Try our new research platform with insights from 80,000+ expert users

Exabeam vs Gurucul UEBA vs Securonix Next-Gen SIEM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Security Information and Event Management (SIEM) Market Share Distribution
ProductMarket Share (%)
Exabeam1.6%
Splunk Enterprise Security7.1%
Wazuh6.4%
Other84.9%
Security Information and Event Management (SIEM)
User Entity Behavior Analytics (UEBA) Market Share Distribution
ProductMarket Share (%)
Gurucul UEBA3.2%
Exabeam8.3%
IBM Security QRadar6.5%
Other82.0%
User Entity Behavior Analytics (UEBA)
Security Information and Event Management (SIEM) Market Share Distribution
ProductMarket Share (%)
Securonix Next-Gen SIEM1.3%
Splunk Enterprise Security7.1%
Wazuh6.4%
Other85.2%
Security Information and Event Management (SIEM)
 

Featured Reviews

DH
Solution Architect at CTC
Improved threat detection has provided clear user risk insights and streamlined incident response
Exabeam's UEBA is the most valuable feature that I have found so far. Exabeam's UEBA displays the type of description that it could show in a console regarding one particular user, the rating that it shows, and how vulnerable the user is, which is very good. Exabeam's automation for incident response is very good. The machine learning capabilities of Exabeam are also good.
reviewer2506872 - PeerSpot reviewer
Security Specialist - UEBA SIEM Admin at a tech vendor with 10,001+ employees
Smooth and fast search capabilities with customizable dashboards enhance user experience
For improvement, I have requested three enhancement tickets, which are already lodged with the Gurucul support team. The first request is to add a visualization option in reports for charts or graphs. I have also requested new dashboard features. In the query box, there's a bug where taking an attribute at the end does not return data, but placing it elsewhere does. The support system could be more equipped.
reviewer1375044 - PeerSpot reviewer
Assistant VP, Idm Compliance at a financial services firm with 1,001-5,000 employees
Centralized environment supports big data while facing integration challenges
The customization in Securonix Next-Gen SIEM is more difficult compared to other solutions. At the operation level, we are not facing many challenges with automating things using Securonix Next-Gen SIEM, but at the admin level, we have many challenges where log parsing is causing issues and compatibility is not present. The primary technology challenge we have is not at the security tools level. For example, firewall Cisco and others are capable. However, specific to product, for SAP, we are using certain products, and developing custom connectors for each product, especially the internal applications, is difficult, and Securonix Next-Gen SIEM is not up to the mark.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The platform is not extremely expensive compared to its direct competitors; I would rate its pricing around six out of ten."
"It is user-friendly and quite simple to use."
"Exabeam's UEBA displays the type of description that it could show in a console regarding one particular user, the rating that it shows, and how vulnerable the user is, which is very good."
"The advanced analytics has a really great overview of user behavior."
"The solution's initial setup process is easy."
"Timeline based analysis; good platform support"
"Exabeam has improved our organization by speeding up the investigation process."
"The user interface and the timelines they use are the most valuable features. The price model is very simple so that one can understand it easily and there are no surprises within it."
"If you are genuinely looking for a UEBA solution, you should choose Gurucul confidently if your need is strictly UEBA."
"I appreciate the comprehensive categorization of devices based on their intended use, such as those for DNS."
"The reporting feature was the key differentiator. I also liked the ability to create dynamic rules in the environment."
"The most valuable feature of Gurucul is the ability to customize and it is on the Hadoop platform that has a lot of flexibility."
"I find customer service to be very good."
"[The solution has] incident-management or case-management functionality. If someone were to download a high number and we decided we needed to investigate it, I could open a case right in the tool. It would be able to directly reference the data that they downloaded and we could open and shut the case directly in the tool, as well as report from it."
"One of the most valuable features it has is the thread chaining. One of the common issues that we always had was the number of anomalies that we used to get and the number of alerts that we used to get. But with this approach of thread chaining, we've found the false-positive rate has decreased very significantly. That was something that we never could have achieved before."
"What I like most is that the threat models and risk scoring are very accurate and very helpful to the analysts on my team. They help highlight the most important things for them to look at."
"The most valuable feature is what Securonix calls enrichment. Securonix is very powerful because of all the data it can process and automatically enrich. The actionable intelligence it provides is one of its benefits, due to the processing capacity it has."
"They are very updated. Their customer responses are great, and they keep using the new AI tools to keep themselves at the edge of the game."
"One of the valuable features of Securonix is the auto-incident creation, which was not available two or three years ago."
"The second feature is that within the SNYPR product there is a functionality called Spotter. We use that for link analysis diagrams and to run the stats command. That's extremely useful because it replaces a tedious, manual process we used to use, using Microsoft Excel and a couple of other methods, to bring data together."
 

