Splunk Enterprise Security

Comparison of Splunk enterprise and Splunk enterprise security



Is Splunk enterprise security contains all the features of Splunk enterprise as well other than its advanced security features?If any body have the comparison between Splunk enterprise & Splunk enterprise security please share it here.

0 Karma


Hi Aqudoos,
Enterprise Splunk is a platform and Enterprise security is licensed application which resides on Splunk. For using enterprise security you need to install Splunk Enterprise/Cloud and then use Enterprise Security application.

0 Karma


There is probably a better way of answering this but here are my two cents.

The short answer to your question is yes, splunk ES contains all features of splunk enterprise and additional advanced security features. We can't do proper comparison between ES and splunk enterprise because ES is a fully fledged premium application designed around event correlation, management, and response while splunk enterprise is a software where you will install ES.

You can find more description about ES features here.

0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...