No more typing reviews! Try our Samantha, our new voice AI agent.

ITRS Geneos vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ITRS Geneos
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
57
Ranking in other categories
Application Performance Monitoring (APM) and Observability (48th), Network Monitoring Software (74th), IT Infrastructure Monitoring (50th)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
381
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. ITRS Geneos is designed for Application Performance Monitoring (APM) and Observability and holds a mindshare of 1.0%, down 1.3% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 7.1% mindshare, down 9.5% since last year.
Application Performance Monitoring (APM) and Observability Mindshare Distribution
ProductMindshare (%)
ITRS Geneos1.0%
Dynatrace5.6%
Datadog4.9%
Other88.5%
Application Performance Monitoring (APM) and Observability
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security7.1%
IBM Security QRadar5.3%
Wazuh5.1%
Other82.5%
Security Information and Event Management (SIEM)
 

Featured Reviews

reviewer2127225 - PeerSpot reviewer
Monitoring Specialist at a financial services firm with 51-200 employees
Does real-time monitoring, prevents failures, and has a reasonable price
Their cloud monitoring solution needs to be improved. I have already given them the feedback that it's not capable of meeting the latest technology needs. It's built like proprietary software. I can't expose the data to ITRS, and similarly, ITRS can't expose the data to the outside world. They have created a boundary. It's a bit binding solution. In the modern world, people like to be able to expose the data to do whatever they want. They can query the data, send it, or pull it. ITRS needs to provide more in terms of the API offering. They have documentation, but they can improve the documentation and provide videos to show how to do monitoring configuration or deployment.
Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Customer Service: Very good. Technical Support: Very good."
"In my experience, being able to monitor our databases is a valuable feature as we can create our own queries and aren't reliant on the in-built ones."
"It’s very easy to install and setup, offers high scalability, and has a low resource use."
"ITRS Geneos provides peace of mind by mentoring our processes and applications."
"I would say that it is an easy-to-use monitoring tool. Amongst the available monitoring tools, it is a really good option."
"It's a very effective and productive tool, and avoids any major incidents."
"Geneos automatically sends email notifications when any batch job fails, the database is down or the website is down; it is automatically monitoring everything and reduces manual effort."
"The remarkable feature of Geneos is the dashboard. Geneos' flexible dashboard sets it apart from other monitoring tools. Other solutions have limitations in their dashboard design and can't be customized as much. The Geneos dashboard allows unlimited creativity."
"The tool helps with advanced reports and keeps the system scalable and flexible. It provides a clear picture of the current status of any incidents. As a CISO, I see a lot of potential for future innovation, which is interesting. I've noticed better performance, especially with the reports."
"Splunk is appropriate for small to medium-sized projects, and it should be calculated for large projects."
"The feature I appreciate the most about Splunk Enterprise Security is the CIM data model, which allows users to bring in data from different technologies, such as firewalls, endpoints, and perimeter DMZs, enabling every device to pump data into Splunk Enterprise Security, with the data model normalizing all the data and placing it in a common plane."
"The correlation search functions that generate all the notables are valuable. That can get pretty complicated, and it handles that pretty well."
"Splunk Enterprise Security is fast and well-documented, and user interface and user interaction are well-designed compared to other SIEM solutions."
"The most valuable feature of Splunk Enterprise Security is the comprehensive logging capabilities it provides."
"The alerts are very effective."
"Searches logs from all devices and gives valuable information to the organisation, so it can drill down on all reports and security threats."
 

