No more typing reviews! Try our Samantha, our new voice AI agent.

Coralogix vs NetWitness Platform comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Coralogix
Ranking in Log Management
10th
Ranking in Security Information and Event Management (SIEM)
10th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
22
Ranking in other categories
Application Performance Monitoring (APM) and Observability (12th), API Management (10th), Streaming Analytics (10th), Anomaly Detection Tools (2nd), AI Observability (8th)
NetWitness Platform
Ranking in Log Management
36th
Ranking in Security Information and Event Management (SIEM)
35th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2026, in the Log Management category, the mindshare of Coralogix is 1.5%, up from 0.9% compared to the previous year. The mindshare of NetWitness Platform is 1.2%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Coralogix1.5%
NetWitness Platform1.2%
Other97.3%
Log Management
 

Featured Reviews

Arka Sarkar - PeerSpot reviewer
Technical Solution Support Development Engineer at Ericsson Global
Centralized monitoring has transformed telecom troubleshooting and now reduces downtime proactively
Coralogix works well for our needs, but there are a few areas where improvements can be made. One area is querying performance for large-scale data sets. When we are dealing with very high log volumes, some complex queries take time to return results. Improving query speed and optimization would enhance the troubleshooting experience. Another point is the learning curve for advanced features. While basic usage is straightforward, advanced querying and dashboard configurations can take time for new users we are onboarding. We have faced this situation in our organization's domain frequently. More simplified UI options or guided templates would help new team members onboard faster. Additionally, dashboard customization flexibility needs improvement. Although dashboards are useful, having more flexibility in customization would make them even more powerful. An important point is cost optimization. Since log volume is high in our environment, better visibility and control over cost optimization would be beneficial. These are minor improvements overall. Coralogix already provides strong capabilities for centralized logging and monitoring, but enhancing these areas would make it even more efficient for large-scale environments in our telecom servers. Improvements could include query performance, alert noise reduction, and ease of use for advanced features, especially for large-scale environments like ours.
reviewer1130436 - PeerSpot reviewer
Information Technology Security and Infrastructure Expert at a government with 201-500 employees
Helps to deal with potential attacks and is available at a reasonable price
My company has had many benefits from the use of the product in the last eight years. The tool has streamlined our company's incident response process since it serves as a log repository, which allows us to correlate events and access different technology stacks. In our company, we were able to actually find some potential attacks, so it has been very helpful. The tool's integration capability isn't so great. In my company, we managed to integrate it with our Microsoft Azure Subscription, after which we managed to integrate it with other tools. You will face a lot of difficulties if you want to integrate it with your database monitoring tool, PAM solutions, or IAM products. The product has done well overall for my company's teams to deal with their workflow efficiency. I would not recommend the product to others. I rate the tool a seven out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The initial setup is straightforward."
"Functionality-wise, this product is more mature compared to them, plus there are additional capabilities, for example, I can keep my cost in check, and certain functionality in these terms of cost control is better."
"I have worked on multiple logging systems, and I would say Coralogix was the best among those."
"Support is great; they are helpful and responsive, and they are the greatest support team that I ever worked with, especially in comparison with AWS support’s premium tier where Coralogix is a few times better than even AWS support."
"In my opinion, the best feature of Coralogix is that it's convenient to look at errors."
"A non-tech person can easily get used to it."
"After implementing Coralogix, I noticed specific outcomes and improvements; whenever we try to fetch the data or check the monitoring logs, the spikes, the bars, and the graphs open very quickly, the latency is really very low, and it opens everything very fast, which makes a good impact on our organization."
"It's been absolutely brilliant, I would say."
"The most valuable features are the packet decoder, log decoder, and concentrator."
"It gives customers visibility about their most important servers and devices."
"The most valuable features are the integration and ease of use."
"Overall, I feel that the product is very good and my biggest complaint is about their support."
"The product's initial setup phase was not at all difficult."
"The most valuable features are its ingestion of logs and raising of alerts based on those logs."
"The detection of ransomware in the internal network has benefited my organization."
"The most valuable features are the packet inspection and the automated incident response."
 

Cons

"The user interface is not intuitive, especially when first onboarding, and improvements could be made here."
"Coralogix can be improved by cleaning up the UI, as it is too cluttered. If the search speed could also be improved, that would be helpful."
"The main pain issue for me with Coralogix was that the syntax was a little tricky."
"Coralogix works well for our needs, but there are a few areas where improvements can be made."
"I see room for improvement in Coralogix regarding the cost, as they can reduce the costs for the license."
"I think Coralogix can be improved by setting up some AI type of tool inside it which can help new users."
"Coralogix can be improved by having better documentation to help new people onboard into this platform and understand the systems, including how they can integrate their cloud provider to better understand how Coralogix and the cloud provider work in sync."
"The customizable dashboards haven't really helped with my company's efficiency at all, and I think there's room for improvement."
"The tool's integration capability isn't so great."
"I cannot say that the solution was stable because it tended to crash."
"Security needs improvement. We would still like to know how the traffic is entering the organization."
"The implementation needs assistance."
"RSA NetWitness Logs and Packets can improve the threat level aspect, it is lacking compared to other solutions."
"I believe they could improve their support, there are often delays."
"The initial setup is complex. There are other solutions that are easier to implement."
"I am not happy with the RSA support. Sometimes they can be really annoying because it takes so long to get the support that you need."
 

Pricing and Cost Advice

"We are paying roughly $5,000 a month."
"Currently, we are at a very minimal cost, which is around $400 per month since we have reduced our usage. Initially, we were at $900 per month."
"The platform has a reasonable cost. I rate the pricing a three out of ten."
"The cost of the solution is per volume of data ingested."
"This is a pricey solution; it's not cheap."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"Our license is for one year."
"RSA NetWitness Logs and Packets do not have a subscription model, it's a one-time purchase. There is only a perpetual license."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
"Compared to the competition, the is price is not that high."
"It’s cheaper to run virtual machines in a VMware environment."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Outsourcing Company
10%
Manufacturing Company
10%
Comms Service Provider
8%
Construction Company
12%
Financial Services Firm
11%
Comms Service Provider
10%
Outsourcing Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
 

Questions from the Community

What is your experience regarding pricing and costs for Coralogix?
My experience with Coralogix pricing and licensing has been generally positive, especially considering the value it provides in terms of monitoring and troubleshooting. It follows a usage-based pri...
What needs improvement with Coralogix?
Coralogix works well for our needs, but there are a few areas where improvements can be made. One area is querying performance for large-scale data sets. When we are dealing with very high log volu...
What is your primary use case for Coralogix?
In my organization, particularly in Ericsson's telecom BSS domain, the primary use case of Coralogix is centralized log management and real-time monitoring of telecom applications, such as the BSS ...
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
 

Also Known As

No data available
RSA Security Analytics
 

Overview

 

Sample Customers

Payoneer, AGS, Monday.com, Capgemini
Los Angeles World Airports, Reply
Find out what your peers are saying about Coralogix vs. NetWitness Platform and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.