Splunk SOAR Logo Award Winner Product Badge
Splunk SOAR Logo Award Winner Product Badge
Cisco Systems

Splunk SOAR

Composite Score
8.2 /10
CX Score
8.7 /10
Category
Splunk SOAR
8.2 /10

What is Splunk SOAR?

Splunk SOAR (formerly Splunk Phantom) combines security infrastructure orchestration, playbook automation and case management capabilities to streamline your team, processes and tools.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

Awards & Recognition

Splunk SOAR won the following awards in the Security Orchestration, Automation, and Response category

Filter By

Splunk SOAR Ratings

Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard to access more information on Splunk SOAR.

Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.

87 Likeliness to Recommend

2
Since last award

94 Plan to Renew

1
Since last award

86 Satisfaction of Cost Relative to Value

2
Since last award


{y}
{name}

Emotional Footprint Overview

Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.

+95 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love Splunk SOAR?

0% Negative
2% Neutral
98% Positive

Pros

  • Enables Productivity
  • Saves Time
  • Altruistic
  • Generous Negotitation

Feature Ratings

Average 84

Capable of Use Case Development

88

Orchestrate & Automate

88

Playbooks/Runbooks and Workflow Builder

87

Dashboards

87

Team Collaboration

87

Integration with IR Management

85

Integration Capabilities

84

Data Model

83

Case Management

83

Management and Sharing of Intelligence

82

Automated Phishing Handling

80

Vendor Capability Ratings

Average 86

Business Value Created

92

Breadth of Features

87

Availability and Quality of Training

87

Quality of Features

86

Ease of Implementation

86

Ease of Data Integration

86

Usability and Intuitiveness

85

Ease of Customization

85

Vendor Support

84

Ease of IT Administration

84

Product Strategy and Rate of Improvement

81

Splunk SOAR Reviews

Dennis A.

  • Role: Information Technology
  • Industry: Manufacturing
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted Jan 2025

SOAR Above Threats with Splunk!

Likeliness to Recommend

8 /10

What differentiates Splunk SOAR from other similar products?

One of the most practical applications has been automating our incident response workflows. For instance, when an unusual login attempt occurred outside of business hours, Splunk SOAR flagged the activity, triggered an automated playbook, and blocked the IP before any damage could occur. It also sent our team a detailed report so we could review it the next morning. Talk about peace of mind.

What is your favorite aspect of this product?

I’m particularly impressed by how easy it is to customize playbooks. Instead of manually responding to repetitive tasks, we’ve set up automated responses for phishing emails, endpoint anomalies, and even compliance checks. It’s like giving the team superpowers—they can now focus on more strategic initiatives rather than firefighting.

What do you dislike most about this product?

Absolutely nothing.

What recommendations would you give to someone considering this product?

By cutting down on response times and automating repetitive tasks, we’ve significantly improved our cybersecurity posture without needing to expand our IT team. It’s also helped us reduce human error, which is especially valuable when dealing with sensitive production data.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Performance Enhancing
  • Enables Productivity

Ralph B.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: Business Leader or Manager
Validated Review
Verified Reviewer

Submitted Jan 2025

Automation Arsenal: Splunk SOAR in IT Security.

Likeliness to Recommend

9 /10

What differentiates Splunk SOAR from other similar products?

As an IT professional responsible for managing SQL databases and securing our infrastructure, I’ve seen how this tool transforms our response strategy. It doesn’t just alert you about issues—it takes action, pulling the strings behind the scenes to neutralize threats before they escalate.

What is your favorite aspect of this product?

Splunk SOAR connects with virtually everything we use—firewalls, endpoint detection tools, and even our SQL servers. It doesn’t just monitor but actively leverages these systems to act. For example, we’ve configured it to monitor for SQL injection attempts; when one is flagged, Splunk SOAR locks down the compromised database account and logs detailed analytics for review.

What do you dislike most about this product?

There’s a learning curve to crafting effective playbooks.

What recommendations would you give to someone considering this product?

I’d recommend Splunk SOAR to peers in IT and security roles—it’s a force multiplier that turns a reactive strategy into a proactive one, making your team smarter, faster, and more effective.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Reliable
  • Performance Enhancing

Deana M.

  • Role: Information Technology
  • Industry: Healthcare
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted Dec 2024

Splunk SOAR: Security Excellence Meets Automation

Likeliness to Recommend

8 /10

What differentiates Splunk SOAR from other similar products?

One of the big advantages Splunk SOAR has over competitors is its ability to create and execute complex automation routines. This means they are very well integrated with 3rd party security tools, which form a unified security operations center. Visual Designer allows you to create and edit automation workflows without the substantial art of coding.

What is your favorite aspect of this product?

Intelligent event correlation and automated response actions are among the things the software excels at: reducing alert fatigue. But what's more impressive is it can do it with the ability to handle many of these incidents at once and maintain detailed audit trails.

What do you dislike most about this product?

The productiveness of the development environment could be improved to be less susceptible to running into problems in the actual production environment. Some of the integrations you need to do have to be tightly customized before they work well, and you may also have to manually fine-tune the event correlation logic to minimize false positives.

What recommendations would you give to someone considering this product?

After starting to use Splunk SOAR, we have seen massive improvements in our security response times. Time period dashboards of customizable security operations allow real tracking of and management of incidents.

Pros

  • Helps Innovate
  • Reliable
  • Performance Enhancing
  • Unique Features

Most Popular Splunk SOAR Comparisons