Try our new research platform with insights from 80,000+ expert users

Cisco Provider Connectivity Assurance vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Provider Connectivity...
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
24
Ranking in other categories
Application Performance Monitoring (APM) and Observability (45th), Network Monitoring Software (43rd)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.6
Number of Reviews
304
Ranking in other categories
Log Management (1st), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. Cisco Provider Connectivity Assurance is designed for Application Performance Monitoring (APM) and Observability and holds a mindshare of 0.3%, down 0.4% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 9.8% mindshare, down 13.5% since last year.
Application Performance Monitoring (APM) and Observability
Security Information and Event Management (SIEM)
 

Featured Reviews

Sylvain Germe - PeerSpot reviewer
Highly scalable, responsive support, but lacking new features
This solution is geared towards on-premise setups, and would not be useful if the company plans to move to the cloud within the next two years, such as Google Cloud for example. If the goal is to monitor bandwidth at remote sites and identify performance issues because the network is under the control, this solution is useful. However, if a company primarily uses cloud-based servers and does not manage the internet connection of its remote sites, the solution becomes less useful. I rate Accedian Skylight a seven out of ten. I have a positive opinion of the tool, but it can be challenging to set up. It is also limited in its applicability to certain use cases. I am familiar with the engineers behind the solution and have a good impression of them. However, I am not pleased with the fact that the company removed many features and raised prices after it was acquired by Accedian.
ROBERT-CHRISTIAN - PeerSpot reviewer
Has many predefined correlation rules and is brilliant for investigation and log analysis
It is very complicated to write your own correlation rules without the help of Splunk support. What Splunk could do better is to create an API to the standard SIEM tools, such as Microsoft Sentinel. The idea would be to make it less painful. In ELK Stack, Kibana is the query language with which you can search log files. I believe Splunk has also a query language in which they search their log files, but once you have identified the log file that you want to use for further security correlation, you want to very quickly transport that into your SIEM tool, such as Microsoft Sentinel. That is something that Splunk could make a little bit less painful because it is a lot of effort to find that log file and forward it. An API with Microsoft Sentinel or a similar SIEM tool would be a good idea.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"One valuable feature we have is real-time monitoring for connection issues."
"What I like most about Accedian Skylight is that it's a UI application, so using it is easy. I also like that the support for Accedian Skylight is helpful."
"The solution’s UI and single pane of glass is good. The new dashboard is modern with its new design. The look of it is not pretty, but it is efficient, which is good. It is user-friendly; you can find what you need on the interface quickly."
"If [the problem] is something related to HTTP or VoIP, then I can have a quick look into the protocols, a process which gives me some good ideas..."
"The feature I used to like the most was its ability to decode layer seven protocols, although this is becoming less useful now that encryption is so widespread."
"The performance of Accedian Skylight is better than other vendors."
"This solution has helped to improve the interaction between our network, datacenter, and application teams. I have used other tools, but this tool can pinpoint the root cause of my application or network issue in the majority of the cases. So, it helps different divisions or groups in the IT department to troubleshoot together and get an issue resolved. This tool helps a lot in our day-to-day networking application and IT operations."
"Capturing traffic [is very interesting]. Currently, with our configuration, we don't capture the payload of the packets, just the header. But when we want the body, the payload of the packets, we can do a PCAP, and then analyze it within Wireshark."
"Splunk incorporates a lot of elements that help to reduce security risks. For it to reach certain compliance, we need to have some security insight. Splunk is a very good SIEM, it’s a top solution, but the best feature is its cost of visibility. We have all the most important features to detect vulnerabilities or risks."
"The security part is useful as it helps secure the entire environment."
"Splunk has machine learning which is a valuable feature."
"The most useful feature for me is the ability to create different kinds of alerts and set a different kind of denominator that will capture the real event. That is helpful for a power user like me."
"It is user-friendly. It is more effective than other solutions. The support and help for troubleshooting and the documentation from Splunk make it very effective."
"Splunk Enterprise Security stands out for its ability to integrate with existing security tools, provide informative dashboards, and offer IT Service Assurance functionality that goes beyond basic threat detection to include service performance monitoring."
"It is very stable. We have not had any problems."
"Splunk would be my choice for the presentation layer because it comes with inbuilt reports and a dashboard that you can customize."
 

