We performed a comparison between ArcSight Logger and Splunk Cloud Platform based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Our return on investment for implementing ArcSight Logger over the past 12 months has been positive."
"Some of the most valuable features I really appreciate are the performance, how quick the solution is, and how easy it is to create a query."
"It provides in-depth information on business activities once we log into the system."
"In terms of ArcSight Logger's most valuable feature, it is their scalability. ArcSight's real advantage is its scalability because they have two layers, including the logger layer."
"It is one of the best products available in the market."
"ArcSight provides the basic information that we want."
"The ability to customize the solution in great detail is its most valuable features. We can customize the use cases and also have the ability to do scripting. We can personalize our dashboard as well. The scalability the solution offers is quite impressive."
"The machine learning is a good feature."
"Its monitoring is completely automated."
"The cloud is very fast."
"Splunk helped reduce our mean time to resolve by around 60%."
"The Splunk Cloud Platform has reduced our mean time to resolve. It has easily saved 20 to 30 minutes every time someone gets locked out. We get 10 or 15 instances per day where people get locked out. It definitely saves a few hours per day."
"It has end-to-end visibility into our cloud-native environment, which is pretty important for us. About 80% of our infrastructure is on AWS."
"It's made searching for data easier. Users like it. We're still in the migration process, but overall, it's a lot easier to use."
"Splunk Cloud Platform's most valuable features are enterprise security and ticketing integration."
"Splunk Cloud Platform's search modes are a powerful feature."
"It's not a new product and is a bit complex. So, it requires a person dedicated to working on it and to know about it in and out. It is a huge product, and the search operation is a bit complicated for a new user or someone who has not used it for long. So for that person, it becomes a bit difficult."
"The solution must provide readymade connectors for different applications."
"The platform is quite expensive. They should reduce its cost."
"ArcSight has been sold two or three times, and the quality has decreased."
"I think the ArcSight team should try to simplify legacy products for the customers, because that product is not easy to use or to work with. It needs more more competency or appeal to use. We hope Micro Focus is trying to resolve this."
"In the next release, I want to see more intelligence."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"I would like to see better scheduling in the next release of this solution."
"Splunk Cloud Platform should improve its integrations and consider multiple integrations or direct integration with other platforms like Microsoft Azure, Google Cloud, or AWS."
"They can streamline the process of creating custom apps."
"The security connection should have a seamless integration. Other than that, the way we are using it, so far, it seems quite good."
"Its stability and performance can be better. Very rarely does a day go by when we do not see an error in the console, such as a health check error. Because it is cloud-hosted, we do not have access to the backend to figure it out ourselves. We are reliant on their support to figure it out, and a couple of days later, the error comes back or it is a different error. It is a never-ending cycle of support tickets. Their support is also not great."
"The only thing that is missing from Splunk Cloud is the command-line interface."
"The only thing I would say is an issue is the cost. It matches other products. The costs can be justified for the value that we gain. The entire threat analysis stack should come in a bundle. If the cost was matchable with other products I think Splunk would pick up in the market."
"Splunk Cloud Platform needs to be made more user-friendly because it's not user-friendly."
"It needs to mature; it's just getting established in the industry on a wider scale."
ArcSight Logger is ranked 28th in Log Management with 31 reviews while Splunk Cloud Platform is ranked 3rd in Data Visualization with 34 reviews. ArcSight Logger is rated 7.8, while Splunk Cloud Platform is rated 8.0. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of Splunk Cloud Platform writes "Does not require backend maintenance, is easily integrated and utilized". ArcSight Logger is most compared with Splunk Enterprise Security, IBM Security QRadar, Elastic Security, Wazuh and LogRhythm SIEM, whereas Splunk Cloud Platform is most compared with Wazuh, Splunk Enterprise Security, Fortinet FortiAnalyzer, AppInsights and Check Point Security Management. See our ArcSight Logger vs. Splunk Cloud Platform report.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.