ADAudit Plus offers real-time monitoring,
user and entity behaviour analytics, and change audit reports that helps users keep AD and IT infrastructure secure and compliant. Track all changes to Windows AD objects including users, groups,
computers, GPOs, and OUs. Achieve hybrid AD monitoring with a single, correlated view of all
the activities happening across both on-premises AD and Azure AD. Monitor every user's logon and logoff activity, including…
$595
per year
Splunk IT Service Intelligence (ITSI)
Score 10.0 out of 10
N/A
Splunk supports IT operations analytics with the Splunk IT Service Intelligence premium offering, a software application available to subscribers to Splunk Cloud or Splunk Enterprise log analytics and SIEM platforms.
N/A
Pricing
ManageEngine ADAudit Plus
Splunk IT Service Intelligence (ITSI)
Editions & Modules
Standard
$595
per year
Professional
$945
per year
No answers on this topic
Offerings
Pricing Offerings
ManageEngine ADAudit Plus
Splunk IT Service Intelligence (ITSI)
Free Trial
Yes
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
Pricing is dependent on the number of domain controllers and starts at $595/year for the Standard edition, and $945/year for the Professional edition.
—
More Pricing Information
Community Pulse
ManageEngine ADAudit Plus
Splunk IT Service Intelligence (ITSI)
Features
ManageEngine ADAudit Plus
Splunk IT Service Intelligence (ITSI)
Monitoring Tasks
Comparison of Monitoring Tasks features of Product A and Product B
ManageEngine ADAudit Plus
7.0
Ratings
10% below category average
Splunk IT Service Intelligence (ITSI)
-
Ratings
Remote monitoring
6.60 Ratings
00 Ratings
Network device monitoring
4.30 Ratings
00 Ratings
Multiple Server Monitoring
8.60 Ratings
00 Ratings
Multi-device monitoring
8.50 Ratings
00 Ratings
Automated alerts and notifications
7.10 Ratings
00 Ratings
Management Tasks
Comparison of Management Tasks features of Product A and Product B
ManageEngine ADAudit Plus
8.3
Ratings
12% above category average
Splunk IT Service Intelligence (ITSI)
-
Ratings
Service configuration management
7.00 Ratings
00 Ratings
Software and hardware inventory
10.00 Ratings
00 Ratings
Policy-based automation
7.90 Ratings
00 Ratings
Reporting
Comparison of Reporting features of Product A and Product B
ManageEngine ADAudit Plus
8.1
Ratings
7% above category average
Splunk IT Service Intelligence (ITSI)
-
Ratings
Performance data reports
8.00 Ratings
00 Ratings
Customizable reporting
7.50 Ratings
00 Ratings
Data visualization
8.40 Ratings
00 Ratings
Risk analysis
8.40 Ratings
00 Ratings
Security
Comparison of Security features of Product A and Product B
ManageEngine is mostly a "check the box" solution for SIEM systems. We needed something that satisfied our customer and was cost-effective. I would highly rate the system on "worth what paid for". Support is eager to please and prompt. My only issue is that it's mostly based outside the US with helpful, but non-native speakers so it's hard to understand them. I wish they would spring for better help "phone lines" so I'm not dealing with difficult to understand and unclear speakers.
[Splunk IT Service Intelligence (ITSI)] is well suited when you have a system that you want to visualize, and then layer in information from many different sources. This will allows ITSI to intelligently create alerts based on the system as a whole vs the individual components. In some cases, a simple splunk dashboard would really suffice over using ITSI. Teams deploying ITSI should really understand the use cases and consider using simple dashboards where they make sense, and use ITSI for topological views.
Logons - reports are very clean and concise and accurate
Account Lockouts - very challenging to do without ManageEngine ADAudit Plus. The tool allows us to easily locate the device or, at the very least, point us in the right direction!
