We performed a comparison between Splunk Enterprise Security and VMware Aria Operations for Logs based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."With good domain knowledge, one can build almost anything. If you throw in Alert Manager or an integration with ServiceNow. Then, you have your own SIEM"
"We can present to our management in real time the security of the batch management for the PCs, security regarding the network equipment. We're currently working in the Azure Cloud project, so we can send any logs from the cloud to Splunk. We can monitor them and we can present to the managers and customers. It's a very good solution for reporting. We use Splunk for reporting and monitoring of any solution in the company."
"The Splunk queries are valuable."
"The most valuable feature of Splunk Enterprise Security is website activity monitoring."
"We have created a few custom use cases for Splunk that have helped us detect threats faster. For example, we set up endpoint-related data models and specialized setups for various scenarios. It's more efficient than some other products I've used."
"The most valuable feature of Splunk Enterprise Security is the comprehensive logging capabilities it provides."
"The solution's most valuable feature is its data modeling."
"Recently, Splunk upgraded to version 9.0.02, which includes excellent data dashboards and visualization effects."
"It gives the customer a quick overview, so they don't have to dig. There's a clear dashboard with many sensors in a single space. He gets a helicopter view of his environment, but he can investigate further if there are serious issues. It's pretty user-friendly."
"The virtualization solution supports data center virtualization, network and security."
"The solution's simplicity, flexibility, and extensibility are valuable features as we can integrate everything in vRealize."
"The trace log is the solution's most valuable feature. It's very helpful in troubleshooting problems."
"The most valuable feature is server virtualization. It's been very useful."
"We use the on-premises version of this solution for log analysis and to find details about certain issues."
"The solution is quite user-friendly."
"One of the things I like about it is its interface. When it comes to generating reports on VMs and stuff, it's very quick. This is very handy for the technical team, who need to generate reports quickly. So that's really good."
"The threat detection library needs to increase the frequency at which the playbooks are updated."
"Search head clustering is often temperamental in its current state and should be improved, replaced by something better, or be reverted to search head pooling."
"Splunk is not very user-friendly. It has a complex architecture in comparison to other solutions on the market."
"Splunk Enterprise Security can be improved by including backup network detection and response and safe management to the paid platform."
". Having a trial version or more training on Splunk would be helpful."
"We do have to educate developers on how to not blow it up. It is a little to easy to write an expensive query and overly stress the system. This could be improved."
"A lot of people are averse to using new tools so if they make it even more user-friendly than it already is, I think that could go a long way."
"Some of the queries are difficult to run and have room for improvement."
"The tool is expensive."
"Paid or free does not matter, but it is complex to find good training material for vRealize Log Insight."
"Log retention should have more options for user control."
"The monitoring landscape is getting bigger. When it comes to infrastructure monitoring, we need more visibility. VMware needs to integrate more related applications and third-party products. That would make it more appealing to an audience beyond the VMware team."
"Log Insight should be better at dealing with audits and security logs. We use another product called QRadar for that."
"The dashboard needs to be improved because this is what I need to monitor my infrastructure."
"Technical support should be improved."
"I think that it should be able to integrate with other third-party backup and recovery solutions, more that it does now."
More VMware Aria Operations for Logs Pricing and Cost Advice →
Splunk Enterprise Security is ranked 1st in Log Management with 255 reviews while VMware Aria Operations for Logs is ranked 9th in Log Management with 24 reviews. Splunk Enterprise Security is rated 8.4, while VMware Aria Operations for Logs is rated 8.2. The top reviewer of Splunk Enterprise Security writes "It has a drag-and-drop interface, so you don't need to know SQL or Java to construct a query ". On the other hand, the top reviewer of VMware Aria Operations for Logs writes "Gives a clear forecast about existing machines, and has an automation feature that helps in reducing a lot of ambiguities and managing operational efficiencies". Splunk Enterprise Security is most compared with Wazuh, IBM Security QRadar, Dynatrace, Elastic Security and Microsoft Sentinel, whereas VMware Aria Operations for Logs is most compared with Elastic Security, LogRhythm SIEM, Graylog, Fortinet FortiAnalyzer and Wazuh. See our Splunk Enterprise Security vs. VMware Aria Operations for Logs report.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.