Cisco ThousandEyes vs. Splunk Enterprise

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco ThousandEyes
Score 8.9 out of 10
N/A
Cisco ThousandEyes empowers organizations to assure every digital experience across every network, everywhere, every time.N/A
Splunk Enterprise
Score 8.5 out of 10
N/A
Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.N/A
Pricing
Cisco ThousandEyesSplunk Enterprise
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco ThousandEyesSplunk Enterprise
Free Trial
YesYes
Free/Freemium Version
NoYes
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeOptionalNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco ThousandEyesSplunk Enterprise
Features
Cisco ThousandEyesSplunk Enterprise
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Cisco ThousandEyes
-
Ratings
Splunk Enterprise
7.1
Ratings
9% below category average
Centralized event and log data collection00 Ratings9.00 Ratings
Correlation00 Ratings9.00 Ratings
Event and log normalization/management00 Ratings9.50 Ratings
Deployment flexibility00 Ratings7.00 Ratings
Integration with Identity and Access Management Tools00 Ratings6.00 Ratings
Custom dashboards and workspaces00 Ratings5.90 Ratings
Host and network-based intrusion detection00 Ratings4.90 Ratings
Data integration/API management00 Ratings8.00 Ratings
Behavioral analytics and baselining00 Ratings5.90 Ratings
Rules-based and algorithmic detection thresholds00 Ratings7.50 Ratings
Response orchestration and automation00 Ratings7.00 Ratings
Reporting and compliance management00 Ratings6.40 Ratings
Incident indexing/searching00 Ratings6.50 Ratings
Best Alternatives
Cisco ThousandEyesSplunk Enterprise
Small Businesses
SolarWinds Pingdom
SolarWinds Pingdom
Score 9.7 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 3.7 out of 10
Medium-sized Companies
Catchpoint
Catchpoint
Score 9.2 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
Enterprises
Nexthink
Nexthink
Score 7.0 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco ThousandEyesSplunk Enterprise
Likelihood to Recommend
8.8
(0 ratings)
7.8
(0 ratings)
Likelihood to Renew
6.4
(0 ratings)
10.0
(0 ratings)
Usability
7.3
(0 ratings)
8.2
(0 ratings)
Availability
-
(0 ratings)
10.0
(0 ratings)
Support Rating
9.1
(0 ratings)
8.4
(0 ratings)
Online Training
-
(0 ratings)
8.0
(0 ratings)
Implementation Rating
-
(0 ratings)
9.0
(0 ratings)
Product Scalability
-
(0 ratings)
9.1
(0 ratings)
User Testimonials
Cisco ThousandEyesSplunk Enterprise
Likelihood to Recommend
As a service provider that is in multiple datacenters it's a great tool to use and leverage. Alot of smaller providers are only using NMS nodes that are hosted in their HQ or in spots that aren't where their content is hosted. Being able to run tests directly from your datacenters (between them or to the content provider itself) gives more accurate results. The downside is if you have no server infrastructure you'll have to install servers/machines to utilize it.
Read full review
Pros: Splunk is very well suited if you have multiple log sources of related data. All of them can be correlated and tasks can be automated based on the requirement. Other than alerts, Splunk can also run a specific script of your choice, based on some defined conditions. Cons: If you have a few logs but a large number of log sources, Splunk can be very expensive.
Read full review
Pros
  • Agent to Agent testing. Full round trip test. Have a customer using a Server Side API that is having an issue. Loan a Nuc, or have them install the ThousandEyes agent in their network. You'll find the issue guaranteed.
  • Device Layer vision - ability to see from the server, through the Firewall, switches Proxy and internet. Measure jitter, latency, response time, load time and see the path your packet takes.
  • Share your tests live. Provide the customer a link to a live test, they can see what you do, review your metrics and verify your tests. They can also use it as a tool to better their service. Build the trust and stickiness with your customers' most difficult users - the IT Operations team.
  • Validate your QOS and routes for VOIP, video conferences, and data traffic. Highly flexible and configurable complete with transaction-based testing, custom headers, calls and tools to mimic any scenario you need.
Read full review
  • Real-time + Scheduled alerts - i-e you can set up alerts which are actively monitoring your logs
  • Pretty good response time for search results. With our key/value logging, Splunk makes it blazing fast to query the data.
  • Dashboards provide insights into historical data
  • Love how Splunk indexes all of the data and provides keys to search on
Read full review
Cons
  • We have the product, we have a fair amount of wireless issues. You have to go through so many hoops, links and selections that I would think would've been impossible. Maybe if you have a specialized engineer, you would be able to use the thousandeyes product to troubleshoot a problem. But if I want to share with our knock, for example, would be very challenging because there is so many paths that you have to go and there is so many assumptions you have to do to actually find the root cause of the problem. What I would expect is maybe what they can do is implementing some AI today on this product to give some hints, "hey, this might be the problem because the data is there but it's difficult to find." We need an easier way to find how we can use the platform to point out where's the root cause of those problems.
Read full review
  • Even though there is a search tool as a help function, you still have to read through many documentation to find the answers you're looking for and sometimes you don't find it. The help function in Splunk could be improved to be more intuitive or have a built-in help per report, panel or dashboard.
  • Creating a Splunk dashboard is rather straightforward however, customization is not. Splunk could be improved to provide more tools or features for customization such as adding colors and font options for text and graphs or graphics.
  • My dashboard has a lot of useful information and I want the important panels and reports at the top but there is no easy way to do this. Perhaps Splunk could be improved to allow features such as adding URL links to other dashboards or some other clever way to emphasize the important data in my dashboard without compromising space.
Read full review
Likelihood to Renew
We will definitely renew and maybe even extend our usage of ThousandEyes. We have been using ThousandEyes now for a couple of years and it has shown us major benefits. With the new options it offers for SD-WAN for us it is a no brainer to renew our current licenses
