Try our new research platform with insights from 80,000+ expert users

Cribl vs Securonix Next-Gen SIEM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.3
Cribl enhanced data management efficiency, delivering cost savings, improved processing speed, system performance, and operational flexibility for users.
Sentiment score
3.1
Securonix Next-Gen SIEM delivers ROI through cost savings, operational efficiency, quick deployment, and enhanced threat detection in compliance environments.
The solution is time-saving, particularly in the long run after it is deployed, enabling us to get value promptly.
 

Customer Service

Sentiment score
6.8
Cribl customer service is praised for prompt responses, effective support, and community assistance, with a high satisfaction rating.
Sentiment score
5.6
Securonix Next-Gen SIEM excels in customer service with high satisfaction ratings, proactive guidance, and effective issue resolution.
The community, including the engineering and sales teams, is available on Slack and is very supportive.
There is no UK-based support, which leads to delays in waiting for US support.
They excel in response times and quick reactions when there's an actual threat.
If I raise a ticket, it initially goes to the L1 team, but the next level of escalation is really effective.
 

Scalability Issues

Sentiment score
7.9
Cribl is scalable and easily integrates with CI/CD pipelines, receiving praise for efficient deployment and seamless cloud management.
Sentiment score
7.9
Securonix Next-Gen SIEM offers efficient scalability with flexible options, resolving slowdowns swiftly for diverse operational needs.
I can rate it around eight to nine, and it is very scalable and capable of handling tasks, especially for the on-premises product.
It's certainly meant for large entities and to some extent medium entities who are on a growth trajectory, but certainly not for small ones.
The solution is scalable as it is cloud-based and cloud-native.
 

Stability Issues

Sentiment score
7.3
Cribl is generally rated 7-8 for stability, with minor bugs quickly addressed and continuous development enhancing reliability.
Sentiment score
7.8
Securonix Next-Gen SIEM is stable with high availability, efficient log management, and high user satisfaction despite occasional issues.
The stability of Securonix Next-Gen SIEM is based on the events we are processing.
 

Room For Improvement

Cribl needs better legacy compatibility, intuitive logging, enhanced documentation, improved onboarding, and desktop server functionality for developers.
Securonix Next-Gen SIEM struggles with complex deployment, integration, usability, and needs improvements in reporting, support, pricing, and performance.
Perhaps more flexibility in terms of metrics would be helpful.
Developing custom connectors for each product, especially the internal applications, is difficult, and Securonix Next-Gen SIEM is not up to the mark.
When dealing with a large amount of data, such as when firewall logs increase, queries sometimes crash or get stuck.
The passing and setup are quite complex at the beginning, making onboarding not smooth.
 

Setup Cost

Cribl offers a cost-effective, scalable pricing model with up to 30% cost reductions, appealing to mid-level and large enterprises.
Securonix Next-Gen SIEM offers competitive, predictable pricing based on employee count, with typical enterprise costs around $100,000 for three years.
Licensing is based on events per second (EPS), costing between $50 to $60 per EPS.
The solution is definitely not expensive.
The pricing has similar ingestion charges compared to other solutions, such as Splunk.
 

Valuable Features

Cribl streamlines real-time data transformation, log collection, and routing with user-friendly features, security, and extensive integration support.
Securonix Next-Gen SIEM offers advanced threat detection, automation, and integration, enhancing security while reducing manual tasks and response times.
The community on Slack is excellent for solving questions and getting ideas.
Compared to the previous solution we used, Securonix Next-Gen SIEM has many advantages on the MTTR part, as the containment and alerts automations are feasible from the response point of view.
Now, the process is automatic, reducing our workload.
The software includes user behavior interactions, dashboards, and training capabilities.
 

