LogicMonitor vs Splunk Enterprise Security comparison

Cancel
You must select at least 2 products to compare!
LogicMonitor Logo
5,645 views|3,148 comparisons
100% willing to recommend
Splunk Logo
23,657 views|19,419 comparisons
93% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between LogicMonitor and Splunk Enterprise Security based on real PeerSpot user reviews.

Find out what your peers are saying about Zabbix, Datadog, Auvik and others in IT Infrastructure Monitoring.
To learn more, read our detailed IT Infrastructure Monitoring Report (Updated: May 2024).
787,033 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"LogicMonitor helps us prevent potential downtime. It's pretty good. It generates low-level warnings that aren't necessarily preemptive but can still alert us to issues we should investigate. These warnings allow us to correlate data and identify areas where we should take action, even if the issues aren't critical.""The dashboarding is very useful. Being able to create custom data sources is one of its biggest features which allows quick time to market with new features. If one of our vendors changes their data format or metrics that we should be monitoring, then we can quickly adjust to any changes in the environment in order to get a great user experience for our customers.""The alerting would be number one in my book. The thresholds for getting alerts for different criteria are pretty well-thought-out. We don't get many false positives or negatives on the alerting side. If we do get an email alert or some similar alert, we know that it is something that has to be looked at.""The initial setup is very simple.""It's the depth of data that it gathers that I find really useful because there's nothing worse, when you're trying to find information about something or dig deeper into something, than hitting the bottom of the information really quickly and not having enough information to work with. With LogicMonitor, there is a load of information to dig through. It's a really good solution for that.""LogicMonitor saves time in terms of its ability to proxy a connection through a device. For example, if you are troubleshooting a device, which you may want to connect to, you can proxy this connection through the platform. As a support resource, I don't need to use multiple platforms to connect to a device to further investigate the issue. It is all consolidated. From that perspective, it saves time because a resource now only needs to use one platform.""We get full visibility into whatever the customer wants us to monitor and we get it pretty rapidly. That is very important. Only having certain metrics that other platforms will give you out-of-the-box means you only get a small picture, a thumbnail picture. Whereas with LogicMonitor, you get the entire "eight by 10 picture", out-of-the-box. Rather than some availability metrics, you get everything. You get metrics on temperature, anything related to hardware failure, or up and down status.""The most valuable feature is the visualization of the data that it is collecting. I have used many products in the past and they tend to roll up the data. So, if you're looking at data over long periods of time, they start averaging the data, which can skew the figures that you're looking at. With LogicMonitor, they have the raw data there for two years, if you are an enterprise customer. If you are looking at that long duration of data, you're seeing exactly what happened during that time."

More LogicMonitor Pros →

"Splunk Enterprise Security comes with 300 pre-deployed use cases that can be easily customized to meet the specific needs of our organization, without the need to purchase additional tools.""It gives us good visibility into multiple environments, including cloud, on-premises, and hybrid; irrespective of platform.""The consolidated overview of all the events that come in through our environment and an easy-to-access interface for all our end users are valuable.""The product has a good security posture.""Without Splunk Enterprise Security, it would be difficult for us to manage and prioritize alerts. There's a potential to lose track of important notifications, and it's essential to our security that we do not miss anything. Splunk has improved our investigations because the reporting and dashboarding make things so much easier. We can provide weekly or monthly reports. I also like Splunk's ability to integrate.""Splunk is quite flexible for our customers. Splunk does not filter from a specific lock, you can define it later.""The log aggregation is great.""The logs on the solution are excellent."

