Try our new research platform with insights from 80,000+ expert users

AlienVault OSSIM vs Huntress Managed EDR comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AlienVault OSSIM
Average Rating
7.4
Reviews Sentiment
7.1
Number of Reviews
31
Ranking in other categories
Security Information and Event Management (SIEM) (8th)
Huntress Managed EDR
Average Rating
9.4
Reviews Sentiment
7.7
Number of Reviews
34
Ranking in other categories
Endpoint Detection and Response (EDR) (6th), Managed Detection and Response (MDR) (2nd)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. AlienVault OSSIM is designed for Security Information and Event Management (SIEM) and holds a mindshare of 3.4%, down 4.1% compared to last year.
Huntress Managed EDR, on the other hand, focuses on Managed Detection and Response (MDR), holds 10.5% mindshare, up 8.3% since last year.
Security Information and Event Management (SIEM)
Managed Detection and Response (MDR)
 

Featured Reviews

HarshBhardiya - PeerSpot reviewer
An open-source solution that provide good detection and more visibility
The solution is not scalable. It impacts so hard. In the initial stages, AlienVault OSSIM can be suitable for small environments. There may be limitations if the customer expresses a desire to expand and add more devices. In such cases, we would need to either explore additional solutions or work within the constraints of the existing setup. We have set up alerts and configured everything in AlienVault OSSIM. It actively monitors for any security incidents. It provides us with regular updates and notifications about any ongoing activities. Only one person is using the solution. It is the perfect solution for small businesses. I rate the solution’s scalability a three out of ten.
Anto Baharian - PeerSpot reviewer
Never misses anything and has an attractive price point and a simple interface
One thing they could improve is evolving from an EDR to an MDR, like Blackpoint. This transition would enable automatic remediation of anything that looks dangerous, including within Microsoft 365. For instance, when one of my clients' Microsoft 365 account was breached, Blackpoint identified suspicious activity and disabled the account. It was in Dallas, and we are in California. Blackpoint knew something was wrong there, and they went in and disabled the account. Developing more automated remediation features would elevate them to an MDR level, but I understand that it might affect pricing. They are trying to keep it at a good price point because once they go to MDR, it is probably going to double the price. For now, I find the current features satisfactory, as they continue to add improvements. They have added security awareness training and then log collectors. They are adding pillars as they move along, and I assume they are going to have an option for MDR.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"OSSIM is the only solution that includes the large number of modules that we need: a vulnerability scanner, a network IDS system, a host IDS system."
"The solution is very stable. Compared to Qradar and Splunk, it's very stable."
"The most valuable feature is the logging capability."
"The solution has a very good open source community, and whenever we have problems, we are always able to resolve it online."
"Network traffic analysis is highly efficient."
"The most valuable features of AlienVault OSSIM are case management, ease of configuration, and investigation."
"I recommend it due to the experience of the people running it."
"The most valuable features of this solution are the data correlation and vulnerability assessment."
"The most valuable aspect of Huntress is its 24/7 SOC service."
"It is a ten out of ten in terms of ease of use."
"Huntress has improved our security dramatically."
"Huntress helps us replace traditional antivirus solutions with an EDR. I like how easy it is to use and deploy. Support is good- they've responded quickly when I've had issues. I like it a lot so far. It reports valuable information and filters out things I don't need to know."
"Huntress Managed EDR eliminates the need to outsource expensive security tools or analysts, avoiding the high costs associated with external solutions."
"Huntress Managed EDR has helped me reduce the need for expensive security tools or to hire expensive security analysts."
"Their SOC is super responsive and does a great job of catching incidences and being on top of any issues that arise."
"I immediately recognized the benefits of Huntress Managed EDR."
 

