Overview
Splunk Enterprise Security 採 Splunk 平台進行日誌擷取、搜尋與分析,並以風險型告警搭配 Splunk SOAR 自動化。台灣大型企業 SOC 與資安服務廠商廣泛採用。
關聯搜尋
Yes
風險型告警
Yes
Splunk SOAR 整合
Yes
雲端或地端部署
Yes
功能
5 items關聯搜尋
Yes
風險型告警
Yes
Splunk SOAR 整合
Yes
雲端或地端部署
Yes
威脅情資框架
Yes
價格
Pricing Snapshot
另行報價 (依擷取量)
Pricing details are summarized from the current product dataset. Check the vendor website for final quotes, plan structure, and regional availability.
常見問題
相關產品
View moreIBM QRadar SIEM
IBM Corporation (Palo Alto Networks)
IBM QRadar SIEM 是成熟的企業 SIEM,採犯規 (Offense) 導向調查、網路行為分析與廣泛應用生態。
Pricing
另行報價
Microsoft Sentinel
Microsoft Corporation
Microsoft Sentinel 是建構於 Azure 的雲端原生 SIEM 與 SOAR,深度整合 Microsoft 365 Defender、AI 調查與廣泛連接器目錄。
Pricing
Pay-as-you-go 擷取;提供承諾層級
Elastic Security
Elasticsearch B.V.
Elastic Security 是建構於 Elastic Stack 的開放式 SIEM,提供 EDR、威脅獵捕與大量日誌分析。
Pricing
自主代管 (免費層) 或 Elastic Cloud 訂閱
LogRhythm Axon
LogRhythm, Inc. (Exabeam)
LogRhythm Axon 是雲端原生 SIEM,提供結構化調查、行為分析與 SmartResponse 自動化,現屬 Exabeam。
Pricing
另行報價
CyCraft XCockpit (SIEM/XDR)
CyCraft Technology Corp. (奧義智慧)
CyCraft XCockpit 提供 AI 驅動的 SIEM/XDR 能力,跨端點、網路與雲端資料來源進行自動關聯分析。
Pricing
客製化報價
