Try our new research platform with insights from 80,000+ expert users

Splunk User Behavior Analytics vs Varonis Platform comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024
 

Categories and Ranking

Splunk User Behavior Analytics
Average Rating
8.2
Number of Reviews
18
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (16th), User Entity Behavior Analytics (UEBA) (4th)
Varonis Platform
Average Rating
8.2
Number of Reviews
13
Ranking in other categories
Data Loss Prevention (DLP) (13th), Data Governance (8th), SaaS Security Posture Management (SSPM) (4th), Data Security Posture Management (DSPM) (8th), Compliance Management (8th), Ransomware Protection (9th), Identity Threat Detection and Response (ITDR) (7th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Splunk User Behavior Analytics is designed for User Entity Behavior Analytics (UEBA) and holds a mindshare of 10.1%, down 11.9% compared to last year.
Varonis Platform, on the other hand, focuses on Data Loss Prevention (DLP), holds 2.8% mindshare, up 0.6% since last year.
User Entity Behavior Analytics (UEBA)
Data Loss Prevention (DLP)
 

Featured Reviews

Sharath Chander - PeerSpot reviewer
Mar 10, 2023
It's more user-friendly than other solutions we tried, but it could use more features like process mining and automation
We have an application running for our e-commerce site, and we use Splunk primarily to detect anomalous behavior like false orders and other bot-related threats. Splunk helps us analyze and eliminate threats using machine learning.  Splunk is more user-friendly than some competing solutions we…
Frederic  Delos - PeerSpot reviewer
Mar 5, 2024
Offers the ability to identify sensitive areas, allowing you to drill down into the sensitive data
The most effective feature for me is its ability to identify sensitive areas, allowing you to drill down into the sensitive data, provided you have access, to determine whether it's a false positive or a true positive. That's the best thing for me, out of all of it. It's got everything, like other ones, but I like to be able to look at something if I'm doing forensics on the alert and say, "Okay, do I really need to do something with this?" For example, we don't want sensitive data in our OneDrive. So it identifies the sensitive data that's possibly in the OneDrive. And what I can do is look at it and identify whether it's actually sensitive data in Datalert or whether it looks like sensitive data, but I know it's a false positive. If it is a false positive, I can basically say ignore this pattern based on X, Y, and Z, you know, whether it's Redjax or keyword proximity. So I like that. With other tools, I gotta go through a whole process because it's a little bit more complex. Here, I can tag it and bag it in one shot. And the next good time I scan, it slips over it. So it helps in that.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the ability to search through a large amount of data."
"The solution is definitely scalable."
"The solution is extremely scalable. Our customers are regularly scaling up after installing Splunk."
"The most valuable features are its data aggregation and the ability to automatically identify a number of threats, then suggest recommended actions upon them."
"The solution is fast, flexible, and easy to use."
"This is a good security product."
"Because of some of the visualizations that we utilize, we are able to understand strange, unusual traffic on our networks."
"We are really pleased with Splunk and its features. It would be practically impossible to function without it. To provide a general overview of the system, it's important to note that the standard log files are currently around 250 gigabytes per day. It would be impossible to manually walk through these logs by hand, which is why automation is essential."
"The solution ensures that users have not accidentally shared sensitive information with the wrong people or too many people."
"Varonis Platform is transparent and captures everything in the environment without impacting the performance. The tool helps us unify data feeds into a single reporting system."
"On the Varonis side, technical support is phenomenal. Their ability to explain is very good, and they seem to be very knowledgeable. When I get an alert that doesn't quite make sense, they dive in there and kind of take me through it. That's very useful and very good. There are some false alerts, but it is better to have a false alert than no alert at all."
"The telemetry to capture everything and the reports are very easy to configure without having a developer degree."
"There's also a 90-day policy where if a user is not using the warehouse, it will automatically delete that username."
"The solution has significantly improved data security and compliance posture by allowing us to track and monitor activities. We can see who accesses data and when files are created and understand what's happening in our environment."
"The analytics would have to be our most valuable feature."
"The most important feature is remediation. In remediation support, there is no group permission. We'll go ahead and remediate the access from the Dell folder to the parent folder."
 

