Try our new research platform with insights from 80,000+ expert users

AlienVault OSSIM vs Huntress Managed EDR comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AlienVault OSSIM
Average Rating
7.4
Reviews Sentiment
7.1
Number of Reviews
31
Ranking in other categories
Security Information and Event Management (SIEM) (8th)
Huntress Managed EDR
Average Rating
9.4
Reviews Sentiment
7.7
Number of Reviews
34
Ranking in other categories
Endpoint Detection and Response (EDR) (6th), Managed Detection and Response (MDR) (2nd)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. AlienVault OSSIM is designed for Security Information and Event Management (SIEM) and holds a mindshare of 3.4%, down 4.1% compared to last year.
Huntress Managed EDR, on the other hand, focuses on Managed Detection and Response (MDR), holds 10.5% mindshare, up 8.3% since last year.
Security Information and Event Management (SIEM)
Managed Detection and Response (MDR)
 

Featured Reviews

HarshBhardiya - PeerSpot reviewer
An open-source solution that provide good detection and more visibility
The solution is not scalable. It impacts so hard. In the initial stages, AlienVault OSSIM can be suitable for small environments. There may be limitations if the customer expresses a desire to expand and add more devices. In such cases, we would need to either explore additional solutions or work within the constraints of the existing setup. We have set up alerts and configured everything in AlienVault OSSIM. It actively monitors for any security incidents. It provides us with regular updates and notifications about any ongoing activities. Only one person is using the solution. It is the perfect solution for small businesses. I rate the solution’s scalability a three out of ten.
Anto Baharian - PeerSpot reviewer
Never misses anything and has an attractive price point and a simple interface
One thing they could improve is evolving from an EDR to an MDR, like Blackpoint. This transition would enable automatic remediation of anything that looks dangerous, including within Microsoft 365. For instance, when one of my clients' Microsoft 365 account was breached, Blackpoint identified suspicious activity and disabled the account. It was in Dallas, and we are in California. Blackpoint knew something was wrong there, and they went in and disabled the account. Developing more automated remediation features would elevate them to an MDR level, but I understand that it might affect pricing. They are trying to keep it at a good price point because once they go to MDR, it is probably going to double the price. For now, I find the current features satisfactory, as they continue to add improvements. They have added security awareness training and then log collectors. They are adding pillars as they move along, and I assume they are going to have an option for MDR.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The initial setup was straightforward. I didn't have any problems."
"There are a lot of people you will find using OSSIM since they are also offering OTX as a service"
"The solution is very stable. Compared to Qradar and Splunk, it's very stable."
"The most valuable features of AlienVault OSSIM are vulnerability assessment, network intrusion detection system, response to critical events, and awareness of the whole network."
"Inbuilt IDS, inbuilt integration with threat intelligence platform and with vulnerability assessment modules."
"The open vault component and the checking of vulnerabilities are the most valuable features. The page management helps with this. If you know how your device is vulnerable at least you can do something about it."
"Better than other SIEM solutions because almost everything can be integrated."
"OSSIM is the only solution that includes the large number of modules that we need: a vulnerability scanner, a network IDS system, a host IDS system."
"The most valuable aspect of Huntress is its 24/7 SOC service."
"I have found it valuable that this solution is always there and always armed."
"Huntress helps us replace traditional antivirus solutions with an EDR. I like how easy it is to use and deploy. Support is good- they've responded quickly when I've had issues. I like it a lot so far. It reports valuable information and filters out things I don't need to know."
"I would absolutely recommend Huntress to other users. If you are considering it, go for it."
"For us, Huntress Managed EDR has been a game changer for the SMB market."
"The customer support provided by Huntress is impeccable. Their product is easy to deploy and manage, and the portal setup for Managed Service Providers is excellent. A lot of companies do not do that very well."
"Huntress Managed EDR is very easy to use. It's geared towards your Windows user who wants convenience. You just need an EXE file to get started. It's set up for convenience to make it easy for you to have security, as opposed to some of the complexities behind the scenes that you don't see."
"Huntress Managed EDR provides that human in the loop, which means someone is always watching your back, and that's the main difference."
 

