Side-by-side comparison of AI visibility scores, market position, and capabilities
Corelight provides enterprise network detection and response (NDR) built on the open-source Zeek network analysis framework; raised over $150M including a $75M Series D in 2021;
Corelight is a cybersecurity company founded in 2013 by Vern Paxson, Robin Sommer, and Seth Hall and headquartered in San Francisco, California. The company commercializes and extends Zeek (formerly known as Bro), an open-source network analysis framework developed by co-founder Vern Paxson at Lawrence Berkeley National Laboratory that has become the de facto standard for high-fidelity network traffic analysis in enterprise and government security operations. Corelight's platform provides network detection and response (NDR) capabilities — deep packet inspection, protocol parsing, and threat detection across network traffic — giving security teams comprehensive visibility into what is moving across their networks, which is critical for detecting threats that evade endpoint-based tools.
Data platform for security and observability acquired by Cisco for $28B in March 2024. Used by 90 of Fortune 100; 7,500+ enterprise customers globally; flagship SIEM and Splunk SOAR power enterprise security operations centers.
Splunk is a data platform for security and observability founded in 2003 in San Francisco, built on the idea that machine-generated data — logs, events, metrics, traces — contains the intelligence organizations need to detect threats, investigate incidents, and ensure digital systems stay available. The company's core technology indexes and searches massive volumes of machine data in real time, enabling security and IT operations teams to answer complex questions across their entire data estate without predefined schemas.\n\nSplunk's flagship product is its SIEM (Security Information and Event Management) platform, used by 90 of the Fortune 100 to detect and respond to security threats. Its broader portfolio includes Splunk Observability Cloud for infrastructure monitoring, Splunk SOAR for security orchestration and automated response, and Splunk IT Service Intelligence for IT operations. The platform's schema-on-read approach and SPL query language give analysts flexibility to investigate novel threats and operational issues that structured databases cannot accommodate.\n\nSplunk was acquired by Cisco for $28B in March 2024, one of the largest cybersecurity acquisitions in history, and has been integrated into Cisco's AI-driven security portfolio. The combination of Cisco's network telemetry and global customer relationships with Splunk's data analytics depth creates a powerful full-stack security and observability offering. Under Cisco, Splunk is adding AI-native features — including AI Assistant for SPL and automated threat detection — to maintain its leadership position as the SIEM market evolves toward AI-augmented security operations.
Monitor how your brand performs across ChatGPT, Gemini, Perplexity, Claude, and Grok daily.