Try our new research platform with insights from 80,000+ expert users

Exabeam vs Graylog comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Exabeam
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
19
Ranking in other categories
Security Information and Event Management (SIEM) (17th), User Entity Behavior Analytics (UEBA) (2nd), Security Incident Response (4th), Threat Intelligence Platforms (9th), Security Orchestration Automation and Response (SOAR) (7th), AI-Powered Cybersecurity Platforms (9th)
Graylog
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
21
Ranking in other categories
Log Management (15th)
 

Mindshare comparison

Exabeam and Graylog aren’t in the same category and serve different purposes. Exabeam is designed for Security Information and Event Management (SIEM) and holds a mindshare of 1.4%, up 1.2% compared to last year.
Graylog, on the other hand, focuses on Log Management, holds 6.7% mindshare, up 5.8% since last year.
Security Information and Event Management (SIEM)
Log Management
 

Featured Reviews

Stephen-Armstrong - PeerSpot reviewer
The SIEM provides a user-friendly UI experience
When events come into the system, the dashboard categorizes them by the highest risk score, not when they appear on the system. When you've got multiple ongoing incidents you can only see the highest risk score at the top of the list rather than the most recent detection. Exabeam's reporting dashboard could have included a filtering option to filter by the most recent detection.
Ivan Kokalovic - PeerSpot reviewer
Facilitates backend service monitoring with efficient log retrieval and API flexibility
Graylog is valuable because it bridges technical knowledge to non-technical teams, presenting complex backend processes in a simple timeline. It boosts the knowledge of sales and customer support teams by allowing them to see the backend operations without needing to read the code. Its API is flexible for visualization, and its powerful search engine efficiently handles large volumes of log data. Moreover, its stability, fast search capabilities, and compatibility with languages like ANSI SQL enhance its utility in IT infrastructure.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The Exabeam SIEM has a user friendly UI interface."
"The solution's automation capabilities are great."
"Timeline based analysis; good platform support"
"It is user-friendly and quite simple to use."
"Exabeam has improved our organization by speeding up the investigation process."
"The most valuable feature of Exabeam Fusion SIEM is the easy-to-use user interface."
"The solution's initial setup process is easy."
"The UI was very clean."
"I like the correlation and the alerting."
"This had increased productivity for the dev and support teams, because we are directly notifying them."
"Real-time UDP/GELF logging and full text-based searching."
"The ability to write custom alerts is key to information security and compliance."
"Graylog is very handy."
"The build is stable and requires little maintenance, even compared to some extremely expensive products."
"The product is scalable. The solution is stable."
"The solution's most valuable feature is its new interface."
 

Cons

"Exabeam needs to improve its documentation and provide more customization for dashboards and case management."
"I believe if it were more flexible it would be a better product."
"Updating the new release of Exabeam Fusion SIEM takes time and slows our performance."
"Exabeam lacks customizable dashboards, which might be a limitation if visualization is a key requirement."
"Adding to the number of certifications that they have, for example, ISO 27001, would be helpful."
"Exabeam needs to improve its adaptive nature towards rules and its capability to understand the entire client environment faster."
"The only problem is that the UI is not very impressive."
"They need to focus on more of the MITRE ATT&CK Framework and coverage. They claim they cover about 70 to 80%. I'm not sure if it's really quite that much, however."
"Graylog needs to improve their authentication. Also, the fact that Graylog displays logs from the top down is just ridiculous."
"Elasticsearch recommendations for tuning could be better. Graylog doesn't have direct support for running the system inside of Kubernetes, so it can be challenging to fill in the gaps and set up containers in a way that is both performant and stable."
"When it comes to configuring the processing pipeline, writing the rules can be very tedious, especially since the documentation isn't extensive on how the functions provided for these rules work."
"Since container orchestration systems are popular and Graylog fits the niche well, perhaps they could officially support running in docker containers on Kubernetes as a StatefulSet as a use case. That way, the declarative nature of Kubernetes config files would document their best case deployment scenario-"
"I would like to see a date and time in the Graylog Grok patterns so that I can save time when searching for a log. I like how the streams and the search query work, but adding a date and time will allow me to pull out a log in a milli-second."
"I would like to see some kind of visualization included in Graylog."
"When it comes to configuring the processing pipeline, writing the rules can be very tedious, especially since the documentation isn't extensive on how the functions provided for these rules work."
"Graylog could improve the process of creating rules. We have to create them manually by doing parses and applying them. Other SIEM solutions have basic rules and you can create and get more events of interest."
 

Pricing and Cost Advice

"Exabeam Fusion SIEM's pricing is reasonable."
"There is an annual license required to use Exabeam Fusion SIEM. The price of the solution should be reduced."
"Exabeam is not a cheap solution."
"The solution is expensive."
"The platform is not extremely expensive compared to its direct competitors; I would rate its pricing around six out of ten."
"They have a great model for pricing that can be based either on user count or gigabits per day."
"There is an open source version and an enterprise version. I wouldn't recommend the enterprise version, but as an open source solution, it is solid and works really well."
"We're using the Community edition."
"​You get a lot out-of-the-box with the non-enterprise version, so give it a try first."
"I am using a community edition. I have not looked at the enterprise offering from Graylog."
"Having paid official support is wise for projects."
"If you want something that works and do not have the money for Splunk or QRadar, take Graylog.​​"
"Consider Enterprise support if you have atypical needs or setup requirements.​"
"Graylog is a free open-source solution. The free version has a capacity limitation of 2 GB daily, if you want to go above this you have to purchase a license."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
850,671 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
13%
Manufacturing Company
9%
Government
6%
Computer Software Company
18%
Comms Service Provider
10%
Educational Organization
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
What do you like most about Exabeam Fusion SIEM?
The solution's initial setup process is easy.
What is your experience regarding pricing and costs for Exabeam Fusion SIEM?
I do not have much information about the pricing. However, I am aware that Exabeam is cheaper than Palo Alto based on discussions in meetings.
What do you like most about Graylog?
The product is scalable. The solution is stable.
What is your experience regarding pricing and costs for Graylog?
We are using the free version of the product. However, the paid version is expensive.
What needs improvement with Graylog?
When it comes to configuring the processing pipeline, writing the rules can be very tedious, especially since the documentation isn't extensive on how the functions provided for these rules work. P...
 

Comparisons

 

Also Known As

No data available
Graylog2
 

Overview

 

Sample Customers

Hulu, ADP, Safeway, BBCN Bank
Blue Cross Blue Shield, eBay, Cisco, LinkedIn, SAP, King.com, Twilio, Deutsche Presse-Agentur
Find out what your peers are saying about Exabeam vs. Graylog and other solutions. Updated: June 2024.
850,671 professionals have used our research since 2012.