

Sumo Logic Security and Amazon CloudWatch compete in monitoring and security services. User reviews lean towards Amazon CloudWatch for its robust features, despite higher costs, giving it the upper hand.
Features: Sumo Logic Security offers real-time threat detection, analytics capabilities, and integration with multiple platforms. Amazon CloudWatch provides comprehensive monitoring, scalability, and automation with detailed metrics for enhanced visibility. While CloudWatch is noted for scalability, Sumo Logic emphasizes advanced analytics.
Room for Improvement: Sumo Logic Security users want better data storage options, improved customization, and a more intuitive interface. Amazon CloudWatch users desire better third-party integration support, a simplified learning curve, and more accessible configuration processes.
Ease of Deployment and Customer Service: Sumo Logic Security is known for straightforward deployment and commendable support. Amazon CloudWatch offers robust customer service but is complex to deploy due to extensive configuration requirements. CloudWatch demands a steeper learning curve but makes up for it with superior support.
Pricing and ROI: Sumo Logic Security is recognized for its reasonable cost and satisfactory ROI. Amazon CloudWatch is more costly but is valued for its extensive features and effectiveness, offering a justifiable price point for many users. Sumo Logic presents cost-effective solutions, while CloudWatch focuses on delivering feature-rich options.
Amazon CloudWatch offers cost-saving advantages by being an inbuilt solution that requires no separate setup or maintenance for monitoring tasks.
We have saved 64 hours of our time overall.
The return on investment I have seen with Sumo Logic Security in the past year and a half is tough to quantify, but I would estimate it has hit the milestones we set internally for return on investment.
In recent years, due to business expansion, knowledge levels among support engineers seem to vary.
While using their cloud and cloud resources, if you have an issue with CloudWatch, you must pay additional monthly fees to get time from dedicated tech support.
They have a response time of forty-eight hours, which is not instant support.
In general, they usually provide continuous support post-implementation, being in touch and trying to help, which makes their after-sale process better than Splunk.
Sumo Logic Security has really good customer support.
It is already there as a managed service from AWS.
Amazon CloudWatch's scalability is managed by AWS.
Sumo Logic Security scales up automatically because it is a cloud-native SIEM, and I do not need to worry about hardware clusters or capacity planning.
The tool has high scalability because everything is based in the cloud.
I did not face any significant issues with Sumo Logic Security, but the pricing may be a concern as they try to upsell and raise the prices very quickly.
I sometimes notice slowness when Amazon CloudWatch agents are installed on machines with less capacity, causing me to use other monitoring tools.
If there are many records, the system may stop or the UI may become unresponsive.
The query language is pretty straightforward and easy, and it is very powerful for building different searches and dashboards that will serve for later exploration of the same interests I have.
It operates very well as a cloud-native SaaS platform with high availability, and there is no downtime that I have experienced.
When using third-party dashboards such as Kibana or Grafana and other visualization tools, there should be a way to feed CloudWatch's data and logging capabilities into these visualization tools.
We are in a process of integrating Grafana, Loki, and Prometheus to have better visualization on Amazon CloudWatch.
Maybe Amazon Web Services can improve by providing a library for CloudWatch with some useful features.
This can lead to alerts that are collections of disjointed signals that sometimes make no sense and lack real context; this simplistic approach makes it hard to find coherent stories during investigations.
I would also appreciate the AWS automation integrations to be more secure because currently, they are using access keys, which involves a user rather than roles, which is the security best practice recommended by AWS.
The correlation rules and log mapping are not as mature compared to other SIM tools like Splunk.
Overall, the pricing of Amazon CloudWatch is very expensive.
Amazon CloudWatch charges more for custom metrics as well as for changes in the timeline.
This makes it more cost-effective because other solutions often include a third element in their pricing.
From one to ten, where one is cheap and ten is expensive, I would put Sumo Logic Security at a seven.
If you go to the well-known vendors such as Azure Sentinel or other tools like Splunk, you are going to find them costly since they are well-known and they have much more integration compared to Sumo Logic Security.
Amazon CloudWatch allows me to set up and view even historical logs, which is one of the features I find valuable.
If there is a CPU spike or system issues, we set alarms to notify us if the system is going down or not reachable.
I like its filtering capability and its ability to give the cyber engine insights.
The features I find most useful in Sumo Logic Security are the ease of implementation and connectors; they have a very easy connection and many connectors to important systems, making it very easy to implement and fast to start running in production.
They are able to save time on fewer alerts because we are able to perform tuning on the logs to be able to only get relevant or security relevant incidents.
My SOC analysts were crushed under Splunk, but Sumo has actually eased the workload and made it tolerable for three people.
| Product | Mindshare (%) |
|---|---|
| Amazon CloudWatch | 1.6% |
| Sumo Logic Security | 1.3% |
| Other | 97.1% |

| Company Size | Count |
|---|---|
| Small Business | 17 |
| Midsize Enterprise | 9 |
| Large Enterprise | 24 |
| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 5 |
| Large Enterprise | 14 |
Amazon CloudWatch integrates seamlessly with AWS, providing real-time monitoring and alerting features. Its interface supports task automation, enhancing troubleshooting and analytics capabilities, while offering strong security and scalability at a cost-effective rate.
Amazon CloudWatch is an impactful platform for monitoring AWS resources and managing application performance. It simplifies infrastructure performance monitoring by providing comprehensive analytics capabilities, including application insights and event scheduling. Users appreciate CloudWatch for its detailed metrics, dashboards, and support in issuing alerts to detect anomalies. It efficiently tracks performance, optimizes resource utilization, and ensures service availability. CloudWatch is recognized for its robust alerting features and integration with other AWS services, further supporting its resource monitoring capabilities. However, there is room for improvement in dashboard customization, log streaming speed, and integration with non-AWS services. Enhancements in API integration, machine learning features, and support for third-party tools are also desired.
What features does Amazon CloudWatch offer?Industries implementing Amazon CloudWatch often focus on optimizing IT infrastructure. Companies in sectors like finance and e-commerce rely on its monitoring and alerting capabilities to ensure service uptime and performance. The platform's automation and analytics features empower teams to proactively manage performance and detect potential issues promptly.
Sumo Logic Security offers efficient event monitoring with customizable alerts, centralized log search, and real-time threat detection. It supports multi-cloud environments and integrates with threat intelligence, reducing workload with AI-driven analytics.
Sumo Logic Security empowers organizations with advanced logging and monitoring solutions, facilitating comprehensive security event management. Its robust log search and comparison features, combined with user-friendly dashboards, enable quick event analysis. The platform's multi-cloud support and real-time threat detection are notable features, seamlessly integrating automated log correlation and AI analytics to optimize user experience. Despite needing enhancements in querying and dashboard functionalities, Sumo Logic Security remains a reliable choice for application log management, IT asset visibility, and incident alerting. Organizations utilize it for threat detection, posture monitoring, and compliance audits, in platforms like AWS, focusing on security insights and performance monitoring.
What are the key features of Sumo Logic Security?Organizations in industries like finance and technology implement Sumo Logic Security to maintain security and compliance, leveraging its advanced monitoring and alerting capabilities. Teams focus on application troubleshooting and forensic analysis, ensuring robust security posture and effective incident response across cloud-based environments.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.