Try our new research platform with insights from 80,000+ expert users

Cortex XSIAM vs OpenText Enterprise Security Manager comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 19, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.7
Organizations using Cortex XSIAM saw significant ROI and improved incident management through automation, though results vary short-term.
Sentiment score
4.9
OpenText Enterprise Security Manager's ROI is challenging to quantify but enhances threat detection, compliance, and organizational security efficiency.
 

Customer Service

Sentiment score
6.1
Customer service differs for Cortex XSIAM: Premium support is favored; other tiers vary in efficiency and responsiveness.
Sentiment score
5.4
OpenText Enterprise Security Manager's service is satisfactory but faces issues with technical support consistency and problem management resolution.
Premium support provides direct access, while distributor support quality can vary.
It is ineffective in terms of responding to basic queries and addressing future requirements.
The Palo Alto support team is fully responsive and helpful.
If I raise a P1 or P0 ticket, the response time is often delayed by four to eight hours.
 

Scalability Issues

Sentiment score
6.8
Cortex XSIAM is praised for scalability and flexibility, though some desire improved on-premises options and integration capabilities.
Sentiment score
5.9
OpenText Enterprise Security Manager offers strong scalability but is costly, requiring expertise and careful budgeting for extensive deployments.
Without proper integration, scaling up with more servers is meaningless.
Cortex XSIAM is highly scalable.
It lacks some capabilities compared to other tools available in the market.
 

Stability Issues

Sentiment score
7.5
Cortex XSIAM is highly stable, despite occasional issues, praised for reliability, installation ease, and performance across environments.
Sentiment score
5.1
OpenText Enterprise Security Manager is reliable but depends on proper setup; issues are rare when optimized correctly.
The product was easy to install and set up and worked right.
Overall, Cortex XSIAM is stable.
The stability of ArcSight Enterprise Security Manager (ESM) is not very robust.
 

Room For Improvement

Cortex XSIAM needs better integration, user interface, and performance, with improvements in vulnerability detection, support, and licensing options.
OpenText Enterprise Security Manager needs UI upgrades, performance improvements, better integration, support, deployment, analytics, and scalability enhancements.
Obtaining validation for integrations from Palo Alto takes around eight months, which is quite long.
Cortex XSIAM needs improvements in terms of data onboarding, parsers, and third-party integration supports.
Improvements could be made to the dashboard and GUI, making it easier to deploy.
The integration aspect of ArcSight Enterprise Security Manager (ESM) needs improvement.
 

Setup Cost

Cortex XSIAM's competitive pricing faces mixed reviews, with additional costs for add-ons and integration despite perceived value.
OpenText Enterprise Security Manager pricing, while high, is justified by its robust features and deemed competitive for enterprise needs.
The first impression is that XSIAM would be more expensive than others we tried.
The product is very expensive.
Cortex XSIAM is pretty expensive, and the licensing process is not very comfortable.
ArcSight Enterprise Security Manager (ESM) is very cheap compared to other tools.
 

Valuable Features

Cortex XSIAM offers advanced SOAR capabilities, enhancing security with machine learning, automation, and efficient threat detection without extensive logs.
OpenText Enterprise Security Manager offers powerful integration, real-time threat detection, customization, and robust event management for security teams.
One of the valued aspects of the product is its use of artificial intelligence to detect security vulnerabilities.
Its signature-less subscriptions and robust detection power stand out in improving threat detection.
Cortex XSIAM allows us to onboard almost every device, whether they are on-prem or on SaaS.
The ability to interpret data is highly valued.
 

Categories and Ranking

Cortex XSIAM
Ranking in Security Information and Event Management (SIEM)
15th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
13
Ranking in other categories
Identity Threat Detection and Response (ITDR) (5th), AI-Powered Cybersecurity Platforms (7th)
OpenText Enterprise Securit...
Ranking in Security Information and Event Management (SIEM)
22nd
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
98
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2025, in the Security Information and Event Management (SIEM) category, the mindshare of Cortex XSIAM is 2.9%, up from 1.4% compared to the previous year. The mindshare of OpenText Enterprise Security Manager is 1.4%, up from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
 

Featured Reviews

AKASH MAJUMDER - PeerSpot reviewer
Incident response times have significantly reduced with efficient device integration and log parsing capabilities
Cortex XSIAM needs improvements in terms of data onboarding, parsers, and third-party integration supports. Additionally, a future update request is to enable tagging of endpoints in groups, similar to a feature available in Cortex XDR. The AI analytics need fine-tuning because some use cases are not working from my side.
Gaurav Ranade - PeerSpot reviewer
Excels at performing regression and correlation on the data
ArcSight is a legacy technology, and many customers want AI-powered technologies integrated with it. That hasn't been done yet, but ArcSight needs to catch up with the newer solutions and technologies available in the market. It can't just rely on the legacy technology from 2010 or 2012. You can't run that in 2024. It's a legacy technology with its own limitations. Customers often face issues that other software or newer solutions can resolve easily. That's the main challenge we face from customers right now. So, the only concerns are that AI needs to be integrated and scalability improved. Those are the main areas to be improved.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
865,384 professionals have used our research since 2012.
 

Comparison Review

VS
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Manufacturing Company
10%
Financial Services Firm
10%
Government
7%
Financial Services Firm
15%
Computer Software Company
13%
Manufacturing Company
11%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cortex XSIAM?
It is an effective solution in terms of performance and functionalities.
What is your experience regarding pricing and costs for Cortex XSIAM?
The licensing cost of Cortex XSIAM is more or less the same as Splunk, making it quite expensive compared to other tools. There are additional expenses for more functionalities.
What needs improvement with Cortex XSIAM?
Cortex XSIAM needs improvements in terms of data onboarding, parsers, and third-party integration supports. Additionally, a future update request is to enable tagging of endpoints in groups, simila...
Which is the best SIEM tool for a mid-sized financial services firm: Arcsight or Securonix?
In my market, a lot of financial companies had or have an ArcSight installation. Just because in former times it was pretty good. Now a lot of them are looking for a more effective solution due to ...
What do you like most about ArcSight Enterprise Security Manager (ESM)?
We utilize ArcSight ESM for real-time threat detection in our organization. We have custom rules that we've developed on top of the WAN services, along with scheduled licensing activities.
What is your experience regarding pricing and costs for ArcSight Enterprise Security Manager (ESM)?
ArcSight Enterprise Security Manager (ESM) is very cheap compared to other tools. It is worth the investment if you are considering the cost.
 

Also Known As

No data available
Micro Focus ArcSight, HPE ArcSight, ArcSight
 

Overview

 

Sample Customers

Information Not Available
Lake Health, U.S. Department of Health and Human Services, Bank AlJazira, Banca Intesa, and Obrela.
Find out what your peers are saying about Cortex XSIAM vs. OpenText Enterprise Security Manager and other solutions. Updated: July 2025.
865,384 professionals have used our research since 2012.