Try our new research platform with insights from 80,000+ expert users

Elastic Security vs Symantec Endpoint Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.9
Elastic Security provides positive ROI in 18-24 months, affordable for SMEs, though premium support may be lacking.
Sentiment score
7.5
Symantec Endpoint Security delivers positive ROI by enhancing virus protection, reducing downtime, and improving operational efficiency with minimal disruption.
It does not require hefty security budgets and can be deployed for enterprise security effectively.
Symantec Endpoint Security filled gaps in our toolset, particularly with the ability to control network firewall on hosts remotely, which was greatly appreciated.
 

Customer Service

Sentiment score
6.4
Elastic Security support varies; open-source praised for community help, commercial support seen as responsive but with some improvement needed.
Sentiment score
7.2
Symantec Endpoint Security's support is praised but varies post-Broadcom, with delays and regional differences affecting effectiveness.
Providing necessary assistance efficiently.
Most of the time when my team encounters issues, they receive responses within 24 hours.
In some cases, it rates as high as ten out of ten, while in others, it can be as low as eight.
There is no support in the German language, which is a problem for many public tenders.
 

Scalability Issues

Sentiment score
7.3
Elastic Security is praised for scalability, easily supporting small to large businesses and adaptable through configuration adjustments.
Sentiment score
7.8
Symantec Endpoint Security is scalable, user-friendly, and ideal for large organizations, effortlessly integrating with existing systems.
It allows us to think about specific use cases, such as gathering malicious IPs in a single view and analyzing threats based on geolocation.
Symantec Endpoint Security is quite scalable, and it is very important for large clients.
 

Stability Issues

Sentiment score
7.7
Elastic Security is stable and reliable, but requires proper setup and resource management; frequent updates can disrupt some users.
Sentiment score
7.8
Symantec Endpoint Security is generally reliable, though updates and operating system variations can occasionally disrupt stability and resource usage.
In terms of stability, I would rate Elastic a solid eight out of ten.
I have encountered issues where I had to uninstall and reinstall the product on end users' computers to view the logs again.
 

Room For Improvement

Elastic Security faces challenges in usability, integration, scalability, and awareness, requiring enhancements in features and user support.
Symantec Endpoint Security faces performance issues, complex management, insufficient threat detection, and compatibility problems affecting usability and support.
My security testing team continuously reports vulnerabilities, and we have to fix and update the versions frequently.
CrowdStrike and Defender have more established threat intelligence integration due to having a larger client base.
Elastic Security consumes a lot of resources, requiring a substantial deployment setup.
It is cumbersome to use, particularly in handling firewall management.
Device management is not very good and I am not enabling it in my organization due to security reasons.
I would like to see improvements in the scanning part of the solution, specifically to enhance the CPU and hard disk usage during scanning and updates to prevent disruption during work hours.
 

Setup Cost

Elastic Security is cost-effective for SMEs but advanced features and lack of included support can increase costs.
Symantec Endpoint Security is valued for its cost-effective pricing, flexible plans, and discounts for long-term or special contracts.
This is beneficial for SMEs as they do not need extensive budgets for security solutions.
The pricing is reasonable, especially for Small Medium Enterprises (SMEs), making it a viable option for businesses building their security infrastructure.
Elastic Security is considered cost-effective, especially at lower EPS levels.
It seems to be half the cost or more affordable than other solutions.
I rate the pricing, setup cost, and licensing around nine out of ten.
Symantec Endpoint Protection and Symantec Endpoint Security Enterprise are quite affordable, with Symantec Endpoint Security Complete costing about four times the Endpoint Protection price, still comparable to other EDR products.
 

Valuable Features

Elastic Security offers rapid search, scalability, and affordability with strong machine learning and customizable dashboards for efficient threat detection.
Symantec Endpoint Security provides comprehensive protection with device control, intrusion prevention, anti-virus, centralized management, and cross-platform integration.
Elastic Security offers advanced features such as machine learning and integration with ChatGPT.
We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data.
Elastic Security is as flexible and configurable as Microsoft Sentinel.
One important feature is the EDR function, necessary for many public customers due to upcoming laws in Germany, which is available through Symantec Endpoint Security Complete.
The incident response capabilities allow me to resolve authentication and support issues promptly, ensuring the system operates without downtime.
A valuable feature of Symantec Endpoint Security is the ability to remotely isolate a computer from the network if it's compromised, either physically or digitally.
 