Read full review
We are using Splunk extensively in our projects and we have recently upgraded to Splunk version 6.0 which is quite efficient and giving expected results. We keep track of updates and new features Splunk introduces periodically and try to introduce those features in our day to day activities for improvement in our reporting system and other tasks.
Read full review
Usability
There is definitely a learning curve to ThousandEyes, but once you understand how the client deployment works and how to set up monitoring, things go pretty smoothly. I think the initial setting up of clients on endpoints can be a little tricky though.
Read full review
Splunk Enterprise has plenty of storage space for security logs and can search and correlate suspicious activities up to 30+ days back. Splunk Enterprise can integrate with a ticketing system to track threats and correlate with IoC between security events. Splunk Enterprise can provide reports of account lockouts. Splunk Enterprise can consolidate multiple security alerts into one entry with a number showing how many events occurred.
Read full review
Reliability and Availability
Being cloud hosted means that you are at the mercy of Cisco web services, but we've had absolutely no issues with its availability.
Read full review
When properly setup and configured, Splunk is extremely reliable.
Read full review
Performance
The client is very lightweight on endpoints and the user interface is very fast and fluid.
Read full review
No answers on this topic
Support Rating
You have online support from the tool itself 24/7 and they are very responsive. We also have a specific account manager and specific engineer assigned to help us with very specific questions for our environment. The level of response to our requirements is always super high. We have requested specific features to be added and these have been developed and introduced very quick tot he product (within weeks). Their DevOps and agile approach seems to pay off.
Read full review
Splunk maintains a well resourced support system that has been consistent since we purchased the product. They help out in a timely manner and provide expert level information as needed. We typically open cases online and communicate when possible via e-mail and are able to resolve most issues with that method.
Read full review
In-Person Training
Our Cisco reps actually had someone teach us a few things about the functionality of ThousandEyes, and it helped a lot. The training was good and we had follow-up assistance as well when we had questions about the monitoring and reporting functions. Overall, we were satisfied with the training and support.
Read full review
No answers on this topic
Online Training
No answers on this topic
The online course was simple clear and described the main capabilities of the solution. There is also an initial module that can be done for free so anyone can familiarize themselves with the functionality of this solution. On the other hand, however, there could be more free online courses. Maybe even with a certificate, this would broaden the group of people who are familiar with the platform while increasing familiarity with the solution itself.
Read full review
Implementation Rating
Our implementation was pretty straightforward, with some issues loading clients on endpoints. We didn't have any notable issues, and I don't really have any additional insights.
Read full review
Smooth without too many major issues.
Read full review
Alternatives Considered
It is a similar product to Cisco ThousandEyes. Both solutions give good network monitoring and traffic analysis. But Cisco ThousandEyes works better with Cisco devices and has real-time alerts that are very useful. It also helps to see network problems faster and make troubleshooting easier. Cisco ThousandEyes is also better for checking SaaS and cloud apps like Azure, AWS, Webex, etc. It has endpoint agents that show network quality directly from user devices. The web interface is simple to use, so the learning curve is not too steep. Also, it has many monitoring points around the world, making it easy to check performance outside the company network.
Read full review
A lot of products have natively inside their own dashboards and or their own logging repositories. And each one is difficult to learn or they're too complex or they're not verbose in the sense that they're not easy to mine the data that you're looking for. So that could be anything from the native logging that you find in other Cisco products. It's easier to use Splunk to draw the data that you're looking for as opposed to going to the individual's products themselves to get the logs that you're looking for.
Read full review
Scalability
I think this product would be infinitely scalable since it's all cloud hosted and can support thousands of endpoints if needed. We are only using it for a limited number of endpoints, so we never really considered scalability.
Read full review
Splunk can scale in to the petabyte per day range which of course is awesome
Read full review
Return on Investment
  • ThousandEyes has helped us quickly isolate issues on some high-profile (within the organization) incidents and whether the network (internally or on the Internet) is at fault. If it is, it becomes easier to see the "where" of the issues quicker so we can move onto what the issue is faster. In the case of non-network related issues, it helps us get the appropriate teams or individuals involved sooner.
Read full review
  • Splunk has allowed developers to diagnose production issues when access of control was taken away from them to be allowed to view items in production environments and I believe that is invaluable.
  • At times some developers weren't super happy about using it, but it was more of the fact that they were used to having production access and not creating their splunk queries to get information.
  • Going one place to view logs was very beneficial to have.
Read full review
ScreenShots

Cisco ThousandEyes Screenshots

Screenshot of global availability issues for users trying to use Slack application.Screenshot of the path visibility feature pinpointing where in the transit path an outage or event is occurring.Screenshot of ThousandEyes Internet Insights™, which combines a massive data set with algorithmic outage detection to provide near real-time insights into a business's SaaS applications.  and networks. Internet Insights can be used to manage digital experience at Internet scale.Screenshot of ThousandEyes Event Detection diagnosing events as server or network issue.