Splunk Enterprise Security
SIEM that correlates machine data for real-time threat detection, investigation, and compliance reporting.
by SplunkOfficial site ↗
- Pricing
- custom
- License
- proprietary
- Open source
- No
Editorial review
Splunk Enterprise Security has not yet been editorially reviewed. User reviews and published field data below are unaffected — we say so rather than implying an editorial verdict.
Sign in to save this tool to a private list.
Facts & attributes
Every value carries its evidence state. “—” means unknown — never a silent default (P-02).
Identity · Taxonomy
- Documentation(HTTPS URL)
- https://docs.splunk.com/Documentation/ES/latestVerification pending
- Tags(open-source;cloud-native)
- siem, soar, ueba, security-analyticsVerification pending
Platform · Deployment
- Delivery model(SaaS;self-hosted;desktop;mobile;embedded;managed-cloud;appliance)
- SaaS, self-hostedVerification pending
Pricing · Licensing
- Free trial(true/false)
- trueVerification pending
- License model(proprietary;open-source;source-available;dual-license)
- proprietaryVerification pending
- Pricing model(free;subscription;usage;seat;asset;transaction;revenue-share;perpetual;custom)
- customVerification pending
Features · Product · Fit
- Core capabilities(authoring;automation;analytics)
- Analytics-driven SIEM (TDIR), Security orchestration, automation, and response (SOAR), User and entity behavior analytics (UEBA), Detection Studio detection development, Risk-Based Alerting, AI Assistant for queries and summariesVerification pending
Api · Integrations · Ecosystem
- API available(true/false)
- trueVerification pending
Security · Privacy · Compliance
- Regulatory compliance(HIPAA;PCI DSS;FedRAMP;GDPR support)
- HIPAA, PCI DSSVerification pending
- Security certifications(SOC 2 Type II;ISO 27001)
- SOC 1, SOC 2, ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, FedRAMP Moderate, FedRAMP High, CSA STAR Level 2, IRAPVerification pending
Support · Docs · Services
- Support channels(email;ticket;chat;phone;community)
- support portal, community forumVerification pending
Audience · Use · Case
- Best for(Neutral editorial summary)
- Large security operations teams that need a deeply customizable SIEM with an extensive app ecosystem, available on-premises or as Splunk Cloud Platform.Verification pending
- Company-size fit(individual;SMB;mid-market;enterprise)
- mid-market, enterpriseVerification pending
- Primary use cases(build;monitor;automate)
- Advanced threat detection, Automation and orchestration, Compliance auditing and reporting, Security monitoringVerification pending
- Skill level(beginner;intermediate;advanced;specialist)
- advancedVerification pending
Lifecycle · Versioning
- Current version(1.12.3)
- 8.xVerification pending
- Maintenance status(active;maintenance;deprecated;EOL;archived)
- activeVerification pending
Vendor · Maintainer
- Founded year(2012)
- 2003Verification pending
- Headquarters country(US)
- United StatesVerification pending
- Vendor type(commercial;foundation;community;government;consortium;individual)
- commercialVerification pending
User reviews
Review policyNo published reviews yet.
Write a review
Sign in to write a review. One review per person per tool; your review enters moderation before publication.