Try our new research platform with insights from 80,000+ expert users

SolarWinds Server and Application Monitor vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SolarWinds Server and Appli...
Average Rating
8.0
Reviews Sentiment
4.5
Number of Reviews
44
Ranking in other categories
Application Performance Monitoring (APM) and Observability (22nd), Server Monitoring (8th), Active Directory Management (9th)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
381
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. SolarWinds Server and Application Monitor is designed for Server Monitoring and holds a mindshare of 3.3%, up 2.5% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 7.2% mindshare, down 9.8% since last year.
Server Monitoring Mindshare Distribution
ProductMindshare (%)
SolarWinds Server and Application Monitor3.3%
Zabbix13.4%
Checkmk6.6%
Other76.7%
Server Monitoring
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security7.2%
Wazuh5.8%
IBM Security QRadar5.3%
Other81.7%
Security Information and Event Management (SIEM)
 

Featured Reviews

NikhilKalwint - PeerSpot reviewer
Technical Specialist at ServiceIO
Monitoring over a thousand systems has improved decision making and operational visibility
From an advantage perspective, SolarWinds Server and Application Monitor is comparatively cheaper from a commercial point of view. It is easy to install and configure, very user-friendly, and quick to get up and running, allowing you to see the early value adds in your organization. It is compatible with most technologies for monitoring with very few chances of incompatibility. Configuration also allows us to monitor all the technical parameters we are looking for, making it a very good experience for us. The alerting feature in SolarWinds Server and Application Monitor is a main advantage, as it alerts based on threshold breaches and can raise tickets to the ticketing system, send SMS, and email notifications, allowing engineers to work on those tickets to resolve issues and avoid further impact. The visibility into server health is a beneficial feature that I am utilizing. We widely use various application performance metrics in SolarWinds Server and Application Monitor such as database monitoring and server monitoring, which are quite good enough for any monitoring solution. We utilize the customizable dashboards in SolarWinds Server and Application Monitor.
Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution has good alerts. Notifications are sent via email to technicians. You can filter the kinds of alerts you want to receive as well. It's excellent."
"Features like monitoring and infrastructure dependency mapping are valuable to us."
"Extremely user friendly: Any IT professional can learn how to admin NPM in a short time."
"The initial setup was relatively easy, and we didn't have to install anything. All we had to do was put on the devices we wanted to monitor."
"There are many valuable features, including the network configuration manager, and the network performance manager."
"Hardware health: It allows for proactive monitoring of the hardware health and is a game changer."
"It is easy to install and configure, very user-friendly, and quick to get up and running, allowing you to see the early value adds in your organization."
"I have found the visibility into server health with SolarWinds Server and Application Monitor very beneficial, which we use on a daily basis."
"The site is constantly up, and it's been really easy to adjust the data."
"Its integration is most valuable. Its UI is also pretty much easy."
"It gives me notifications of notable events."
"It's very flexible. If you look from the cloud implementation it is there. Reports are made quickly. Unlike other tools, it caters to all kinds of technical information on the front very easily. There's no need to put in any technical information. You can pull on the reports very easily, take action, and notify stakeholders."
"The Splunk queries are valuable."
"The speed of the search engine"
"The features of Splunk Enterprise Security that I have found most valuable include the risk-based score and UBA/UEBA, user behavior analytics, or user and entity behavior analytics."
"The solution's most valuable feature is the incident review, which gives a good overview of our security incidents."
 

Cons

"SolarWinds Server and Application Monitor could improve by having a cloud version. They have an observability platform but it still needs to be maintained by us."
"Nodes in Azure are able to be monitored with the use of agents, but this does not apply to cloud service offerings that are not node based."
"There is one feature that is a report writer. And they are currently trying to take it out from being a stand-alone application and integrating to the web. This doesn't give us the flexibility and it doesn't expand what we can get when it comes to reporting. So, putting it on the web is going to make it difficult to get some information. Leaving it where it is now will help us a lot."
"SolarWinds Server and Application Monitor could improve the server monitoring and the web application monitoring features are not good. Microsoft SCOM has better server monitoring."
"The technical support team's response time could be improved."
"Support for the IBM Mainframe is needed."
"SAM AppInsight for SQL: The ability to ignore fragmentation of specific indexes."
"Some custom applications cannot be monitored, and a lot more applications need to be included."
"It'd be really nice if Splunk Enterprise Security had a better and solid configuration guide."
"It's costly."
"We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy."
"When deploying Enterprise Security, the biggest challenge or the most amount of work that you're going to spend time on is onboarding your data and getting it into a position that allows you to search it uniformly. So applying things like the common information model is the biggest time investment that you'll have in the deployment."
"The upgrading process could be smoother."
"Its pricing model and integration with third-party services can be improved. We had faced an issue with integration. The alerting feature is currently not available with Splunk, but it is definitely available with Datadog and PagerDuty. They should include this feature. A few dashboards in Splunk look quite old and are not that modern. They aren't bad, but improving these dashboards will definitely make Splunk more attractive and usable. I read in a few blog posts that there were a few security incidents related to Splunk agents. So, it can be made more secure."
"Delays in responses from the technical team can pose challenges for both vendors and clients, especially considering that Splunk applications and machine solutions are critical assets."
"Splunk could enhance its services by providing more comprehensive professional assistance aimed at optimizing our investment."
 

Pricing and Cost Advice

"I would advise potential buyers to wait until the end of the quarter, end of year, or other time to place orders. There are actually great deals to be had at those times if your budget cycle can match up."
"SAM is not per server so the pricing model can be deceiving. If you have an enterprise environment, you will quickly exceed your licensing quickly. You should know this before going in."
"When planning for the number of licenses to purchase, make sure you understand all of the elements within an application required to really understand performance well. In our case, we quickly came to the conclusion that an unlimited license for SAM was the way to go."
"Understanding the counts of objects to monitor will determine the licensing need. In terms of pricing, it’s not cheap but it’s not expensive as larger vendors whose products don’t have all the features or integrations."
"The tool is available for my company at a good price point."
"The solution is overpriced in terms of application management."
"The price is too high."
"Pricing and licensing is fair for what you get. It does have a great bang-for-the-buck appeal."
"We had a yearly subscription."
"Splunk is priced higher than other solutions."
"I think that most of the monitoring solutions are expensive."
"Splunk Enterprise Security is expensive."
"It is quite expensive."
"While some clients find the cost of Splunk Enterprise Security to be on the higher end, its pricing is comparable to other SIEM solutions."
"I remember Splunk being relatively affordable. Kibana was more reasonable, but you get more with Splunk. If I was suggesting something, I would probably suggest Splunk because it is better to pay a little bit more and get a lot more."
"I think the price could be improved."
report
Use our free recommendation engine to learn which Server Monitoring solutions are best for your needs.
884,732 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Educational Organization
13%
Government
8%
Financial Services Firm
8%
Manufacturing Company
7%
Financial Services Firm
12%
Computer Software Company
10%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise8
Large Enterprise21
By reviewers
Company SizeCount
Small Business112
Midsize Enterprise50
Large Enterprise267
 

Questions from the Community

What needs improvement with SolarWinds Server and Application Monitor?
There is definitely room for improvement besides simplifying its setup. As a non-technical person, I believe the dashboards could be improved. Everything we use appears on video walls, and we need ...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Also Known As

SolarWinds SAM
No data available
 

Overview

 

Sample Customers

Andr. L. Riis AS, NetSuite
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about SolarWinds Server and Application Monitor vs. Splunk Enterprise Security and other solutions. Updated: May 2023.
884,732 professionals have used our research since 2012.