkwood Media Group, Fewzion
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider11%
    Government8%
    Educational Organization7%
    REVIEWERS
    Computer Software Company19%
    Financial Services Firm15%
    Government10%
    Energy/Utilities Company7%
    VISITORS READING REVIEWS
    Financial Services Firm15%
    Computer Software Company14%
    Government9%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Financial Services Firm21%
    Computer Software Company17%
    Retailer7%
    Healthcare Company6%
    Company Size
    REVIEWERS
    Small Business50%
    Midsize Enterprise7%
    Large Enterprise43%
    VISITORS READING REVIEWS
    Small Business32%
    Midsize Enterprise18%
    Large Enterprise50%
    REVIEWERS
    Small Business31%
    Midsize Enterprise12%
    Large Enterprise57%
    VISITORS READING REVIEWS
    Small Business19%
    Midsize Enterprise13%
    Large Enterprise68%
    REVIEWERS
    Small Business43%
    Midsize Enterprise29%
    Large Enterprise29%
    VISITORS READING REVIEWS
    Small Business28%
    Midsize Enterprise11%
    Large Enterprise61%
    Buyer's Guide
    Log Management
    April 2024
    Find out what your peers are saying about Splunk, Datadog, Wazuh and others in Log Management. Updated: April 2024.
    769,065 professionals have used our research since 2012.