No more typing reviews! Try our Samantha, our new voice AI agent.

LogRhythm SIEM vs ManageEngine EventLog Analyzer vs ManageEngine Log360 comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

As of April 2026, in the Log Management category, the mindshare of LogRhythm SIEM is 2.6%, up from 2.2% compared to the previous year. The mindshare of ManageEngine EventLog Analyzer is 1.1%, up from 0.8% compared to the previous year. The mindshare of ManageEngine Log360 is 1.3%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
LogRhythm SIEM2.6%
ManageEngine Log3601.3%
ManageEngine EventLog Analyzer1.1%
Other95.0%
Log Management
 

Featured Reviews

SV
Cyber Security Engineer at Diyar United Company
Provides strong detection capabilities but requires improvements in parsing and stability
I cannot think of any specific features that LogRhythm SIEM can improve upon since it supports a wide variety of major vendors. However, they need to improve their parsing techniques; the tool should understand various devices and present data in a human-readable format. For example, if a personal Android mobile needs to be integrated, LogRhythm SIEM should be able to parse that data effectively. They also need to improve their database of supported devices to cover smaller vendors alongside the major players, allowing for better global reach and usability. I have noticed some problems with parsing errors, event mismatches, and data mismatching, so ensuring accurate parsing and continuous improvement according to device updates are my basic expectations as a detection engineer.
Md Abdul Hakim - PeerSpot reviewer
System Engineer at Corporate Projukti Limited
Efficient log management enhances activity monitoring despite VPN user issue
Last month, we faced an issue with a Hawaiian VPN user activity. It's like a Fortinet device configured for VPN users. When a VPN user logs in, it doesn't really capture the time before this. If you're testing with existing or new device integration, then the product will be good in the market.
Md Abdul Hakim - PeerSpot reviewer
System Engineer at Corporate Projukti Limited
Integration capabilities impress while room for improvement exists in cloud compatibility
1. Enhanced Cloud Integration Current Gap: Log360 lacks native integration with Microsoft Intune and cloud-based Active Directory (Azure AD), limiting visibility for organizations transitioning to hybrid or fully cloud environments. Requested Improvements: Direct Intune Log Collection: Ability to ingest and correlate logs from Intune-managed devices to monitor compliance, device health, and security policies. Azure AD Deep Integration: Support for Azure AD audit logs, conditional access events, and identity protection alerts to provide end-to-end visibility. Cloud Workload Monitoring: Extend coverage to SaaS applications (e.g., Microsoft 365, AWS, GCP) for unified threat detection. Why It Matters: Many clients have migrated from on-prem AD to cloud-first setups this year. Without cloud-native log collection, critical security events (e.g., rogue Intune policies or Azure AD breaches) go unmonitored. 2. Improved Automation and Response Current Gap: Limited automated remediation (e.g., auto-isolating compromised devices) forces manual intervention. Requested Features: Playbook Automation: Pre-built workflows to auto-resolve common issues (e.g., disabling users after brute-force attacks). SOAR Integration: APIs to connect with SIEM/SOAR platforms (e.g., Splunk, Palo Alto Cortex) for escalated threat response.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features would be the automation, reporting, and the support."
"Now, the SOC have custom dashboards, showing them a lot more useful information, puts the information in context, and they are actively using it for proactive investigations, rather than just responding to alarms."
"Our impression is the solution will be excellent toward meeting our existing security challenges."
"In comparison to others, LogRhythm SIEM has certain features that other solutions are lacking; for example, user analytics and user behavior monitoring are features that some of the other SIEMs lack."
"Their customer support is friendly and willing to help."
"We now have a central point of monitoring for all potential threats."
"The GUI is very intuitive and the solution has good integration."
"The content in the community is very helpful and useful for new users."
"What I found most useful in ManageEngine EventLog Analyzer is its integration with other ManageEngine applications; it seamlessly integrates throughout the ManageEngine suite, and that's beneficial, and I also like that the solution has chain management capabilities, it has a modular approach, and it's easy to reach the support team."
"The most valuable features of ManageEngine EventLog Analyzer are the number of capabilities, file integration monitoring, web server log collection, and alert configuration."
"What I found most useful in ManageEngine EventLog Analyzer is its integration with other ManageEngine applications. It seamlessly integrates throughout the ManageEngine suite, and that's beneficial. I also like that the solution has chain management capabilities, it has a modular approach, and it's easy to reach the support team."
"The user interface is very good."
"The log management has helped to improve my organization."
"The support system is very good."
"We use the solution because it is granular."
"The initial setup was very simple and straightforward, according to our security team."
"If the client does not have much knowledge regarding the SOC and cyber, then ManageEngine Log360 is good because you can get default reports."
"My main objective for using ManageEngine Log360 is its powerful and real-time capabilities for managing security and other tasks efficiently."
"It is nice to be able to monitor and to have notifications."
"The reporting is great. Everything you need is in the report for you already."
"We can use a single toolchain for more than one purpose altogether and manage them from one administrative console."
"It is easier to deploy than are other SIEMs, which is great. You can also get an overview of your environment, which is very handy."
"The solution could be improved by including XDR, remediation and Sandbox."
"It is nice to be able to monitor and to have notifications."
 

