Try our new research platform with insights from 80,000+ expert users

Dell CloudIQ vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Dell CloudIQ
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
8
Ranking in other categories
IT Infrastructure Monitoring (32nd)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
301
Ranking in other categories
Log Management (1st), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Systems Management solutions, they serve different purposes. Dell CloudIQ is designed for IT Infrastructure Monitoring and holds a mindshare of 1.2%, up 1.1% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 11.2% mindshare, down 15.0% since last year.
IT Infrastructure Monitoring
Security Information and Event Management (SIEM)
 

Featured Reviews

ClaudioSalgado - PeerSpot reviewer
Has proactive monitoring with predictive insights and a user-friendly interface
Some of the most valuable features of CloudIQ include its health status alerts, which allow you to see quickly if there is something that needs immediate attention, preventing the need to check each system individually. It provides a status with traffic light colors, where red indicates danger, yellow means attention is needed, and green represents normal conditions to easily understand the health of the environment. The quick overview aids in decision-making. Additionally, CloudIQ's predictive capabilities, which are enhanced by artificial intelligence, have improved operational efficiency by providing proactive information to prevent issues before they arise.
Avinash Gopu. - PeerSpot reviewer
Offers good visibility into multiple environments, significantly reduces our alert volume, and speeds up our security investigations
There are limitations with Splunk not detecting all user activity, especially on mainframes and network devices. This is because Splunk relies on agents, which cannot access certain workstations. In these cases, we have to rely on application data. For example, with mainframes, manual reports are generated and sent to Splunk, limiting visibility to what's manually reported. This lack of automation for specific platforms needs improvement from Splunk. Additionally, API access is limited for other applications that rely on API calls and requests. This requires heavy customization on Splunk's end. These are the main challenges we've encountered. Monitoring multiple cloud platforms, like Azure, GCP, and AWS, with Splunk Enterprise Security presents some challenges. While Splunk provides different connectors for each provider, consolidating data from two domains across distinct cloud environments can be complex. However, leveraging pre-built templates and Splunk's data collation capabilities can help overcome these hurdles. Despite initial difficulties, I believe Splunk can effectively address this task, earning it an eight out of ten rating for its multi-cloud monitoring capabilities. While Splunk Enterprise Security offers insider threat detection capabilities, its effectiveness could be enhanced by integrating with additional tools, such as endpoint security solutions. This integrated approach is particularly crucial for financial institutions, which often require dedicated endpoint security teams. While using multiple tools is valuable, further improvements within Splunk itself are also necessary. Considering both external integration and internal development, I would rate its current insider threat detection capabilities as three out of ten. Threat detection is where Splunk falls behind. While it offers tools, other use cases require additional work. PAM is an enterprise tool that centralizes information about users, servers, and everything else. It needs real-time monitoring, which I haven't seen in any of the companies I've worked for. They only rely on Splunk for alerting, but real-time monitoring should be handled by the endpoint security team's tools. This means there's no detection or analysis at the machine or endpoint level. Additionally, threat analysis reporting is also absent.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I rate CloudIQ a ten out of ten."
"Has really nice roll-up dashboards."
"The tool for forecasting capacity is valuable."
"The best thing about this solution is that you can check for the infrastructure and system updates that you might need to be compliant with the Cloud."
"CloudIQ allows us to monitor our servers centrally, and we can receive notifications in case of issues, like a potential hard drive failure."
"Mobile application is the most valuable feature for us. We can monitor all the storages on our phones. It's really good."
"Fewer vulnerabilities have been observed in the four years we have used the solution."
"Some of the most valuable features of CloudIQ include its health status alerts, which allow you to see quickly if there is something that needs immediate attention, preventing the need to check each system individually."
"Splunk provides immediate visibility into key business metrics and new business insights that deliver immediate value."
"The solution's most valuable feature is that it helps with our use cases to detect anomalies in our data and it is important to my company since we have a lot of data on different logs on the systems."
"Splunk Enterprise Security is a standard solution providing good customer service and partnership."
"The solution's most valuable feature is threat intelligence correlations."
"The alerts are very effective."
"Its usability is the best part. It is easy for our developers to use if they want to search their logs, etc."
"This solution helps us increase our productivity."
"The tool drastically reduces SOC overhead. Its integration with our tool suite is great and helps us correlate events. The solution is also a lot faster than our standalone instances."
 

Cons

"Getting through support has become a difficult thing. Dell's support has degraded since they took over EMC. It's a bit difficult to use."
"The reporting capabilities of this solution could be improved."
"Supporting legacy systems is an area that can be improved."
"The process of upgrading could be streamlined."
"PowerScale is the only file system offered and that is limiting."
"There is a need for improvement in predictive maintenance, which I assume is somewhat AI-driven."
"If you have a heterogeneous environment, there might be some limitations in coverage since CloudIQ is primarily designed for Dell-based infrastructures."
"The main limitation of CloudIQ is that it is intended to be used exclusively with Dell hardware."
"Sometimes, there is latency in the logs."
"Technical support needs to be more responsive."
"Resource usage can probably be described as an area with shortcomings in the product where improvements are required."
"Professional support is great, but too expensive."
"I do not like the pricing model. It is expensive."
"Splunk could be improved by reducing the cost. The cost is one of the biggest challenges for us in keeping to our production requirements."
"Splunk has a steeper learning curve, making it feel less user-friendly."
"The tool should include more real-world use case examples built out either through videos or in the community."
 

Pricing and Cost Advice

"I believe it is a free product because we don't pay for it."
"The solution is more expensive than NetApp which offers file systems in various price ranges."
"From what I have seen so far, Splunk has multiple cost models. The one that we are using is pretty good when it comes to ingesting data into the environment. It has worked out pretty well."
"Splunk Enterprise Security is cheaper than competitors, but I do not know whether it is just our contract."
"The pricing and licensing of the product are quite high."
"It can be tough to determine if you are getting all of the value out of your investment at times."
"Splunk is not a cheap solution and the license is billed annually."
"It is economical than other solutions."
"Splunk differs from other SIEM solutions by using a gigabyte-based pricing model, rather than the agent-based licenses common with its competitors."
"The price of this solution is expensive. However, it has great features. If you want a great solution you need to pay a price matching the features."
report
Use our free recommendation engine to learn which IT Infrastructure Monitoring solutions are best for your needs.
824,067 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Manufacturing Company
15%
Financial Services Firm
10%
Government
6%
Financial Services Firm
15%
Computer Software Company
14%
Government
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Dell CloudIQ?
Fewer vulnerabilities have been observed in the four years we have used the solution.
What needs improvement with Dell CloudIQ?
The main limitation of CloudIQ is that it is intended to be used exclusively with Dell hardware. If you have a heterogeneous environment, there might be some limitations in coverage since CloudIQ i...
What is your primary use case for Dell CloudIQ?
My relationship with CloudIQ is because I was selling Dell products. I needed to understand it to explain to customers why they need to use that. CloudIQ provides one single pane of glass to have a...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Overview

 

Sample Customers

North Carolina State University
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Zabbix, Datadog, Auvik and others in IT Infrastructure Monitoring. Updated: December 2024.
824,067 professionals have used our research since 2012.