No more typing reviews! Try our Samantha, our new voice AI agent.

FileAudit vs Logpoint vs Splunk Enterprise Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

As of April 2026, in the Security Information and Event Management (SIEM) category, the mindshare of FileAudit is 0.6%, up from 0.1% compared to the previous year. The mindshare of Logpoint is 1.0%, up from 0.8% compared to the previous year. The mindshare of Splunk Enterprise Security is 7.2%, down from 9.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Splunk Enterprise Security7.2%
Logpoint1.0%
FileAudit0.6%
Other91.2%
Security Information and Event Management (SIEM)
 

Featured Reviews

AntoSebastin - PeerSpot reviewer
Cyber Security Consultant - APAC at Logon Software
A scalable SIEM solution for monitoring a user's activity in the file server
The most valuable features of the solution are its quick and simple features related to advanced permissions for files, allowing for what permission needs to be granted to the users when it comes to the monitoring folder in the solution. If someone who has been denied permission to use a particular folder tries to go to that folder, then the administrator gets a notification. In general, the administrator can easily gather and maintain records if a person who has been denied permission to a particular confidential folder tries to access it.
Rifat Hasan - PeerSpot reviewer
System Engineer at Corporate Projukti Limited
Has lacked proper integration and consistent support communication
I selected Logpoint for the pricing as it is reasonable. I am located in Bangladesh, South Asia, Dhaka. I have tried to contact Exabeam by mail repeatedly, but there has been no response. My company, Corporate Projukti Limited, including my Bangladesh area head, technical director, and team manager, have sent emails to contact Exabeam solution, but there is no response. There is already a distributor in Bangladesh. The weakness with Logpoint is UEBA. UEBA is recommended, but not extra. Exabeam's UEBA is an extra feature. SOAR is extra, but Logpoint's product measurement is 40 or 50. There is a 10% difference with the UEBA and SOAR, so Logpoint is weak there. I would appreciate extra features in Logpoint such as SOAR. SOAR and UEBA are included features in Logpoint. Logpoint's UEBA is a weak point, while Exabeam's UEBA has extra AI through automation. Exabeam has a license included, and the extra license is an add-on. In Logpoint, it is included, which makes it a weak point.
Sathis-Kumar - PeerSpot reviewer
Senior Manager at Bank of America
Helps us detect cyber threats quickly and integrate multiple feeds effectively
Overall, the product is good, but when it comes to some infrastructure issues, we have to dig into more logs. There is no straightforward indication of an issue. Health check kind of dashboards are not available. More AI would help us, and more optimization, since security products run more queries. The AI module could suggest solutions, optimizing queries or workload balancing. If the product itself advises on running queries during peak times, it would be similar to what ChatGPT currently offers. We see quite a few issues on stability. Even last week, we faced something, and identifying bottlenecks is not easy. We need more SMEs, and there is no mechanism to tell us about indexer or search head issues. Self-monitoring dashboards could be beneficial. The technical support still requires more improvement. Often, primary support takes a lot of time and forwards most solutions to the engineering side. The primary support team has very limited knowledge to provide.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Alerting upon file changes is the most valuable aspect of the product."
"It is a good and stable solution...It is a scalable solution."
"Our customer acquires the complete report which is kept for future auditing purposes."
"FileAudit has helped our client to bring order to the day-to-day management of these folders, through the use of information triggers that inform department managers of both file obsolescence and changes made by employees."
"Our customer acquires the complete report which is kept for future auditing purposes."
"Our customer acquires the complete report which is kept for future auditing purposes."
"The UEBA component, as well as the SOAR component, are some of the most valuable features of Logpoint."
"The solution's most valuable aspect is the combination of the software and the support that they have."
"I would say that it's a good product; it's very stable, and the support is very good."
"We like the user and entity behaviour analytics (UEBA) and find it valuable."
"The technical support for Logpoint is very good, and I would rate it as nine out of ten."
"I use the product for my research and development to enhance my work."
"The flexibility of the search feature and the solution's analytics features are the most valuable parts of the solution."
"They basically charge you in a better way."
"If I need to integrate devices for logs, it is easier with Splunk. We can integrate different applications, network devices, and databases. It is also very rich in documents. It is the best."
"The initial deployment was straightforward."
"Good for log collection and log management."
"It has quite extensive support in terms of integration, and if you want to do anything, there are tools for that."
"Splunk Enterprise Security's most valuable features are its stability and the robust Splunk Search Processing Language, allowing extensive customization and analysis capabilities."
"This solution is the best security solution."
"I have also been able to take advantage of some of the more complex statistical capabilities when analyzing logs."
"The product is adept at log mining."
 

