No more typing reviews! Try our Samantha, our new voice AI agent.

Arista NDR vs Auvik Network Management (ANM) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Arista NDR
Ranking in Network Traffic Analysis (NTA)
9th
Average Rating
9.0
Reviews Sentiment
7.6
Number of Reviews
14
Ranking in other categories
Network Detection and Response (NDR) (17th)
Auvik Network Management (ANM)
Ranking in Network Traffic Analysis (NTA)
2nd
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
209
Ranking in other categories
Network Monitoring Software (3rd), IT Infrastructure Monitoring (3rd), Network Troubleshooting (1st), Cloud Monitoring Software (4th)
 

Mindshare comparison

As of June 2026, in the Network Traffic Analysis (NTA) category, the mindshare of Arista NDR is 5.6%, down from 6.3% compared to the previous year. The mindshare of Auvik Network Management (ANM) is 4.5%, up from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Traffic Analysis (NTA) Mindshare Distribution
ProductMindshare (%)
Auvik Network Management (ANM)4.5%
Arista NDR5.6%
Other89.9%
Network Traffic Analysis (NTA)
 

Featured Reviews

it_user1719513 - PeerSpot reviewer
Chief Technology Officer at a financial services firm with 11-50 employees
it's much easier to create your own queries and hunt for threats
We take in IOCs from my SOC and from AlienVault, and then we focus on traffic that hits IOCs and alerts us to it. The one thing that the Awake platform lacks is the ability to automate the ingestion of IOCs rather than having to import CSV files or JSON files manually. Awake didn't support the manual importation of CSV and JSON in version 3.0, but they added it in version 4.0. It's helpful, but it still has to be a specific CSV format. Automated IOCs are on the roadmap. Hopefully, they will be able to automate the ingestion of IOCs by Q1 next year. I'm currently leveraging Mind Meld, an open-source tool by Palo Alto, to ingest IOCs from external parties. I aggregate those lists and spit them out as a massive list of domains, hashes, file names, IPS. Then we aggregate those into their own specific categories, like a URL category. Awake ingests that just like the Palo Alto firewall does, and then it alerts me if traffic attempts to go into it. Some of that is already on the Palo Alto firewall, which blocks it, but that doesn't mean that there is no attempted communication. I want to know if there's a communication attempt because there might be an indicator on that specific device trying to reach an IOC. Yes, my Palo Alto blocked it, but there's still something odd sitting there, and what if it can reach a different IOC that I don't have information about? I want to focus on it. I could do that by leveraging Awake if it could ingest the IOCs automatically. That's something I leverage Awake for today. I still have to manually import it, which is cumbersome because I have to manipulate the files that I get from the different IOC providers into a specific format that it understands. Once they add the ability to automate that, it'll be more useful.
reviewer2349501 - PeerSpot reviewer
Manager, Technical Services at a computer software company with 11-50 employees
Real-time network visibility has transformed how we pinpoint LAN bottlenecks and resolve issues faster
The only area for improvement is pricing. Otherwise, the tool is great. I think the pricing is acceptable. If you are working with resellers, it makes it a little bit difficult sometimes for the reseller to be able to make too much, as the margin is not all that significant. However, we are not getting rid of Auvik Network Management (ANM). That is the only thing in my opinion that Auvik Network Management (ANM) can do a little bit better on—maybe just the pricing—but it is a great tool. We are not replacing it with anything and we are not removing it at all. It is a great tool, and we are able to monitor our own internal network as well as that of our customers. In most cases, we have not had any complaints about neither from my techs or from myself about its functionality, as it works really.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We switched to Awake Security because they were able to offer a model that was significantly less expensive and the value that we get out of it is higher."
"The most valuable feature is the ability to see suspicious activity for devices inside my network. It helps me to quickly identify that activity and do analysis to see if it's expected or I need to mitigate that activity quickly."
"We appreciate the value of the AML (structured query language). We receive security intel feeds for a specific type of malware or ransomware. AML queries looking for the activity is applied in almost real-time. Ultimately, this determines if the activity was not observed on the network."
"Other solutions will say, "Hey, this device is doing something weird." But they don't aggregate that data point with other data points. With Awake you have what's called a "fact pattern." For example, if there's a smart toaster on the third floor that is beaconing out to an IP address in North Korea, sure that's bizarre. But if that toaster was made in North Korea it's not bizarre. Taking those two data points together, and automating something using machine-learning is something that no other solution is doing right now."
"Awake has really easy of use; it was just far easier to use as far as seeing rich, actionable data than LogRythm, with less of a learning curve to understand what they were trying to represent."
"When I create a workbench query in Awake to do threat hunting, it's much easier to query. You get a dictionary popup immediately when you try to type a new query. It says, "You want to search for a device?" Then you type in "D-E," and it gives you a list of commands, like device, data set behavior, etc. That gives you the ability to build your own query."
"The query language that they have is quite valuable, especially because the sensor itself is storing some network activity and we're able to query that. That has been useful in a pinch because we don't necessarily use it just for threat hunting, but we also use it for debugging network issues. We can use it to ask questions and get answers about our network. For example: Which users and devices are using the VPN for RDP access? We can write a query pretty quickly and get an answer for that."
"It gives us something that is almost like an auditing tool for all of our network controls, to see how they are performing. This is related to compliance so that we can see how we are doing with what we have already implemented. There are things that we implemented, but we really didn't know if they were working or not. We have that visibility now."
"I like the ability to remotely access devices securely. The multi-site setup has also been useful. Once we learned how to set that up, we could customize each site and push out common information like SNMP credentials from the parent site to other multi-sites. The automatic network layout is excellent, and the overall monitoring is also beneficial."
"Based on past experience, Auvik saves me three to four hours daily."
"The fact that it provides a single, integrated platform for our organization is important as well. Having 50 different accounts to log into would make things difficult at times."
"I would rate Auvik Network Management a ten out of ten."
"Auvik Network Management (ANM) has positively impacted my organization by giving us one place to look to get a full picture of a customer's network environment without having to jump to multiple dashboards."
"Auvik automatically updates network topology. Since it automatically updates the topology, we proactively know what is happening in a country or our branch offices. It also alerts us if there is a topology change, e.g., if it discovers anything new in that country. So, it has reduced the number of failures in our operations. We went from being reactive to proactive. So, we are no longer reacting to what is happening and others are doing. This has saved us about two to three hours a day. We used to spend two to three hours every morning checking the firewall and router logs for malicious behavior."
"It also integrates with our ticketing system. We use ConnectWise and having that integration is valuable for billing and for all-around general management. Having one product that can integrate with everything is valuable because we don't have to worry about building out APIs or custom maps to do that for us."
"The appeal lies in the unified dashboard, providing a single view encompassing all aspects of my network."
 

