Try our new research platform with insights from 80,000+ expert users

ArcSight Logger vs Elastic Stack comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Logger
Ranking in Log Management
24th
Average Rating
7.8
Reviews Sentiment
5.8
Number of Reviews
32
Ranking in other categories
No ranking in other categories
Elastic Stack
Ranking in Log Management
9th
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
17
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of July 2025, in the Log Management category, the mindshare of ArcSight Logger is 0.7%, down from 1.1% compared to the previous year. The mindshare of Elastic Stack is 5.4%, up from 1.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Nagendra Nekkala. - PeerSpot reviewer
A scalable and stable solution that enables users to see all the event logs in one place
The technical support team is very slow. The support persons do not take prompt action. They take too much time to implement new changes. Even if we tell them that we are not able to get critical logs, they take almost three to four days to provide a resolution. The support is not good.
Balamurali P - PeerSpot reviewer
Advanced query capabilities enhance monitoring effectiveness
Elastic Stack should be more simplified with ready-to-use widgets. Also, incorporating AI capabilities is essential as monitoring and observability tools are now adding AI features. Ideally, it should evolve into a full-stack observability tool, similar to AppDynamics or DynaTrace, which offers a solution that includes ISP provider, API monitoring, and infrastructure monitoring.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The ability to customize the solution in great detail is its most valuable features. We can customize the use cases and also have the ability to do scripting. We can personalize our dashboard as well. The scalability the solution offers is quite impressive."
"It's an efficient solution."
"The ESM use cases are the most valuable. It enables us to use the big data collection inside our company. We are able to create use cases for whatever it suits and I find that the most interesting part of any SIEM solution."
"It's a robust, mature product and you can do some really complex operations and analytics."
"ArcSight Logger is very stable and useful for customers."
"ArcSight provides the basic information that we want."
"The solution provides information about the risk factors."
"The technical support team is good...It is a scalable solution."
"The tool's most powerful aspect is its search engine capability. It's a highly effective and powerful solution for searching. We use it in professional and student projects at universities, and it delivers promising results."
"The only beneficial aspect of Elastic Stack is that it's open source."
"Prior to the latest updates, data lake management was a standout feature. The hybrid capability for on-premise and cloud integration was also crucial. Now, with Elastic Defense, the agent simplifies security monitoring, making it a key asset."
"I have experienced a return on investment from the use of the solution."
"The solution's technical support is good...Elastic Stack offers good value for value for money based on the product's features and what they offer."
"It is a very scalable solution...I didn't face any problem with this scalability part of the solution since we only have a few pieces of equipment in our company."
"The biggest strength of Elastic Stack is its brilliant archiving capabilities."
"We can group a lot of alarms into one automation alarm supervision. The alarm supervision allows us to put the alarm under the same. It's quite helpful for us. We used that to suppress our alarms. Elastic already provides the agent. It is easy to integrate Elastic Stack with other devices and vendors."
 

Cons

"The next release should have AI capabilities."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"In the next release, I want to see more intelligence."
"The product's connectors should work better and the user manuals need an update."
"We have had problems with archiving."
"I think the ArcSight team should try to simplify legacy products for the customers, because that product is not easy to use or to work with. It needs more more competency or appeal to use. We hope Micro Focus is trying to resolve this."
"I would rate the technical support only 5 out of 10. The technical support is not satisfactory."
"The solution should make it possible to integrate network analysis features."
"It should facilitate easier manual integration."
"Elastic Stack should be more simplified with ready-to-use widgets. Also, incorporating AI capabilities is essential as monitoring and observability tools are now adding AI features."
"It lacks a clear NDR (Network Detection and Response) feature. If Elastic could enhance this aspect, it would significantly boost its capabilities."
"Agent deployment is a little tough in the on-premise version."
"Support could be improved. The error code is not helpful. We have to ask for it or pass it on to community forums."
"The main issue related to Elastic Stack is in the area of its licensing."
"Elastic Stack should be more simplified with ready-to-use widgets."
"Improving integration capabilities, especially with authentication systems, firewalls, and security controls, is a crucial area for improvement in Elastic Stack. Additionally, enhancing functionality to handle large Yara queries more efficiently would be beneficial, as many EDR solutions can run such queries faster than Elastic Stack's current limitations."
 

Pricing and Cost Advice

"The pricing is quite harsh."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"I would rate the product a seven out of ten since it's an enterprise product."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"We have a lifetime license, so we don't pay a monthly fee."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"ArcSight is an expensive solution."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"Ultimately, the pricing depends upon the capacity planning that the enterprise architect does."
"The pricing is reasonable."
"It depends on the specifics, but generally, Elastic is economical for certain use cases."
"I used the open-source version of Elastic Stack, because of which I did not have to pay anything."
"We are using the open-source community version of the product."
"If I compare Elastic Stack to the other products in the market, I would say that the tool is available at a competitive price."
"I rate the solution's pricing a six out of ten."
"The product is expensive."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
861,803 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
18%
Computer Software Company
15%
Government
7%
Educational Organization
6%
Computer Software Company
13%
Financial Services Firm
10%
Government
9%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about ArcSight Logger?
We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.
What is your experience regarding pricing and costs for ArcSight Logger?
The pricing isn't the problem. We have a lifetime license, so we don't pay a monthly fee.
What needs improvement with ArcSight Logger?
This decision is made by higher management as they don't want to have multiple solutions for one solution. ArcSight Logger themselves don't provide good support, but companies such as ours provide ...
What do you like most about Elastic Stack?
The tool is huge, and it performs brilliantly. I tested it for malware, and within two weeks of launching, the product alerted me about a network intrusion. This was a tough test for it, but it per...
What is your experience regarding pricing and costs for Elastic Stack?
My experience with Elastic Stack pricing indicates that it is node-based. While I do not have complete pricing details, they are available online. If I choose Elastic Cloud, it includes licensing a...
What needs improvement with Elastic Stack?
There are improvements needed for Elastic Stack. It is mostly based on Lucene, and the heart of Elastic Stack is Lucene, which has some limitations. Anything built on top of Lucene often feels an a...
 

Comparisons

 

Also Known As

Micro Focus Arcsight Logger, HPE Arcsight Logger
No data available
 

Overview

 

Sample Customers

China Merchants Bank, Bank AlJazira, Banca Intesa
Information Not Available
Find out what your peers are saying about ArcSight Logger vs. Elastic Stack and other solutions. Updated: July 2025.
861,803 professionals have used our research since 2012.