Try our new research platform with insights from 80,000+ expert users

Splunk Enterprise Security vs Tableau comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Splunk Enterprise Security
Average Rating
8.4
Reviews Sentiment
7.6
Number of Reviews
303
Ranking in other categories
Log Management (1st), Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
Tableau
Average Rating
8.4
Reviews Sentiment
6.4
Number of Reviews
295
Ranking in other categories
BI (Business Intelligence) Tools (2nd), Reporting (2nd), Data Visualization (1st), Embedded BI (1st)
 

Mindshare comparison

Splunk Enterprise Security and Tableau aren’t in the same category and serve different purposes. Splunk Enterprise Security is designed for Security Information and Event Management (SIEM) and holds a mindshare of 10.8%, down 14.6% compared to last year.
Tableau, on the other hand, focuses on BI (Business Intelligence) Tools, holds 19.7% mindshare, up 18.9% since last year.
Security Information and Event Management (SIEM)
BI (Business Intelligence) Tools
 

Featured Reviews

Avinash Gopu. - PeerSpot reviewer
Offers good visibility into multiple environments, significantly reduces our alert volume, and speeds up our security investigations
There are limitations with Splunk not detecting all user activity, especially on mainframes and network devices. This is because Splunk relies on agents, which cannot access certain workstations. In these cases, we have to rely on application data. For example, with mainframes, manual reports are generated and sent to Splunk, limiting visibility to what's manually reported. This lack of automation for specific platforms needs improvement from Splunk. Additionally, API access is limited for other applications that rely on API calls and requests. This requires heavy customization on Splunk's end. These are the main challenges we've encountered. Monitoring multiple cloud platforms, like Azure, GCP, and AWS, with Splunk Enterprise Security presents some challenges. While Splunk provides different connectors for each provider, consolidating data from two domains across distinct cloud environments can be complex. However, leveraging pre-built templates and Splunk's data collation capabilities can help overcome these hurdles. Despite initial difficulties, I believe Splunk can effectively address this task, earning it an eight out of ten rating for its multi-cloud monitoring capabilities. While Splunk Enterprise Security offers insider threat detection capabilities, its effectiveness could be enhanced by integrating with additional tools, such as endpoint security solutions. This integrated approach is particularly crucial for financial institutions, which often require dedicated endpoint security teams. While using multiple tools is valuable, further improvements within Splunk itself are also necessary. Considering both external integration and internal development, I would rate its current insider threat detection capabilities as three out of ten. Threat detection is where Splunk falls behind. While it offers tools, other use cases require additional work. PAM is an enterprise tool that centralizes information about users, servers, and everything else. It needs real-time monitoring, which I haven't seen in any of the companies I've worked for. They only rely on Splunk for alerting, but real-time monitoring should be handled by the endpoint security team's tools. This means there's no detection or analysis at the machine or endpoint level. Additionally, threat analysis reporting is also absent.
ROMIL SHAH - PeerSpot reviewer
Provides fast data access with in-memory extracts, makes it easy to create visualizations, and saves time
When it comes to visualizations, Tableau has a limitation as compared to Power BI. It has a limited set of visualizations. Power BI has the entire marketplace, so you can connect and import many visualizations and use them, whereas Tableau has only 10 or 15 visualizations. There should be more visualizations, and there should also be data integration with more cloud providers. Tableau has recently launched a paid version for the documentation. So, documentation has become a little bit challenging when it comes to Tableau development because we do not have any tool to export the data out of it. It is a license-based feature that you need to purchase to prepare documentation. So, on the documentation front, for preparing clear documentation for any dashboard, it would help if we get an embedded option, rather than buying a license for each user for the documentation. To document anything, if I have to connect to each workbook and see what has been written as a formula and then document in the Word document, it is pretty time-consuming. We have the Microsoft stack, and we are currently evaluating Power BI because Tableau has a limitation of 50 columns for a drill-down report. If we want more than 50 columns, we have found a hack, but there is no ready-made option for doing it. So, we have to use another tool in case we need a drilled report with more than 50 columns. There are many instances where users need 80 or 90 columns for their analysis, and switching between two technologies becomes a challenge. It is not a cost-effective approach for us. Their support should be improved. We are not happy with their support. Whenever we raised queries, we were pointed to a few blogs, and we didn't get a proper solution from them. Their licensing should also be improved. They want us to purchase a Tableau Creator license for business users, whereas Power BI Desktop is free for business users. They should come up with a basic license with one or two connectors that our business users can use for preparing their visualizations. Tableau also charges us per user for users who want the data only through email.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like the search feature and the indexing. It's very fast and comprehensive."
"The technical support is among the best in the market."
"Splunk UBA is useful for fraud detection and for detection of APTs, advanced persistent threats."
"You can integrate Splunk with third-party security automation solutions and set rules for automatic response."
"Splunk Enterprise Security's value lies in its ability to collect and analyze security logs, providing insightful dashboards."
"It provides a risk score for each object, device, or user. We can then take action if they are at a higher risk."
"The user interface is excellent, and since I'm using Splunk as a power user, it's easy to create dashboards."
"The most valuable feature is the incident dashboard, and the extensive use of correlation searches, which isn't available with a standard Splunk search package. This feature is important to me because it enables SOC analysts to do their job more efficiently and be able to investigate or mediate incidents at a faster pace."
"While using this solution I have found the valuable features to be ease of use and the visualization. It is a complete solution."
"I consider Tableau to be the best analytical tool available. It's really handy to use and can be used by non-technical people."
"The most valuable feature is the richness of its visualization and from a self-service standpoint, the ease of use."
"The ease of presenting findings is very helpful."
"It is easy to use, and it can handle a large amount of data."
"The most important feature in Tableau is visual analytics."
"The most valuable feature is the ease of use."
"Tableau is easy to use. That's the first and most important thing. I not only provide consulting but I also train people to use it, so with its ease-of-use it's not as difficult for me to train executives and management staff, because they don't have the IT background, unlike when I'm using Python."
 

