Try our new research platform with insights from 80,000+ expert users

Elastic Stack vs Wazuh comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Elastic Stack
Ranking in Log Management
11th
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
17
Ranking in other categories
No ranking in other categories
Wazuh
Ranking in Log Management
1st
Average Rating
7.4
Reviews Sentiment
6.7
Number of Reviews
48
Ranking in other categories
Security Information and Event Management (SIEM) (2nd), Extended Detection and Response (XDR) (5th)
 

Mindshare comparison

As of June 2025, in the Log Management category, the mindshare of Elastic Stack is 5.4%, up from 1.5% compared to the previous year. The mindshare of Wazuh is 14.4%, down from 15.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Balamurali P - PeerSpot reviewer
Advanced query capabilities enhance monitoring effectiveness
Elastic Stack should be more simplified with ready-to-use widgets. Also, incorporating AI capabilities is essential as monitoring and observability tools are now adding AI features. Ideally, it should evolve into a full-stack observability tool, similar to AppDynamics or DynaTrace, which offers a solution that includes ISP provider, API monitoring, and infrastructure monitoring.
Sandip_Patel - PeerSpot reviewer
Evaluating robust file monitoring with insights for community support improvements
Wazuh's most valuable features include file monitoring and compliance reporting, which do not require excessive costs. These aspects are vital as they provide alerts for changes and facilitate the monitoring of compliance. The platform is also relatively easy to set up and operate. Reports are straightforward to extract and prove useful for compliance requirements.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The tool's most powerful aspect is its search engine capability. It's a highly effective and powerful solution for searching. We use it in professional and student projects at universities, and it delivers promising results."
"I think the ecosystem is well supported, and for logs, it was faster compared to our previous previous log management."
"I have experienced a return on investment from the use of the solution."
"Prior to the latest updates, data lake management was a standout feature. The hybrid capability for on-premise and cloud integration was also crucial. Now, with Elastic Defense, the agent simplifies security monitoring, making it a key asset."
"Elastic Stack has made a positive impact as we can now see our logs."
"Elastic Stack is mainly used to monitor servers and APIs. It helps ensure the software's availability and sends notifications at the right time so the system is not down for a long time. The tool's stability and advanced features, such as anomaly detection, are the most valuable features. The benefit of using it is real-time monitoring."
"The only beneficial aspect of Elastic Stack is that it's open source."
"The centralized logging capabilities of Elastic Stack have helped me streamline my logging processes significantly because there are many open-source tools available, such as Filebeat and Logstash, to collect the logs."
"It offers built-in modules for file integrity and vulnerability management."
"Wazuh has very flexible and robust features."
"We use it to find any aberration in our endpoint devices. For example, if someone installs a game on their company laptop, Wazuh will detect it and inform us of the unauthorized software or unintended use of the devices provided by the company."
"The product is easy to customize."
"The most valuable feature of Wazuh is its EDR capabilities."
"Wazuh's most beneficial features for our security needs are flexibility, built-in rules, integration capabilities, and documentation."
"Its cost-effectiveness is the most valuable aspect."
"It is a stable solution."
 

Cons

"Elastic Stack should be more simplified with ready-to-use widgets."
"Agent deployment is a little tough in the on-premise version."
"There could be better documentation."
"The tool's pricing can be improved."
"It should facilitate easier manual integration."
"The implementation of dashboards in the solution needs to be made easier...I had some issues with the ports and configuration since it was kind of complex to implement with Docker."
"It lacks a clear NDR (Network Detection and Response) feature. If Elastic could enhance this aspect, it would significantly boost its capabilities."
"AI-enablement would be a big improvement in Elastic Stack...If there is room for an ML model in Elastic Stack, then it would be good."
"The biggest part that's missing is threat intelligence. It isn't inbuilt, and if a sudden incident occurs, we don't get that feedback inside the SIEM tool. That's a big gap, I see. It would be better if we could get the threat intelligence feeds integrated with the SIEM tools. That would help us push value solutions to the clients in a big way."
"Alerts should be specific rather than repeatedly triggered by integrating multiple factors. This issue needs improvement to create a more efficient alert system."
"A more structured approach, perhaps with modular UI components, to facilitate easier integration and navigation within the Wazuh platform for custom integrations would be beneficial."
"The support channel is not optimal, and extensive research is required on our part to implement Wazuh effectively."
"It would be better if they had a vulnerability assessment plug-in like the one AlienVault has. In the next release, I would like to have an app with an alerting mechanism."
"The tool does not provide CTI to monitor darknet."
"The tool doesn't detect anomalies or new environments."
"It would be great if there could be customization for the decoder portion."
 

Pricing and Cost Advice

"I used the open-source version of Elastic Stack, because of which I did not have to pay anything."
"It depends on the specifics, but generally, Elastic is economical for certain use cases."
"Ultimately, the pricing depends upon the capacity planning that the enterprise architect does."
"The pricing is reasonable."
"If I compare Elastic Stack to the other products in the market, I would say that the tool is available at a competitive price."
"I rate the solution's pricing a six out of ten."
"The product is expensive."
"We are using the open-source community version of the product."
"The solution's cost is above the average."
"Wazuh is an open-source tool, which means it is freely available for use."
"Wazuh is open-source, therefore it is free. You can purchase support for $1,000 a year."
"Wazuh is totally free and open source. There are no licensing costs, only support costs if you need them."
"They have a good pricing strategy for market expansion."
"Wazuh is not an expensive solution."
"Wazuh is free and open source."
"Wazuh is a good tool, but the open-source version has scalability limitations."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
856,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
10%
Comms Service Provider
8%
Government
8%
Computer Software Company
15%
Comms Service Provider
9%
University
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Elastic Stack?
The tool is huge, and it performs brilliantly. I tested it for malware, and within two weeks of launching, the product alerted me about a network intrusion. This was a tough test for it, but it per...
What is your experience regarding pricing and costs for Elastic Stack?
I may not be able to answer as this is customer-paid Elastic Stack, and I didn't handle the payment.
What needs improvement with Elastic Stack?
Elastic Stack should be more simplified with ready-to-use widgets. Also, incorporating AI capabilities is essential as monitoring and observability tools are now adding AI features. Ideally, it sho...
What do you like most about Wazuh?
Integrates with various open-source and paid products, allowing for flexibility in customization based on use cases.
What needs improvement with Wazuh?
There is room for improvement by integrating more AI into Wazuh. It requires constant nurturing, as I have to provide it with code and specific requirements. This maintenance can be quite labor-int...
What is your primary use case for Wazuh?
We use Wazuh as a SIEM solution because it is open source, highly customizable, and continually expanding. Our clients can request various solutions for their issues, which Wazuh is able to address.
 

Comparisons

 

Overview

Find out what your peers are saying about Elastic Stack vs. Wazuh and other solutions. Updated: June 2025.
856,873 professionals have used our research since 2012.