Cons

"GUI could be improved."
"There needs to be more support or some kind of training program so users can self-learn the system more effectively."
"The solution is not scalable."
"There are somewhat more false positives with the user behavior analytics, which could benefit from an additional machine learning model to detect user patterns more rapidly."
"It takes some time. It does not give me a prompt response for any such [malicious] traffic. It takes time to get that alert from the AlienVault system."
"The user interface needs to be friendlier across the board."
"It's under heavy traffic. If you have heavy traffic, the system is slow."
"The user interface could be improved."
"The reporting could be improved by providing a more simplified report that can be easily understood by clients."
"Huntress has a cyber education platform, but it lacks all the languages we need. Since we support customers in different countries, expanding the language options for their training would be beneficial."
"The application control system could benefit from improvements in identifying and managing both whitelisted and blacklisted applications."
"I also would love for them to make their new SIEM tool reports much more robust. They are currently way too simplified, and we need to have something better to send to our compliance clients."
"The existing features are perfect. However, I think they could add a more robust set of security features like dark web scanning, penetration testing, and risk assessment for clients. We would have one tool for everything. We wouldn't have to go to multiple vendors to pull something together. That would be more beneficial for us."
"Huntress has a cyber education platform, but it lacks all the languages we need."
"The integration with Autotask could be improved."
"I had been requesting Huntress support for macOS for a while, and they recently rolled it out, making it generally available within two months. Having a regular support line would be good."
 

Pricing and Cost Advice

"OSSIM is open source, and USM is the paid license. So, if you want, you can switch to USM. There you will have to buy a license, and they have a support team that helps you out on issues you face."
"We are using a free version of the solution. If you purchase a license there are more features available but the price is a little high. The solution should be cheaper to allow more customers to be able to afford it."
"AlienVault pricing is the best. Whatever cost you are paying, you are getting a return on every penny... It's not like your IBM, your QRadar, or Splunk, where the cost is too high."
"The solution is open source, so it's free to use."
"OSSIM is free."
"AlienVault OSSIM is expensive compared to its competitors."
"I used the paid version of the tool and found it to be expensive. It has been a while since I changed to Securonix. I will have to check whether AlienVault charges per device, user, or log."
"The price of AlienVault OSSIM is too high sometimes for us to present to our customers. The price should be lower. We are on a three-year license to use the solution. We had to pay extra for the support."
"It works well for an MSP."
"I believe Huntress offers competitive pricing overall."
"The pricing is competitive, in line with Huntress's offerings, and aligns well with our business model."
"It is fair. They provide good value for the product that they deliver. I have had one price increase in the entire time I have used them. They added a bunch of features and then said that they have to increase our price a little bit. That is a fair way to handle it."
"It is very fair. I started at $2.50 and now I am at $3.50. When I signed up, I thought it was too cheap. It now reflects the price. It is very fair. I do not think you can find anything better."
"The tool’s price is very good. You just need to pay for the standard license. However, you need to pay the additional cost for Microsoft Defender."
"We haven't had any problems with Huntress' pricing. We're at 250 workstations, and we've grown considerably this year. They've been able to handle everything that we've thrown at them within that time frame. They're also reducing the price based on how many endpoints we add."
"I believe Huntress Managed EDR is fairly priced. The value I get from it in terms of peace of mind justifies the expense. You can justify it as a business expense."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
861,803 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Comms Service Provider
10%
Financial Services Firm
8%
University
8%
Computer Software Company
16%
Manufacturing Company
9%
Insurance Company
7%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for AlienVault OSSIM?
It depends. I would need to review their cost models, but generally, they are on a scaled basis based on throughput usage. Because it's a software as a service solution for their core product for U...
What needs improvement with AlienVault OSSIM?
Scaling for USM is always challenging for any product unless it is purpose-built or overbuilt at the front end. They will use Palo Alto and its competitors, and LevelBlue will manage that implement...
What do you like most about Huntress?
It is very easy to use. It is a great solution. They are one of the better vendors that I have ever worked with since I have been in the industry.
What needs improvement with Huntress?
We would love for Huntress Managed EDR to ingest logs from Microsoft Sentinel. Microsoft Sentinel is another SIM tool that produces logs, and we would want Huntress to be able to ingest those so th...
What is your primary use case for Huntress?
We use Huntress Managed EDR for threat hunting with our clients to try to keep their environment safe and make sure that if there's any kind of bad activity going on, we can try to find out about i...
 

Also Known As

OSSIM
No data available
 

Overview

 

Sample Customers

Council Rock School District
Information Not Available
Find out what your peers are saying about Splunk, Wazuh, Microsoft and others in Security Information and Event Management (SIEM). Updated: June 2025.
861,803 professionals have used our research since 2012.