No more typing reviews! Try our Samantha, our new voice AI agent.

LevelBlue USM Anywhere vs Panther comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 24, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

LevelBlue USM Anywhere
Ranking in Security Information and Event Management (SIEM)
29th
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
115
Ranking in other categories
Log Management (28th), Endpoint Detection and Response (EDR) (37th), Compliance Management (14th)
Panther
Ranking in Security Information and Event Management (SIEM)
32nd
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
4
Ranking in other categories
AI Data Analysis (27th)
 

Mindshare comparison

As of September 2026, in the Security Information and Event Management (SIEM) category, the mindshare of LevelBlue USM Anywhere is 1.5%, up from 1.0% compared to the previous year. The mindshare of Panther is 1.0%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
USM Anywhere1.5%
Panther1.0%
Other97.5%
Security Information and Event Management (SIEM)
 

Featured Reviews

Kris Nawani - PeerSpot reviewer
Co-Founder/Director at Bangkok MSP Company Limited
Offers complete coverage without the need to install additional software
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools The solution offers complete coverage without the need to install additional software, as it is maintained by the vendor. It helps in saving…
Narendran Nair - PeerSpot reviewer
Product Security Engineer at Infoblox
AI triage has streamlined real-time alert monitoring and has improved on-call incident response
The best features Panther offers are AI Triage, the ability to comment on our activities, and seamless integration with other communication sources such as PagerDuty, Microsoft Teams, and potentially Slack, showcasing the flexibility we have in using this tool. The most valuable feature for my team is definitely AI Triage, which helps save a lot of time by eliminating the need for manual research regarding patterns that may be repeated, making our work easier and more efficient. Panther has positively impacted my organization as it serves as one of the main sources for triaging real-time incidents. Panther definitely plays a key role in the work that we do. Specific outcomes that show how Panther has helped our organization include saving a lot of time, especially since the AI Triage feature reduces the necessity to reach out to others for clarity, which it occasionally accomplishes on its own. To be honest, it does lack some aspects. For example, if it could access our organizational knowledge, including the Jira database, it might better analyze incidents and determine whether they are false positives or not by using more contextual data.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The asset management functionality (active and passive scans) is also really important. You can't protect what you do not know about, so having an inventory of all your devices and software is critical to a security management program."
"AlienVault has the necessary all-in-one product with the function of vulnerability scanner integrated with detections, so when you detect an incident in a vulnerable port you can act faster and prevent more incidents."
"AlienVault is my security person looking at irregularities and letting me know when something has occurred."
"The ROI is very good if you evaluate all the services which AlienVault can help you with: detection of Malware, bad activities, suspicious behavior, etc."
"AlienVault USM Anywhere provides us with SIEM, at a low price-point and with a great array of functionality."
"The low cost of entry SIEM functionality has increased due to network views and network traffic."
"We used, tested, and tried several solutions prior to this solution; this solution answered too many questions under one reasonable cost, as opposed to piecemealing everything together for more money."
"Customer service was very responsive and support was excellent."
"Panther positively impacts my organization as it is the first point of response for any incident, giving a reviewer full clarity about what is happening, how it is happening, and where it is happening."
"The AI Triage feature saves a considerable amount of time, and if it were to incorporate organizational knowledge, it could provide finer-tuned results."
"I find Panther's detection capabilities and integrations to be highly valuable."
"We have seen a return on investment measured primarily through SOC efficiency and productivity improvements, with teams observing a twenty to thirty-five percent improvement in investigation efficiency depending on the environment and product maturity."
 

Cons

"Pay attention to false-positive event automatic correlations."
"Plugins could be better utilized, as some of them do not recognize all logs."
"I knocked off a point for the learning curve compared to some of the competition and another point for the lack of native user behavior analytics but for the money you really can't do any better."
"They should improve the reporting capabilities. Different functions to customize reports should be added."
"More complimentary training needs to be done for use with this tool. If you get into a bind, then it will cost you."
"Upgrading the network cards (from 1GB to 10GB) was not “supported” on the appliance, so we had to purchase a second one as a sensor."
"I had some initial issues with some of the upgrades in version, but with the help of their support team, we were able to resolve all of them."
"Reporting and Windows log collection is the biggest drawback."
"The solution could be improved by providing more built-in integrations, which would reduce the need for me to build them myself."
"The user experience could be improved because whenever I want to investigate the data, too much data is shown in the UI."
"Regarding Panther's accuracy and reliability of output, I would rate it at 70 percent since, at times, it identifies findings as valid when they may actually be false positives, which we have experienced in a few cases."
 

Pricing and Cost Advice

"We ran a few PoCs. The price and feature set were the best with AlienVault."
"They are a little more expensive than Microsoft."
"It's saved security costs."
"Pricing is very competitive with other products and you get much more functionality from AlienVault."
"AT&T AlienVault USM is an expensive solution and we pay for the license and the support separately. We paid for the license and support for three years."
"I rate the price of AT&T AlienVault USM a four out of five."
"So far, I feel the product's pricing is a good value. The technology is decent. You get what you pay for. I think it's fair."
"​The vulnerability management solution is worse than buying a Nessus Professional license.​"
Information not available
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
914,351 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
20%
Outsourcing Company
18%
Comms Service Provider
8%
Manufacturing Company
7%
Construction Company
13%
Manufacturing Company
13%
Financial Services Firm
8%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business65
Midsize Enterprise29
Large Enterprise25
No data available
 

Questions from the Community

What needs improvement with AT&T AlienVault USM?
There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks. It is also limited when used with bigger products and has complex password requirements.
What is your primary use case for AT&T AlienVault USM?
USM Anywhere is used for threat detection and investigation. It provides a solution with built-in threat intelligence and various other investigation tools.
What is your experience regarding pricing and costs for Panther?
I am not aware of the pricing, setup cost, and licensing details, as I handle the usage of Panther and not the setup process.
What needs improvement with Panther?
Panther could be improved by adding a feature that allows it to access organizational data, which would help produce better-tuned outputs with fewer false positives and alerts, making our jobs easi...
What is your primary use case for Panther?
My main use case for Panther is real-time monitoring of alerts, where we triage incidents that occur for our on-call duties. Panther is one of the major sources from which we receive alerts in real...
 

Also Known As

AT&T AlienVault USM, AlienVault, AlienVault USM, Alienvault Cybersecurity
No data available
 

Overview

 

Sample Customers

Abel & Cole, Bank of Ireland, Bluegrass Cellular, CareerBuilder, Claire's, Hays Medical Center, Hope International, McCurrach, McKinsey & Company, Party Delights, Pepco Holdings, Richland School District, Ricoh, SaveMart, Shake Shack, Steelcase, TaxAct, Taylor Morrison, Vonage and Zoom
Docker, Loom, Discord, Dropbox, HubSpot, Asana, GoFundMe, Zapier, Benchling, JupiterOne, Jumio, Bitstamp, Intercom, Randori, and Cedar
Find out what your peers are saying about LevelBlue USM Anywhere vs. Panther and other solutions. Updated: September 2026.
914,351 professionals have used our research since 2012.