No more typing reviews! Try our Samantha, our new voice AI agent.

Splunk Enterprise Security vs WhatsUp Gold comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Splunk Enterprise Security
Ranking in Log Management
2nd
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
382
Ranking in other categories
Security Information and Event Management (SIEM) (1st), IT Operations Analytics (1st)
WhatsUp Gold
Ranking in Log Management
35th
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
25
Ranking in other categories
Application Performance Monitoring (APM) and Observability (29th), Network Monitoring Software (21st), Server Monitoring (15th), IT Infrastructure Monitoring (18th), Configuration Management (20th), Cloud Monitoring Software (22nd), Network Traffic Analysis (NTA) (10th)
 

Mindshare comparison

As of April 2026, in the Log Management category, the mindshare of Splunk Enterprise Security is 6.6%, down from 7.4% compared to the previous year. The mindshare of WhatsUp Gold is 0.6%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security6.6%
WhatsUp Gold0.6%
Other92.8%
Log Management
 

Featured Reviews

Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.
EC
Technical Manager at Quan Hung Gourmet
Efficient monitoring with detailed customization, yet complexity remains
The best feature of WhatsUp Gold is the automatic generation of topology and its integration with virtualization and wireless. I have used the automated device discovery with this topology feature. The interactive map feature helps me manage the topology because sometimes we cannot draw the topology correctly, so we need to manually edit the connections. The alerting system is very tunable and customizable, but it's a little complicated to use. Many customers cannot manage it by themselves and need support from us, the provider. We always use the dashboards in the SOC, where we constantly display a dashboard or multiple dashboards. This allows us to know immediately if the connection or bandwidth is full or if the connection is broken.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the incident dashboard, and the extensive use of correlation searches, which isn't available with a standard Splunk search package. This feature is important to me because it enables SOC analysts to do their job more efficiently and be able to investigate or mediate incidents at a faster pace."
"It can log more logs than other solutions; it's a good way to troubleshoot problems."
"The way this solution has improved our organization is by its ability to do a quick search and immediately stop an incident from happening."
"The compatibility with the add-ons helps us add more data in the same compatible format and use data models to elaborate and make it faster."
"Splunk Enterprise Security is more advanced compared to other solutions, which makes it stand out as a better option."
"Splunk Enterprise Security allows us to create custom dashboards by changing fonts and modifying widgets."
"You can run reports against multiple devices at the same time. You are able to troubleshoot a single application on a thousand servers. You can do this with a single query, since it is very easy to do."
"Incident detection is the positive impact I have seen from Splunk Enterprise Security; it probably saved the company from financial losses because of the early detection of the incidents."
"We primarily use the solution to check the state of the network, monitoring thousands of devices and all of the internal network, and it is the first tool we use to see the state of the network for real-time monitoring."
"We no longer have to manually search for problems because we are alerted when something in the network goes down."
"This is a good, stable network monitoring solution for devices."
"It is very good at monitoring the network and keeps us up to date on the status of internal devices."
"The most valuable features are network bandwidth monitoring and monitoring device health."
"It is easy to access and discover devices, as well as monitor them automatically. The topology discover is also a useful feature."
"You have to invest a few days to become an expert in this solution, but after that, it's possible to do almost anything with it."
"NetFlow monitoring, real-time monitoring, and surveys have been the most valuable features for our business."
 

Cons

"It would be great if I could have a certain dialogue box in Splunk that uses innovative AI tools like ChatGPT, which are available now in the tech department."
"Make it easy to use and the cost cheaper. This will help all organisations to implement Splunk."
"The correlation of events is the most significant challenge I face when using Splunk Enterprise Security for advanced threat detection."
"Splunk isn't appropriate for smaller companies. It's too expensive."
"For instance, if a DLP operations analyst accesses the platform, it should guide them to navigate predefined content for their role. That's something I've already mentioned to them, and I'm eager to see what happens next."
"The on-premise integration with SOAR could be more simple; the cloud version integrates with SOAR very easily, but the on-premise SOAR and on-premise Splunk Enterprise Security are really not that easy, so I would appreciate if that could be improved."
"Pricing is one factor that hurts everybody on the market; the client, the reseller, everybody that touches it. Only Splunk makes money."
"If you have to do your own stuff, such as customized charts, it is a little bit more work, but once you're familiar with the Splunk query language, you can pretty much do whatever you want."
"I think there are a few bugs now. Although they give some resolution for this, we cannot share the network remotely because of our company policy."
"You have to invest a few days to become an expert in this solution."
"Sometimes it's a little bit slow."
"One of the biggest things that made us start to look at another product is we're not able to have an end to end monitoring from a user perspective throughout the system and back to the user. All the monitoring is from inside out, we need something that also can give us from outside in."
"There is a very big gap in the support."
"Importing the maps and being able to customize them could be easier."
"I would like to see them do an enhancement to the application monitoring. A lot of other products do better application monitoring so they should do some improvements to the application monitoring."
"Integrations with other devices. I want to have a product that has full integration with my active directory so I can track user activity. I want to track my complete user activity, so I'm looking for a product to implement in the near future, which will have full integration with my network and active directory users. It became very difficult to track user activity."
 

