Try our new research platform with insights from 80,000+ expert users

SolarWinds Server and Application Monitor vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SolarWinds Server and Appli...
Average Rating
8.0
Reviews Sentiment
4.5
Number of Reviews
44
Ranking in other categories
Application Performance Monitoring (APM) and Observability (22nd), Server Monitoring (8th), Active Directory Management (9th)
Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
380
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
 

Mindshare comparison

While both are Application Lifecycle Management solutions, they serve different purposes. SolarWinds Server and Application Monitor is designed for Server Monitoring and holds a mindshare of 3.3%, up 2.5% compared to last year.
Splunk Enterprise Security, on the other hand, focuses on Security Information and Event Management (SIEM), holds 7.2% mindshare, down 9.8% since last year.
Server Monitoring Mindshare Distribution
ProductMindshare (%)
SolarWinds Server and Application Monitor3.3%
Zabbix13.4%
Checkmk6.6%
Other76.7%
Server Monitoring
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security7.2%
Wazuh5.8%
IBM Security QRadar5.3%
Other81.7%
Security Information and Event Management (SIEM)
 

Featured Reviews

NikhilKalwint - PeerSpot reviewer
Technical Specialist at ServiceIO
Monitoring over a thousand systems has improved decision making and operational visibility
From an advantage perspective, SolarWinds Server and Application Monitor is comparatively cheaper from a commercial point of view. It is easy to install and configure, very user-friendly, and quick to get up and running, allowing you to see the early value adds in your organization. It is compatible with most technologies for monitoring with very few chances of incompatibility. Configuration also allows us to monitor all the technical parameters we are looking for, making it a very good experience for us. The alerting feature in SolarWinds Server and Application Monitor is a main advantage, as it alerts based on threshold breaches and can raise tickets to the ticketing system, send SMS, and email notifications, allowing engineers to work on those tickets to resolve issues and avoid further impact. The visibility into server health is a beneficial feature that I am utilizing. We widely use various application performance metrics in SolarWinds Server and Application Monitor such as database monitoring and server monitoring, which are quite good enough for any monitoring solution. We utilize the customizable dashboards in SolarWinds Server and Application Monitor.
reviewer1469784 - PeerSpot reviewer
Senior Manager at a financial services firm with 10,001+ employees
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"AppInsight. Provides a simple way to get very in-depth monitoring configured for our most popular applications. Exchange, SQL, and SharePoint."
"Hardware health: It allows for proactive monitoring of the hardware health and is a game changer."
"Monitoring of processes and services is the most valuable feature. It is not necessarily just the server alone in terms of the CPU or the memory. We can go in-depth into services and processes."
"The more valuable feature of this solution is the Exchange feature."
"I have found the visibility into server health with SolarWinds Server and Application Monitor very beneficial, which we use on a daily basis."
"The most valuable feature is application monitoring."
"One of the most valuable features are the reports. They're pretty good. Also, the ease of installation and customization for the client is another feature that we value. SolarWinds has a lot of features but these are the ones I like the most. We also like that the KPIs have the ability to be preset."
"The most beneficial aspect of SolarWinds Server and Application Monitor is its ability to monitor at the application level."
"The correlation searches are most valuable just because we are able to do things like RBA."
"Splunk Enterprise Security offers two valuable features: the Common Information Model and arrangement modules."
"I can create dashboards to collect and view information in a tabular, graphical format. This feature is important because it helps me understand time-series data over one or two hours."
"It is very stable. We have not had any problems."
"Splunk has significantly reduced the time in performing the task of aggregating logs, reviewing as well as time spent during investigations."
"The most valuable features include the incident review and Dashboard Studio."
"The solution's most valuable feature is the aggregation of all the logs in one place, using enterprise securities built-in or ESCU use cases to find them."
"It is a one stop shop as a full monitoring and alerting solution for operations and application analysis for most of our back-end systems."
 

