What is Splunk SOAR?
Splunk SOAR (formerly Splunk Phantom) combines security infrastructure orchestration, playbook automation and case management capabilities to streamline your team, processes and tools.
Company Details
Need Assistance?
We're here to help you with understanding our reports and the data inside to help you make decisions.
Get AssistanceSplunk SOAR Ratings
Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard
to access more information on Splunk SOAR.
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
87 Likeliness to Recommend
2
Since last award
94 Plan to Renew
1
Since last award
86 Satisfaction of Cost Relative to Value
2
Since last award
Emotional Footprint Overview
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
+95 Net Emotional Footprint
The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.
How much do users love Splunk SOAR?
Pros
- Enables Productivity
- Saves Time
- Altruistic
- Generous Negotitation
How to read the Emotional Footprint
The Net Emotional Footprint measures high-level user sentiment towards particular product offerings. It aggregates emotional response ratings for various dimensions of the vendor-client relationship and product effectiveness, creating a powerful indicator of overall user feeling toward the vendor and product.
While purchasing decisions shouldn't be based on emotion, it's valuable to know what kind of emotional response the vendor you're considering elicits from their users.
Footprint
Negative
Neutral
Positive
Feature Ratings
Capable of Use Case Development
Orchestrate & Automate
Playbooks/Runbooks and Workflow Builder
Dashboards
Team Collaboration
Integration with IR Management
Integration Capabilities
Data Model
Case Management
Management and Sharing of Intelligence
Automated Phishing Handling
Vendor Capability Ratings
Business Value Created
Breadth of Features
Availability and Quality of Training
Quality of Features
Ease of Implementation
Ease of Data Integration
Usability and Intuitiveness
Ease of Customization
Vendor Support
Ease of IT Administration
Product Strategy and Rate of Improvement
Splunk SOAR Reviews
Dennis A.
- Role: Information Technology
- Industry: Manufacturing
- Involvement: End User of Application
Submitted Jan 2025
SOAR Above Threats with Splunk!
Likeliness to Recommend
What differentiates Splunk SOAR from other similar products?
One of the most practical applications has been automating our incident response workflows. For instance, when an unusual login attempt occurred outside of business hours, Splunk SOAR flagged the activity, triggered an automated playbook, and blocked the IP before any damage could occur. It also sent our team a detailed report so we could review it the next morning. Talk about peace of mind.
What is your favorite aspect of this product?
I’m particularly impressed by how easy it is to customize playbooks. Instead of manually responding to repetitive tasks, we’ve set up automated responses for phishing emails, endpoint anomalies, and even compliance checks. It’s like giving the team superpowers—they can now focus on more strategic initiatives rather than firefighting.
What do you dislike most about this product?
Absolutely nothing.
What recommendations would you give to someone considering this product?
By cutting down on response times and automating repetitive tasks, we’ve significantly improved our cybersecurity posture without needing to expand our IT team. It’s also helped us reduce human error, which is especially valuable when dealing with sensitive production data.
Pros
- Helps Innovate
- Continually Improving Product
- Performance Enhancing
- Enables Productivity
Please tell us why you think this review should be flagged.
Ralph B.
- Role: Information Technology
- Industry: Technology
- Involvement: Business Leader or Manager
Submitted Jan 2025
Automation Arsenal: Splunk SOAR in IT Security.
Likeliness to Recommend
What differentiates Splunk SOAR from other similar products?
As an IT professional responsible for managing SQL databases and securing our infrastructure, I’ve seen how this tool transforms our response strategy. It doesn’t just alert you about issues—it takes action, pulling the strings behind the scenes to neutralize threats before they escalate.
What is your favorite aspect of this product?
Splunk SOAR connects with virtually everything we use—firewalls, endpoint detection tools, and even our SQL servers. It doesn’t just monitor but actively leverages these systems to act. For example, we’ve configured it to monitor for SQL injection attempts; when one is flagged, Splunk SOAR locks down the compromised database account and logs detailed analytics for review.
What do you dislike most about this product?
There’s a learning curve to crafting effective playbooks.
What recommendations would you give to someone considering this product?
I’d recommend Splunk SOAR to peers in IT and security roles—it’s a force multiplier that turns a reactive strategy into a proactive one, making your team smarter, faster, and more effective.
Pros
- Helps Innovate
- Continually Improving Product
- Reliable
- Performance Enhancing
Please tell us why you think this review should be flagged.
Deana M.
- Role: Information Technology
- Industry: Healthcare
- Involvement: End User of Application
Submitted Dec 2024
Splunk SOAR: Security Excellence Meets Automation
Likeliness to Recommend
What differentiates Splunk SOAR from other similar products?
One of the big advantages Splunk SOAR has over competitors is its ability to create and execute complex automation routines. This means they are very well integrated with 3rd party security tools, which form a unified security operations center. Visual Designer allows you to create and edit automation workflows without the substantial art of coding.
What is your favorite aspect of this product?
Intelligent event correlation and automated response actions are among the things the software excels at: reducing alert fatigue. But what's more impressive is it can do it with the ability to handle many of these incidents at once and maintain detailed audit trails.
What do you dislike most about this product?
The productiveness of the development environment could be improved to be less susceptible to running into problems in the actual production environment. Some of the integrations you need to do have to be tightly customized before they work well, and you may also have to manually fine-tune the event correlation logic to minimize false positives.
What recommendations would you give to someone considering this product?
After starting to use Splunk SOAR, we have seen massive improvements in our security response times. Time period dashboards of customizable security operations allow real tracking of and management of incidents.
Pros
- Helps Innovate
- Reliable
- Performance Enhancing
- Unique Features
Please tell us why you think this review should be flagged.
Get Instant Access<br>to this Report
Get Instant Access
to this Report
Unlock your first report with just a business email. Register to access our entire library.
© 2025 SoftwareReviews.com. All rights reserved.