No more typing reviews! Try our Samantha, our new voice AI agent.

Gigamon Deep Observability Pipeline vs NetWitness Platform comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Gigamon Deep Observability ...
Ranking in Security Information and Event Management (SIEM)
41st
Average Rating
8.6
Reviews Sentiment
6.5
Number of Reviews
9
Ranking in other categories
Application Performance Monitoring (APM) and Observability (46th), Event Monitoring (16th), Data Loss Prevention (DLP) (34th), Web Application Firewall (WAF) (35th), Advanced Threat Protection (ATP) (25th), Network Packet Broker (NPB) (1st), Network Detection and Response (NDR) (17th)
NetWitness Platform
Ranking in Security Information and Event Management (SIEM)
35th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Log Management (36th)
 

Mindshare comparison

As of October 2026, in the Security Information and Event Management (SIEM) category, the mindshare of Gigamon Deep Observability Pipeline is 0.6%, up from 0.2% compared to the previous year. The mindshare of NetWitness Platform is 1.2%, up from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
NetWitness Platform1.2%
Gigamon Deep Observability Pipeline0.6%
Other98.2%
Security Information and Event Management (SIEM)
 

Featured Reviews

TN
Senior Relationship Banker at Joint stock Commercial Bank for Foreign Trade of V
Experience boosts operational efficiency while performance sees room for improvement
I don't have specific information on whether it was purchased on the AWS marketplace or somewhere else. I am working with Dynatrace Operator. I am also working with Algosec, Alluvio, CrowdStrike, Firemon, Gigamon Deep Observability Pipeline, and other solutions. I think it's a good tool, and I am satisfied with it. We have not stored cloud workloads with Gigamon Deep Observability Pipeline yet; we are still on-premises. The technical support takes about one to two hours to respond, which is acceptable. I am satisfied with the scalability of the product. The interface is good.
reviewer1130436 - PeerSpot reviewer
Information Technology Security and Infrastructure Expert at a government with 201-500 employees
Helps to deal with potential attacks and is available at a reasonable price
My company has had many benefits from the use of the product in the last eight years. The tool has streamlined our company's incident response process since it serves as a log repository, which allows us to correlate events and access different technology stacks. In our company, we were able to actually find some potential attacks, so it has been very helpful. The tool's integration capability isn't so great. In my company, we managed to integrate it with our Microsoft Azure Subscription, after which we managed to integrate it with other tools. You will face a lot of difficulties if you want to integrate it with your database monitoring tool, PAM solutions, or IAM products. The product has done well overall for my company's teams to deal with their workflow efficiency. I would not recommend the product to others. I rate the tool a seven out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use Gigamon for network visibility."
"The most valuable feature is NetFlow."
"The most valuable feature for improving network visibility with Gigamon is the packet filtering capability."
"It is a good product. It provides network visibility, which is important. Gigamon can bring some optimizations to my network. It is helpful for security inspection, and it makes my firewall work fast because my firewall doesn't have to do the inspection of the SSL connections, for example."
"It offers straightforward integration."
"It has high stability."
"The Pipeline's Comprehensive Insights into data flows have helped improve operational efficiency and security."
"The tool's most valuable feature is the encryption feature. From a security perspective, the solution hasn't significantly strengthened our security posture. However, it has greatly improved performance by streamlining encryption processes and avoiding encryption at multiple layers. This has also simplified troubleshooting, as we can whitelist certain processes."
"The most valuable feature is the security that it provides."
"Technically speaking, this is a good product."
"The most valuable features are the packet decoder, log decoder, and concentrator."
"It gives customers visibility about their most important servers and devices."
"The solution is reliable."
"Technical support is very good; they try to resolve issues with the proper SLAs which are defined by them and they understand the client's requirements as well as the client's infrastructure in a better manner."
"NetWitness Platform is valuable for creating rules that the solution must detect."
"The most valuable features are the packet inspection and the automated incident response."
 

Cons

"The Gigamon Deep Observability Pipeline should have a feature showing the traffic flow within its platform. Currently, customers have to use separate tools for monitoring, which is inconvenient. If it had its visibility feature, it would make monitoring easier and more complete without needing extra tools."
"It only inspects a specific kind of traffic. There should be different kinds of use cases."
"The graphical user interface could be improved."
"The security should be improved."
"Gigamon Deep Observability Pipeline needs to improve its performance. I face issues with performance because we use SPAN, and the SPAN traffic is not good."
"They should increase the solution's cluster capacity."
"In terms of improvement, while the initial setup is not overly complicated, we did encounter a few issues."
"The challenge is monitoring the cloud network."
"The initial setup was complex because it takes a lot of time to complete the implementation."
"The documentation is not as structured as I would like, personally, and I think that it can be improved and made much more user-friendly."
"I cannot say that the solution was stable because it tended to crash."
"I believe they could improve their support, there are often delays."
"The solution is pretty complex to set up. Comparatively, I have worked on IBM QRadar and Splunk; they are much easier to set up."
"The product continues to crash. Even with tech support help, it does not resolve itself."
"The log system is a bit complex and has room for improvement."
"We have encountered issues with unresolved crashes."
 

Pricing and Cost Advice

"The solution is highly-priced."
"I would rate the solution as expensive, around an eight or nine out of ten. There are other competitive solutions available."
"The solution's price is reasonable."
"There is a licensing fee and the customer can choose whether he wishes this to be subscription-based or perpetual."
"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment."
"The product is expensive."
"It’s cheaper to run virtual machines in a VMware environment."
"Compared to the competition, the is price is not that high."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"We have yearly licensing costs. The license fee can be based on the volume of EPS. Some organizations may have, as a gentlemanly gesture, 10,000 EPS and get a 3,000 EPS license but actually use 5,000 EPS."
"The licenses are good but the cost is very expensive."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Comms Service Provider
10%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
12%
Financial Services Firm
11%
Comms Service Provider
10%
Outsourcing Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise5
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
 

Questions from the Community

What needs improvement with Gigamon Deep Observability Pipeline?
Gigamon Deep Observability Pipeline needs to improve its performance. I face issues with performance because we use SPAN, and the SPAN traffic is not good. They need to improve their performance.
What is your primary use case for Gigamon Deep Observability Pipeline?
I am working with Gigamon Deep Observability Pipeline and Firemon, and I have been working with it for a year.
What advice do you have for others considering Gigamon Deep Observability Pipeline?
I don't have specific information on whether it was purchased on the AWS marketplace or somewhere else. I am working with Dynatrace Operator. I am also working with Algosec, Alluvio, CrowdStrike, F...
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
 

Also Known As

Gigamon, GigaSecure
RSA Security Analytics
 

Overview

 

Sample Customers

Amica Insurance, College of William & Mary, Gamma, IntercontinentalExchange, OppenheimerFunds
Los Angeles World Airports, Reply
Find out what your peers are saying about Gigamon Deep Observability Pipeline vs. NetWitness Platform and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.