We performed a comparison between ArcSight Logger and Elastic Security based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The log digestion features from threat intelligence platforms like Recorded Future or Talos are valuable."
"It is one of the best products available in the market."
"The ESM use cases are the most valuable. It enables us to use the big data collection inside our company. We are able to create use cases for whatever it suits and I find that the most interesting part of any SIEM solution."
"Some of the most valuable features I really appreciate are the performance, how quick the solution is, and how easy it is to create a query."
"The solution provides information about the risk factors."
"We haven't had any crashes or bugs. It is stable."
"The most valuable feature is the search capability, which is simple to use."
"I am impressed with the product's ability to pick up logs. It also has UEBA which has reduced the time to take charge of the events."
"It is the best open-source product for people working in SO, managing and analyzing logs."
"The feature that we have found the most valuable is scalability."
"Elastic Security is very easy to adapt."
"The most valuable feature of Elastic Security is that you can install agents, and they are not separately licensed."
"The most valuable feature is the speed, as it responds in a very short time."
"Stability-wise, I rate the solution a ten out of ten."
"The most valuable feature is the machine learning capability."
"I use the stack every morning to check the errors and it's just so clear. I don't see any disadvantage to using Logstash."
"The next release should have AI capabilities."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"In the next release, I want to see more intelligence."
"I had some latency issues for two months. I had to increase our storage capacity significantly to reduce the latency."
"We have had problems with archiving."
"Using the ArcSight Logger dashboard is not particularly intuitive or efficient, so it is important to be trained in its use."
"The platform is quite expensive. They should reduce its cost."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"We'd like to see some more artificial intelligence capabilities."
"Authentication is not a default in Kibana. We need to have another tool to have authentication and authorization. These two should be part of Kibana."
"Elastic Security's maintenance is hard and its scalability is a challenge. There are complications in scaling and upgrading. The solution needs to also provide periodic upgrade checks."
"There are connectors to gather logs for Windows PCs and Linux PCs, but if we have to get the logs from Syslog then we have to do it manually, and this should be automated."
"This solution cannot do predictive maintenance, so we have to build our own modules for doing it."
"Technical support could respond faster."
"The process of designing dashboards is a little cumbersome in Kibana. Unless you are an expert, you will not be able to use it. The process should be pretty straightforward. The authentication feature is what we are looking for. We would love to have a central authentication system in the open-source edition without the need for a license or an enterprise license. If they can give at least a simple authentication system within a company. In a large organization, authentication is very essential for security because logs can contain a lot of confidential data. Therefore, an authentication feature for who accesses it should be there."
"The solution's query building is not that intuitive compared to other solutions."
ArcSight Logger is ranked 29th in Log Management with 30 reviews while Elastic Security is ranked 5th in Log Management with 58 reviews. ArcSight Logger is rated 7.8, while Elastic Security is rated 7.6. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of Elastic Security writes "A stable and scalable tool that provides visibility along with the consolidation of logs to its users". ArcSight Logger is most compared with Splunk Enterprise Security, IBM Security QRadar, Wazuh, LogRhythm SIEM and VMware Aria Operations for Logs, whereas Elastic Security is most compared with Wazuh, Splunk Enterprise Security, Microsoft Sentinel and IBM Security QRadar. See our ArcSight Logger vs. Elastic Security report.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.