Splunk Enterprise Security vs Zenoss Cloud comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Splunk Enterprise Security
Average Rating
8.4
Number of Reviews
255
Ranking in other categories
Log Management (1st), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
Zenoss Cloud
Average Rating
8.4
Number of Reviews
8
Ranking in other categories
Application Infrastructure (20th), Event Monitoring (10th), Network Monitoring Software (59th), Server Monitoring (22nd), IT Infrastructure Monitoring (49th), Container Monitoring (10th), Cloud Monitoring Software (32nd), AIOps (18th)
 

Market share comparison

As of June 2024, in the Security Information and Event Management (SIEM) category, the market share of Splunk Enterprise Security is 13.7% and it decreased by 3.4% compared to the previous year. The market share of Zenoss Cloud is 0.1% and it decreased by 55.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
Unique Categories:
Log Management
17.6%
IT Operations Analytics
28.2%
Event Monitoring
2.7%
 

Featured Reviews

RB
May 8, 2024
Provides a centralized place to consolidate everything and start investigations
The end-to-end visibility the tool provides is not that big of a deal. They have so many tools that can do that kind of part. Splunk doesn't have to be the one place for total visibility, but at least for visibility when it consolidates on threats. Splunk has helped improve our organization's ability to ingest and normalize data. The tool pretty much consumes everything that we have. Everything from dozens of different vendor products gets ingested into Splunk. Splunk Enterprise Security is just that one central place where everything goes. Splunk Enterprise Security has helped speed up our security investigations. Something that requires someone to work on it at the beginning of the day would not take more than 15 minutes with Splunk Enterprise Security. Overall, I rate the solution an eight out of ten.
Yacin  HATTAB - PeerSpot reviewer
Jun 22, 2022
A complete monitoring tool with good reliability and helpful support
I'm a reseller. I don't use the solution personally. The technical feed is not my part. I'm just more the one who takes the meeting with the client and I leave the technical part to my partner. There are different deployment options. For the public sector, it's generally on-premise. The banking sector is usually on the cloud. It really depends on the environment of the clients or what kind of infrastructure they have. For the cloud, typically AWS or Azure is used. If you have a big environment, it's really the tool that is really suitable for your environment. However, if you have a small environment, it's useless. If you have one or two services, it's just too big. I'd rate the solution nine out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It has helped us look at modern technology, as well as penetrate our legacy systems, to see where the bottlenecks are."
"The most valuable feature is the incident dashboard, and the extensive use of correlation searches, which isn't available with a standard Splunk search package. This feature is important to me because it enables SOC analysts to do their job more efficiently and be able to investigate or mediate incidents at a faster pace."
"The ability to manage large amounts of generated data and to protect all devices from unauthorized use are the most valuable features."
"I really like the user interface and how it works."
"It helped us consolidate all our solutions into an easy tool to use for various employees."
"It is easy to use in any environment."
"We solve issues that we previously could not since we now have the data."
"The reporting aspect is good and it does what I need it to do."
"The most valuable feature is the flexible discovery mechanism."
"It's easy to use."
"Its Docker Container concept is mind blowing. It is the first monitoring tool which comes with Docker features."
"The custom built integration is one of the most valuable features because you can see all the especially critical items."
"The product offers good documentation that helps with initial training."
"They have also accommodated many state-of-the-art technologies like Docker and ZooKeeper."
"What I like most about Zenoss Service Dynamics is that it monitors the devices and gives close to real-time alerts. For example, in case the device is not available, Zenoss Service Dynamics generates an alert so my team can resolve the issue."
 