Cons

"The reporting engine is poor in comparison to other areas. It should be moved to the web interface to improve its functionality and usability."
"We need to get better training for things like creating code and playlists. The way it's done now takes a long time."
"LogRhythm NextGen SIEM is currently based only on the Windows platform. This means that some of our customers have to purchase a Windows license elsewhere. If LogRhythm can move to a Linux platform or a proprietary platform, it would be very helpful."
"I would say that the information is out there somewhere, but they don't have the best support site. They just don't."
"It’s very easy to overwhelm the system. I have some of the beefiest data that they provide, and I can still overrun the system."
"Right now you have to apply what they call RIM policies, Registry Integrity Monitoring policies, one agent at a time. If you have thousands of endpoint agents, you have to touch each one of those one at a time."
"Logging improvements. I think that the template to reporting is just difficult, it's hard to go back."
"I would like a more fuller implementation of STIX/TAXII so I can pull in some of the government lists without having to go implement a whole new STIX/TAXII platform."
"Last month, we faced an issue with a Hawaiian VPN user activity."
"There isn't good security integration when it comes to cybersecurity. The correlation of logs isn't so simple."
"The solution should improve on its log capturing capabilities."
"The first tier of customer service and support is not great, and additional upgrades could be included."
"It may not be as easy to use as Splunk."
"The solution should improve on its log capturing capabilities, the authentication, when a person logs onto a network device."
"The scalability is limited."
"Support could improve to make the solution better."
"It takes a little bit of time for Log360 to actually learn your environment."
"While ManageEngine Log360 is a significant improvement, there could be enhancements in terms of integrating more user-friendly training materials and better deployment documentation."
"The solution lacks some features when compared to other products."
"There is room for improvement, especially in the reporting aspect. The reports are not as good as those in Splunk."
"The graphical interface could be made easier to use when you are connecting to different network equipment."
"I haven't had very good support from those guys."
"ManageEngine Log360 is not a stable solution. It needs improvement."
"With ManageEngine, you need to actually have an idea of what you want to do with the information you're looking at. It doesn't drive you in the direction — that's a con."
 