Cons

"There are limitations with Splunk not detecting all user activity, especially on mainframes and network devices."
"We usually have to follow up with technical support on our open cases."
"Customizing our commands should be simpler. Creating custom commands in Splunk requires a long, complex process. For example, we have a command to add all the column data, but we don't have a command to get the average of the column data at the end. It would be useful to have a blank at the end to create our commands and leave the rest to others."
"It could be more user friendly, in terms of the end-user experience."
"The solution could improve by giving more email details."
"AngularJS/ReactJS inclusion could be made easier in GUI."
"While Splunkbase (the app repository) has a lot of great content, some apps are terribly old and could stand to be updated or purged."
"More training on PetaData using artificial intelligence techniques to identify the events which are not normal and exceptions that would help the organization identify threats and malware on the go with results."
"I am a BI consultant. I have worked on different reporting tools, such as Power BI and MicroStrategy. As compared to other tools, Tableau lags behind in handling huge enterprise-level data in terms of robust security and the single integrated metadata concept. When we connect to large or very big databases, then performance-wise, I sometimes found Tableau a little bit slow. It can have the single metadata concept like other tools for the reusability of the objects in multiple reports."
"I don't have the ability in Tableau to create a tooltip and see the picture of a piece of jewelry or watch that is a best seller."
"I would like the solution to have certain features allowing the delivery of reports to the email."
"When it comes to visualizations, Tableau has a limitation as compared to Power BI. It has a limited set of visualizations. Power BI has the entire marketplace, so you can connect and import many visualizations and use them, whereas Tableau has only 10 or 15 visualizations. There should be more visualizations, and there should also be data integration with more cloud providers."
"When there are millions of records, scaling up is quite difficult."
"With performance tuning, it generates a pretty complex query when it is not required."
"I would like to be able to set the parameters in a more specific manner."
"The solution could use more features in data analytics."
 

Pricing and Cost Advice

"Regarding the product's pricing, I think it has always been difficult to have a conversation with Splunk."
"The price can always be lower, but it is fair at the moment. The cost efficiencies depend on the licensing and how much data we are bringing in. We have a fairly large footprint, so it is cost-effective."
"I have no opinion on pricing."
"Splunk Enterprise Security is a worthwhile investment given the comprehensive range of features it offers."
"The price of Splunk Enterprise Security fluctuates based on the customer, but I believe it's quite costly, especially for our clientele."
"I am not personally involved with the pricing of the solution."
"Splunk Enterprise Security is an expensive solution."
"Our ROI is high."
"It is a bit difficult for some people when they hear $70.00 per month, as some solutions are available for less than $10.00 or for free."
"We are on an annual license which costs us $1,400 which is very expensive. Microsft BI is less expensive."
"I rate the product price in the Indian region a seven to eight on a scale of one to ten, where one is a low price, and ten is a high price."
"Best advice on pricing is to anticipate the desire for more licenses once the results of this product are acknowledged in other parts of your company."
"Paying for users you never setup or buying expensive desktop licenses for users who can solve their users with web editing on the server are the two biggest expenses."
"If they want to be competitive in the market, the price must be improved."
"There is a license for the use of this solution and it is on a per-user basis. The server is free but the users you have to pay for."
"It is reasonable and cheap as compared to other major tools. It has a good price, and people go for it because of its pricing."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
825,399 professionals have used our research since 2012.
 

Comparison Review

it_user6330 - PeerSpot reviewer
May 2, 2013
MicroStrategy vs. Tableau
After a recent presentation, several attendees asked me about the applications of Visual Insights and Tableau. Many companies are investing in both tools and are trying to figure out the right tool for specific applications Tableau has found its sweet-spot as an agile discovery tool that analysts…
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
14%
Government
9%
Manufacturing Company
8%
Educational Organization
42%
Financial Services Firm
11%
Computer Software Company
7%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
Seeking lightweight open source BI software
It depends on the Data architecture and the complexity of your requirement. Some great tools in the market are Qlik Sense, Power BI, OBIEE, Tableau, etc. I have recently started using Cognos Enter...
Tableau vs. Business Objects - Which is a better solution for visualization and analysis?
Both tools have their positives and negatives. First, I should mention that I am relatively new to Tableau. I have been working on and off Tableau for about a year, but getting to work on it consta...
Which would you choose - Tableau or SAP Analytics Cloud?
Tableau is easy to set up and maintain. In about a day it is possible for the entire platform to be deployed for use. This relatively short amount of time can make all the difference for companies ...
 

Also Known As

No data available
Tableau Desktop, Tableau Server, Tableau Online
 

Learn More

 

Overview

 

Sample Customers

Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Accenture, Adobe, Amazon.com, Bank of America, Charles Schwab Corp, Citigroup, Coca-Cola Company, Cornell University, Dell, Deloitte, Duke University, eBay, Exxon Mobil, Fannie Mae, Ferrari, French Red Cross, Goldman Sachs, Google, Government of Canada, HP, Intel, Johns Hopkins Hospital, Macy's, Merck, The New York Times, PayPal, Pfizer, US Army, US Air Force, Skype, and Walmart.
Find out what your peers are saying about Splunk, Wazuh, Microsoft and others in Security Information and Event Management (SIEM). Updated: December 2024.
825,399 professionals have used our research since 2012.