Cons

"There's room for improvement with some of the definitions, because I don't have time and I'm not a Tier 4 analyst. I believe that is something they're working towards."
"They've been focused on really developing their data science, their ability to detect, but over time, they need to be able to tie into other systems because other systems might detect something that they don't."
"One concern I do have with Awake is that, ideally, it should be able identify high-risk users and devices and entities. However, we don't have confidence in their entity resolution, and we've provided this feedback to Awake. My understanding is that this is where some of the AI/ML is, and it hasn't been reliable in correctly identifying which device an activity is associated with. We have also encountered issues where it has merged two devices into one entity profile when they shouldn't be merged. The entity resolution is the weakest point of Awake so far."
"It's important that Awake continues to develop its APIs to be able to help intertwine their product into the overall security architecture of a company, just because it is a single tool."
"Some of the searching capability is a bit hard to use without in-depth knowledge."
"I would like to see the capability to import what's known as STIX/TAXII in an IOC format. It currently doesn't offer this."
"While the appliance is very good, and I think they're working on it, it would probably help if they integrated the management team cases into the appliance so that everything we are working on with them would be accessible on our platform, on the dashboard, on the portal. Right now, Awake is just an additional team that uses the appliance that we use and then we communicate with them directly. Communication isn't through the portal."
"One thing I would like to see is a little bit more education or experience on AWS cloud for their managed services team. We've explained how we have the information set up, that the traffic coming in goes to the AWS load balancer and then gets sent on to our internal servers... but when I get notices they always tell me this traffic is coming from the IPs belonging to the load balancers, not the source IPs. So a little bit more education for their team about how AWS manages the traffic might help out."
"There have been times when our SNMP community strings were incorrect or weren't updated for whatever reason, and Auvik kept trying to scan them. Changing it was a pain, and there wasn't a way to extract that from Auvik. I understand there are valid security reasons why we wouldn't want to do that sometimes. In those situations, we had to recreate those community strings and reapply them to various devices."
"I'd probably like a little bit more mapping functionality. It gives me a visual overlay of the way that one network segment links to another, but I can't adjust it. Everything is at an equal distance, which makes sense, but I'd probably group some of the things closer and further as it reflects in reality, but I can't do that right now on their system."
"The price shouldn't be an issue for a larger organization, but a smaller organization or an MSP might struggle because the billing is per device. You're paying for your firewalls and devices that appear on the network. If you have a smaller organization with an extensive network, your revenue won't be able to support that cost. That's probably the biggest downside for me."
"Some of the automation pieces for discovery still need a little bit more improvement."
"We were unable to integrate Auvik with a geographical map, which limited our ability to track issues to specific buildings on campus."
"Auvik mostly supports large vendors such as the Cisco Aruba networks, Meraki, and Extreme Networks."
"The automation side needs improvement... A really important one was about a SonicWall firewall that needs to be rebooted every single month. You can do that in the SonicWall GUI, but you can't do it in Auvik. Hundreds of people have endorsed the idea of having an automated command line interface command run on any device that supports it."
"The deployment of the probe onto a particular device could be improved. That usually requires one of our level-two people to step in from the help desk team. It would be much better if it were a click-and-go deployment. What I would like to see in particular is the ability to download an MSI builder for a probe for a particular building. We would simply double-click and install it onto the machine and have it work. Having to roll through with the entire API key is a little time-consuming."
 

