No more typing reviews! Try our Samantha, our new voice AI agent.

Falcon LogScale vs USM Anywhere comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Falcon LogScale
Ranking in Log Management
17th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
9
Ranking in other categories
No ranking in other categories
USM Anywhere
Ranking in Log Management
36th
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
115
Ranking in other categories
Security Information and Event Management (SIEM) (31st), Endpoint Detection and Response (EDR) (41st), Compliance Management (13th)
 

Mindshare comparison

As of April 2026, in the Log Management category, the mindshare of Falcon LogScale is 0.8%, up from 0.6% compared to the previous year. The mindshare of USM Anywhere is 1.0%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Falcon LogScale0.8%
USM Anywhere1.0%
Other98.2%
Log Management
 

Featured Reviews

Oluwajuwon Olorunlona - PeerSpot reviewer
Cyber Security Engineer at eprocessconsulting
Advanced threat hunting has improved visibility and has simplified custom query automation
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforward. It is not easy to quickly find the documentation, especially if you are using CrowdStrike. Most customers use Falcon LogScale because of CrowdStrike. The documentation of Falcon LogScale is not on the CrowdStrike portal just like the rest of Falcon documentation. I usually find that the main Falcon LogScale documentation is found on the Falcon LogScale website itself. I think there should be a link or direct documentation within the CrowdStrike pages. It is not necessarily a fault. If you find where the documentation resides, you can trace it to what they are doing. However, for the ease of use for Falcon administrators, the same documentation on the Falcon LogScale portal should be on the CrowdStrike dashboard.
Kris Nawani - PeerSpot reviewer
Co-Founder/Director at Bangkok MSP Company Limited
Offers complete coverage without the need to install additional software
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools The solution offers complete coverage without the need to install additional software, as it is maintained by the vendor. It helps in saving…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Falcon LogScale offers excellent features, with scalability being the most notable, and the search speed stands out to me as particularly good."
"Falcon LogScale seems to be a better option with better visibility when it comes to the dashboard and the kill chain process, including the attack surface."
"The fast search and index-free data retention are very valuable."
"Falcon LogScale's insights give you a lot of information that an expert already thought would be valuable for you."
"One of the key features is the fast search functionality, enabling us to get results within a few seconds."
"It offers the capability to view live log ingestion directly from the console which means you can seamlessly manage live log data ingestion alongside accessing and analyzing older data from the past."
"Falcon LogScale stores logs without heavy indexing and searches directly, making it very fast."
"I have only heard the best about CrowdStrike's support."
"We are very happy, the training was excellent, and the interaction with AlienVault is first rate - a real leader in customer service, and the OTX pulse feature is very useful."
"All companies should buy an AlienVault SIEM, as it is well worth the investment."
"It has streamlined log aggregation and analysis to meet organizational and regulatory needs."
"The most valuable feature is threat intelligence."
"IDS is a nice capability to have."
"Using the communication within the security device, it is easier to create plugins."
"The vulnerability manager and the file integration are very good."
"The ease of implementation is the most valuable feature."
 

Cons

"The price could be lower."
"One more point about areas for improvement is the visualization depth. Splunk, which I used, has very good visualization compared to Falcon LogScale."
"That is a difficult question regarding Falcon LogScale. That is really a question for the professionals, and I am not a professional, so I do not know."
"One area of Falcon LogScale that I think could be improved is that it is a bit complex."
"CrowdStrike support is not good."
"There are some overlapping features found in multiple tools."
"The integration could improve."
"KQL is a bit challenging for us."
"Windows log collection works with HIDS, but documentation is sparse and confusing."
"Source material on the forums to be more up-to-date with the changes happening within the product. Forums being out-of-date with information due to the changes makes troubleshooting a little more difficult - specific to the HIDS agents."
"One area that has room for improvement is storage. AllienVault is a good place to put logs, but sometimes it's a tough place to go get logs."
"There isn't a day that goes by that the UI doesn't error out and I can't view events for an alarm."
"IPv6 not supported Correlate with external logs from other sources makes little bit difficult to work"
"As it includes multiple security softwares, the installation and configuration takes a lot of time."
"I've been told that AlienVault doesn't have a full version of NES running in there, but I'm not sure if that's accurate or if my engineer made it that way. I'm not sure he was completely honest either because we had NES in the environment before. Those tools could be improved because AlienVault is a SIEM, and it added all these other features."
"Creating directives is a pain on its own, but editing them can be a nightmare filled with tedious unnecessary steps."
 

Pricing and Cost Advice

Information not available
"The licensing fees are dependent on usage."
"It has good pricing."
"They are a little more expensive than Microsoft."
"The price for this solution is very good, but since the features do not work the price is expensive."
"It's very reasonably priced. It was one of the lowest among the ones I looked at. Licensing is pretty flexible. They can do a two-year or a three-year, even a one-year, perhaps."
"Use the AlienVault team. They are helpful and the documentation that they provide is second to none."
"Do the one month trial and try to work out the kinks during it, as it has free support and service hours."
"The price of this solution is reasonable, which is one of the reasons why we selected it over other solutions."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
886,858 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Manufacturing Company
11%
Comms Service Provider
7%
Healthcare Company
7%
Construction Company
21%
Financial Services Firm
10%
Computer Software Company
8%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise2
By reviewers
Company SizeCount
Small Business65
Midsize Enterprise29
Large Enterprise25
 

Questions from the Community

What needs improvement with Falcon LogScale?
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforwa...
What is your primary use case for Falcon LogScale?
I primarily use CrowdStrike, along with some other solutions. I have been using Falcon LogScale for approximately a year now.I like Falcon LogScale for threat hunting primarily. I use it to make qu...
What advice do you have for others considering Falcon LogScale?
I am also involved with Airlock and sometimes use Airlock application control too. One of the requirements is to have a SIEM. For you to be able to have visibility into everything going on in your ...
What needs improvement with AT&T AlienVault USM?
There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks. It is also limited when used with bigger products and has complex password requirements.
What is your primary use case for AT&T AlienVault USM?
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools.
 

Also Known As

No data available
AT&T AlienVault USM, AlienVault, AlienVault USM, Alienvault Cybersecurity
 

Overview

 

Sample Customers

Information Not Available
Abel & Cole, Bank of Ireland, Bluegrass Cellular, CareerBuilder, Claire's, Hays Medical Center, Hope International, McCurrach, McKinsey & Company, Party Delights, Pepco Holdings, Richland School District, Ricoh, SaveMart, Shake Shack, Steelcase, TaxAct, Taylor Morrison, Vonage and Zoom
Find out what your peers are saying about Falcon LogScale vs. USM Anywhere and other solutions. Updated: April 2026.
886,858 professionals have used our research since 2012.