We changed our name from IT Central Station: Here's why

Cisco SecureX vs Splunk Phantom comparison

Cancel
You must select at least 2 products to compare!
Cisco SecureX Logo
3,406 views|1,463 comparisons
Splunk Phantom Logo
8,993 views|6,333 comparisons
Featured Review
Find out what your peers are saying about Palo Alto Networks, Microsoft, Cynet and others in Extended Detection and Response (XDR). Updated: January 2022.
564,322 professionals have used our research since 2012.
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"SecureX enables us to have all the threat intelligence and threat event data in one place.""SecureX takes all the separate pieces of security within your company, adds in intelligence from different sites and services on the internet, and makes them work together.""Using SecureX, a tool provided by Cisco, we can easily integrate it with many of our other Cisco products such as Cisco ISE and many networking devices.""One of the most valuable features is the simplicity of deploying SecureX. It's very easy to do that and then you gain very detailed visibility into everything that's going on in your network and, obviously, at the device level. There's just a wealth of information that you can pull from all of these products that are part of SecureX. You know exactly if you have an issue or not."

More Cisco SecureX Pros →

"Very flexible integration with other tools""I'm just a beginner on the solution and it's pretty easy for me to use.""I like the integration capabilities of Phantom. It has a lot of integrations with other products. Its searching methodologies are also good. It is also easy to understand and easy to create playbooks.""So far, the interface is very easy to use.""The most valuable feature is the risk-based access control.""The customization continues to be excellent."

More Splunk Phantom Pros →

Cons
"I'm not sure that I would call it a bug, but sometimes the solution is a little slow.""what's missing right now is the multi-tenant capability.""For us, the biggest sticking point is that the product is not being designed for multi-tenancy use at present, from an MSP perspective.""If they could make the Cisco Umbrella piece a little bit more advanced or easier to manage, that would help. We use it for filtering and when you compare it to a normal content filter, it lacks some functionality.""The automation and orchestration could be simpler. It could be that all the other parts are that easy to use so that these stick out as a negative, but that's the trickiest part for us. The workflows within the orchestration are just a bit more difficult."

More Cisco SecureX Cons →

"I haven't used it fully, but based on my usage, I could not find simulation tools and features. It currently lacks simulation features, which are important for me for creating a playbook. It is also very expensive for my region.""It would be ideal if we could automate processes even more.""We want to see improvements made to the APIs such that we can connect to many different systems and data sources.""And most of the challenges that I have faced with the solution can be found in the documentation itself.""We've had trouble implementing the solution with Microsoft products. There seems to be an integration gap.""In the beginning, we couldn't find any specific documents for every function. It wasn't easy to navigate to what we needed."

More Splunk Phantom Cons →

Pricing and Cost Advice
  • "For the value you get, the pricing of the solution is excellent."
  • "You can spend less money for another solution, but if you really want to have a good solution you have to pay. We are happy that we are getting such a good solution for what we are spending."
  • "The pricing is competitive, especially for education institutions. Licensing can be a little bit difficult to navigate, especially with resellers with Cisco, but for us it has been pretty easy."
  • "The product is absolutely free to any customer. As such, the only thing one must keep in mind is that as long as he already has one Cisco security product, irregardless of what that product is, SecureX is available for free."
  • More Cisco SecureX Pricing and Cost Advice →

  • "I don't know the exact price, but for my region, it is very expensive."
  • More Splunk Phantom Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
    564,322 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: 
    SecureX enables us to have all the threat intelligence and threat event data in one place.
    Top Answer: 
    The product is absolutely free to any customer that already has one Cisco security product. If one only wants to make use of the security analytics, this is super easy, as set up and integration of… more »
    Top Answer: 
    This is a relatively new offering from Cisco and some time is needed for the evolutionary development of the platform. It's good that there are some third party integrations available and it would be… more »
    Top Answer: 
    I like the integration capabilities of Phantom. It has a lot of integrations with other products. Its searching methodologies are also good. It is also easy to understand and easy to create… more »
    Top Answer: 
    I don't know the exact price, but for my region, it is very expensive.
    Top Answer: 
    I haven't used it fully, but based on my usage, I could not find simulation tools and features. It currently lacks simulation features, which are important for me for creating a playbook. It is also… more »
    Ranking
    Views
    3,406
    Comparisons
    1,463
    Reviews
    4
    Average Words per Review
    1,946
    Rating
    9.3
    Views
    8,993
    Comparisons
    6,333
    Reviews
    6
    Average Words per Review
    589
    Rating
    7.7
    Comparisons
    Also Known As
    Phantom
    Learn More
    Overview

