ManageEngine Log360 and Wazuh are leading solutions in the log management and security domain. ManageEngine Log360 has an edge with its comprehensive features and integration capabilities, whereas Wazuh stands out with its cost-effective open-source nature.
Features: ManageEngine Log360 provides a broad suite of modules for security management, offering features like user behavior analytics and compliance reporting, all integrated into a unified dashboard. Wazuh offers a cloud-native infrastructure, vulnerability scanning, and compliance support, but lacks built-in threat intelligence integration.
Room for Improvement: ManageEngine Log360 needs enhanced cloud integration, improved automation, and faster alert response times. Wazuh could improve with real-time Unix monitoring, better threat detection, and AI integration. Both solutions require better scalability and AI enhancements.
Ease of Deployment and Customer Service: ManageEngine Log360 primarily offers on-premises deployment but faces challenges in complex scenarios, though its customer support is generally robust. Wazuh provides diverse deployment options, including cloud configurations, but requires community resources for its complex open-source setup.
Pricing and ROI: ManageEngine Log360 is often seen as expensive but offers strong ROI when fully utilized. Wazuh, being open source, incurs minimal costs aside from infrastructure and provides substantial ROI for small to medium businesses, though initial setup demands considerable effort.
If unauthorized personnel attempt to add logs, the monitoring informs the administrator, enabling them to act promptly, leading to savings in both time and money for the company.
I have seen value in security cost savings with Wazuh, as using proprietary EDR versions could save us substantial money.
I would rate their technical support as nine out of ten.
They responded quickly, which was crucial as I was on a time constraint.
We use the open-source version of Wazuh, which does not provide paid support.
The documentation is good and provides clear instructions, though it's targeted at those with technical backgrounds.
The technical support from ManageEngine is very good.
Currently, I don't see any limitations in terms of scalability as Wazuh can still connect many endpoints.
It can accommodate thousands of endpoints on one instance, and multiple instances can run for different clients.
Scalability depends on the configuration and the infrastructure resources like compute and memory we allocate.
The stability of Wazuh is strong, with no issues stemming from the solution itself.
The stability of Wazuh is largely dependent on maintenance.
The indexer frequently times out, requiring system restarts.
Log360 currently cannot gather information from Intune logs or cloud-integrated systems.
I think Wazuh should improve by introducing AI functionalities, as it would be beneficial to see AI incorporated in the threat hunting and detection functionalities.
Wazuh could improve by creating videos on YouTube covering installation, use cases, and integration of third-party APIs for different scenarios that other SAAS services provide.
The integration modules are insufficiently developed, necessitating the creation of custom integration solutions using tools like Logstash and PubSub.
The price is suitable from a perspective of different pricing options.
Wazuh is completely free of charge.
Totaling around two lakh Indian rupees per month.
Wazuh is free to use, but there are licensing fees for third parties.
All mandatory regulatory compliance reports are available with the integrated system, and companies can easily customize reports without coding to meet their policy or reporting requirements.
Wazuh is a SIEM tool that is highly customizable and versatile.
With this open source tool, organizations can establish their own customized setup.
The system allows us to monitor endpoints effectively and collect security data that can be utilized across other platforms such as SOAR.
Product | Market Share (%) |
---|---|
Wazuh | 10.9% |
ManageEngine Log360 | 1.9% |
Other | 87.2% |
Company Size | Count |
---|---|
Small Business | 13 |
Midsize Enterprise | 2 |
Large Enterprise | 1 |
Company Size | Count |
---|---|
Small Business | 25 |
Midsize Enterprise | 15 |
Large Enterprise | 8 |
Log360 is your one-stop solution for all log management and network security challenges. It is an integrated solution that combines EventLog Analyzer and ADAudit Plus into a single console to help you manage your Active Directory auditing and network security easily.
Wazuh offers comprehensive security features like MITRE ATT&CK correlation, log monitoring, and cloud-native infrastructure. It ensures compliance and provides intrusion detection with high scalability and open-source flexibility, ideal for businesses seeking robust SIEM capabilities.
Wazuh stands out in security information and event management by providing efficient log aggregation, vulnerability scanning, and event correlation against MITRE ATT&CK. Its capability to integrate seamlessly with environments, manage compliance, and monitor files makes it suitable for cloud-native infrastructures and financial sectors. Despite its technical support needing enhancement and opportunities for improving AI integration and threat intelligence, its open-source nature and cost-effectiveness make it appealing. Users can leverage custom dashboards powered by Elasticsearch for precise data analysis, even though there is a desire for a more user-friendly interface and better enterprise solution integration. Deployment may be complex, but its features contribute significantly to fortified security postures.
What are the essential features of Wazuh?Industries like finance and cloud infrastructure heavily utilize Wazuh for its security strengths. By monitoring endpoints and ensuring compliance with frameworks, companies can improve security posture and swiftly detect anomalies. The platform's focus on event correlation and alerts for security incidents is particularly beneficial.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.