More Splunk Enterprise Security Pros →

Cons
"One thing that could be really better is the mapping. Auvik is really good at it. They have a really nice way to give you a visual representation of your network, but in LogicMonitor, this functionality is not as powerful and as good as Auvik.""Dashboarding capabilities could be enhanced. It is cumbersome, you must do it all at once, and then you must repeat the process every now and then.""We are working with LogicMonitor to get flexibility to see the absolute running numbers, rather than doing an average. They can keep the average for customers who want it, but there should be a way to at least show the real numbers, which are coming every second on the screen.""There is a lack of automation, especially in terms of remediating problems. The problem is seen and identified, but there is a need and a gap where LogicMonitor can help us automate the remediation of the problem.""I'd like to see more automation in the tool, especially around remediation.""LogicMonitor has good features, but the ease of use is a little bit confusing. Additionally, we are looking for workflow automation, which is a little bit tricky for LogicMonitor.""The process of upgrading some of the collectors has been a little bit confusing. I need to understand that better.""One thing I would like to see is parent/child relationships and the ability to build a "suppression parent/child." For example, If I know that a top gateway is offline and I can't talk to it anymore, and anything that's connected below it or to it is also going to be offline, there is no need to alarm on those. In that situation it should create one ticket or one alarm for the parent. I know they're working towards that with their mapping technology, but it's not quite to that level where you can build out alarm logic or a correlation logic like that."

More LogicMonitor Cons →

"The level of scalability depends on the license you have. You can expand or reduce it based on the environment. It does cost more money to scale, however.""I would like additional features in different programming models with the support for writing queries in SQL or other languages, such as C#, Java, or some other type of query definitions.""AngularJS/ReactJS inclusion could be made easier in GUI.""Splunk Enterprise Security is complicated in terms of developing specific cybersecurity use cases.""Splunk is more expensive than other solutions.""It could be more user friendly, in terms of the end-user experience.""My biggest struggle with Splunk in general is memorizing all the commands. If I want to know which users have logged in between certain hours, I cannot write that query out. It would be helpful to have AI so that I can explain in simple terms what I want and then the search gives that back to me. I am waiting for that.""I would like Splunk to add more integration. QRadar has many indications with more products than Splunk."

More Splunk Enterprise Security Cons →

Pricing and Cost Advice
  • "It's affordable. The price we get per license is a lot cheaper than what we were getting with some of the other tools. There are other monitoring tools out there that are cheaper, but what you get with LogicMonitor, out-of-the-box, makes it worth the cost."
  • "It definitely pays for itself in the amount of time we're not spending with false errors or things that we haven't quite dealt with monitoring. It has been good cost-wise."
  • "I know we are saving at least several hundred thousand dollars in that we're not buying Cisco Prime."
  • "We pay for the enterprise tech support."
  • "We have definitely seen ROI with LogicMonitor. We used to provide 24/7 IT support for our users. We have since been able to change to operating just within normal business hours for IT support, and LogicMonitor was a large part of being able to accomplish that."
  • "It can handle scaling. It is like any other cloud service. There is a cost associated with scaling, so we currently don't monitor all of our environments. We monitor just the customer-facing production environments. It would be nice if we could monitor our dominant environments, but we will have to pay a lot more due to the scaling issue. So, there's a balance there between what we would like and what we are willing to pay for."
  • "The licensing side of things with LogicMonitor, is quite simple. It is one license per device. Recently, you have additional licenses with things, like LM Cloud, which does confuse things a bit. Because it's very hard to estimate how many licenses you're going to need until you're monitoring it, so it's quite hard through that process to give a customer price to say, "This is how much this services will cost.""
  • "As a managed services provider, the licensing model that LogicMonitor provides us is excellent. We are able to scale up and scale down as needed. The pricing is reasonable for the amount of features and support that they provide."
  • More LogicMonitor Pricing and Cost Advice →