    SecureX is a cloud-native, built-in platform experience that connects our Cisco Secure portfolio and your infrastructure. It is integrated and open for simplicity, unified in one location for visibility, and maximizes operational efficiency with automated workflows. Radically reduce threat dwell time and human-powered tasks to stay compliant and counter attacks.

    Phantom enables teams to work smarter by executing automated actions across their security infrastructure in seconds, versus hours or more if performed manually. Teams can codify workflows into Phantom’s automated playbooks using the visual editor (no coding required) or the integrated Python development environment. By offloading these repetitive tasks, teams can focus their attention on making the most mission-critical decisions.
    Orchestration
    Phantom is the connective tissue that lets existing security tools work better together. By connecting and coordinating complex workflows across the SOC’s team and tools, Phantom ensures that each part of the SOC’s layered defense is actively participating in a unified defense strategy. Powerful abstraction allows teams to focus on what they need to accomplish, while the platform translates that into tool-specific actions.
    Incident Response
    Phantom helps security teams investigate and respond to threats faster. Using Phantom’s automated detection, investigation, and response capabilities, teams can execute response actions at machine speed, reduce malware dwell time and lower their overall mean time to resolve (MTTR). And now with Phantom on Splunk Mobile, analysts can use their mobile device to respond to security incidents while on-the-go. Phantom’s event and case management functionality can further streamline security operations. Case-related data and activity are easily accessible from one central repository. It’s easy to chat with other team members about an event or case, and assign events and tasks to the appropriate team member.

    Offer
    Learn more about Cisco SecureX
    Learn more about Splunk Phantom
    Sample Customers
    NHS, Rackspace, UNC Pembroke, University of North Carolina at Charlotte, Missing Piece
    Recorded Future, Blackstone
    Top Industries
    VISITORS READING REVIEWS
    Comms Service Provider52%
    Computer Software Company14%
    Government4%
    Manufacturing Company3%
    VISITORS READING REVIEWS
    Computer Software Company30%
    Comms Service Provider19%
    Government8%
    Financial Services Firm7%
    Company Size
    VISITORS READING REVIEWS
    Small Business6%
    Midsize Enterprise8%
    Large Enterprise85%
    No Data Available
    Find out what your peers are saying about Palo Alto Networks, Microsoft, Cynet and others in Extended Detection and Response (XDR). Updated: January 2022.
    564,322 professionals have used our research since 2012.

    Cisco SecureX is ranked 4th in Extended Detection and Response (XDR) with 4 reviews while Splunk Phantom is ranked 3rd in Security Orchestration Automation and Response (SOAR) with 6 reviews. Cisco SecureX is rated 9.2, while Splunk Phantom is rated 7.6. The top reviewer of Cisco SecureX writes "Combines multiple sources of security intelligence, making it easy to correlate events in our environment with those outside of it". On the other hand, the top reviewer of Splunk Phantom writes "Very stable with a straightforward setup and good performance". Cisco SecureX is most compared with Cortex XDR by Palo Alto Networks, Fortinet FortiSOAR, Microsoft 365 Defender, Trend Micro XDR and Proofpoint Threat Response, whereas Splunk Phantom is most compared with Palo Alto Networks Cortex XSOAR, ServiceNow Security Operations, IBM Resilient, Fortinet FortiSOAR and Siemplify.

    We monitor all Extended Detection and Response (XDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.