No more typing reviews! Try our Samantha, our new voice AI agent.

ITRS Geneos vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ITRS Geneos
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
57
Ranking in other categories
Application Performance Monitoring (APM) and Observability (48th), Network Monitoring Software (74th), IT Infrastructure Monitoring (50th)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
381
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. ITRS Geneos is designed for Application Performance Monitoring (APM) and Observability and holds a mindshare of 1.0%, down 1.3% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 7.1% mindshare, down 9.5% since last year.
Application Performance Monitoring (APM) and Observability Mindshare Distribution
ProductMindshare (%)
ITRS Geneos1.0%
Dynatrace5.6%
Datadog4.9%
Other88.5%
Application Performance Monitoring (APM) and Observability
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security7.1%
IBM Security QRadar5.3%
Wazuh5.1%
Other82.5%
Security Information and Event Management (SIEM)
 

Featured Reviews

reviewer2127225 - PeerSpot reviewer
Monitoring Specialist at a financial services firm with 51-200 employees
Does real-time monitoring, prevents failures, and has a reasonable price
Their cloud monitoring solution needs to be improved. I have already given them the feedback that it's not capable of meeting the latest technology needs. It's built like proprietary software. I can't expose the data to ITRS, and similarly, ITRS can't expose the data to the outside world. They have created a boundary. It's a bit binding solution. In the modern world, people like to be able to expose the data to do whatever they want. They can query the data, send it, or pull it. ITRS needs to provide more in terms of the API offering. They have documentation, but they can improve the documentation and provide videos to show how to do monitoring configuration or deployment.
Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"For getting out in front of a problem before it happens, it's absolutely superb."
"The 'start of day' (SOD) and 'end of day' (EOD) checks were automated by using this tool, thus reducing the amount of manual work needed by almost two hours per day."
"The Geneos monitoring solution is a mature industry standard monitoring solution, and is present in over 90% of the invest banks in the city."
"For my application, Geneos is detecting and helping us avoid outages at least once a day."
"Custom script toolkits"
"The filtering in the Active Console is exceptional. Depending on the user base, some people don't want to see server-level errors, so we have filters set up in the Managed Entities view, which allow us to filter out things that certain groups don't want to see, while allowing them to see other things. It's a great real-time monitoring solution. And you can draw graphs immediately, right from the Active Console, whether they're current graphs or historical graphs."
"It's a very effective and productive tool, and avoids any major incidents."
"ITRS uses SNMP to communicate with our devices as well as SNMP net probes installed on our servers."
"The best part of Splunk Enterprise Security is its customizable settings."
"We saw the granularity that we could get from Splunk far exceeded what we already had. We had the ability to have our security team really focus on the platform and stay within the platform, but they could correlate with a variety of other stakeholders, and our stakeholders were growing."
"Splunk ITSI (IT Service Intelligence) has very good capability of storing, analyzing, and searching compared to other tools."
"Splunk Enterprise Security allows us to create custom dashboards by changing fonts and modifying widgets."
"The data analysis part is good in Splunk, which is something that I like the most, and it is also quite easy to use, with dashboards, visualizations, and analytics that are good."
"We are satisfied with Splunk Enterprise Security, and it comes with a wide number of out-of-the-box applications which do help us to fix the problems."
"The feature that we use the most is the correlation search engine within ES."
"Splunk has significantly reduced the time in performing the task of aggregating logs, reviewing as well as time spent during investigations."
 