Pricing and Cost Advice

"It is expensive. I work for multiple clients. I am working for more than five clients, but most of the clients are switching from Splunk to Sentinel because of the cost. Even though Sentinel is very limited, clients are moving to Sentinel."
"The price of Splunk Enterprise Security fluctuates based on the customer, but I believe it's quite costly, especially for our clientele."
"Luckily, we come under a large federal agency, and before the pandemic, they signed a large enterprise license agreement. It worked out great and to our advantage because we are a small organization. We got a 300 gig license, and we just did not have the buying power to be able to get products cheaply. Because we all partnered together under the agency umbrella, we were able to get Splunk Enterprise Security, UBA, and ITSI for cheap. This was good considering the fact that some of these premium apps require a minimum number of users, and we do not have the number of people needed to even justify buying it."
"Splunk has always been on the expensive side."
"The pricing depends on the bandwidth of an organization and is good compared to some SIEM tools. IBM, for example, is quite costly. But Microsoft Sentinel is notably cheaper."
"Splunk ES is quite expensive compared to some products on the market."
"We have an unlimited one, and we pay yearly, but I don't know how much it costs. Previously, I worked for a startup, and when they started building it up, it was complicated for them because they didn't have the budget for that many licenses. It was very costly for them. So, startups might find it a little bit problematic because of the licensing, but for bigger companies, there is no issue."
"Further reductions would be fantastic, and I believe that more and more people would flock to it."
"The most valuable feature is the cost compared to other solutions."
"The tool's price is reasonable. WhatsUp Gold is cheaper than SolarWinds."
"Pricing is reasonable compared to other products."
"The price of WhatsUp Gold is good."
"There is a license needed to use WhatsUp Gold."
"This is a well priced solution."
"It is per device, per year. The pricing is very clear. If you have a service agreement, you get all of your major upgrades and minor upgrades. It was under $10,000 to go all-in with all of the different add-ons for it."
"The pricing can be on the expensive side when considering competing products."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
886,468 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Manufacturing Company
9%
Computer Software Company
9%
Government
5%
Financial Services Firm
12%
Manufacturing Company
11%
Government
9%
Computer Software Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business113
Midsize Enterprise50
Large Enterprise267
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise5
Large Enterprise14
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingestion of anything, but the charge per GB/Day Indexed and it gets expensive as log ...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitoring information from different sources. Splunk is very good at alerting us if we...
What do you like most about WhatsUp Gold?
The interactive mapping interface for scrolling, zooming, and drilling down on an element to learn about a network issue is good. When we see a network there will sometimes be a spot that has one l...
What is your experience regarding pricing and costs for WhatsUp Gold?
Clients find the licensing calculator confusing, but we simplify this for them by collecting relevant information first. The licensing is based on devices, providing better cost-effectiveness than ...
What needs improvement with WhatsUp Gold?
It would be great if WhatsUp Gold could add features that simplify management with AI, as it is currently too complicated to manage.
 

Overview

 

Sample Customers

Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Artoni Trasporti, Austin Independent School District, Banca Marche, Burke County North Carolina, Cambridge University School of Clinical Medicine, Clayco, Community Integrated Care, Desca, Deutsche Bergbau, Flexi-Van, Gropper, Hamleys, Hammonds Furniture, Knowledge IT, Idras S.P.A., Sibeg, Swann Engineering, Trivium Lindenhof
Find out what your peers are saying about Splunk Enterprise Security vs. WhatsUp Gold and other solutions. Updated: April 2026.
886,468 professionals have used our research since 2012.