Palo Alto Networks WildFire vs. Splunk User Behavior Analytics

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Palo Alto Networks WildFire
Score 9.8 out of 10
N/A
Palo Alto Network’s WildFire is a malware prevention service. It specializes in addressing zero-day threats through dynamic and static analysis, machine learning, and advanced sandbox testing environments.N/A
Splunk User Behavior Analytics
Score 5.9 out of 10
N/A
Splunk supplies security analytics as a standalone solution or priced as an add-on for users of its popular SIEM products, to protect enterprises against unknown threats and malicious behavior, via the Splunk User Behavior Analytics application.N/A
Pricing
Palo Alto Networks WildFireSplunk User Behavior Analytics
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Palo Alto Networks WildFireSplunk User Behavior Analytics
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Palo Alto Networks WildFireSplunk User Behavior Analytics
Best Alternatives
Palo Alto Networks WildFireSplunk User Behavior Analytics
Small Businesses

No answers on this topic

ActivTrak
ActivTrak
Score 8.8 out of 10
Medium-sized Companies
Sumo Logic
Sumo Logic
Score 9.4 out of 10
ManageEngine ADAudit Plus
ManageEngine ADAudit Plus
Score 9.2 out of 10
Enterprises
Sumo Logic
Sumo Logic
Score 9.4 out of 10
ManageEngine ADAudit Plus
ManageEngine ADAudit Plus
Score 9.2 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Palo Alto Networks WildFireSplunk User Behavior Analytics
Likelihood to Recommend
8.0
(0 ratings)
10.0
(0 ratings)
Likelihood to Renew
10.0
(0 ratings)
-
(0 ratings)
Usability
10.0
(0 ratings)
-
(0 ratings)
Support Rating
9.0
(0 ratings)
9.0
(0 ratings)
User Testimonials
Palo Alto Networks WildFireSplunk User Behavior Analytics
Likelihood to Recommend
Depending on the environment being implemented in I'd recommend it for compliance purposes as well as managing it from a Network Engineer perspective. From my experience, firmware updates, patching and hardware integration have generally been smooth. Truth be told, cloud based firewall and networking compliance are becoming more and more mainstream and WildFire has a solid foundation.
Read full review
Splunk is well suited for applications with large amounts of data, and large enterprise applications. Especially if the application has interconnected modules, it helps us to analyze and monitor the application greatly.
Read full review
Pros
  • Quick definition downloads and updates. Version 7.1 can do one every 5 minutes. Zero day protection within 5 minutes is a huge plus.
  • Quick manual or automatic examination of files. Palo Alto's wildfire site supports API uploads or manual uploads that provide more detailed information than a Virustotal, for example.
Read full review
  • Monitor and troubleshoot for any system errors.
  • Get the insights on application data sets and do some predictive analysis.
Read full review
Cons
  • The main pain is that we have to purchase the WildFire Licence separately. I think it should be by default available in Palo Alto Firewall.
  • Sometimes it takes much time to analyse the file.
  • It provides result after attack is happened.
Read full review
  • Performance-wise, it can be improved. Queries take a long time.
  • Dataset exploration - More data visualization charts can be added.
Read full review
Likelihood to Renew
It works very well and takes care of protecting us from threats new and well-known. It's been a game changer in terms of threat detection & prevention.
Read full review
No answers on this topic
Usability
It is a great product that has definitely improved our security posture, however it does require quite a bit of training and time spent customizing for the environment. We had several difficulties in deployment but Palo Alto support was able to help us work through the problems that we were not able to figure out on our own.
Read full review
No answers on this topic
Support Rating
PAN support is very good. You can get the reasonable and timely support on any conditions. When the product is already integrated with the PAN firewalls, you can choose the severity levels based on the effect. The customer service/TAC is very helpful, they even have additional recommendations of advises for product usability. Local partners are also assisting the cases and give their expertise.
Read full review
No answers on this topic
Alternatives Considered
We tested Fortinet's products before settling on Palo Alto Networks WildFire. Most of our sites were already deployed with Palo Alto Firewalls, which made the decision easy, however we also based that on Palo Alto's superior ratings by other security firms. Fortinet also has a solid product portfolio but Palo Alto Networks WildFire turned out to be the best choice for our organization.
Read full review
Easier we were using Splunk Enterprise on heavy forwarder on which all the add-on were installed and were using Splunk Cloud with respect to search head and indexers stack. And with Splunk Enterprise Security premium app, we were relying on correlation rules which were throwing more number of false positive but after implementing Splunk UBA, we are now getting real-time true positive threat or incidents.
Read full review
Return on Investment
  • Our ability to report third-party combat infiltration testing is enhanced by other customers' threat signatures.
  • The additional high-end security equipment demonstrates strong attention to sensitive data we handle and address IT security vulnerabilities.
  • Enhanced network visibility and unknown file analysis assist detect malware that lacks a current signature.
Read full review
  • Fewer team members to work on real threats.
  • Less time required to deal with real incidents.
  • Easy to implement across the network.
Read full review
ScreenShots