  • "Pricing and licensing is quite expensive. But for the value the product provides, it seems at par in the market."
  • "Although Splunk is an expensive product, it is designed to be utilized across your organization in order to maximize your ROI and lower your TCO."
  • "It is not cheap."
  • "Splunk Enterprise becomes extremely expensive after the 20GB/month license."
  • "You will eat up whatever you purchase quickly. The level of insights that Splunk empowers is addictive."
  • "Splunk licensing model might seem expensive but with all the gain in functionalities you will have compared to traditional SIEM solutions I think it’s worth the price."
  • "Pricing is pretty fair."
  • "While licensing can be a concern, there are ways to reduce the licensing costs including filtering some events."
  • More Splunk Enterprise Security Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which IT Infrastructure Monitoring solutions are best for your needs.
    787,033 professionals have used our research since 2012.
    Comparison Review
    Vinod Shankar
    Questions from the Community
    Top Answer:It actually depends on the exact purpose or requirements. Some tools are better for only network devices while others are better from a cloud monitoring or APM monitoring perspective.  You can check… more »
    Top Answer:LogicMonitor helps us prevent potential downtime. It's pretty good. It generates low-level warnings that aren't necessarily preemptive but can still alert us to issues we should investigate. These… more »
    Top Answer:For tools I’d recommend:  -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also,… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log… more »
    Top Answer:Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we… more »
    Ranking
    Views
    5,645
    Comparisons
    3,148
    Reviews
    8
    Average Words per Review
    687
    Rating
    8.6
    Views
    23,657
    Comparisons
    19,419
    Reviews
    85
    Average Words per Review
    894
    Rating
    8.4
    Comparisons
    Learn More
    Overview

    LogicMonitor, a unified observability platform, brings together comprehensive monitoring capabilities and enables observability across data centers, public/private clouds, and applications. LogicMonitor provides correlation, context, and clarity to understand the business impact and causes of complex IT incidents.

    LogicMonitor is a SaaS-based unified observability platform that enables today’s digital enterprises to adopt a cloud-ready operating model for effectively meeting key business demands. The solution provides clarity across hybrid enterprise IT, and brings diverse IT and development teams together to solve complex problems. In addition, it enables IT to innovate faster while improving operations efficiency to the critical IT services they deliver. 

    LogicMonitor unifies IT teams around a single platform that allows for the collection, analysis, contextualization, and exploration of observable data in hybrid settings.

    LogicMonitor Features

    LogicMonitor has many valuable key features. Some of the most useful ones include:

    • A single source of truth for data onboarding, management, and exploration across infrastructure, apps, and IT stacks.
    • A robust ecosystem of community-supported LM modules to accelerate onboarding.
    • Provides an intuitive interface with dashboarding, reporting, and data exploration to regularly and effectively monitor and troubleshoot.
    • AIOps capabilities enable anomaly detection, early warning detection, and rapid root cause analysis for services, applications, and infrastructure.
    • Monitors across networks, systems, storage, and other IT infrastructure.
    • OpenTelemetry-based application microservices with business context and vendor independence.
    • Logging to aid infrastructure monitoring, anomaly identification, and troubleshooting.

    LogicMonitor Benefits

    There are many benefits to implementing LogicMonitor. Some of the biggest advantages the solution offers include:

    • Instantly resolve issues across DevOps and ITops teams with a single source of truth. Anticipate and discover problems early, eliminate dead ends in troubleshooting, and deploy more frequently with the confidence that hybrid IT is under control.

    • By evaluating IT data in real time for anomaly detection, you can gain predictive insights. Identify potential flaws by analyzing billions of metrics and data points from hundreds of IT devices and resources.

    • Consolidate monitoring across IT infrastructure and apps to save money and reduce risk. By replacing several point products, you can save money on licensing and maintenance.

    • Consolidate enterprise-scale and innovative capabilities into a single platform.

    • To enhance productivity, the solution offers complete visibility across the technological stack with insights, context, and correlation.

    Reviews from Real Users

    LogicMonitor stands out among its competitors for a number of reasons. Two major ones are its robust root cause analysis and its event correlation tool. PeerSpot users take note of the advantages of these features in their reviews: 

    Valentine C., Technical Service Delivery Manager at Sparx Solutions, writes of the solution, “As a support resource, I don't need to use multiple platforms to connect to a device to further investigate the issue. It is all consolidated. From that perspective, it saves time because a resource now only needs to use one platform.” He adds, “I will rate it as a solid nine out of 10.”

