No more typing reviews! Try our Samantha, our new voice AI agent.

IBM SevOne Network Performance Management (NPM) vs Security Onion comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

IBM SevOne Network Performa...
Ranking in Log Management
41st
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
54
Ranking in other categories
Network Monitoring Software (39th), Server Monitoring (17th), IT Infrastructure Monitoring (42nd), Cloud Monitoring Software (31st)
Security Onion
Ranking in Log Management
27th
Average Rating
7.6
Reviews Sentiment
5.5
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Log Management category, the mindshare of IBM SevOne Network Performance Management (NPM) is 1.0%, up from 0.3% compared to the previous year. The mindshare of Security Onion is 2.6%, down from 5.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Security Onion2.6%
IBM SevOne Network Performance Management (NPM)1.0%
Other96.4%
Log Management
 

Featured Reviews

Grzegorz Nowak - PeerSpot reviewer
Solution Architect at Wingu
Improves infrastructure planning by helping us analyze network traffic
We use SevOne to collect and report on network flows SevOne improves infrastructure planning by helping us analyze network traffic. We can look at bandwidth for specific endpoints on the customer's network and analyze traffic to identify issues. For example, maybe some connectors are unavailable.…
Jörg Kippe - PeerSpot reviewer
Scientist at a educational organization with 10,001+ employees
A mature and affordable solution that is easy to install and easy to update
The product takes time to learn, it's not that easy. In the beginning we had a lot of questions. If you want to use such a tool in an real (industrial) environment, you have to ask how to get the network data. Can we do a full packet capture? Can we provide agents to our end systems? There are no simple solutions to these questions. It's a general problem when running such systems in an industrial environment.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature for us is its flexibility to handle different systems and different functions."
"The automation feature is good because if your CMDB is OK and it is already in sync, then the automation part is good to go."
"On any outage, SevOne is pretty quick to send an alert, and we've got an operations center that consumes the alert and sends it to the device owners so that they can minimize the time of impact of that alert."
"SevOne provides us with continuous analytics of our network and that gives us an idea of the health of our network, where our weaknesses are, and what needs to be fixed."
"SevOne’s data collection functionality is very good. From a collection point of view, we pull SNMP data, which is simple. It is easy to manipulate the pull in the estate. It is really simple compared to some of the other products that we have used. However, for deferred data, i.e., things that we import or don't pull directly, we tend to have a preplanned integration. So, its Universal Collector is really useful."
"The monitoring of the network is very customizable."
"SevOne has much faster performance than our previous solution."
"Customer Service: Fantastic – responsive."
"Security Onion is the most mature solution in the market."
"The most valuable feature of Security Onion for security monitoring is its ability to find infected ports."
"We use Security Onion for internal vulnerability assessment."
 

Cons

"I think that the upgrade process could be improved, which can be painful at times."
"There is no service mode setup in this monitoring tool if you want to snooze alerts for any specific amount of time, to account for any activity change or major incident."
"Their virtualization solution is not compatible with our Kubernetes environment, which is one of the reasons we are ending our relationship with them."
"You need to plan integrations; that has been the biggest bug with SevOne so far."
"Their virtualization solution is not compatible with our Kubernetes environment, which is one of the reasons we are ending our relationship with them."
"The customizations are very hard. The person doing it has to be very good at analytics and has to be very good in all languages"
"We previously have had discussions on some reporting enhancements. So, we raised a feature request, which was delivered from SevOne."
"The GUI: both the dashboard/user view and the admin tool."
"The initial setup of the solution is a little bit difficult."
"The product is not easy to learn."
"Security Onion's user interface could be improved."
 

Pricing and Cost Advice

"The pricing has been fair."
"Have a bank of licenses, because it is about the number of objects (RAM, ports, CPU, etc.)."
"Many tools price things based on the number of KPIs that you're collecting around a device. In many cases, there could be hundreds of metrics that you need to collect. SevOne provides device-level pricing. That gives us the flexibility to turn on, and expand on, the metrics that we're collecting around those devices, without taking a financial hit."
"The tool is not expensive. We were able to negotiate with SevOne on pricing."
"Prices per license are not huge, but they exist."
"The pricing has not evolved with the market, which is one of the reasons we are moving to a new product."
"It is inexpensive compared to other monitoring tools."
"There are cheaper solutions available."
"Security Onion is a free solution."
"Security Onion is an open-source solution."
"It is an open-source solution."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Manufacturing Company
12%
Construction Company
10%
Computer Software Company
6%
University
12%
Government
11%
Comms Service Provider
10%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise6
Large Enterprise45
No data available
 

Questions from the Community

What needs improvement with SevOne Network Data Platform?
There is room for improvement in the integration with different vendors and the reporting capabilities. It would be beneficial to have out-of-the-box integration with third-party vendors and improv...
What is your primary use case for SevOne Network Data Platform?
The primary use case of IBM SevOne Network Performance Management (NPM) ( /products/ibm-sevone-network-performance-management-npm-reviews ) is network monitoring. It helps to maintain the infrastru...
What advice do you have for others considering SevOne Network Data Platform?
To compete with custom-built tools, IBM SevOne Network Performance Management (NPM) should accommodate the desired features and be timely in the delivery of feature updates. I would rate the overal...
Ask a question
Earn 20 points
 

Also Known As

SevOne
No data available
 

Overview

 

Sample Customers

ATOS, Devereux, Spark New Zealand, Access4, Rogers Communication, Lumen (formerly known as CenturyLink)
Information Not Available
Find out what your peers are saying about IBM SevOne Network Performance Management (NPM) vs. Security Onion and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.