ArcSight Logger vs Security Onion comparison

Cancel
You must select at least 2 products to compare!
OpenText Logo
2,199 views|2,057 comparisons
80% willing to recommend
Security Onion Solutions, LLC Logo
3,263 views|2,753 comparisons
66% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between ArcSight Logger and Security Onion based on real PeerSpot user reviews.

Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed ArcSight Logger vs. Security Onion Report (Updated: April 2024).
770,141 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"It's a brilliant log collection tool, and it can handle hundreds of thousands of servers in a single shot to ingest the data.""I am impressed with the product's ability to pick up logs. It also has UEBA which has reduced the time to take charge of the events.""The most valuable feature is the level of detail that you can see about certain events, even when they do not come up in the console.""We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.""We check a lot of logs in ArcSight Logger because we're running a massive database platform.""The solution provides information about the risk factors.""The ESM use cases are the most valuable. It enables us to use the big data collection inside our company. We are able to create use cases for whatever it suits and I find that the most interesting part of any SIEM solution.""ArcSight provides the basic information that we want."

More ArcSight Logger Pros →

"Security Onion is the most mature solution in the market.""We use Security Onion for internal vulnerability assessment.""The most valuable feature of Security Onion for security monitoring is its ability to find infected ports."

More Security Onion Pros →

Cons
"The product's connectors should work better and the user manuals need an update.""The solution should make it possible to integrate network analysis features.""You have limited reporting capabilities and I wouldn't choose ArcSight Logger for this purpose.""I had some latency issues for two months. I had to increase our storage capacity significantly to reduce the latency.""I would like to see better scheduling in the next release of this solution.""The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved.""We have had problems with archiving.""The solution must provide readymade connectors for different applications."

More ArcSight Logger Cons →

"The product is not easy to learn.""The initial setup of the solution is a little bit difficult.""Security Onion's user interface could be improved."

More Security Onion Cons →

Pricing and Cost Advice
  • "ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
  • "The pricing is quite harsh."
  • "It's not cheap at all as it's a big product and has been in the market for quite some time now."
  • "ArcSight is an expensive solution."
  • "I would rate the product a seven out of ten since it's an enterprise product."
  • "I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
  • "Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
  • "We have a lifetime license, so we don't pay a monthly fee."
  • More ArcSight Logger Pricing and Cost Advice →

  • "Security Onion is a free solution."
  • "It is an open-source solution."
  • "Security Onion is an open-source solution."
  • More Security Onion Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Log Management solutions are best for your needs.
    770,141 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: The machine learning is a good feature.
    Top Answer:Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses.
    Top Answer:The next release should have AI capabilities.
    Top Answer:The most valuable feature of Security Onion for security monitoring is its ability to find infected ports.
    Top Answer:Security Onion is an open-source solution. On a scale from one to ten, where ten is expensive and one is cheap, I rate the solution's pricing a six out of ten.
    Top Answer:The initial setup of the solution is a little bit difficult.
    Ranking
    28th
    out of 95 in Log Management
    Views
    2,199
    Comparisons
    2,057
    Reviews
    9
    Average Words per Review
    334
    Rating
    7.2
    33rd
    out of 95 in Log Management
    Views
    3,263
    Comparisons
    2,753
    Reviews
    3
    Average Words per Review
    330
    Rating
    7.7
    Comparisons
    Also Known As
    Micro Focus Arcsight Logger, HPE Arcsight Logger
    Learn More
    Overview
    HPE ArcSight Data Platform (ADP) offers a future-ready data solution that enriches data in real time and supports open standards for better threat detection. Using security data connectors, ADP collects data and enriches it in real-time to give analysts organized information that can be acted upon instantly.

    Security Onion is a free and open Linux distribution for threat hunting, enterprise security monitoring, and log management. The easy-to-use Setup wizard allows you to build an army of distributed sensors for your enterprise in minutes!
    Security Onion includes a native web interface with built-in tools analysts use to respond to alerts, hunt for evil, catalog evidence into cases, monitor grid performance, and much more. Additionally, third-party tools, such as Elasticsearch, Logstash, Kibana, Suricata, Zeek (formerly known as Bro), Wazuh, Stenographer, CyberChef, NetworkMiner, and many more are included.

    Sample Customers
    China Merchants Bank, Bank AlJazira, Banca Intesa
    Information Not Available
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Government22%
    Comms Service Provider17%
    Retailer6%
    VISITORS READING REVIEWS
    Financial Services Firm17%
    Computer Software Company14%
    Government11%
    Comms Service Provider8%
    VISITORS READING REVIEWS
    Computer Software Company13%
    Government11%
    University10%
    Comms Service Provider9%
    Company Size
    REVIEWERS
    Small Business24%
    Midsize Enterprise30%
    Large Enterprise45%
    VISITORS READING REVIEWS
    Small Business20%
    Midsize Enterprise15%
    Large Enterprise65%
    VISITORS READING REVIEWS
    Small Business29%
    Midsize Enterprise19%
    Large Enterprise52%
    Buyer's Guide
    ArcSight Logger vs. Security Onion
    April 2024
    Find out what your peers are saying about ArcSight Logger vs. Security Onion and other solutions. Updated: April 2024.
    770,141 professionals have used our research since 2012.

    ArcSight Logger is ranked 28th in Log Management with 31 reviews while Security Onion is ranked 33rd in Log Management with 3 reviews. ArcSight Logger is rated 7.8, while Security Onion is rated 7.6. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of Security Onion writes "A mature and affordable solution that is easy to install and easy to update". ArcSight Logger is most compared with Splunk Enterprise Security, IBM Security QRadar, Elastic Security, Wazuh and LogRhythm SIEM, whereas Security Onion is most compared with Wazuh, Elastic Stack, TheHive, Splunk Enterprise Security and Graylog. See our ArcSight Logger vs. Security Onion report.

    See our list of best Log Management vendors.

    We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.