Voted Best Answer
Oct 23, 2017 - 10:14 AM
IMHO I dont' think that Splunk is a challenger in the ITAM/SAM/HAM space. Splunk is a SIEM tool which gathers data on the endpoints in terms of events on that system.
It is imaginable that you could link installation/deinstallation event from splunk into a dashboard or report; however, it won't provide in-depth view or cover everything. Ex. Using oracle DB as an example using a high-compression option, would trigger ACO entitlement consumption but Splunk would not gather/report on that.
You could use Splunk as a verification tool to some ITAM/SAM/HAM datasets but it should not be a primary source in my opinion.
Lastly, splunk doesnt do dependency mapping which is essential for more complex licensing.