No more typing reviews! Try our Samantha, our new voice AI agent.

ArcSight Logger vs Falcon LogScale comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Logger
Ranking in Log Management
40th
Average Rating
7.6
Reviews Sentiment
5.8
Number of Reviews
32
Ranking in other categories
No ranking in other categories
Falcon LogScale
Ranking in Log Management
17th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Log Management category, the mindshare of ArcSight Logger is 0.9%, up from 0.8% compared to the previous year. The mindshare of Falcon LogScale is 0.8%, up from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Falcon LogScale0.8%
ArcSight Logger0.9%
Other98.3%
Log Management
 

Featured Reviews

MA
Sr. Cybersecurity Consultant IT/OT at EJADA
Compliance and cost-effectiveness have improved while critical infrastructure security adapts to evolving needs
ArcSight Logger fulfills compliance requirements and passes audit requirements. It is one of the Aramco standards requirements and is recommended by Aramco for any implementation. Aramco, SABIC, water companies, and electricity companies are critical infrastructure with air-gapped networks. In an air-gapped network, there is no communication going out from that network area to the outside world, even to the corporate network. ArcSight Logger is installed on minimal resources with minimal requirements. There are not many upgrades or new features that come up frequently, though they do occur occasionally.
Oluwajuwon Olorunlona - PeerSpot reviewer
Cyber Security Engineer at eprocessconsulting
Advanced threat hunting has improved visibility and has simplified custom query automation
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforward. It is not easy to quickly find the documentation, especially if you are using CrowdStrike. Most customers use Falcon LogScale because of CrowdStrike. The documentation of Falcon LogScale is not on the CrowdStrike portal just like the rest of Falcon documentation. I usually find that the main Falcon LogScale documentation is found on the Falcon LogScale website itself. I think there should be a link or direct documentation within the CrowdStrike pages. It is not necessarily a fault. If you find where the documentation resides, you can trace it to what they are doing. However, for the ease of use for Falcon administrators, the same documentation on the Falcon LogScale portal should be on the CrowdStrike dashboard.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Some of the most valuable features I really appreciate are the performance, how quick the solution is, and how easy it is to create a query."
"It's a robust, mature product and you can do some really complex operations and analytics."
"The ESM use cases are the most valuable. It enables us to use the big data collection inside our company. We are able to create use cases for whatever it suits and I find that the most interesting part of any SIEM solution."
"The most important thing is the scalability of the product and its ease of use."
"The most valuable feature is the level of detail that you can see about certain events, even when they do not come up in the console."
"The most valuable feature is the search capability, which is simple to use."
"ArcSight Logger is very stable and useful for customers."
"The ability to customize the solution in great detail is its most valuable features. We can customize the use cases and also have the ability to do scripting. We can personalize our dashboard as well. The scalability the solution offers is quite impressive."
"One of the key features is the fast search functionality, enabling us to get results within a few seconds."
"Falcon LogScale offers excellent features, with scalability being the most notable, and the search speed stands out to me as particularly good."
"Falcon LogScale's insights give you a lot of information that an expert already thought would be valuable for you."
"Falcon LogScale seems to be a better option with better visibility when it comes to the dashboard and the kill chain process, including the attack surface."
"The biggest advantages of Falcon LogScale are the speed at which the queries return to you and the ease of use."
"I have only heard the best about CrowdStrike's support."
"Falcon LogScale stores logs without heavy indexing and searches directly, making it very fast."
"It offers the capability to view live log ingestion directly from the console which means you can seamlessly manage live log data ingestion alongside accessing and analyzing older data from the past."
 

Cons

"ArcSight Logger doesn't have features for user or customer behavior analysis."
"They are migrating to Splunk because ArcSight Logger doesn't have those features for user or customer behavior analysis."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"I had some latency issues for two months. I had to increase our storage capacity significantly to reduce the latency."
"It would be better if the product is cheaper."
"The only thing I did not particularly like about the product was its speed on the web interface."
"The platform is quite expensive. They should reduce its cost."
"Overall, it is a good system for what we use it for, but some licensing parts are really annoying."
"The integration could improve."
"KQL is a bit challenging for us."
"One area of Falcon LogScale that I think could be improved is that it is a bit complex."
"That is a difficult question regarding Falcon LogScale. That is really a question for the professionals, and I am not a professional, so I do not know."
"The price could be lower."
"One more point about areas for improvement is the visualization depth. Splunk, which I used, has very good visualization compared to Falcon LogScale."
"There are some overlapping features found in multiple tools."
"CrowdStrike support is not good."
 

Pricing and Cost Advice

"We have a lifetime license, so we don't pay a monthly fee."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"I would rate the product a seven out of ten since it's an enterprise product."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"The pricing is quite harsh."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"ArcSight is an expensive solution."
Information not available
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Computer Software Company
7%
Marketing Services Firm
7%
Comms Service Provider
7%
Computer Software Company
16%
Manufacturing Company
11%
Comms Service Provider
7%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise10
Large Enterprise16
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise2
 

Questions from the Community

What do you like most about ArcSight Logger?
We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.
What is your experience regarding pricing and costs for ArcSight Logger?
The pricing isn't the problem. We have a lifetime license, so we don't pay a monthly fee.
What needs improvement with ArcSight Logger?
This decision is made by higher management as they don't want to have multiple solutions for one solution. ArcSight Logger themselves don't provide good support, but companies such as ours provide ...
What needs improvement with Falcon LogScale?
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforwa...
What is your primary use case for Falcon LogScale?
I primarily use CrowdStrike, along with some other solutions. I have been using Falcon LogScale for approximately a year now.I like Falcon LogScale for threat hunting primarily. I use it to make qu...
What advice do you have for others considering Falcon LogScale?
I am also involved with Airlock and sometimes use Airlock application control too. One of the requirements is to have a SIEM. For you to be able to have visibility into everything going on in your ...
 

Also Known As

Micro Focus Arcsight Logger, HPE Arcsight Logger
No data available
 

Overview

 

Sample Customers

China Merchants Bank, Bank AlJazira, Banca Intesa
Information Not Available
Find out what your peers are saying about ArcSight Logger vs. Falcon LogScale and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.