Cons

"There should be an option to update and upgrade the solution to the new version without having to re-buy it. I have clients switching to other solutions. The old solution is great, but if you change your license to a new one, you have to almost re-buy it completely."
"Human resource costs can be high when dealing with connection issues."
"The UI interface of Accedian Skylight could improve."
"Human resource costs can be high when dealing with connection issues."
"Because of the policies in Vietnam, we cannot connect the system to the Accedian cloud. It would be good if Accedian could provide a local cloud. In the next release, I would like them to focus on improving and adding more reporting features. This will help the operations teams."
"Some of the Skylight applications are a little newer, and they're still moving through initial revs. There are certain bugs, but nothing is insurmountable... It will just take a little bit of time for their user interface to get a little bit better."
"It's a bit slow. When I execute a query, something general with a short timeframe that covers one month, for instance, and I do not specify the IP source or IP destination, it can take ages because it has to query the whole database."
"If you want a new version, you go to the website. The hardest part is finding the link, where is that .bin file? Sometimes it's pretty hidden in a document... it's hidden in the release notes or in another file somewhere. And it's usually not on the first page either."
"For on-premise, it's more about optimization. With such a heavy byte scale of data that we are operating on, the search for disparate data sometimes takes about a minute. This is understandable considering the amount of data that we are pumping into it. The only optimization that I recommend is better sharding, when it comes to Splunk, so that data retrieval can be faster."
"On-premises scaling of the solution is a bit more limited than it is on the cloud."
"Custom visualizations are real hard. While the default visualizations are good, creating enhanced visualizations are complex."
"The solution should also have more advanced capabilities in comparison with QRadar, which offers Watson."
"The only thing which can be improved is that they are too subjective on whom their Splunk4Good initiative can be applied. They market it as you only need to be a nonprofit, but there is more to it."
"While there aren't any major areas where the solution has to be improved, there are certain integrations that are still not available. I would specifically like to see legacy applications integrated."
"Sometimes, the data does not match what we're looking for, or the tool contains incorrect data."
"We had some connections issues with the solution at the beginning."
 

Pricing and Cost Advice

"It's not for free, clearly. But on the other hand, it offers very interesting functionality. We pay around €100,000."
"It provides value and the cost is not huge."
"The solution was previously well-regarded, but after being acquired by Accedian, the prices have significantly increased. This has made it challenging to sell the product due to its high cost. It is an expensive solution."
"If you look into Riverbed, it's a licensing nightmare. You need to pay for every type of analysis... If you don't look into licensing, Riverbed and SolarWinds are pretty comparable. But if you look into licensing it would not be smart to go for either of them. On the pure, bare-metal basis, it's the same. But when you get the bare metal and a few basic licenses, then you need all those other licenses just to be sure that there's no issue... One of the great things about Skylight is you have them all, and you actually need them all."
"The pricing of Accedian Skylight is really good. The sensors are low cost. Their model to analytics for sensors is by license, endpoint, or session. With the probes for their analytics, if they get deployed virtually, they are free. The licensing is only based on flows. So, you can effectively deploy probes everywhere in your network. Then, if you want to look at a specific type of traffic, you can enter into it with a very low cost license. You can just use things like spam ports, mirrors, TAPs, and aggregators to optimize what sort of traffic you send to these analysis tools. Then, if you want to start looking at more, you can up your licensed as you go. You are not getting forced into expensive appliances or subscription models."
"Pricing is a little bit expensive."
"We understand there's a significant cost difference, but have yet to investigate fully."
"The pricing is cheaper than other competing products, which is better for our budgets."
"It can be cost-prohibitive when you start to scale and have terabytes of data. Its cost model is based on how much data it processes a day. If they're able to create scaled-down niche or custom package offerings, it may help with the cost. Instead of the full-blown features, if they can narrow the scope where it can only be used for a specific purpose, it would kind of create that market for the product, and it may help with the costing. When you start using it as a central aggregator and you're pumping tons of logs at it, pretty soon, you'll start hitting your cap on what it can process a day. Once you've got that, you're kind of defeating the purpose because you're going to have to scale back."
"The tool's licensing is good and we haven't received any complaints from the team handling it."
"Pricing can be a limiting factor. You have to continuously tune what you are bringing in and make sure what you bring in is of value."
"Pricing is probably its weakest spot. As compared to some competitors, Splunk is really expensive."
"Splunk Enterprise Security is expensive."
"It would be nice if the pricing were cheaper. However, we did purchase it."
"The pricing modules could be improved."
"Splunk is definitely not a cheap solution. It is an expensive product."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
40%
Financial Services Firm
9%
Government
7%
Manufacturing Company
6%
Financial Services Firm
16%
Computer Software Company
14%
Manufacturing Company
8%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What needs improvement with Accedian Skylight?
Human resource costs can be high when dealing with connection issues. I require more tools to file and resolve these issues efficiently.
What is your primary use case for Accedian Skylight?
I had prepared for COC and the client. I work as a vendor for a client using Flow Mount for network performance monitoring. I focus on resolving client-side issues related to Packy Performance and ...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Also Known As

Accedian Skylight, Accedian SkyLIGHT PVX, SkyLIGHT PVX, SecurActive, Performance Vision
No data available
 

Overview

 

Sample Customers

T-Systems, Thomson Reuters, Bordeaux Metropole, CGI, Citadelle Regional Hospital Center, Lorraine Institute of Oncology, Luxembourg Institute of Health, Groupe BPCE, Group S, Splitpoint, Horus-Net, Audatex, Indexis, Province de Liège, EASI, Spie Batignolles, Faymonville
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Cisco Provider Connectivity Assurance vs. Splunk Enterprise Security and other solutions. Updated: May 2023.
838,713 professionals have used our research since 2012.