Cons

"One area where there is room for improvement is the log file. I would like to be able to do a pre-run on the log files."
"The dashboard feature is full of bugs. Grouping items results in a distorted dashboard."
"Much of the reporting outside of the user interface is very basic and requires much customization to be useful."
"One area where there is room for improvement is the log file. I would like to be able to do a pre-run on the log files. When you are testing log files for regular expressions, it would be good to be able to do a quick check up front on that side of things before you release that into production."
"The graphical interface is nice but could be improved."
"I would also like to see suggested guidelines to accomplish a monitoring task. The issue is that ITRS is so flexible that there is more than one way to complete a task, each with benefits and disadvantages."
"There is are issues with the compatibility of plugins with AIX servers."
"A lightweight version which could host more than 100 gateways, as we can see slowness while loading all our gateways."
"The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side."
"I'm not as familiar as I should be to answer how Splunk Enterprise Security can be improved, however, one of the improvement points that Enterprise Security could offer is on-prem training."
"The user interface is the main area for improvement."
"DMC should be a little more intuitive with better dashboarding. Seeing the cause of data flow can be tough to track down."
"Splunk has different plugins but by default, the logs are not organized, it shows that there are roll-ups that are out of the box."
"If you monitor everything, everything stops working."
"Being a SIEM solution with a centralized dashboard, we would like to have more options to customize it."
"Configuring a few apps is complex, not straightforward."
 

Pricing and Cost Advice

"The product is priced quite high. There are pricing options for customers based on the size of the environment and plug-ins used by the monitoring system."
"Given our spend and the amount of service we have in it, the pricing is quite reasonable."
"It is expensive. They have to look at the model around when we move to cloud and how that's going to work. The licensing cost does pay off because of the improvements in support to our business."
"Pricing is the touchy subject, even here. Upper management always wants us to find a cheaper solution. But we have so much integrated with ITRS... It's expensive, but it does its job very well. And you set it and go."
"Based on feedback from colleagues and friends working in the financial sector, Geneos is relatively costly. Many companies have been switching from Geneos to Dynatrace, Sysdig, or other monitoring tools in the past two years because of the price."
"The organization is not just purchasing a license for the product, but also managing services and professional services from ITRS. Another factor is if the implementation is going to be in production, non-production, or both."
"The market tools are on par with this solution, but if the solution included more features, then it would be well within the range for the cost."
"You will get the best price if you get a single global deal."
"The pricing seems good relative to the other vendors that we have had here. However, they need to find ways to be more flexible with the licensing and be able to deal with situations where we start generating more logs. Maybe having some controls in the Splunk interface to turn it off, so we don't have to change anything in our application."
"Splunk Enterprise Security is priced lower than competitors."
"The price of Splunk Enterprise Security is high."
"It is expensive. I work for multiple clients. I am working for more than five clients, but most of the clients are switching from Splunk to Sentinel because of the cost. Even though Sentinel is very limited, clients are moving to Sentinel."
"The pricing is very complicated, and it is very pricey. You do require a lot of different licenses in order to get a comprehensive solution that is not just the SIEM solution."
"It is quite expensive."
"Licensing is a yearly, one-time cost."
"Splunk Enterprise Security is an expensive solution."
report
Use our free recommendation engine to learn which Application Performance Monitoring (APM) and Observability solutions are best for your needs.
886,077 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
67%
Computer Software Company
6%
Construction Company
3%
Outsourcing Company
3%
Financial Services Firm
14%
Computer Software Company
9%
Manufacturing Company
9%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise12
Large Enterprise39
By reviewers
Company SizeCount
Small Business112
Midsize Enterprise50
Large Enterprise267
 

Questions from the Community

What is your experience regarding pricing and costs for ITRS Geneos?
The pricing is high. Licensing fees might be around 500$ per server monthly.
What needs improvement with ITRS Geneos?
ITRS Geneos is a legacy system. It predicts or provides proactive measures once an issue is resolved. It doesn't offer any predictive capabilities or root cause analysis. They throw a lot of data i...
What is your primary use case for ITRS Geneos?
ITRS offers multiple products, including upgrades for synthetic monitoring and a SaaS platform. Geneos is used for infrastructure monitoring, covering KPIs such as CPU, memory, processes, network l...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Also Known As

Geneos
No data available
 

Overview

 

Sample Customers

ITRS Geneos is used by over 170 financial institutions, including JPMorgan, HSBC, RBS, Deutsche Bank and Goldman Sachs. Clients range from investment banks to exchanges and brokers.
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about ITRS Geneos vs. Splunk Enterprise Security and other solutions. Updated: May 2023.
886,077 professionals have used our research since 2012.