AD change management - IT admins should consider this a necessity, and ManageEngine ADAudit Plus facilitates this seamlessly
In earlier releases there were quite a few bugs and performance issues. These have since been resolved.
When integrated with the Log360 Suite, it can be confusing on whether EventLog Analyzer or ADAudit Plus are "managing"/"Ingesting" the data from a given endpoint.
The terminology takes some getting used to: Aggregation policies, notable events, correlation searches, glass tables. If you're not familiar with ITSI, these terms can be a bit overwhelming and steepens the learning curve.
We have had some technical issues with the underlying support when used in a multisite cluster. We've had to build in several points of redundancy to make sure it works as expected.
I'd like to see additional types of notable events, like informational events that come in for when an incident is created or when an alert is acknowledged so all of those action steps can be viewed on the episode timeline without affecting the count of events.
It works great for everything we need and use. Any issues in the software are pretty easy to resolve with tech support. And they are very responsive to resolving issues. Even ones where a fix/patch are required. At present, the software does everything we need it to for compliance, audit, and account review.
We have replaced our monitoring platform with Splunk & ITSI, and with the success, it's seen at our organization thus far we would be hard-pressed to pivot to another tool. Frankly, our business partners and application teams love Splunk & ITSI.
ADAudit with its cloud and on prem install option allows any organization to get in on AD report management. Whether you need to report internally only for for external audit controls its a great tool with flexibility to handle most any user or group report capability. Since this also includes m365 integration it enables IT pros to administer usage, license, cost control and permission access to most anything in Microsoft's portfolio. Its a great tool all around for AD integrated access needs.
Splunk IT Service Intelligence (ITSI) is a platform with extended functionality and provides various functionalities which can be utilized to improve the efficiency and accuracy in analyzing the data and detecting the attacks.
The attention to cases or situations with the tool has been exceptional. being able to count on the manufacturer either by mail, call or chat. generate cases directly from the application allows you to have personalized support in order to solve problems that has been able to appear.
During POC, pre-planning, and implementation, we have had interactions with numerous folks at Splunk. Everyone from sales & engineering to markets analysts to specific IT component SMEs, and a small professional services engagement to get started. They have all been exceptionally helpful and go above and beyond the call of duty. They actively reach out to ensure success is being realized and find ways to help proactively, instead of having to simply open support cases with the vendor.
The remote setup team helped when i needed it and setup weas very straight forward and easy. The advanced setup for an external db and customizations for our latest version AD environment went pretty easy once they found documentation on customization.
In terms of features, ADAudit Plus offers a comprehensive set of features for monitoring and auditing Active Directory, including real-time alerts, detailed reports, and user behavior analytics. The platform also offers support for multiple platforms, including Windows, UNIX, and Linux, as well as integration with other ManageEngine tools.
Splunk has raised itself as a platform not just as a tool unlike other products in the market. If I talk about Moogsoft it also has similar capabilities but Splunk ITSI has more visibility and its GUI is making a different impact on the users. ServiceNow and Splunk are equally capable products however Splunk seems to have more tech-savvy people tools than ServiceNow.
The visibility of changes made in AD are very helpfull. We had an admin that made a change in a GPO that causes some strange behaviour in our environment. Normally that would take days to find, especially because the admin was a few days out of office and couldnt tell us the change he made. But after looking into our alerts we found very fast the specific change that was made to a GPO that pointed us in the right direction to solve the problem within 30 minutes.
No more ghost accounts and password never expires in our AD, the security level is therefore much higher then it was before. And we need less manhour to maintain that.
Before ADAuditplus we had several hundred accounts with password never expires and at least 15 changes on that item every week. Since we have ADaudtiplus we have no accounts with password never expires and we only see modifications on that item sometimes when a new IT employee starts within our group. IT crew learns fast what to do and especially what NOT to do in our environment to keep things secure.
Before ADAuditPlus I wrote PowerShell scripts to create reports for management, since ADAuditplus the reports are build automatically every month and send to management.