Try our new research platform with insights from 80,000+ expert users

Forescout Platform vs LogRhythm UEBA comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in Extended Detection and Response (XDR)
16th
Average Rating
8.4
Reviews Sentiment
6.6
Number of Reviews
76
Ranking in other categories
Network Access Control (NAC) (4th), IoT Security (2nd), Endpoint Compliance (5th)
LogRhythm UEBA
Ranking in Extended Detection and Response (XDR)
25th
Average Rating
7.0
Reviews Sentiment
6.7
Number of Reviews
11
Ranking in other categories
User Entity Behavior Analytics (UEBA) (11th)
 

Mindshare comparison

As of May 2025, in the Extended Detection and Response (XDR) category, the mindshare of Forescout Platform is 0.6%, up from 0.4% compared to the previous year. The mindshare of LogRhythm UEBA is 1.1%, up from 0.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Extended Detection and Response (XDR)
 

Featured Reviews

Odai Halawani - PeerSpot reviewer
It's an easy and effective solution, especially for device profiling without agents
Forescout Platform's most valuable aspect is its excellent device profiling for devices without agents, which is crucial for our work due to challenges with agent-based devices. Its isolation and blocking actions are particularly effective for network security. The device compliance feature helps us ensure device compliance through immediate actions like updating antivirus software. We have already integrated Forescout with antivirus and vulnerability assessment tools, allowing it to monitor vulnerability scores and automatically isolate devices if critical vulnerabilities are detected.
Sheikh Abu Ayub Azad - PeerSpot reviewer
Great at managing cyber incidents; the technical support could be improved
The initial setup is easy, partly because LogRhythm is primarily based on the Windows platform. It's good to have two engineers for deployment but it can be done with one. It's more about the knowledge. Deployment is typically done in two or three different phases. It usually takes up to three full months to get good deployment. There's the initial onboarding of all the log sources, then collecting data in the data lake, followed a couple of weeks later with some minor tuning before the final tuneup.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The threat prevention feature provides complete visibility."
"I can integrate Forescout with products from multiple vendors in my environment, and also, the integration is searchable. It can be used with 802.1X and non-802.1X to integrate with my existing network. I don't need to upgrade any existing networks in my system, and I don't need to replace existing devices to integrate with Forescout. I find value in not having to spend money upgrading existing devices and networks."
"The most valuable features of the Forescout Platform are ease of management and outstanding visibility. The visibility is simple to obtain."
"Within three or four days, we have complete visibility of your infrastructure on the network. Compared to other solutions, the deployment of the solution is easier and we can close the project quickly."
"The standout strength of this solution lies in its unique capability to effectively manage unmanaged switches."
"The solution's implementation and operation are very easy."
"The most valuable features of ForeScout is the fact that it can do network access control either with 802.1x or without 802.1x."
"The product is very easy to work with and easy to deploy."
"The solution is useful for privilege accounts and super admin accounts. It is beneficial from a security perspective. The tool uses machine learning rather than threshold-based alerts. For instance, it can detect unusual user logins, such as a user logging in from a new browser or location."
"What I like most about LogRhythm UEBA is that it allows you to identify and analyze end-user behaviors and suspicious activities within the systems."
"The solution's most valuable features are the graphical user interface and the reporting."
"The most valuable features are file activity monitoring and registry activity monitoring."
"Good capability pinpointing specific cyber incidents."
"It is easy to monitor users and that is how the solution is adding value to our firm."
"I typically use the product for reducing cyber risk, and I can investigate attacks more quickly using machine learning tools."
"It has a lot of features. It has file integration monitoring."
 

Cons

"Forescout Platform could improve the integration or compatibility with other solutions, such as Chinese-made solutions. They do not have any integration with S33 which is a switch. They do not have good integration with new solutions in the market. They do integrate well with Rocket, Cisco, Juniper, and quite a few more but they could expand the integration."
"I should be able to integrate my Forescout with any other third party security technology, to build that connected security strategy."
"The solution needs more definitive pricing. The costs are hard to nail down."
"Forescout Platform needs to improve how the device works in preventing rogue servers."
"As a product, there is nothing to complain about. However, they should improve their overall support. You need that level of knowledge, that level of information is clearly not available. First and foremost, that information is not accessible. The second point to mention is that once you purchase the later support and services. That is, they will continue to charge you for every service."
"We experienced some detection issues when checking compliance for the Sophos agent."
"Forescout Platform isn't flexible with connections to devices like printers and forces you to re-enter details like the MAC address after any breakdowns."
"In the next release of the solution, it could benefit from being more flexible to allow for more freedom."
"The UI could be improved a little bit."
"In general, if something needs to be improved in the algorithm, it would be the dashboards."
"The product could be user-friendly for someone who doesn’t have any prior experience working with it."
"It should have better mitigation with other solutions and be tightly integrated with other solutions. It has to be improved."
"The product should improve its dashboards. Splunk has neat dashboards. Additionally, we would like to enhance the use cases provided by LogRhythm as its use case library is not as extensive as other tools. Its machine-learning capabilities need to improve when compared to other solutions. It lacks risk quantification in a single, transparent view for individuals such as CSOs."
"The cloud version is lacking and not up to par."
"LogRhythm UEBA's data aggregation needs to be improved. Open-source users do not have much documentation available. Documentation is available only for enterprise users."
"It would be helpful if there were more guidance provided for integrating with unsupported devices."
 

Pricing and Cost Advice

"The ROI is priceless."
"5,000 user licenses will cost you between seven and eight million dollars, compared to 20 million for Aruba."
"Forescout Platform is on the expensive side."
"I would rate Forescout Platform's pricing as four out of five."
"You can have a flexible license depending on your environment."
"The price of the Forescout Platform is expensive. I purchased it for approximately 94 lakhs."
"Devices with multiple IP's count multiple times against your license count."
"The Forescout Platform's pricing is in the middle range, not too cheap or expensive."
"LogRhythm UEBA's pricing is affordable for small and medium businesses."
"Licensing is on a yearly basis. It's not expensive compared to its competitors."
"It is quite a budget-friendly product."
"The pricing is nice when compared to other products in the industry."
"As LogRhythm UEBA is pretty expensive, I'd give its pricing a seven out of ten."
"I rate the product's pricing a three out of ten. However, the cloud version is expensive. You need to hire professional services for deployment and migrations, which can be expensive."
report
Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
850,028 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
30%
Computer Software Company
11%
Financial Services Firm
8%
Government
7%
Computer Software Company
18%
Financial Services Firm
11%
Manufacturing Company
9%
Real Estate/Law Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What do you like most about LogRhythm UserXDR?
The solution is useful for privilege accounts and super admin accounts. It is beneficial from a security perspective. The tool uses machine learning rather than threshold-based alerts. For instance...
What is your experience regarding pricing and costs for LogRhythm UserXDR?
I rate the product's pricing a three out of ten. However, the cloud version is expensive. You need to hire professional services for deployment and migrations, which can be expensive.
What needs improvement with LogRhythm UserXDR?
In general, if something needs to be improved in the algorithm, it would be the dashboards. The dashboards with solutions such as Splunk are very neat and clean. I would also like to improve the us...
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
LogRhythm UserXDR, LogRhythm Enterprise UEBA
 

Overview

 

Sample Customers

NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Information Not Available
Find out what your peers are saying about Forescout Platform vs. LogRhythm UEBA and other solutions. Updated: April 2025.
850,028 professionals have used our research since 2012.