We performed a comparison between Falcon LogScale and Splunk Enterprise Security based on real PeerSpot user reviews.
Find out what your peers are saying about Splunk, Wazuh, Datadog and others in Log Management."It offers the capability to view live log ingestion directly from the console which means you can seamlessly manage live log data ingestion alongside accessing and analyzing older data from the past."
"We were able to create a catalog of dashboards and have a holistic view at all levels. We could understand our business much better. Real-time errors, which were buried in emails before now, surfaced up on dashboards."
"The solution's most valuable features are the granularity and analysis of the logs."
"The connections to the database are very good and updating the data files is simple to do. The dashboards are useful and user-friendly."
"The most valuable aspect of the solution is the dashboard. It's very intuitive."
"We are using Microsoft 365 and we're using the Exchange Mail Service. It's good for monitoring that in particular."
"The solution helped reduce our alert volume."
"The most valuable feature of Splunk is the log monitoring."
"On the cloud, we are pushing through less than half a petabyte of data. So far, it has been fairly stable because it runs on all the underlying AWS infrastructures."
"There are some overlapping features found in multiple tools."
"The solution has a high learning curve for users. It's a little complicated when you're trying to figure out all the features and what they do."
"Splunk is query-based, which is not the case with most cybersecurity tools. It is based on search queries and can be difficult to use. It would be good if they can make it easier to understand how to create search queries. They can improve the knowledge base for better understanding. To create your dashboard, you need to have a search query. We have multiple firewalls in our company, and we need a dashboard for them. It would be helpful if a default firewall dashboard is included in Splunk to make monitoring easier. If a dashboard is available for a security device, the operation part will be more efficient. We won't have to follow a manual process for this."
"Previously, they developed custom connectors or add-ons for a lot of applications. But that number can be upgraded still. There are a lot of applications in the world that are not supported."
"There is improvement needed when importing from some types of data sources."
"The product was designed for security and IT with business intelligence needs, such as PDF exporting, but this has not been the highest priority. While the functionality is there, it could be developed more."
"The support and the pricing can be better"
"Given the ever-increasing number of threats, I would like Splunk to update its threat signatures more frequently."
"The CIM model is the method Splunk uses to normalize data and categorize its important parts, but it is quite complex."
Falcon LogScale is ranked 34th in Log Management with 1 review while Splunk Enterprise Security is ranked 1st in Log Management with 246 reviews. Falcon LogScale is rated 9.0, while Splunk Enterprise Security is rated 8.4. The top reviewer of Falcon LogScale writes "A highly commendable and robust solution offering powerful features and comprehensive log data management". On the other hand, the top reviewer of Splunk Enterprise Security writes "It has a drag-and-drop interface, so you don't need to know SQL or Java to construct a query ". Falcon LogScale is most compared with Elastic Stack, Grafana Loki, LogRhythm SIEM, Exabeam Fusion SIEM and Sumo Logic Security, whereas Splunk Enterprise Security is most compared with Wazuh, IBM Security QRadar, Dynatrace, Elastic Security and Microsoft Sentinel.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.