Try our new research platform with insights from 80,000+ expert users

LogRhythm UEBA [EOL] vs Palo Alto Networks Advanced Threat Prevention vs Rapid7 InsightVM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Featured Reviews

Sheikh Abu Ayub Azad - PeerSpot reviewer
Great at managing cyber incidents; the technical support could be improved
The initial setup is easy, partly because LogRhythm is primarily based on the Windows platform. It's good to have two engineers for deployment but it can be done with one. It's more about the knowledge. Deployment is typically done in two or three different phases. It usually takes up to three full months to get good deployment. There's the initial onboarding of all the log sources, then collecting data in the data lake, followed a couple of weeks later with some minor tuning before the final tuneup.
Nasir Akbar - PeerSpot reviewer
Numerous support challenges arise but unique security features impress
In this scenario with Palo Alto Networks Advanced Threat Prevention, I did not get any opportunity to work on it. The only thing I did was forward the logs to the SIEM solution.For government entities, they are not allowing configuration changes. For non-government users, there is a support portal to get the configuration file and upload it to the portal. We can identify misconfigurations and where the loop is very big, so we can get the report and establish it. In Saudi Arabia specifically, the support service needs improvement. When customers have incidents with Palo Alto Networks Advanced Threat Prevention and want to open a case with the Palo Alto team, the available number in Saudi Arabia leads to a long procedure. They're not able to answer within one or two hours. This needs to be implemented. They may need to open offices in Dubai or other places for Arabic-speaking people to access TAC support.
Anusha Sadasivani - PeerSpot reviewer
Rapid deployment and user-friendly architecture streamline vulnerability management but customer support response needs improvement
We are still using Rapid7 InsightVM I personally still use Rapid7 InsightVM. We use Rapid7 InsightVM for vulnerability scanning. It supports both agent-based and agentless scanning, which is part of our vulnerability management strategy. The agentless scan in Rapid7 InsightVM is effective and…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I typically use the product for reducing cyber risk, and I can investigate attacks more quickly using machine learning tools."
"What I like most about LogRhythm UEBA is that it allows you to identify and analyze end-user behaviors and suspicious activities within the systems."
"It is easy to monitor users and that is how the solution is adding value to our firm."
"The solution is useful for privilege accounts and super admin accounts. It is beneficial from a security perspective. The tool uses machine learning rather than threshold-based alerts. For instance, it can detect unusual user logins, such as a user logging in from a new browser or location."
"The tool's most valuable feature is server threat hunting."
"LogRhythm UEBA’s best feature is the dashboard. It provides several graphs, charts, and event logs."
"Good capability pinpointing specific cyber incidents."
"The solution's most valuable features are the graphical user interface and the reporting."
"One of the most valuable features is the anti-malware protection."
"Palo Alto Networks Threat Prevention is the market leader as far as security gateways and endpoint protection. Additionally, the threat database that is used is one of the best."
"The most valuable features are the simplicity, transparency, and overall ease of management."
"Everything has been okay with the solution. We are using all of the features."
"I find the malware protection very handy."
"The most valuable feature of Palo Alto Threat Prevention for our company is the next generation firewall."
"It is a stable product."
"The initial setup was straightforward. It's quite easy. Deployment took one to two weeks."
"The most valuable features of the solution are the agent and the scanning."
"The most valuable feature is the vulnerability scan."
"One of the most valuable features is it's graphical dashboard feature. It is quite easy to manage the widgets, and we can customize those according to our queries."
"It is a stable solution."
"The most valuable feature is the site scanning, where we can provide a complete subnet and what it is we need to scan on those devices."
"I like Rapid7's scan optimization options."
"The solution is automatically scheduled so it runs by itself."
"The most valuable feature for us is the different types of reporting it provides."
 

Cons

"The product could be user-friendly for someone who doesn’t have any prior experience working with it."
"The on-premises LogRhythm is not very scalable. When considering packets per second or the MPS needed for additional logs such as web application logs, scalability is usually found in cloud products."
"The cloud version is lacking and not up to par."
"In general, if something needs to be improved in the algorithm, it would be the dashboards."
"What needs improvement in LogRhythm UEBA is the pricing. Here in Asia, for example, in Sri Lanka, pricing is the primary concern, and this is the only area for improvement I see in the product."
"The product should improve its dashboards. Splunk has neat dashboards. Additionally, we would like to enhance the use cases provided by LogRhythm as its use case library is not as extensive as other tools. Its machine-learning capabilities need to improve when compared to other solutions. It lacks risk quantification in a single, transparent view for individuals such as CSOs."
"LogRhythm UEBA's data aggregation needs to be improved. Open-source users do not have much documentation available. Documentation is available only for enterprise users."
"It should have better mitigation with other solutions and be tightly integrated with other solutions. It has to be improved."
"I think they can use some improvement on FID."
"Sometimes when you want to group a set of ports, and communicate with Palo Alto, you cannot group TCP and UDP ports together. This needs to be adjusted."
"The technology firewall anomaly network could stand improvement."
"The solution could benefit from improved AI analytics to predict potential attacks before they occur, similar to NDR systems."
"The organization mail security solutions could be improved. There is no mail security solution available."
"Right now we are focusing on email. If Palo Alto can increase the features related to email filtering and the new malware, it would help us protect our systems."
"The price of licenses should be lowered to make it less costly to scale our solution."
"The installation was complicated."
"We'd like the agent to cover more compliance issues."
"Some difficulties with the online reporting and lack of integrations."
"The reporting is a little bit tricky because it can be difficult to exactly pinpoint some of the assets to filter them and generate a report."
"I would say that it improved our visibility, but it left things open."
"It would be nice to have an additional feature that would provide reports on who has logged onto the console or who did what on the console."
"There are not enough templates, and the reporting is weak with this solution."
"The integration with other solutions like JIRA could be better. Perhaps there could be some additional updates in the next phase that could integrate with it, so then you can proceed with the VT much easier."
"The solution could improve by being more secure."
 