Cons

"The glass table feature does not perform as expected."
"The ingestion happens quickly, so you can run up the data costs if you use the default settings. It isn't a problem for government agencies in the Saudi market, but many of the corporations in India are small or medium-sized enterprises that cannot afford that kind of ingestion system."
"An improved user interface along with multi-tenancy support would be beneficial."
"The solution could improve by making it more business analysis oriented. The way it is now is designed more for developers."
"There is improvement needed when importing from some types of data sources."
"Technical support needs to be more responsive."
"Although the technical support is adequate, there is still room for improvement."
"I would like additional features in different programming models with the support for writing queries in SQL or other languages, such as C#, Java, or some other type of query definitions."
"As Zenoss Service Dynamics is more for network-centric devices and you want to monitor, for example, a server, its services, IP addresses, and interfaces, if it's a network and you're going to monitor multiple items, you'll be charged multiple times. This is what Zenoss Service Dynamics needs to improve to make sure that customers pay just one fee to monitor the entire server. What I'd like to see in Zenoss Service Dynamics in the future is a public cloud monitoring feature, particularly for the Azure public cloud. Another additional feature I'd like to see in the next release of the solution is integration with the Azure public cloud because I know that there are some services from Azure that Zenoss Service Dynamics is currently unable to monitor."
"The inclusion of a feature to show a graphical view of the network would be a helpful improvement."
"There is room for improvement with the administrative part. They introduced Control Center to manage things in Zenoss 5. The services that Zenoss provides remained the same, but the administrative part, since they introduced Docker, etc., has become a little complex"
"Now it is stable, but they should design threshold parameters in percentage instead of raw values."
"The AI aspect needs to improve."
"It would be ideal if the product offered sound alerts."
"There was a problem with Zenoss and storage monitoring."
 

Pricing and Cost Advice

"It is pretty straightforward and based on the sizing. If I compare it with other competitors, it makes sense."
"The pricing model is expensive and a nightmare based on the amount of data."
"It is not cheap."
"I would highly recommend anyone evaluating this option to download the free trial which allows for the ingestion of 500MB of data per day in order to get a feel for what Splunk does at its core. It will get pricey once your ingestion rates start to sky rocket, but I would consider it expensive given the amount of information that it allows you to analyze and react on straight out-of-the-box."
"I think that most of the log analytics solutions are expensive and I'm not sure if it's worth it."
"The solution is a little expensive."
"Price-wise, if you compare QRadar to Splunk for SIEM functionality then they are in the same range but when you integrate SOAR with these solutions, Splunk takes the lead and is more competitive."
"The pricing seems good relative to the other vendors that we have had here. However, they need to find ways to be more flexible with the licensing and be able to deal with situations where we start generating more logs. Maybe having some controls in the Splunk interface to turn it off, so we don't have to change anything in our application."
"It depends on the customer, what he wants."
"It is very cost-effective compared to the tools I worked with in the past. The company is gaining a lot with respect to the cost factor. It provides agentless monitoring and in a very cheap way."
"There are additional costs you'll have to pay apart from the license fee for Zenoss Service Dynamics. I can't remember exactly how much my company is paying because I don't handle the finance part, but the cost is paid annually. On a scale of one to five, with one being the cheapest and five being the most expensive, I'm rating the solution three out of five."
"The pricing depends on the environment, the number of services, and the size of the data center. It can go from $100,000 to a million dollars."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
787,061 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
14%
Government
9%
Manufacturing Company
8%
Computer Software Company
20%
Financial Services Firm
15%
Healthcare Company
9%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
What is the best network monitoring software for large enterprises?
In my experience, I worked with many monitoring software, but the one that gave me the most functionalities of a large-scale company is Zenoss, due to its ability to monitor completely hybrid and a...
What do you like most about Zenoss Service Dynamics?
What I like most about Zenoss Service Dynamics is that it monitors the devices and gives close to real-time alerts. For example, in case the device is not available, Zenoss Service Dynamics generat...
What is your experience regarding pricing and costs for Zenoss Service Dynamics?
There are additional costs you'll have to pay apart from the license fee for Zenoss Service Dynamics. I can't remember exactly how much my company is paying because I don't handle the finance part,...
 

Also Known As

No data available
Cloud Monitoring, Zenoss Service Dynamics
 

Learn More

Video not available
 

Overview

 

Sample Customers

Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
2degrees, Rackspace, State of North Dakota, El Paso Independent School District, NWN Corporation
Find out what your peers are saying about Splunk, Microsoft, Wazuh and others in Security Information and Event Management (SIEM). Updated: June 2024.
787,061 professionals have used our research since 2012.