Cons

"It could be easier to scale the solution if you are using it on-premise, not in the cloud."
"The price of Splunk UBA is too high."
"I'm not aware of any lacking features."
"We want to have an automated system for bot hunting that enables us to detect anomalies predictively based on historical data. It would be helpful if Splunk included process mining as an alternative option. We have a threat workflow, but it would be useful if we could supplement that with some process mining capabilities over time."
"There are occasional bugs."
"The solution is much more expensive than relative competitors like ArcSight or LogRhythm. It makes it hard to sell to customers sometimes."
"The initial setup was complex because some of the configurations that we required needed customization."
"It would be good if the solution had an analytics tool that allowed us to analyze the data without writing specific queries."
"For unstructured data monitoring, it's one of the top ones, if not the top one, due to its usability."
"The GUI should be more functional. There should be a process for connecting through Chrome, Internet Explorer, etc."
"I would like it to have cloud integration."
"The solution's interface is a little complicated with regard to setting up filters and reports."
"The solution's areas of improvement are the interface and the dependency on on-premises deployment for some components."
"There is one thing that if I add something manually, I get so many alerts. That's the biggest bad thing."
"The remediation process can be improved. There will be no existing permission group for the McAfee channel domains. We can create a new permissions group for the required folder."
"One area for improvement is the calculation engine. When applying rules in Varonis, especially for large datasets (terabytes of data), the calculations can be slow and require time to process. Speeding up this process would be beneficial."
 

Pricing and Cost Advice

"There are additional costs associated with the integrator."
"Pricing varies based on the packages you choose and the volume of your usage."
"My biggest complaint is the way they do pricing... You can never know the pricing for next year. Every single time you adjust to something new, the price goes up. It's impossible to truly budget for it. It goes up constantly."
"The licensing costs is around 10,000 dollars."
"I hope we can increase the free license to be more than 5 gig a day. This would help people who want to introduce a POC or a demo license for the solution."
"I am not aware of the price, but it is expensive."
"The pricing is good. It neither expensive nor cheap. It is average."
"I would rate the pricing an eight out of ten, with ten being the most expensive."
"It's expensive, kind of, really expensive."
"Varonis Platform wasn't certainly the cheapest solution."
"The platform is expensive. I rate the pricing a nine out of ten."
"You could do a subscription, where you pay yearly, or you could purchase it outright. The licensing cost is based on the number of users on the system that you are monitoring."
"Licensing is on an annual basis. Maintenance and renewal fees are separate. Varonis Datalert is quite expensive."
report
Use our free recommendation engine to learn which User Entity Behavior Analytics (UEBA) solutions are best for your needs.
813,418 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
13%
Government
10%
Manufacturing Company
7%
Financial Services Firm
15%
Computer Software Company
12%
Manufacturing Company
10%
Insurance Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
I am not aware of the price, but it is expensive. A rough estimate would be around 150 gigabytes, given the huge amount of data. At the moment there are no additional costs for maintenance.
What needs improvement with Splunk User Behavior Analytics?
Sometimes, we need to write explicit queries. It would be good if the solution had an analytics tool that allowed us to analyze the data without writing specific queries. The solution's user interf...
What do you like most about Varonis Platform?
The solution has significantly improved data security and compliance posture by allowing us to track and monitor activities. We can see who accesses data and when files are created and understand w...
What needs improvement with Varonis Platform?
The solution's areas of improvement are the interface and the dependency on on-premises deployment for some components. The interface has improved with the move to a SaaS model, but aspects could s...
What is your primary use case for Varonis Platform?
Customers use the product to identify sensitive information, correlate it with access permissions, and utilize its automation engine for remediation. It includes fixing broken permissions and manag...
 

Also Known As

Caspida, Splunk UBA
No data available
 

Learn More

Video not available
 

Overview

 

Sample Customers

8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Nottingham Building Society
Find out what your peers are saying about IBM, Rapid7, Exabeam and others in User Entity Behavior Analytics (UEBA). Updated: October 2024.
813,418 professionals have used our research since 2012.