Cons

"AlienVault OSSIM failed to provide our company a full insight, while also giving out a lot of false positives."
"There needs to be more support or some kind of training program so users can self-learn the system more effectively."
"It's under heavy traffic. If you have heavy traffic, the system is slow."
"AlienVault OSSIM is costly."
"Lacking in depth of reporting."
"AlienVault OSSIM could improve by having better integration with some of the newer tools."
"I suggest more in-built rules based on modern threats and environments to make it a more competitive solution."
"Sometimes technical issues take very long to get resolved."
"Ultimately, the clarity of their alerts is paramount for effective threat communication and could benefit from clearer remediation steps."
"We need an API to automatically retrieve metrics and data about backend activity so we can generate client reports."
"We are still getting many false positives."
"In the next release, I'd like to see more intuitive dashboards."
"The product could be improved in terms of customization options available for reports."
"Their EDR can have increased coverage for Macintosh. They do not fully secure Macintosh computers."
"Installing Huntress on a Mac presents a challenge for end users due to the operating system's security features, which require administrator privileges for installation."
"Huntress should have a more user-friendly interface because it takes some understanding to work our way through the interfaces."
 

Pricing and Cost Advice

"We are using the community version, which can be used for free."
"AlienVault pricing is the best. Whatever cost you are paying, you are getting a return on every penny... It's not like your IBM, your QRadar, or Splunk, where the cost is too high."
"AlienVault OSSIM is an open-source solution."
"The price of AlienVault OSSIM is too high sometimes for us to present to our customers. The price should be lower. We are on a three-year license to use the solution. We had to pay extra for the support."
"AlienVault OSSIM is expensive compared to its competitors."
"We are using a free version of the solution. If you purchase a license there are more features available but the price is a little high. The solution should be cheaper to allow more customers to be able to afford it."
"When comparing AlienVault OSSIM to Microsoft Sentinel, AlienVault OSSIM incurs additional costs due to its licensing price structure. If you are using AlienVault for security purposes at a certain level it can have a higher price point than the current pricing of Microsoft Sentinel."
"AlienVault OSSIM is free."
"While other options have emerged since Huntress' arrival, I believe it still offers the best value for the features and services it provides."
"We haven't had any problems with Huntress' pricing. We're at 250 workstations, and we've grown considerably this year. They've been able to handle everything that we've thrown at them within that time frame. They're also reducing the price based on how many endpoints we add."
"Huntress is priced fairly for the services and value it provides."
"Huntress has a favourable pricing structure, and I appreciate the cost-effectiveness compared to previous solutions."
"Huntress is an easy sell to clients because it does all the heavy lifting. Sometimes, they will buck a little at the price because they want a free antivirus or EDR. We tell them that we use Huntress on all our machines. That is our standard process for all the machines we roll out. When we give that advice, people are pretty willing to say okay."
"I believe Huntress offers competitive pricing overall."
"The solution's pricing is fair."
"The Huntress pricing is an excellent value for what the product provides."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
862,077 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Comms Service Provider
10%
Financial Services Firm
8%
University
8%
Computer Software Company
16%
Manufacturing Company
9%
Insurance Company
7%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for AlienVault OSSIM?
It depends. I would need to review their cost models, but generally, they are on a scaled basis based on throughput usage. Because it's a software as a service solution for their core product for U...
What needs improvement with AlienVault OSSIM?
Scaling for USM is always challenging for any product unless it is purpose-built or overbuilt at the front end. They will use Palo Alto and its competitors, and LevelBlue will manage that implement...
What do you like most about Huntress?
It is very easy to use. It is a great solution. They are one of the better vendors that I have ever worked with since I have been in the industry.
What needs improvement with Huntress?
We would love for Huntress Managed EDR to ingest logs from Microsoft Sentinel. Microsoft Sentinel is another SIM tool that produces logs, and we would want Huntress to be able to ingest those so th...
What is your primary use case for Huntress?
We use Huntress Managed EDR for threat hunting with our clients to try to keep their environment safe and make sure that if there's any kind of bad activity going on, we can try to find out about i...
 

Also Known As

OSSIM
No data available
 

Overview

 

Sample Customers

Council Rock School District
Information Not Available
Find out what your peers are saying about Splunk, Wazuh, Microsoft and others in Security Information and Event Management (SIEM). Updated: June 2025.
862,077 professionals have used our research since 2012.