Categories and Ranking

Cribl
Ranking in Security Information and Event Management (SIEM)
12th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
10
Ranking in other categories
Application Performance Monitoring (APM) and Observability (14th), Log Management (9th), Observability Pipeline Software (1st)
Securonix Next-Gen SIEM
Ranking in Security Information and Event Management (SIEM)
16th
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
35
Ranking in other categories
Identity Threat Detection and Response (ITDR) (8th)
 

Mindshare comparison

As of June 2025, in the Security Information and Event Management (SIEM) category, the mindshare of Cribl is 0.8%, up from 0.1% compared to the previous year. The mindshare of Securonix Next-Gen SIEM is 1.1%, down from 1.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
 

Featured Reviews

Phanindra Ponnada - PeerSpot reviewer
Provides good documentation and worth the investment
As of now, there are some environments where some organizations are still on legacy infrastructure, so they are still in virtual environments and are using old versions of devices. Some companies bought Splunk, while others bought Cribl for a very low-priced license. There are some protocols to connect from Cribl to Splunk. I understand Cribl has come into the market very recently, but the tool might have had a picture in its mind where organizations might also have some legacy infrastructure. In the future, with our protocols or our level of architecture, Cribl should not come and say that it is not compatible with them. If Cribl is the reason because I have to change my environment, then I will have to end up investing more. There are some organizations where the end machines have forwarders that forward the data to Cribl, and from it, the data is forwarded to Splunk. This is how general architecture works. There are two methods of connection between Cribl and Splunk. One is the S2S protocol, which collects logs from Cribl or sends data between Cribl and Splunk. There is another method called HTTP Event Collector (HEC) and HTTPS protocol. With Cribl, connecting to Splunk mostly uses the S2S protocol. The tool supports all the latest devices and platform devices, like all the latest operating systems. There are some organizations where there is legacy infrastructure or if they are still on the old platforms. Companies using old platforms have to consider HTTP Event Collector (HEC), and then they have to change their infrastructure setup in order to fulfill that setup. In order to have Google and Splunk set up in my organization, if I have to change my existing infrastructure connectivity or setup, that might incur more cost or more investment for me to have Cribl and Splunk. Cribl should provide compatibility, or else the tool's developers should speak to the people of such organizations and understand the challenges. Cribl could have developed some version that can give backward compatibility.
Mohammed Nadeem Rais - PeerSpot reviewer
The visibility and analytics from Securonix SIEM have become indispensable in identifying and stopping potential threats before they escalate.
The most valuable feature of Securonix Next-Gen SIEM is its advance analytics, flexibility and scalability. We ingest billions of logs without worrying about resource allocation. This makes it a robust and cost-effective solution for our needs. Its user entity and behavior analytics (UEBA) are also integral for detecting insider threats and lateral movements within the organization. These features help organizations strengthen their security posture, protect sensitive data, and maintain compliance with strict regulatory requirements.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
859,438 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Computer Software Company
10%
Healthcare Company
8%
Government
7%
Computer Software Company
20%
Financial Services Firm
12%
Government
6%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for Cribl?
I am not aware of the pricing details, however, I know they use a credit format for billing.
What needs improvement with Cribl?
At the moment, I don't have specific feedback on what can be improved as I do not work with Cribl daily. Perhaps more flexibility in terms of metrics would be helpful.
What is your primary use case for Cribl?
I am using Cribl to have everything centralized in one tool in terms of data collection. We were working with different Splunk customers, and Cribl helps collect data and then send it to an S3 buck...
Which is the best SIEM tool for a mid-sized financial services firm: Arcsight or Securonix?
In my market, a lot of financial companies had or have an ArcSight installation. Just because in former times it was pretty good. Now a lot of them are looking for a more effective solution due to ...
What is your primary use case for Securonix Security Analytics?
We have actually used our company, which is a large one, and we are using multiple Securonix Next-Gen SIEM technologies. For the on-premises environment, we are using Securonix Next-Gen SIEM, and f...
What do you like most about Securonix Next-Gen SIEM?
The two major features of this product we extensively use are the UEBA capability and the multi-tenant approach with the centralized data logs system. Customers are very happy with these features.
 

Also Known As

No data available
Securonix Security Analytics
 

Overview

 

Sample Customers

Information Not Available
Dtex Systems, Pfizer, Western Union, Harris, ITG
Find out what your peers are saying about Cribl vs. Securonix Next-Gen SIEM and other solutions. Updated: June 2025.
859,438 professionals have used our research since 2012.