Categories and Ranking

Elastic Security
Average Rating
7.8
Reviews Sentiment
6.8
Number of Reviews
64
Ranking in other categories
Log Management (7th), Security Information and Event Management (SIEM) (5th), Endpoint Detection and Response (EDR) (15th), Security Orchestration Automation and Response (SOAR) (6th), Extended Detection and Response (XDR) (8th)
Symantec Endpoint Security
Average Rating
7.6
Reviews Sentiment
7.3
Number of Reviews
144
Ranking in other categories
Endpoint Protection Platform (EPP) (11th)
 

Mindshare comparison

Elastic Security and Symantec Endpoint Security aren’t in the same category and serve different purposes. Elastic Security is designed for Log Management and holds a mindshare of 3.3%, down 6.6% compared to last year.
Symantec Endpoint Security, on the other hand, focuses on Endpoint Protection Platform (EPP), holds 4.0% mindshare, down 4.8% since last year.
Log Management
Endpoint Protection Platform (EPP)
 

Featured Reviews

SyedAli17 - PeerSpot reviewer
Centralized monitoring improves security posture through rapid data processing
The processing part of Elastic Security ( /products/elastic-security-reviews ) is very interesting for us since we handle almost 7,000 to 8,000 alerts per minute. We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data. Additionally, Elastic Security helps improve the security posture of Pakistan through centralized visibility and real-time processing.
Hakeem_Abdulkareem - PeerSpot reviewer
The solution has given us visibility into compliance within our whole system and helped us ensure everything is updated
Symantec's application security module needs some improvement. You need to create a lot of fingerprints for application security. For instance, let's say I have different brands of ATMs in my environment, like Wincor and NCR. I use GRG to deploy an application control to whitelist some applications. I have to get the exact image of the different models of ATMs. When I tested in the past, some machines would not connect to the server without that. Only the approved software on the ATM should run. Anything outside that should not even come up at all. We did this so that an outside person doesn't introduce malicious software to the ATM. That's the essence of locking down with application control. Using Symantec for application control has been hectic, so I use Carbon Black to do the lockdown. Checking that data security will work fine with Carbon Black. Carbon Black worked fine. Setting up approval in Carbon Black works differently than Symantec. In Symantec, we first need the fingerprints of the applications running underneath. Before setting up Carbon Black, you first install the agent, allowing it to learn the environment. It will analyze all the software's behavior and provide recommendations for what should be allowed. It's more straightforward, whereas configuring application control in Symantec is a bit cumbersome.
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
850,671 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Government
10%
Financial Services Firm
9%
Comms Service Provider
7%
Computer Software Company
15%
Financial Services Firm
12%
Manufacturing Company
10%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
What do you like most about Elastic Security?
Elastic provides the capability to index quickly due to the reverse indexes it offers. This data is crucial as it contains critical information. The reverse index allows fast data indexing because ...
What is your experience regarding pricing and costs for Elastic Security?
Since Elastic Security is community-based, it does not require significant costs. This is beneficial for SMEs as they do not need extensive budgets for security solutions.
Which is better - Cortex XDR or Symantec End-User Endpoint Security?
Aqua Security is easy to use and very manageable. Its main focus is on Kubernetes and Docker. Security is a very valuable feature and their speed of integration is very good. The initial setup was ...
Which offers better endpoint security - Symantec or Microsoft Defender?
We use Symantec because we do not use MS Enterprise products, but in my opinion, Microsoft Defender is a superior solution. Microsoft Defender for Endpoint is a cloud-delivered endpoint security s...
What do you like most about Symantec End-User Endpoint Security?
Symantec have everything – documentation, videos, data sheets.
 

Also Known As

Elastic SIEM, ELK Logstash
Symantec EPP, Symantec Endpoint Protection (SEP)
 

Overview

 

Sample Customers

Texas A&M, U.S. Air Force, NuScale Power, Martin's Point Health Care
Audio Visual Dynamics, Red Deer Advocate, Asia Pacific Telecom Co. Ltd., Kibbutz Ein Gedi, and AMETEK, Inc.
Find out what your peers are saying about Elastic Security vs. Symantec Endpoint Security and other solutions. Updated: February 2022.
850,671 professionals have used our research since 2012.