ManageEngine Log360 vs Wazuh comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

ManageEngine Log360
Ranking in Log Management
28th
Ranking in Security Information and Event Management (SIEM)
23rd
Average Rating
7.2
Number of Reviews
15
Ranking in other categories
User Entity Behavior Analytics (UEBA) (10th)
Wazuh
Ranking in Log Management
2nd
Ranking in Security Information and Event Management (SIEM)
3rd
Average Rating
7.4
Number of Reviews
38
Ranking in other categories
Extended Detection and Response (XDR) (3rd)
 

Mindshare comparison

As of June 2024, in the Log Management category, the mindshare of ManageEngine Log360 is 1.9%, up from 1.5% compared to the previous year. The mindshare of Wazuh is 18.1%, up from 16.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
Unique Categories:
Security Information and Event Management (SIEM)
3.0%
User Entity Behavior Analytics (UEBA)
7.4%
Extended Detection and Response (XDR)
17.0%
 

Featured Reviews

JS
Jul 12, 2023
Facilitates incident backtracking and identifying the cause of incidents but insufficient intelligence-driven analysis to suppress unnecessary alerts
There is room for improvement, especially in the reporting aspect. The reports are not as good as those in Splunk. Another area that needs improvement is the integration of various technologies. Currently, they don't cover most of the major technology domains, leaving out significant coverage. Moreover, there are many additional features I would like to see. One feature would be an automated workflow for report downloading and sending it to relevant individuals. Additionally, there should be event triggers to identify and handle duplicated events. It would be helpful to have AI-driven technology to differentiate between real and false alerts, as we receive numerous false positives. Not every event is critical, so an intelligent analysis, such as behavior-driven or logic-based, should be incorporated to suppress unnecessary alerts. So, I want to decrease false positive instances. I would like to see a significant decrease in false positives based on intelligent analysis. The analysis could be behavior-driven or based on any logical approach, but it should be incorporated into the system.
Usman Arif - PeerSpot reviewer
Sep 21, 2023
Transforming security features with notable vulnerability reduction and comprehensive compliance
It is used primarily for event management in our organization, which falls into the category of an edge Intrusion Detection System (IDS) or host Internet protection system. Our company is not very large, with around twenty to thirty servers and approximately one hundred fifty to two hundred…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It basically helps us. We have to stay in compliance with certain issues with some of our customers. We have to have these types of tools in place for protecting our network and our data. We're in the aerospace industry, so we have a lot of defense contracts. So, all those guys will make sure that we're protecting their information, and it does a good job in that aspect."
"The Sharecon feature is the most valuable."
"The reports that you can run are really nice."
"The deployment is quite simple and pretty straightforward."
"It is nice to be able to monitor and to have notifications."
"We haven't had any stability issues."
"You can have all of the logs from servers to network and it gets sent out to the correct owners. This is very helpful."
"The most valuable features for us are the application logs monitoring and the dashboard, which provides a single-pane view of all the ongoing activities."
"It has efficient SCA capabilities."
"The MITRE ATT&CK correlation is most valuable."
"Good for monitoring, active response, and for vulnerabilities."
"The log monitoring and analysis tools are great in addition to SIEM file activity monitoring."
"Wazuh's logging features integrate seamlessly with AWS cloud-native services. There are also Wazuh agent configurations for different use cases, like vulnerability scanning, host-based intrusion detection, and file integrity monitoring."
"The most valuable features are the modules and metrics."
"We use it to find any aberration in our endpoint devices. For example, if someone installs a game on their company laptop, Wazuh will detect it and inform us of the unauthorized software or unintended use of the devices provided by the company."
"The product is easy to customize."
 

Cons

"Most times log sheets are not assigned well."
"The matter of the data retention needs to be addressed."
"The solution lacks some features when compared to other products."
"The solution needs to improve hub storage. It should integrate AI and ML capabilities."
"The integration with SharePoint and Teams should be improved."
"It is not expensive compared to other solutions."
"The graphical interface could be made easier to use when you are connecting to different network equipment."
"There is room for improvement, especially in the reporting aspect. The reports are not as good as those in Splunk."
"Scalability is a constraint in the on-prem version of Wazuh in terms of the volume of logs we can manage."
"Wazuh could improve the detection, it is not detecting all of the attacks. Additionally, it is lacking features compared to other solutions."
"Scalability is a challenge because it is distributed architecture and it uses Elastic DB. Their Elastic DB doesn't allow open source waste application."
"The only challenge we faced with Wazuh was the lack of direct support."
"They need to go towards integrating with more cloud applications and not just OS like Windows and Linux."
"Its user interface for sure can be improved. It is not so comfortable to use if you're looking for specific logs."
"One area where Wazuh could use some improvement is in its reporting mechanism, especially for high-level management like CSOs and CEOs."
"I have yet to find the same capability in Wazuh to get logs from different sources into the system"
 

Pricing and Cost Advice

"ManageEngine Log360 is expensive compared to other products."
"Affordable pricing is provided by the solution."
"Its pricing is definitely huge compared to some of the other SIEMs. Its price should be improved."
"There is a cost for each feature used."
"My client has a yearly license. I think the cost is not expensive compared to that of other SIEMs, given the service it is providing."
"Wazuh is a cheaply priced product."
"It is an open-source product."
"Wazuh is a good tool, but the open-source version has scalability limitations."
"The current pricing is open source."
"Wazuh has a community edition, and I was using that. It's free and open source."
"Wazuh is free and open source."
"Wazuh is not an expensive solution."
"When I contacted customer care, they mentioned bundling options, that I found to be overall affordable."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
789,135 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Government
11%
Financial Services Firm
8%
Educational Organization
6%
Computer Software Company
17%
Comms Service Provider
7%
Government
7%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What needs improvement with ManageEngine Log360?
Deploying ManageEngine Log360 is challenging in terms of knowledge. They offer some out-of-the-box configurations, but determining the specific firewall or antivirus in use and importing logs from ...
What do you like most about Wazuh?
Integrates with various open-source and paid products, allowing for flexibility in customization based on use cases.
What needs improvement with Wazuh?
I have built some rules that produce duplicate alerts two or three times. Therefore, these rules should be consolidated. Alerts should be specific rather than repeatedly triggered by integrating mu...
What is your primary use case for Wazuh?
We use Wazuh for the onboarding of both Windows and Linux machines, as well as for firewall and SIM configuration. The IP address is automatically blocked if a server has multiple wrong passwords.
 

Overview

 

Sample Customers

First Mountain Bank, TRA, Citadel Group, OnPoint Financial Corp, Florida Dept. of Transportation
Information Not Available
Find out what your peers are saying about ManageEngine Log360 vs. Wazuh and other solutions. Updated: June 2024.
789,135 professionals have used our research since 2012.