LogRhythm NDR vs NetWitness XDR comparison

Cancel
You must select at least 2 products to compare!
LogRhythm Logo
356 views|247 comparisons
100% willing to recommend
NetWitness Logo
699 views|492 comparisons
87% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between LogRhythm NDR and NetWitness XDR based on real PeerSpot user reviews.

Find out in this report how the two Network Detection and Response (NDR) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed LogRhythm NDR vs. NetWitness XDR Report (Updated: March 2024).
771,212 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"It's an excellent security tool with a user-friendly interface that's easy for anyone to use.""It is a stable solution...It is a scalable solution."

More LogRhythm NDR Pros →

"It helps our security team respond more accurately when there are threats, then we get less false positives or negatives.""Technical support is knowledgeable.""The interface of this solution is very flexible and easy to use.""Ability to isolate the machine when there are malicious files.""This solution allows us to locate the malware in real-time.""They have recently updated the features and the most valuable ones are the instant threat response, ease of use, web interface, integration, and easy access. RSA NetWitness Endpoint is very compatible with other solutions and technologies. However, they do not rely on third-party solutions and have most features built-in.""The log correlation is good.""NetWitness Endpoint's most valuable features are its interoperability across many different operating systems and the ease of pivoting from network to endpoint via a single console."

More NetWitness XDR Pros →

Cons
"From an improvement perspective, I would like LogRhythm NDR to reduce the compute size. I would also like LogRhythm NDR to improve the pricing model.""There are opportunities for improvement, particularly in upgrading the expertise of local professionals and addressing support issues, which could potentially lead to cost reduction."

More LogRhythm NDR Cons →

"I would like to see Security Orchestration and Response Automation (SOAR) integration.""RSA NetWitness Network could improve on integration with non-native application integration.""Threat detection could be better.""NetWitness Endpoint's blocking feature does not work properly - if there's a malicious process, it's not possible to kill it via a custom rule unless and until it's flagged as malicious.""The contamination feature could be improved.""Its price could be improved. It is an expensive product. Its training is also too expensive. It would be great if they can have a better pricing scheme for the training.""The solution is modular, for example you can buy the RSA ePack, which you buy as a module is not part of the conduit solution. They could include it and have it as an all-in-one solution.""This solution needs an upgrade in reporting. I have heard from RSA that they are working on this, but as of yet it is not available."

More NetWitness XDR Cons →

Pricing and Cost Advice
  • "There are certain payments to be made towards the licensing costs attached to the product yearly. The pricing of LogRhythm NDR falls under the mid-range, in my opinion."
  • "When looking at the market and comparing it with other vendors, the cost seems relatively high."
  • More LogRhythm NDR Pricing and Cost Advice →

  • "With RSA, there is flexibility in choosing the service, products, and the range that meets your requirement, as well as they are flexible in terms of pricing."
  • "They can easily adjust if you have the requirements which are required. If you have a budget cut or a budget constraint, they can bend."
  • "It is highly scalable. It can be bought based on your requirements."
  • "I do not have any opinion on the pricing or licensing of the product."
  • "The cost depends on the number of endpoints that you want to monitor, but it is not expensive."
  • "It is an expensive product."
  • "The price of the solution depends on the environment. If the environment is large then it will cost more. However, the larger the environment with more endpoints, you will receive an increased discount. If the environment is very small, then you might think it is expensive. It is always better to buy in bulk to receive a discount. The minimum number of assets is usually 500, with discounts on 1000 and 2000."
  • "The pricing is not very economical. It is a quite costly product for India. One thing is that when you purchase it, you have to purchase a module separately."
  • More NetWitness XDR Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
    771,212 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:It is a stable solution...It is a scalable solution.
    Top Answer:There are certain payments to be made towards the licensing costs attached to the product yearly. The pricing of LogRhythm NDR falls under the mid-range, in my opinion.
    Top Answer:I think that if it is possible to leverage on or reduce that compute sizing during the deployment of the solution, then it can save the hardware of the customer, especially if one considers the cost… more »
    Top Answer:Technical support is knowledgeable.
    Top Answer:The solution is expensive. I'd rate it at a one or two out of five. They need to adjust it to keep up with the competition. I cannot speak to the exact pricing of the product.
    Top Answer:I have no real complaints about the solution. Threat detection could be better. They need to enhance their threat intelligence feeds. We would like to have more IOCs or more trade intelligence to not… more »
    Ranking
    Views
    356
    Comparisons
    247
    Reviews
    2
    Average Words per Review
    450
    Rating
    8.0
    Views
    699
    Comparisons
    492
    Reviews
    6
    Average Words per Review
    320
    Rating
    7.8
    Comparisons
    Also Known As
    LogRhythm MistNet
    RSA ECAT, NetWitness Network
    Learn More
    LogRhythm
    Video Not Available
    NetWitness
    Video Not Available
    Overview

    Securing your network against advanced persistent threats (APTs) requires greater visibility to detect actors and their actions so that you can reduce your response time. As threats increase, real-time network detection and response (NDR) solutions are more critical than ever.

    While other NDR solutions rely solely on machine learning (ML) based threat detection, LogRhythm uses hybrid analytics that combine machine learning, rules-based detection, and threat intelligence to analyze network, user, and host activity. This holistic approach provides a true representation of all activity within the enterprise domain, making it possible to detect lateral movement, exfiltration, malware compromise, ransomware, and other threats in real time.

    Using a centralized combination of network and endpoint analysis, behavioral analysis, data science techniques and threat intelligence, NetWitness XDR helps analysts detect and resolve known and unknown attacks while automating and orchestrating the incident response lifecycle. With these capabilities on one platform, security teams can collapse disparate tools and data into a powerful, blazingly fast user interface.

    Sample Customers
    EMW, Conduent, University of Massachusetts, Deloitte Canada, Central Bank of Barbados, Coalfire
    ADP, Ameritas, Partners Healthcare
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company23%
    Government10%
    Manufacturing Company9%
    Comms Service Provider7%
    VISITORS READING REVIEWS
    Financial Services Firm15%
    Computer Software Company15%
    Government8%
    Manufacturing Company7%
    Company Size
    VISITORS READING REVIEWS
    Small Business34%
    Midsize Enterprise9%
    Large Enterprise57%
    REVIEWERS
    Small Business59%
    Midsize Enterprise24%
    Large Enterprise18%
    VISITORS READING REVIEWS
    Small Business17%
    Midsize Enterprise16%
    Large Enterprise67%
    Buyer's Guide
    LogRhythm NDR vs. NetWitness XDR
    March 2024
    Find out what your peers are saying about LogRhythm NDR vs. NetWitness XDR and other solutions. Updated: March 2024.
    771,212 professionals have used our research since 2012.

    LogRhythm NDR is ranked 11th in Network Detection and Response (NDR) with 2 reviews while NetWitness XDR is ranked 9th in Network Detection and Response (NDR) with 15 reviews. LogRhythm NDR is rated 8.0, while NetWitness XDR is rated 8.0. The top reviewer of LogRhythm NDR writes "A scalable and stable tool that offers users a great GUI". On the other hand, the top reviewer of NetWitness XDR writes "Beneficial single unified dashboard, good native application integration, and high availability". LogRhythm NDR is most compared with Darktrace, Vectra AI and Lumu, whereas NetWitness XDR is most compared with Darktrace, ExtraHop Reveal(x), CrowdStrike Falcon, SentinelOne Singularity Complete and Microsoft Defender for Endpoint. See our LogRhythm NDR vs. NetWitness XDR report.

    See our list of best Network Detection and Response (NDR) vendors.

    We monitor all Network Detection and Response (NDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.