Pricing and Cost Advice

"Because I represent a hedge fund, I have some leverage. I told them that they had to meet my conditions if they wanted me as a client. It was the same way with Awake. They wanted an initial four-year agreement. Initially, we signed on for a one-year contract, but they wanted the four-year deal when it came time for the renewal. I told them that I was not doing that. I said that they either had to do it on my terms, or I'd go somewhere else."
"The solution has saved thousands of dollars within the first day. Our ROI has to be in the tens of thousands of dollars since October last year."
"Awake Security was the least expensive among their competitors. Everyone was within $15,000 of each other. The other solutions were not providing the MNDR service, which is standard with Awake Security's pricing/licensing model."
"We switched to Awake Security because they were able to offer a model that was significantly less expensive and the value that we get out of it is higher."
"Awake's pricing was very competitive. It's not a cheap option though. It's an investment to utilize it, but it's one that we decided was worth the cost, with the managed services. At our scale, it was a much better option to utilize their software and their managed services to handle this, rather than hiring another person to be an analyst. It was quite cost-effective for us."
"The pricing seems pretty reasonable for what we get out of it. We also found it to be more competitive than some other vendors that we've looked at."
"The solution is very good and the pricing is also better than others..."
"Auvik is significantly cheaper than what we were using before."
"The price of Auvik is okay. It is appropriate for the market."
"The cost for all the devices that we were billed at in my last job was about $2500 annually. It wasn't much. It has the most reasonable pricing as compared to any product out there. I can't complain. It is amazing. It allows me to bundle inside the package what I charge customers per user per month. I don't charge them per device anymore. That's not how we do things in the industry. It is per user per month. The way Auvik is charging us allows me to do it. For example, if they charge $250 for a certain number of seats, I'm just going to write the costs onto per user per month. I have a few leftover licenses to use, which allows me to go out and make some more sales and give some freebies at some shows. So, it makes me very flexible. I am very happy with it. It is billed by network devices. You could choose which billable device you want. What is really nice is that if you don't want one switch to be billable and the other one to be billable, you can do that. You just won't have the features that the billable switch has, which isn't horrible. Sometimes, you don't need that. What I'm really happy about is that Auvik doesn't force things on you and doesn't say, "You have to have all of this," and that's a great business model."
"Its licensing is very fair. The devices that stand to gain the most benefit from this product are the ones that are billed. In the case of routers, switches, and firewalls, I won't necessarily have the ability to put a management agent on them to gather errors and activity logs. This type of solution is a requirement for me to properly monitor and manage these devices. The devices that aren't being billed are workstation servers, etc. For those devices, I can put agents on them to monitor their health. It has a fair billing structure."
"The pricing could be tiered so that you get a discount for more devices. We're fairly early on in the billing process, but it could be slightly cheaper."
"Auvik Network Management's pricing was surprisingly reasonable."
"I'm not on the procurement side, but I understand that the license is based on devices, not sensors. If you have 10 switches and one firewall, you count per device. You'll have 100 devices if there are 10 sites with the same setup. I think it's a lot more expensive to monitor 100 sensors in PRTG."
"Auvik's pricing is generally reasonable."
report
Use our free recommendation engine to learn which Network Traffic Analysis (NTA) solutions are best for your needs.
902,417 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Computer Software Company
8%
Comms Service Provider
7%
Government
7%
Construction Company
10%
Comms Service Provider
10%
Financial Services Firm
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise2
Large Enterprise7
By reviewers
Company SizeCount
Small Business148
Midsize Enterprise32
Large Enterprise23
 

Questions from the Community

Ask a question
Earn 20 points
What is your experience regarding pricing and costs for Auvik?
Auvik Network Management (ANM) has competitive pricing and licensing, competitive to LogicMonitor, but it is a different kind of product. So it is not really compared to something else, but I think...
What needs improvement with Auvik?
Regarding the dashboard, it is not as customizable as I would like it to be, or at least as we would like it to be. I have experience with some other products, such as LogicMonitor. It has a very e...
What is your primary use case for Auvik?
I could do that for Auvik Network Management (ANM). I tested that product a few weeks ago because we were evaluating to move to something else. I tried to use Auvik Network Management (ANM) for net...
 

Also Known As

Awake Security Platform
No data available
 

Overview

 

Sample Customers

- Dolby Laboratories- Seattle Genetics- ARM Energy- Ooma- Prophix- Yapstone
Information Not Available
Find out what your peers are saying about Arista NDR vs. Auvik Network Management (ANM) and other solutions. Updated: June 2026.
902,417 professionals have used our research since 2012.