We performed a comparison between ArcSight Logger and Splunk Enterprise Security based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It's a robust, mature product and you can do some really complex operations and analytics."
"The most valuable feature is the search capability, which is simple to use."
"The technical support team is good...It is a scalable solution."
"The most valuable feature is the level of detail that you can see about certain events, even when they do not come up in the console."
"Our return on investment for implementing ArcSight Logger over the past 12 months has been positive."
"The solution provides information about the risk factors."
"The machine learning is a good feature."
"The ability to customize the solution in great detail is its most valuable features. We can customize the use cases and also have the ability to do scripting. We can personalize our dashboard as well. The scalability the solution offers is quite impressive."
"The logs on the solution are excellent."
"It gives us good visibility into multiple environments, including cloud, on-premises, and hybrid; irrespective of platform."
"What is nice about the solution is that it makes it easy to build the queries, search for the events and then do analysis."
"From my experience, the visual aid that it provides is most valuable. There are charts and other means to provide information."
"The integration is seamless with many devices and operating systems."
"Splunk has give us the capability to easily track problems and their status."
"The product is adept at log mining."
"We solve issues that we previously could not since we now have the data."
"It's not a new product and is a bit complex. So, it requires a person dedicated to working on it and to know about it in and out. It is a huge product, and the search operation is a bit complicated for a new user or someone who has not used it for long. So for that person, it becomes a bit difficult."
"I had some latency issues for two months. I had to increase our storage capacity significantly to reduce the latency."
"The platform is quite expensive. They should reduce its cost."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"The solution must provide readymade connectors for different applications."
"The solution could be improved in maintenance settings."
"The next release should have AI capabilities."
"We have had problems with archiving."
"Its setup is a little bit complex for a distributed environment. Their support can also be better. If we miss the response for more than a week, they usually close the case. Sometimes, it can take us more than a week to reply."
"The prices are complicated as we operate in a small third-world country."
"A lot of people are averse to using new tools so if they make it even more user-friendly than it already is, I think that could go a long way."
"Could be more user friendly."
"The solution could improve by giving more email details."
"The product could be cheaper."
"DMC should be a little more intuitive with better dashboarding. Seeing the cause of data flow can be tough to track down."
"The ingestion happens quickly, so you can run up the data costs if you use the default settings. It isn't a problem for government agencies in the Saudi market, but many of the corporations in India are small or medium-sized enterprises that cannot afford that kind of ingestion system."
ArcSight Logger is ranked 20th in Log Management with 31 reviews while Splunk Enterprise Security is ranked 1st in Log Management with 255 reviews. ArcSight Logger is rated 7.8, while Splunk Enterprise Security is rated 8.4. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of Splunk Enterprise Security writes "It has a drag-and-drop interface, so you don't need to know SQL or Java to construct a query ". ArcSight Logger is most compared with IBM Security QRadar, Elastic Security, Wazuh, LogRhythm SIEM and syslog-ng, whereas Splunk Enterprise Security is most compared with Wazuh, IBM Security QRadar, Dynatrace and Elastic Security. See our ArcSight Logger vs. Splunk Enterprise Security report.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.