    Robert V., Teamlead at i-LEVEL ICT Solutions, notes, “One thing that's very valuable for us is the technical knowledge of the people who work with LogicMonitor. We looked at several products before we decided to use LogicMonitor, and one of the key decision-making points was the knowledge of the things that they put in the product. It provides real intelligence regarding the numbers that you see on the product, which makes it easy for us technical people to troubleshoot.”

    Splunk Enterprise Security is a SIEM, log management, and IT operations analytics tool. The solution provides users with the ability to secure their information and manage their data in the cloud, data centers, or other applications. Splunk Enterprise Security also offers visibility from different areas, levels, and devices, rather than from a single system, thus, providing its users with flexibility. Splunk Enterprise Security can monitor data and analyze, detect, and prevent intrusions. This benefits users as it provides alerts to possible intrusions, helps users to be proactive, and reduces risk factors. 

    Full visibility across your environment

    Break down data silos and gain actionable intelligence by ingesting data from multicloud and on-premises deployments. Get full visibility to quickly detect malicious threats in your environment.

    Fast threat detection

    Defend against threats with advanced security analytics, machine learning and threat intelligence that focus detection and provide high-fidelity alerts to shorten triage times and raise true positive rates.

    Efficient investigations

    Gather all the context you need and initiate flexible investigations with security analytics at your fingertips. The built-in open and extensible data platform boosts productivity and drives down fatigue.

    Open and scalable

    Built on an open and scalable data platform, you can stay agile in the face of evolving threats and business needs. Splunk meets you where you are on your cloud journey, and integrates across your data, tools and content.

    Sample Customers
    Kayak, Zendesk, Ted Baker, Trulia, Sophos, iVision, TekLinks, Siemens
    Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
    Top Industries
    REVIEWERS
    Computer Software Company33%
    Comms Service Provider25%
    University8%
    Educational Organization8%
    VISITORS READING REVIEWS
    Computer Software Company22%
    Financial Services Firm10%
    Manufacturing Company7%
    Healthcare Company7%
    REVIEWERS
    Computer Software Company19%
    Financial Services Firm14%
    Government9%
    Energy/Utilities Company8%
    VISITORS READING REVIEWS
    Financial Services Firm15%
    Computer Software Company14%
    Government9%
    Manufacturing Company8%
    Company Size
    REVIEWERS
    Small Business37%
    Midsize Enterprise30%
    Large Enterprise33%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise13%
    Large Enterprise60%
    REVIEWERS
    Small Business31%
    Midsize Enterprise12%
    Large Enterprise58%
    VISITORS READING REVIEWS
    Small Business19%
    Midsize Enterprise13%
    Large Enterprise68%
    Buyer's Guide
    IT Infrastructure Monitoring
    May 2024
    Find out what your peers are saying about Zabbix, Datadog, Auvik and others in IT Infrastructure Monitoring. Updated: May 2024.
    787,033 professionals have used our research since 2012.

    LogicMonitor is ranked 13th in IT Infrastructure Monitoring with 26 reviews while Splunk Enterprise Security is ranked 1st in Security Information and Event Management (SIEM) with 255 reviews. LogicMonitor is rated 9.0, while Splunk Enterprise Security is rated 8.4. The top reviewer of LogicMonitor writes "We went from nothing to full visibility across our internal and external estates of equipment". On the other hand, the top reviewer of Splunk Enterprise Security writes "It has a drag-and-drop interface, so you don't need to know SQL or Java to construct a query ". LogicMonitor is most compared with ScienceLogic, SolarWinds NPM, Zabbix, OpsRamp and SCOM, whereas Splunk Enterprise Security is most compared with Wazuh, IBM Security QRadar, Dynatrace, Elastic Security and Microsoft Sentinel.

    We monitor all IT Infrastructure Monitoring reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.