Compare Cisco NGIPS vs. Splunk User Behavior Analytics

Cisco NGIPS is ranked 10th in Intrusion Detection and Prevention Software with 5 reviews while Splunk User Behavior Analytics which is ranked 4th in Intrusion Detection and Prevention Software with 5 reviews. Cisco NGIPS is rated 8.6, while Splunk User Behavior Analytics is rated 8.6. The top reviewer of Cisco NGIPS writes "Offers valuable SSL decryption, URL filtering, and ITSM inspection features". On the other hand, the top reviewer of Splunk User Behavior Analytics writes "Enables searching through a lot of data, but pricing is problematic - you can't budget for it". Cisco NGIPS is most compared with Trend Micro TippingPoint NGIPS and Darktrace, whereas Splunk User Behavior Analytics is most compared with Darktrace, Cisco Stealthwatch and Microsoft ATA. See our Cisco NGIPS vs. Splunk User Behavior Analytics report.
Cancel
You must select at least 2 products to compare!
Most Helpful Review
Find out what your peers are saying about Cisco NGIPS vs. Splunk User Behavior Analytics and other solutions. Updated: July 2019.
352,552 professionals have used our research since 2012.
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
The initial setup wasn't complex or complicated.The solution is stable. This is one of the good things in Firepower. Especially if we use ESE with it.Cisco is number one in the technical support. It's good technical support and this is actually a problem when we do the recruitment for some other products. Other products you are on hold forever and the support might be not the best compared to Cisco.This solution has helped improve productivity and detect attacks before they happen.It has good intelligence. It does a great job at stopping threats.

Read more »

The most valuable feature is being able to take data and put it into other systems so that we could see the output, and to see where we need to apply our focus.Because of some of the visualizations that we utilize, we are able to understand strange, unusual traffic on our networks.The most valuable features are its data aggregation and the ability to automatically identify a number of threats, then suggest recommended actions upon them.The most valuable feature is the ability to search through a large amount of data.It is a solution that helps test and measure customer satisfaction.

Read more »

Cons
More flexibility with the dashboards is needed because some of them are not fully developed.There are some features not found in Firepower, like data loss prevention, and SSO, to have a connection between Cisco and Active Directory which was introduced on other products.The file trajectory, the trace in contamination files, could be improved.I would like to see better integration with SIEMs.In the next release I would like to see better reporting. I also find it's hard to act on the data it gives you.

Read more »

The initial setup was complex because some of the configurations that we required needed customization.It could be easier to scale the solution if you are using it on-premise, not in the cloud.There are occasional bugs.

Read more »

Pricing and Cost Advice
We buy the licensing on a yearly basis, when we renew our contract. It is around $14,000.

Read more »

There are additional costs associated with the integrator.My biggest complaint is the way they do pricing... You can never know the pricing for next year. Every single time you adjust to something new, the price goes up. It's impossible to truly budget for it. It goes up constantly.I hope we can increase the free license to be more than 5 gig a day. This would help people who want to introduce a POC or a demo license for the solution.

Read more »

report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software solutions are best for your needs.
352,552 professionals have used our research since 2012.
Ranking
Views
131
Comparisons
68
Reviews
2
Average Words per Review
301
Avg. Rating
9.0
Views
7,601
Comparisons
4,606
Reviews
5
Average Words per Review
426
Avg. Rating
8.0
Top Comparisons
Compared 34% of the time.
Also Known As
Sourcefire NGIPS, Firepower NGIPSCaspida, Splunk UBA
Learn
Cisco
Splunk
Overview

Cisco Firepower NGIPS provides network visibility, threat intelligence, automation and industry leading threat effectiveness. Gartner has ranked Firepower NGIPS as a Magic Quadrant Leader for seven years running, and the independent NSS Labs testing organization consistently rates it as a “Recommended” IPS solution for eight years.

Splunk User Behavior Analytics is a behavior-based threat detection is based on machine learning methodologies that require no signatures or human analysis, enabling multi-entity behavior profiling and peer group analytics – for users, devices, service accounts and applications. It detects insider threats and external attacks using out-of-the-box purpose-built that helps organizations find known, unknown and hidden threats, but extensible unsupervised machine learning (ML) algorithms, provides context around the threat via ML driven anomaly correlation and visual mapping of stitched anomalies over various phases of the attack lifecycle (Kill-Chain View). It uses a data science driven approach that produces actionable results with risk ratings and supporting evidence that increases SOC efficiency and supports bi-directional integration with Splunk Enterprise for data ingestion and correlation and with Splunk Enterprise Security for incident scoping, workflow management and automated response. The result is automated, accurate threat and anomaly detection.
Offer
Learn more about Cisco NGIPS
Learn more about Splunk User Behavior Analytics
Sample Customers
American Electric Power, Huntington Bank, Keycorp, Nationwide, Transunion, Marriott, Inova Health, Ford, Thomson Reuters, Dow Chemical, Equifax, Chevron, Walmart, Coca Cola8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Cisco NGIPS vs. Splunk User Behavior Analytics and other solutions. Updated: July 2019.
352,552 professionals have used our research since 2012.
We monitor all Intrusion Detection and Prevention Software reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.
Sign Up with Email