Pricing and Cost Advice

"LogRhythm UEBA's pricing is affordable for small and medium businesses."
"It is quite a budget-friendly product."
"I rate the product's pricing a three out of ten. However, the cloud version is expensive. You need to hire professional services for deployment and migrations, which can be expensive."
"As LogRhythm UEBA is pretty expensive, I'd give its pricing a seven out of ten."
"The pricing is nice when compared to other products in the industry."
"Licensing is on a yearly basis. It's not expensive compared to its competitors."
"There is an initial, expensive investment but the return is good."
"The pricing has improved with the newer generation of their Firewalls, but the price could always be lower."
"The cost involves the price of the hardware, which is expensive. However, most of the Palo Alto solutions are expensive."
"The pricing and the licensing are pretty competitive at this stage. As a reseller, I would like to see the price come down a little bit so I can compete better against other firewalls because we do that all the time."
"The product’s pricing is expensive for small companies."
"It is an expensive solution and I would like to see a drop in price."
"Palo Alto Networks Threat Prevention could improve by having consistent pricing at system levels."
"It's not too expensive."
"Pricing is reasonable because we pay according to asset usage. We can define our assets and sites according to our preference."
"The licensing is asset-based and very straightforward."
"The license is annual and this is the optimal approach when it comes to most software."
"The tool's price is neither too high nor too low. My company needs to pay 65,000 per year. There are no additional costs apart from the licensing fees attached to the solution."
"The solution is a bit more reasonably priced than other products."
"A full license for the solution is expensive because it is at the organizational level and not by individual users."
"InsightVM is an expensive product, especially compared to its competitors, at around a million NOK per year."
"This solution is expensive, but it's fine for us as we have an open budget for security solutions. Protection and having the system secured is more important."
report
Use our free recommendation engine to learn which User Entity Behavior Analytics (UEBA) solutions are best for your needs.
865,164 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
9%
Retailer
9%
Comms Service Provider
7%
Computer Software Company
14%
Manufacturing Company
9%
Government
9%
Financial Services Firm
8%
Financial Services Firm
13%
Computer Software Company
12%
Manufacturing Company
10%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about LogRhythm UserXDR?
The solution is useful for privilege accounts and super admin accounts. It is beneficial from a security perspective....
What is your experience regarding pricing and costs for LogRhythm UserXDR?
I rate the product's pricing a three out of ten. However, the cloud version is expensive. You need to hire profession...
What needs improvement with LogRhythm UserXDR?
In general, if something needs to be improved in the algorithm, it would be the dashboards. The dashboards with solut...
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would...
What is your experience regarding pricing and costs for Palo Alto Networks Threat Prevention?
Palo Alto Networks Advanced Threat Prevention requires an add-on license and is considered expensive compared to comp...
How would you choose between Rapid7 InsightVM and Tenable Nessus?
You have full visibility across cloud, network, virtual, and containerized infrastructures with Rapid7 Insight VM. Yo...
What do you like most about Rapid7 InsightVM?
The product's initial setup phase was very easy.
What is your experience regarding pricing and costs for Rapid7 InsightVM?
The customers are mostly SMBs, though some enterprise organizations have also deployed the solution. This is neither ...
 

Also Known As

LogRhythm UserXDR, LogRhythm Enterprise UEBA
No data available
InsightVM, NeXpose
 

Overview

 

Sample Customers

Information Not Available
University of Arkansas, JBG SMITH, SkiStar AB, TRI-AD, Temple University, Telkom Indonesia
ACS, Acosta, AllianceData, amazon.com, biogen idec, CBRE, CATERPILLAR, Deloitte, COACH, GameStop, IBM
Find out what your peers are saying about IBM, Exabeam, Cynet and others in User Entity Behavior Analytics (UEBA). Updated: July 2025.
865,164 professionals have used our research since 2012.