Try our new research platform with insights from 80,000+ expert users

Cisco Secure Cloud Analytics [EOL] vs Splunk User Behavior Analytics comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Cisco Secure Cloud Analytic...
Average Rating
8.6
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Splunk User Behavior Analytics
Average Rating
8.2
Reviews Sentiment
6.5
Number of Reviews
20
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (14th), User Entity Behavior Analytics (UEBA) (4th)
 

Featured Reviews

Philippe GNEZZERE - PeerSpot reviewer
Offers complete visibility of network traffic in a public environment
I use the solution to convey critical action and defeatability.  The product helps me to see malware.  The product's price is high.  I have been working with the tool since 2020.  The tool is stable.  We have 2000 users for the solution.  The product's support is excellent.  Positive The…
Hamada-Elewa - PeerSpot reviewer
Decreases the false positives but storage model complexity hampers efficiency
I recommend it to my customers, but I'm a salesman. I am not implementing it myself It decreases the false positives, so it will decrease the time consumed by the operation team to work on Splunk. The most effective one is the integration with other vendors. This is the most attractive one.…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"When it comes to scalability, there's no size limit. It varies based on licenses and requirements."
"The tool's best feature is its ability to monitor network traffic. It will also inform users whether the traffic generated by a network is legitimate. The tool helps to capture and analyze the network traffic."
"Cisco Stealthwatch Cloud is scalable because it is on the cloud."
"The product helps me to see malware."
"Monitoring the traffic, making sure you have the visibility."
"It tells you if there is any communication going to command and control servers, or if there is any traffic that violates your internal policy, or if any data hoarding is happening where data is being dumped from your machine to outside of the environment. It provides all such meaningful reports to help you understand what's happening."
"The logs in Cisco Stealthwatch Cloud are very good when doing the API integration in the team. It is able to give you important information for the correlations."
"This intelligent user behavior analytics package is easy to configure and use while remaining feature filled."
"The most effective one is the integration with other vendors."
"The most valuable features are its data aggregation and the ability to automatically identify a number of threats, then suggest recommended actions upon them."
"The product is at the forefront of auto-remediation networking. It's great."
"This is a good security product."
"The most valuable feature is being able to take data and put it into other systems so that we could see the output, and to see where we need to apply our focus."
"The solution is definitely scalable."
"The solution is extremely scalable. Our customers are regularly scaling up after installing Splunk."
 

Cons

"When I used to work on it, I just didn't see anything new happening for about a year and a half. Providing newer data and newer reports constantly would help. There should be more classifications and more interesting data."
"The initial setup of Cisco Stealthwatch Cloud is complex."
"Cisco Stealthwatch Cloud could improve the graphical user interface. It could be a more user-friendly graphical user interface. so that. Not everybody's a cyber security professional, most of the customers that I deal with are not very skilled. The terms that they use in the solution are quite understandable for a normal CIO."
"If we migrate these things to an event or send us an email if there is any critical event, I would like to configure these things on the initial launch. Because if a system is compromised, there will be a lot of data movement from one post to another post to the outside. Then, we should also get an alert on email as well. We have since we have integrated these things. But a direct email for critical alerts should be there. So, I would like to enhance the critical event configuration."
"The initial setup is a bit complex in terms of deployment and configuration"
"The product needs to improve its user-friendliness. It is very tricky and you need to study it before using the standard functionalities."
"The product's price is high."
"There are occasional bugs."
"I'm not aware of any lacking features."
"The solution is much more expensive than relative competitors like ArcSight or LogRhythm. It makes it hard to sell to customers sometimes."
"Currently, a lot of network operations need improvement. We still need people to handle incidents. Our vision is to leverage status and convert it directly from the network devices. It would be ideal if we could take action using APIs and API code and remove manual processes."
"The price of Splunk UBA is too high."
"In the future I would like to see simplified statistics and analytical threats."
"We want to have an automated system for bot hunting that enables us to detect anomalies predictively based on historical data. It would be helpful if Splunk included process mining as an alternative option. We have a threat workflow, but it would be useful if we could supplement that with some process mining capabilities over time."
"It would be good if the solution had an analytics tool that allowed us to analyze the data without writing specific queries."
 

Pricing and Cost Advice

"The solution is quite expensive."
"The price of Cisco Stealthwatch Cloud is expensive."
"Cisco Stealthwatch Cloud is an expensive enterprise solution."
"My biggest complaint is the way they do pricing... You can never know the pricing for next year. Every single time you adjust to something new, the price goes up. It's impossible to truly budget for it. It goes up constantly."
"Pricing varies based on the packages you choose and the volume of your usage."
"There are additional costs associated with the integrator."
"The licensing costs is around 10,000 dollars."
"I am not aware of the price, but it is expensive."
"I hope we can increase the free license to be more than 5 gig a day. This would help people who want to introduce a POC or a demo license for the solution."
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
824,095 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
43%
Financial Services Firm
9%
Manufacturing Company
6%
University
5%
Computer Software Company
15%
Financial Services Firm
13%
Government
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cisco Stealthwatch Cloud?
When it comes to scalability, there's no size limit. It varies based on licenses and requirements.
What needs improvement with Cisco Stealthwatch Cloud?
There are two areas of improvement. Firstly, extend the log retrieval limit to at least three months. For example, there is a limit on the number of log messages that can be received. So, I would l...
What is your primary use case for Cisco Stealthwatch Cloud?
We are using Cisco Secure Cloud Analytics, also known as Cisco's WatchCloud, to monitor user activity in the cloud. Specifically, we are looking for users who are uploading or downloading data beyo...
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
It's too expensive. If you need observability, you will pay for the whole package of observability. But if you need anything in security, you will pay for the whole package, then you can select the...
What needs improvement with Splunk User Behavior Analytics?
Enhancing the storage model that they are using is necessary. It's too much. The number of VMs, the total number of VMs, is overwhelming. The system is stable, but for the storage issues requiring ...
 

Also Known As

Cisco Stealthwatch Cloud, Observable Networks
Caspida, Splunk UBA
 

Learn More

Video not available
Video not available
 

Overview

 

Sample Customers

Options, Schneider Electric, Washington University in St Louis, Gotcha, Kraft Kennedy, PartnerRe, Sumologic, Veterans United, AFGE, Agraform, Artesys, Dynamic Ideas Financials, Department of Agriculture and Commerce
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Darktrace, Vectra AI, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS). Updated: November 2024.
824,095 professionals have used our research since 2012.