Pricing and Cost Advice

"The pricing is very reasonable and accessible compared to other products in the market but I am not very sure about the exact licensing cost per year for our company."
"It is a very cost-effective solution."
"I have seen a measurable decrease in the mean time to detect and respond to threats. We went from not detecting them to detecting them. We can actually pick up what is anomalous in our network now."
"Everything is expensive with LogRhythm, and you don't get anything for free."
"We work with French-speaking African countries, and it costs more than the average SIEM solution. Also, the pricing isn't too flexible. AlienVault, Splunk, and IBM QRadar are more suitable for customers on a tight budget."
"The support which allows more customized to the environment when we are deploying new systems is called Professional Service and is very expensive. The technical annual support and there is an annual fee."
"I would rate the tool's pricing around eight out of ten."
"The solution has provided us with consistency and increased staff productivity through orchestrated automated work flows by at least 20 percent."
"We paid for the license of the solution and the deployment. The price of ManageEngine EventLog Analyzer is less expensive than other solutions."
"Licensing for ManageEngine EventLog Analyzer is paid yearly."
"There is a yearly subscription for the solution."
"There is a license required for these solutions. The customer can choose the license type, such as an annual license purchase or a perpetual license. If the customer wants maintenance they will have to pay annually."
"ManageEngine EventLog Analyzer is expensive. Its licensing costs are annual."
"ManageEngine EventLog Analyzer is a low-cost solution. It costs approximately $1,000 per month per server for a perpetual license."
"Affordable pricing is provided by the solution."
"ManageEngine Log360 is expensive compared to other products."
"There is a cost for each feature used."
"Its pricing is definitely huge compared to some of the other SIEMs. Its price should be improved."
"My client has a yearly license. I think the cost is not expensive compared to that of other SIEMs, given the service it is providing."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
885,667 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
9%
Construction Company
8%
Financial Services Firm
7%
Comms Service Provider
7%
Computer Software Company
11%
Government
10%
Comms Service Provider
8%
Healthcare Company
7%
Computer Software Company
9%
Comms Service Provider
8%
Construction Company
8%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business39
Midsize Enterprise38
Large Enterprise83
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise7
Large Enterprise2
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise2
Large Enterprise2
 

Questions from the Community

What is the difference between log management and SIEM?
Rony, Daniel's answer is right on the money. There are many solutions for each in the market, a lot depends upon you...
What needs improvement with LogRhythm NextGen SIEM?
LogRhythm SIEM could learn from Wazuh, as Wazuh has a built-in mechanism that allows you to write custom scripting an...
What do you like most about LogRhythm SIEM?
I find LogRhythm's log management capabilities to be beneficial.
What do you like most about ManageEngine EventLog Analyzer?
The reporting features are noteworthy, as they provide templates that streamline the process of generating reports
What needs improvement with ManageEngine EventLog Analyzer?
Last month, we faced an issue with a Hawaiian VPN user activity. It's like a Fortinet device configured for VPN users...
What is your primary use case for ManageEngine EventLog Analyzer?
I find this solution useful for IT devices as a live stream to work with Syshun, serving as both the router and the t...
What is your experience regarding pricing and costs for ManageEngine Log360?
The price is suitable from a perspective of different pricing options. We already have an ongoing project where some ...
What needs improvement with ManageEngine Log360?
ManageEngine Log360 could provide more in-depth insights, particularly in reporting. Some other solutions provide dee...
What is your primary use case for ManageEngine Log360?
ManageEngine Log360 is being used for database monitoring and as a SIEM solution.
 

Also Known As

LogRhythm NextGen SIEM, LogRhythm, LogRhythm Threat Lifecycle Management, LogRhythm TLM
EventLog Analyzer
No data available
 

Overview

 

Sample Customers

Macy's, NASA, Fujitsu, US Air Force, EY, Abbott, HD Supply, SAB Miller, UCLA, Raytheon, Amtrak, Cargill
Moody National Bank, EnCircle, Goldleaf Financial Solutions, Inc, IBM, Ernst & Young, Micro Linear, Silverbeck-Rymer Solicitors, Provincial Court of British Columbia, Eleventh Judicial Circuit of Florida, OGILVY & MATHER, E! Entertainment, Tribune-Review Publishing Co.
First Mountain Bank, TRA, Citadel Group, OnPoint Financial Corp, Florida Dept. of Transportation
Find out what your peers are saying about Wazuh, Splunk, Cribl and others in Log Management. Updated: March 2026.
885,667 professionals have used our research since 2012.