Cons

"I would like to see support for non-Windows or non-Microsoft domains, especially Apache and other non-Windows servers."
"One area that could benefit from improvement is its performance"
"It would be helpful if the solution could integrate more with the security compliances, like this IDSS, etc."
"The product needs to reduce its price."
"The product does not explain why a problem occurred."
"This product has no real downside unless they fail to continue development of its capabilities."
"SAM's software-defined network monitoring capability is also low and could be improved."
"In terms of the dashboards on offer, they should work to improve them. The types of dashboards that you get in terms of the graphs on offer aren't ideal right now."
"The training was mostly sales-focused, like how to monitor your sales. It was hard to then come back from doing the training and try to switch it to a cybersecurity focus because all the training we did was sales oriented. The basic training didn't really touch on any kind of cybersecurity use cases or anything like that. That would have been great to see in the training."
"The UI can be improved. Dashboards and reports can be better in terms of graphics."
"The administration of the cluster and app deployment to indexers or search heads can be done only using ssh access and command line, there is no GUI tools for that."
"Splunk Enterprise Security can be improved with better triage capability and less dependency on running SPL searches, which would allow analysts who may not have much experience in writing SPL searches to still use the tool and run investigations."
"I would evaluate customer service and technical support as frustrating at times."
"Regarding room for improvement, I expect Splunk to provide information about new features on a regular basis, such as notifications about enhancements that may improve security posture."
"There were only one or two issues related to the user account, but nothing major."
"There is improvement needed when importing from some types of data sources."
 

Pricing and Cost Advice

"The tool is available for my company at a good price point."
"The product is expensive."
"We pay around $ 2,000 to $ 5,000 yearly for the solution."
"I would advise potential buyers to wait until the end of the quarter, end of year, or other time to place orders. There are actually great deals to be had at those times if your budget cycle can match up."
"The product might cost you $30,000 USD to buy, but scaling this solution requires the purchase of additional polling engines at $20,000 USD each."
"Nagios XI, WhatsUpGold, Uptime Software, PRTG, Manage Engine, and SpiceWorks are the other tools that have lower pricing and licensing costs. However, they can't compete with SolarWinds when it comes to the features and functionality that SolarWinds can provide."
"When compared to other licensed models in the market, it stands out as one of the more cost-effective options."
"Its licensing is on a yearly basis. It is just the standard price, but it can vary depending on the current rate of the dollar."
"I work on the technical side, so I don't know precise figures. However, I know that Splunk is a premium product, so it's somewhat costly. Still, you get a lot of unique features for the money."
"Splunk Enterprise Security is expensive."
"The pricing model is based on the number of gigabytes that you ingest into the Splunk system. So it can be an expensive solution."
"I've heard Splunk is often preferred over other options, but the cost can be prohibitive for smaller organizations."
"The subscription is monthly."
"From what I have seen so far, Splunk has multiple cost models. The one that we are using is pretty good when it comes to ingesting data into the environment. It has worked out pretty well."
"Splunk Enterprise Security is an expensive solution."
"The tool's licensing is good and we haven't received any complaints from the team handling it."
report
Use our free recommendation engine to learn which Server Monitoring solutions are best for your needs.
883,896 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Educational Organization
13%
Government
8%
Financial Services Firm
8%
Computer Software Company
7%
Financial Services Firm
12%
Computer Software Company
10%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise8
Large Enterprise21
By reviewers
Company SizeCount
Small Business112
Midsize Enterprise50
Large Enterprise266
 

Questions from the Community

What needs improvement with SolarWinds Server and Application Monitor?
There is definitely room for improvement besides simplifying its setup. As a non-technical person, I believe the dashboards could be improved. Everything we use appears on video walls, and we need ...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
 

Also Known As

SolarWinds SAM
No data available
 

Overview

 

Sample Customers

Andr. L. Riis AS, NetSuite
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about SolarWinds Server and Application Monitor vs. Splunk Enterprise Security and other solutions. Updated: May 2023.
883,896 professionals have used our research since 2012.