Cons

"We still have questions surrounding hardware deployment."
"They should provide detailed information about detecting phishing emails."
"The only problem is that the UI is not very impressive."
"They need to focus on more of the MITRE ATT&CK Framework and coverage. They claim they cover about 70 to 80%. I'm not sure if it's really quite that much, however."
"The customer service and support are not satisfactory."
"Exabeam lacks customizable dashboards, which might be a limitation if visualization is a key requirement."
"We had a large volume right from the beginning and they weren't quite prepared for that. That's something that they should think about when it comes to customers that have a large volume to start off with."
"The solution's reporting and dashboarding could be improved."
"It could be more stable."
"Gurucul can improve on the online documentation. They should educate the end users more to allow them to do everything themselves."
"Regarding the prioritization of threats, Gurucul UEBA needs to enhance its alert severity assignment process within the system."
"Technical support is good but can improve. I would rate it six to seven out of ten. The main issue is response time, which can take three to four hours even for simple queries."
"Securonix implements risk scores based on different policies that are triggered. We've seen some challenges with the risk scores and how they trigger. These are things that Securonix has recognized and they've been working with us to help improve things."
"The solution could provide more automation."
"Regarding the analysis of security events on the SOC side, Securonix Next-Gen SIEM needs to improve its automation capabilities."
"Securonix could open up information regarding the indicators of compromise or cyber-threat intelligence database that they use. The idea is that they share what threats they are detecting."
"A helpful feature would be an event export. A way to create more substantial summary reports would be nice."
"In terms of improvements, SIEM could have better integration with other technologies. Additionally, it might benefit from integration with other sources, such as firewalls."
"The passing and setup are quite complex at the beginning, making onboarding not smooth, which is an area that needs improvement."
"Securonix Next-Gen SIEM's deployment is complex and you need a team to do it."
 

Pricing and Cost Advice

"They have a great model for pricing that can be based either on user count or gigabits per day."
"Exabeam is not a cheap solution."
"There is an annual license required to use Exabeam Fusion SIEM. The price of the solution should be reduced."
"The platform is not extremely expensive compared to its direct competitors; I would rate its pricing around six out of ten."
"The solution is expensive."
"Exabeam Fusion SIEM's pricing is reasonable."
"The price is fair. In fact, I believe it was on the cheaper side when compared to the competition."
"The price of Gurucul is competitive."
"I had heard that it was much cheaper than Splunk and some of the other tools, and they gave us a nice package with support. They accommodated the number of users and support very well."
"The pricing is fine compared to the market but I think that at some point the competitors will catch up on price."
"Its price is fine. We found it to be cheaper than LogRhythm, Exabeam, Splunk, as well as Elastic Security. A few months ago, when we were comparing Securonix with Elastic Security, we found Securonix to be cheaper than Elasticsearch. We were pretty surprised that Elastic Security is more expensive than Securonix because Elasticsearch is just starting, and it cannot compete with Securonix at this time. So, the pricing of Securonix is pretty good for now."
"I rate the pricing an eight on a scale of one to ten, where one is cheap, and ten is very expensive. It is a pretty expensive tool."
"We have an annual license. We pay $200,000 for the base licensing and we pay another $50,000 for the software as a service."
"Compared to other known brands in the industry, the overall cost of the licenses is a bit higher than what customers expect."
"The pricing is good, but by adding more things, the licensing becomes more complex because an EPS license fluctuates a lot. This licensing concept is going to be problematic in the long run."
"Licensing is based on events per second (EPS), costing between $50 to $60 per EPS."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
881,757 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Computer Software Company
10%
Manufacturing Company
10%
Healthcare Company
6%
Financial Services Firm
13%
Computer Software Company
13%
Photography Company
6%
Comms Service Provider
6%
Computer Software Company
12%
Financial Services Firm
10%
Manufacturing Company
8%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise4
Large Enterprise7
No data available
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise5
Large Enterprise19
 

Questions from the Community

What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendli...
What is your experience regarding pricing and costs for Exabeam Fusion SIEM?
I do not have much information about the pricing. However, I am aware that Exabeam is cheaper than Palo Alto based on...
What needs improvement with Exabeam Fusion SIEM?
Exabeam's integration capabilities are not good, as Exabeam has a very limited number of integrations and no out-of-b...
What needs improvement with Gurucul?
For improvement, I have requested three enhancement tickets, which are already lodged with the Gurucul support team. ...
What is your primary use case for Gurucul?
Regarding the use cases, I have created many use cases in Gurucul UEBA. It's easy to create use cases based on behavi...
What advice do you have for others considering Gurucul?
If you are genuinely looking for a UEBA solution, you should choose Gurucul confidently if your need is strictly UEBA...
Which is the best SIEM tool for a mid-sized financial services firm: Arcsight or Securonix?
In my market, a lot of financial companies had or have an ArcSight installation. Just because in former times it was ...
What is your primary use case for Securonix Security Analytics?
We work with CrowdStrike, Securonix Next-Gen SIEM, and other cybersecurity products such as Gurucul. We are a service...
What is your experience regarding pricing and costs for Securonix Next-Gen SIEM?
The solution is definitely not expensive. It's benchmarked against others in this space, and we haven't received any ...
 

Also Known As

No data available
No data available
Securonix Security Analytics
 

Overview

 

Sample Customers

Hulu, ADP, Safeway, BBCN Bank
Global semi-conductor company
Dtex Systems, Pfizer, Western Union, Harris, ITG
Find out what your peers are saying about Splunk, Wazuh, IBM and others in Security Information and Event Management (SIEM). Updated: February 2026.
881,757 professionals have used our research since 2012.