

Exabeam and Wazuh compete in the security solutions category. Exabeam seems to have the upper hand in advanced threat detection with its comprehensive analytics and automation features, whereas Wazuh stands out for its cost-effectiveness as an open-source tool.
Features: Exabeam is known for its advanced analytics, behavioral insights, and timeline-based features that enhance security investigations. It effectively integrates with AWS and supports robust incident response. Wazuh offers comprehensive integration capabilities, being cloud-native and providing key security functionalities such as file integrity monitoring and compliance management.
Room for Improvement: Exabeam could improve flow analysis, reduce false positives, and simplify data lake features. Integration issues, dashboard customization, and API compatibility have been highlighted for refinement. Wazuh can enhance threat intelligence, AI capabilities, and improve Unix system monitoring and event correlation. Easier deployment and better integration with cloud solutions are desired.
Ease of Deployment and Customer Service: Exabeam offers consistent support with generally satisfactory technical help, though there are concerns about regional responsiveness. Wazuh provides deployment flexibility across on-premises and hybrid environments but presents challenges in deployment complexity and community support. Both solutions could improve their regional technical assistance and customer service.
Pricing and ROI: Exabeam is considered reasonably priced for its advanced features, contributing to a positive ROI due to reduced operational expenses. Wazuh, being open-source, incurs no licensing costs, appealing to budget-conscious users. However, resource investments may impact the total cost of ownership. Exabeam is preferred by those who value premium features.
Exabeam offers more machine learning models that detect anomalies.
I have seen value in security cost savings with Wazuh, as using proprietary EDR versions could save us substantial money.
Even with TAM support from Exabeam, many issues go unresolved.
They responded quickly, which was crucial as I was on a time constraint.
We use the open-source version of Wazuh, which does not provide paid support.
The documentation is good and provides clear instructions, though it's targeted at those with technical backgrounds.
It can accommodate thousands of endpoints on one instance, and multiple instances can run for different clients.
Currently, I don't see any limitations in terms of scalability as Wazuh can still connect many endpoints.
Scalability depends on the configuration and the infrastructure resources like compute and memory we allocate.
These problems were not frequent, and the last six to eight months have been stable.
The stability of Wazuh is strong, with no issues stemming from the solution itself.
The stability of Wazuh is largely dependent on maintenance.
The indexer frequently times out, requiring system restarts.
Exabeam needs to improve its documentation and provide more customization for dashboards and case management.
I have explored the SaaS version; it offers many new features.
Machine learning is needed along with understanding user behavior and behavioral patterns.
The integration modules are insufficiently developed, necessitating the creation of custom integration solutions using tools like Logstash and PubSub.
I think Wazuh should improve by introducing AI functionalities, as it would be beneficial to see AI incorporated in the threat hunting and detection functionalities.
Wazuh is completely free of charge.
I would definitely recommend Wazuh, especially considering Fortinet's licensing model which is confusing and overpriced in my opinion.
Totaling around two lakh Indian rupees per month.
Exabeam's AI capabilities, like the natural language mode, convert natural language into Exabeam queries, enhancing ease of use.
The product offers useful features like the dashboard, timeline, and session views, which enhance our security tools.
Wazuh is a SIEM tool that is highly customizable and versatile.
The system allows us to monitor endpoints effectively and collect security data that can be utilized across other platforms such as SOAR.
With this open source tool, organizations can establish their own customized setup.
| Product | Market Share (%) |
|---|---|
| Wazuh | 8.3% |
| Exabeam | 1.6% |
| Other | 90.1% |
| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 3 |
| Large Enterprise | 7 |
| Company Size | Count |
|---|---|
| Small Business | 27 |
| Midsize Enterprise | 15 |
| Large Enterprise | 8 |
Exabeam Fusion is a cloud-delivered solution that that enables you to:
-Leverage turnkey threat detection, investigation, and response
-Collect, search and enhance data from anywhere
-Detect threats missed by other tools, using market-leading behavior analytics
-Achieve successful SecOps outcomes with prescriptive, threat-centric use case packages
-Enhance productivity and reduce response times with automation
-Meet regulatory compliance and audit requirements with ease
Wazuh offers an open-source platform designed for seamless integration into diverse environments, making it ideal for enhancing security infrastructure. Its features include log monitoring, compliance support, and real-time threat detection, providing effective cybersecurity management.
Wazuh stands out for its ability to integrate easily with Kubernetes, cloud-native infrastructures, and various SIEM platforms like ELK. It features robust MITRE ATT&CK correlation, comprehensive log monitoring capabilities, and detailed reporting dashboards. Users benefit from its file integrity monitoring and endpoint detection and response (EDR) capabilities, which streamline compliance and vulnerability assessments. While appreciated for its customization and easy deployment, room for improvement exists in scalability, particularly in the free version, and in areas such as threat intelligence integration, cloud integration, and container security. The platform is acknowledged for its strong documentation and technical support.
What are the key features of Wazuh?In industries like finance, healthcare, and technology, Wazuh is utilized for its capabilities in log aggregation, threat detection, and vulnerability management. Companies often implement its features to ensure compliance with stringent regulations and to enhance security practices across cloud environments. By leveraging its integration capabilities, organizations can achieve unified security management, ensuring comprehensive protection of their digital assets.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.