Cons

"The updates management and central management console could be improved."
"Whenever someone cuts and paste, it shows as "file is deleted"."
"Whenever someone cuts and paste, it shows as "file is deleted"."
"Whenever someone cuts and paste, it shows as "file is deleted"."
"The updates management and central management console could be improved."
"The DLP function, including installation of the agent on the workstation and controlling the DLP restrictions, are areas where the product lacks."
"It needs to improve performance. That's somehow something that others do better."
"One of the downsides is it is not a SaaS solution. It must be on-premises."
"One of the things we faced last year was that we had some memory issues with the server running; we were running them as virtual services, and we were facing some performance issues."
"Logpoint is not flexible. Its documentation is not user-friendly."
"The thing that makes it a little bit challenging is when you run into a situation where you have logs that are not easily parsable."
"We were missing visuals and graphics. Recently, a new version seems to have come out, and it has a new graphical user interface. When I was integrating it, it was usable, but the GUI needed improvement."
"I would rate the stability of Logpoint as a six out of ten. I have received reports indicating glitches and downtimes with Logpoint."
"The solution should offer more integrations and third-party solutions like incident response platforms or allow access to third-party big data"
"I would like to get visibility into the data pipelines on heavy forwarders and indexers to see exactly their source and the cause of saturation when it occurs. This would help us learn even more about our high use applications."
"The pricing of Splunk Enterprise Security is not very affordable, and I have seen many companies planning to leave because of cost concerns."
"There is another new term called benign positives. It is better to clearly identify each definition of those terms since it has not been popular in the industry, and everyone needs to be aware of those things."
"It can be easier to setup and adding new sources which Splunk are improving with every new version."
"The tool itself is very difficult to configure. It's great for its number of inputs, for the different types of systems devices, and things that it could collect information from. To actually make good use of it, you need a fairly dedicated team of people that have some reasonably good programming or modeling skills to be able to do the things that you need to do with it. Whereas a lot of the other tools are better packaged for that, and so require a lot less training and a lot less dedication."
"They can incorporate the SOAR solution within the actual product so that we do not require two different products, two different installations, and two different pricing methods. In regards to UBA, I am familiar with the UBA that existed two years ago. I am not updated about it today, but two years ago, UBA required such an amount of data that from a cost perspective, it was not worth it. When you compare it to what you get out of the box with Microsoft Sentinel without additional costs, there is no match."
"Stability is there, but every release has some bugs."
"I have concerns about the architecture as well since I can see it is not very well defined."
 

