Elastic Security equips analysts to prevent, detect, and respond to threats. The free and open solution delivers SIEM, endpoint security, threat hunting, and cloud monitoring. The solution encompasses Elastic SIEM, which brings Elasticsearch to SIEM and threat hunting. The Elastic Agent (or Elastic Endpoint Security based on the former Endgame security product acquired by Elastic in late 2019) brings signatureless malware prevention to endpoints, as well as security data collection for…
N/A
Splunk Cloud Platform
Score 7.8 out of 10
N/A
Splunk Cloud Platform is a data platform service thats help users search, analyze, visualize and act on data. The service can go live in as little as two days, and with an IT backend managed by Splunk experts.
N/A
Pricing
Elastic Security
Splunk Cloud Platform
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Elastic Security
Splunk Cloud Platform
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Elastic Security
Splunk Cloud Platform
Features
Elastic Security
Splunk Cloud Platform
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Elastic Security
-
Ratings
Splunk Cloud Platform
9.0
Ratings
15% above category average
Centralized event and log data collection
00 Ratings
9.00 Ratings
Correlation
00 Ratings
9.70 Ratings
Event and log normalization/management
00 Ratings
9.70 Ratings
Deployment flexibility
00 Ratings
9.00 Ratings
Integration with Identity and Access Management Tools
I believe Endgame is well suited to organizations that have their own Cybersecurity department. Its not well suited for organizations that don't have a Cybersecurity department.
I will highly recommend this software because using Splunk Cloud has helped us become more proactive about handling our security concerns and better manage our environment. It is one of the finest security software that is easy to use and also provides analytics. It has excellent features like creating dashboard security and managing features etc. So you must give it a try once!
With Splunk Cloud you get the advantage of moving from POC to Production in a matter of days rather than in months allowing the Business to gain a lot.
Takes you away from managing infrastructure/administration, allows saving time & money. Reduce the overall TCO (Total Cost of Ownership)
Even though their support is good, I think there are some areas where they need to provide more thorough solutions to issues, some of their solutions are pretty basic and have already been tried.
Splunk Cloud support is sorely lacking unfortunately. The portal where you submit tickets is not very good and is lacking polish. Tickets are left for days without any updates and when chased it is only sometimes you get a reply back. I get the feeling the support team are very understaffed and have far too much going on. From what I know, Splunk is aware of this and seem to be trying to remedy it.
Endgame is based on the MITRE framework which has proven to be a successful framework to identify various attack patterns that attackers use. Also, compared to the others it's easier to administer and manage.
Microsoft Dynamics is far more complex and far more costly to implement and configure in comparison to Splunk. It can be useful for integrations into existing Microsoft databases. Grafana is quick and easy to deploy and configure. However, it lacks the scale required for an enterprise of our size. It is great for smaller test cases.