Try our new research platform with insights from 80,000+ expert users

Cisco Secure Network Analytics vs Darktrace vs Splunk User Behavior Analytics comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Featured Reviews

Shiva_Prasad - PeerSpot reviewer
Jan 25, 2024
A cloud solution for warehousing with a troubleshooting feature
The initial setup is straightforward. It's based on user requirements. We also conduct heat mapping using a couple of tools. The only requirement is to understand the technical or configuration aspects from the user's end and then configure it. Mist takes no more than 15 to 20 minutes for a particular deployment. You need to understand the end user's environment and have a concrete plan on whether it's a greenfield installation or an existing one, considering the density and height. Based on that, we need to develop a passive heat map. Then, you need to discuss with the user to understand exactly what needs to be configured and what they require in their environment. Based on that, you can proceed with the installation. Additionally, you can perform post-installation heat mapping to ensure it matches the earlier heat map. I rate the initial setup an eight out of ten, where one is difficult, and ten is easy.
Richard Payne - PeerSpot reviewer
Feb 13, 2023
Improved our organization greatly but greater customizability would be beneficial
The customizability of the UI should improve. With Splunk and other SIEM tools, you have the ability to create custom dashboards and manipulate the data in a way that works for you. Cisco gives you some creative ability, but you are very much locked into their train of thought. It would be helpful if they went more down the Splunk and Elastic route. We found flaws in Stealthwatch, but thankfully it has the ability to interconnect with Splunk and other such tools. This enabled us to plug the information over where it falls flat and then start working on other platforms. The solution falls down but tries to make up for it. I would also like to have greater insight into how it works under the hood. I appreciate that that might not be possible due to commercial confidentiality. However, having that greater insight would allow us to covey a level of trust to the people who use it.
Mebbert Chiyangi - PeerSpot reviewer
Aug 29, 2023
Efficient behaviour analytics features and offers high stability
One thing I would like is for Darktrace to flag SMB traffic more accurately. Currently, it only flags that SMB traffic has occurred, but it doesn't specify which file was being transferred. This makes it difficult to investigate incidents involving SMB traffic, as we don't have concrete evidence of what was being sent. For example, if a user is sent an unauthorized file via SMB, Darktrace would only flag that SMB traffic occurred between the two users. It wouldn't be able to tell us which file was sent, so we would have to manually investigate the incident to determine what happened. It would be helpful if Darktrace could flag the specific file that was being transferred in SMB traffic incidents. This would make it much easier to investigate these incidents and take appropriate action. In future releases, I would like to see more playbooks.
NS
Aug 18, 2019
Easy to configure and easy to use solution that integrates with many applications and scripts
Actually, the most valuable aspect of Splunk is the data. You do not need to use your databases to perform all things from on all the servers we have. Splunk has three big things it can do with data: it can show it hot, warm and cold. The hot of it allows you to see the data as soon as things happen — maybe to the second. We have the warm, the warm will segment the data up to the hot up to three months ago. The cold will store all of the archives of all the data after the six months. After that, you can't make comparisons any further. In the future, we make Splunk in the SOC (Security Operations Center). In the SOC now, we use one feature, it's called the alert system. So in the future, we want to make it so we can send all the data and we can build its security and its management. It will be published in all the places as it is now. We need to do this so we can build more data centers from all the past and existing data crunch.
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
801,634 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
12%
Manufacturing Company
9%
Government
8%
Computer Software Company
32%
Financial Services Firm
11%
Government
7%
Manufacturing Company
6%
Computer Software Company
16%
Financial Services Firm
8%
Manufacturing Company
7%
Government
7%
Computer Software Company
14%
Financial Services Firm
13%
Government
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Juniper Mist Premium Analytics?
We can manage the entire system across the network and troubleshoot the pain points.
What do you like most about Cisco Stealthwatch?
The most valuable feature of Cisco Secure Network Analytics is the Threat Intelligence integration.
What is your experience regarding pricing and costs for Cisco Stealthwatch?
I would rate Cisco SNA as a nine out of ten in terms of costliness.
What needs improvement with Cisco Stealthwatch?
One area that could be improved in SNA is the integration with Cisco ISE for user and session details, which currentl...
How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing u...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet tr...
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
I am not aware of the price, but it is expensive. A rough estimate would be around 150 gigabytes, given the huge amou...
What needs improvement with Splunk User Behavior Analytics?
Sometimes, we need to write explicit queries. It would be good if the solution had an analytics tool that allowed us ...
 

Also Known As

No data available
Cisco Stealthwatch, Cisco Stealthwatch Enterprise, Lancope StealthWatch
No data available
Caspida, Splunk UBA
 

Learn More

Video not available
Video not available
 

Overview

 

Sample Customers

Information Not Available
Edge Web Hosting, Telenor Norway, Ivy Tech Community College of Indiana, Webster Financial Corporation, Westinghouse Electric, VMware, TIAA-CREF
Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Zabbix, Auvik, Datadog and others in Network Monitoring Software. Updated: August 2024.
801,634 professionals have used our research since 2012.