Cons

"Currently, it is difficult to monitor secure websites using SSL or with SSO enabled."
"A bit complex"
"The main feature that needs work is the Dashboard designer."
"Currently the dashboard does not have the capability of providing different status levels, and this needs to be updated."
"I would like ITRS Geneos to develop an app, where instead of going to specific login terminals or logging into laptops or desktops to check alerts, we can have visibility in the app itself."
"I would like better access to the data that is being collected."
"I would like to see ITRS integrate its setup editor with a SVN to check-in setup XML after major changes."
"The deployment method for upgrading is a bit tricky. It takes a little bit of manual effort."
"The support is not so good, I would only give them a rating of six or seven."
"I would definitely improve the risk-based alerts in Splunk Enterprise Security, helping SOC analysts to get to the drill-down searches."
"The Web Application Firewall will send you too much information because it's more dedicated to security than a normal firewall."
"The solution could be more user friendly and it's difficult to know at this stage whether our requirements will be met by the solution."
". Having a trial version or more training on Splunk would be helpful."
"I would like Splunk to add more integration. QRadar has many indications with more products than Splunk."
"More control with Splunk Cloud as it seems a bit limited. I used to manage an on-premise instance of Splunk Enterprise and really liked having more control over it."
"Data retention can be better. If we want to look at the data for five months or six months, that is not available to us."
 

Pricing and Cost Advice

"Given our spend and the amount of service we have in it, the pricing is quite reasonable."
"Pricing is the touchy subject, even here. Upper management always wants us to find a cheaper solution. But we have so much integrated with ITRS... It's expensive, but it does its job very well. And you set it and go."
"Based on feedback from colleagues and friends working in the financial sector, Geneos is relatively costly. Many companies have been switching from Geneos to Dynatrace, Sysdig, or other monitoring tools in the past two years because of the price."
"The pricing is fairly market-related. They have been very lenient because we have been working with them for so long. An example is that we're currently migrating some of our services to AWS, and they've given us a grace period for some of the things to help with the migration and not to grow additional costs while we are migrating, but it's still on par with the market."
"The licensing cost may seem expensive upfront. However, the service is outstanding, the tool does things that no other tools can do, and the customizability more than makes up for the cost of licensing."
"The product is priced quite high. There are pricing options for customers based on the size of the environment and plug-ins used by the monitoring system."
"It is expensive. They have to look at the model around when we move to cloud and how that's going to work. The licensing cost does pay off because of the improvements in support to our business."
"Pricing and licensing is based on the requirements."
"The pricing is based on the volume of data fed into it, which can lead to substantial costs. This pricing model is complex and unpredictable, making cost management difficult."
"It is a pretty high cost solution, but if your organization has the funds, it can bring many benefits."
"Pricing and licensing are quite high compared to other tools or SIEM tools, but the features justify it."
"Setup cost is cheap: It is free, it is user-friendly, and it is fast."
"The solution is a little expensive."
"Personnel costs are saved by not having to involve the domain developers from multiple teams when tracing a problem that spans multiple platforms."
"Price-wise, if you compare QRadar to Splunk for SIEM functionality then they are in the same range but when you integrate SOAR with these solutions, Splunk takes the lead and is more competitive."
"It is pretty straightforward and based on the sizing. If I compare it with other competitors, it makes sense."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
886,174 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
66%
Computer Software Company
6%
Construction Company
3%
Outsourcing Company
3%
Financial Services Firm
14%
Manufacturing Company
9%
Computer Software Company
9%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise12
Large Enterprise39
By reviewers
Company SizeCount
Small Business113
Midsize Enterprise50
Large Enterprise267
 

Questions from the Community

What is your experience regarding pricing and costs for ITRS Geneos?
The pricing is high. Licensing fees might be around 500$ per server monthly.
What needs improvement with ITRS Geneos?
ITRS Geneos is a legacy system. It predicts or provides proactive measures once an issue is resolved. It doesn't offer any predictive capabilities or root cause analysis. They throw a lot of data i...
What is your primary use case for ITRS Geneos?
ITRS offers multiple products, including upgrades for synthetic monitoring and a SaaS platform. Geneos is used for infrastructure monitoring, covering KPIs such as CPU, memory, processes, network l...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Also Known As

Geneos
No data available
 

Overview

 

Sample Customers

ITRS Geneos is used by over 170 financial institutions, including JPMorgan, HSBC, RBS, Deutsche Bank and Goldman Sachs. Clients range from investment banks to exchanges and brokers.
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about ITRS Geneos vs. Splunk Enterprise Security and other solutions. Updated: May 2023.
886,174 professionals have used our research since 2012.