Pricing and Cost Advice

"FileAudit provides a trial license for 30 days, and after that, customers can choose between perpetual licensing or the annual-based licensing option offered by FileAudit."
"On a scale of one to ten, where one is cheap, and ten is expensive, I would rate LogPoint's pricing a seven. It is not very expensive compared to some of the more costly products, and it is not very cheap compared to some of the cheaper products in the SIEM market."
"It was on a yearly basis at about $100K. It was not a huge environment. We were running it on our own virtual server environment, which, of course, had a cost. There was hardware and some energy cost, and then there were Microsoft Windows licenses for servers. That's all, but there was nothing in comparison to the licensing costs."
"Our licensing fees are about $10,000 USD per month, which I think is fair."
"It's less expensive than the competitors. The Logpoint marketing team is very accommodating and client-friendly. They offer very good reductions in price. They are pretty good in this aspect. They are transparent in their licensing and pricing."
"It's getting more expensive, which is one of the reasons we're looking around just to see if there's anything better value."
"LogPoint seemed like it was a good product, but it was expensive and there wasn't any room to move the pricing when customers needed a lower-costing solution."
"For a hundred user deployment the cost is about $10,000. The next year it would be the same because it's a subscription-based license. There are separate costs as well, for example, if a customer asks for training for their staff."
"It has a fixed price, which is what I like about LogPoint. I bought the system and paid for it, and I pay maintenance. It is not a consumption model. Most SIEMs or most of the log management systems are consumption-based, which means that you pay for how many logs you have in the system. That's a real problem because logs can grow very quickly in different circumstances, and when you have a variable price model, you never know what you're going to pay. Splunk is notoriously expensive for that reason. If you use Splunk or QRadar, it becomes expensive because there are not just the logs; you also have to parse the logs and create indexes. Those indexes can be very expensive in terms of space. Therefore, if they charge you by this space, you can end up paying a significant amount of money. It can be more than what you expect to pay. I like the fact that LogPoint has a fixed cost. I know what I'm going to pay on a yearly basis. I pay that, and I pay the maintenance, and I just make it work."
"Splunk differs from other SIEM solutions by using a gigabyte-based pricing model, rather than the agent-based licenses common with its competitors."
"It is economical than other solutions."
"The Splunk Enterprise Security license is expensive."
"Splunk Enterprise Security's pricing is based on data volume, which generally suits large enterprises."
"The pricing model is based on the number of gigabytes that you ingest into the Splunk system. So it can be an expensive solution."
"It's more expensive than the other tools, but it's worth it. Every penny is worth it."
"Splunk Enterprise becomes extremely expensive after the 20GB/month license."
"Splunk is priced higher than other solutions."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
885,728 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
No data available
Computer Software Company
18%
Construction Company
14%
Comms Service Provider
9%
University
7%
Financial Services Firm
12%
Computer Software Company
9%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business18
Midsize Enterprise3
Large Enterprise4
By reviewers
Company SizeCount
Small Business112
Midsize Enterprise50
Large Enterprise267
 

Questions from the Community

Ask a question
Earn 20 points
What is your experience regarding pricing and costs for LogPoint?
I rate the pricing at eight, suggesting it's relatively good or affordable.
What needs improvement with LogPoint?
I selected Logpoint for the pricing as it is reasonable. I am located in Bangladesh, South Asia, Dhaka. I have tried ...
What is your primary use case for LogPoint?
I had experience with Logpoint before, and I contacted the Exabeam solution, but there was no response; they did not ...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
What is a better choice, Splunk or Azure Sentinel?
It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for ingest...
How does Splunk compare with Azure Monitor?
Splunk handles a high amount of data very well. We use Splunk to capture information and as an aggregator for monitor...
 

Overview

 

Sample Customers

CommuniCare Health Centre, DP World, BAE Systems, Moet Hennessy, Ernst & Young, Honda, Volswagon, VTech, GlakoSmithKline, Lockheed Martin, US Navy, University of Alabama, Ministry of Interior Saudi Arabia, Total
AP Pension, Copenhagen Airports, KMD, Terma, DISA, Danish Crown, Durham City Council, Game, TopDanmark, Lahti Energia, Energi Midt, Synoptik, Eissmann Group Automotive, Aligro, CG50...
Splunk has more than 7,000 customers spread across over 90 countries. These customers include Telenor, UniCredit, ideeli, McKenney's, Tesco, and SurveyMonkey.
Find out what your peers are saying about Splunk, Wazuh, IBM and others in Security Information and Event Management (SIEM). Updated: March 2026.
885,728 professionals have used our research since 2012.