Try our new research platform with insights from 80,000+ expert users

NetMon vs Securonix Next-Gen SIEM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetMon
Ranking in Identity Threat Detection and Response (ITDR)
16th
Average Rating
7.6
Reviews Sentiment
6.1
Number of Reviews
12
Ranking in other categories
Network Monitoring Software (51st)
Securonix Next-Gen SIEM
Ranking in Identity Threat Detection and Response (ITDR)
10th
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
35
Ranking in other categories
Security Information and Event Management (SIEM) (16th), AI Security (10th)
 

Mindshare comparison

As of January 2026, in the Identity Threat Detection and Response (ITDR) category, the mindshare of NetMon is 1.0%. The mindshare of Securonix Next-Gen SIEM is 1.9%, up from 1.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Identity Threat Detection and Response (ITDR) Market Share Distribution
ProductMarket Share (%)
Securonix Next-Gen SIEM1.9%
NetMon1.0%
Other97.1%
Identity Threat Detection and Response (ITDR)
 

Featured Reviews

SR
Pan India IT Infrastructure Management / End-user Services at Tata Group
Has supported real-time event detection and reporting accuracy while database integration has required extra effort
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to integrate NetMon with other databases. We can customize NetMon's monitoring views, but it is done by the team who handles it, as it is outsourced.
reviewer1375044 - PeerSpot reviewer
Assistant VP, Idm Compliance at a financial services firm with 1,001-5,000 employees
Centralized environment supports big data while facing integration challenges
The customization in Securonix Next-Gen SIEM is more difficult compared to other solutions. At the operation level, we are not facing many challenges with automating things using Securonix Next-Gen SIEM, but at the admin level, we have many challenges where log parsing is causing issues and compatibility is not present. The primary technology challenge we have is not at the security tools level. For example, firewall Cisco and others are capable. However, specific to product, for SAP, we are using certain products, and developing custom connectors for each product, especially the internal applications, is difficult, and Securonix Next-Gen SIEM is not up to the mark.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It has a very strong artificial intelligence engine."
"It is a stable solution...It is a scalable solution."
"The initial setup is straightforward because we can deploy an open server."
"Visibility is a valuable feature, the ability to see even if the traffic is not going into the firewall"
"We are using NetMon's real-time traffic analysis regularly with a team of four members who effectively monitor all alerts and events, which has helped them identify whether there could be a severe incident."
"The most valuable feature is the log, which can be analyzed by our SIEM solution."
"LogRhythm NetMon's most impressive feature is that it's a bundled package, so you're not just relying on monthly data; you get a six-month view for more comprehensive indicators of compromise. This dual approach is precious. We implement LogRhythm NetMon in our cybersecurity strategy mainly for compliance and correlation of network, user, and decision activities, particularly for network firewalls and access control."
"The protocols with which you see the traffic for a particular website that a client has in their environment, for example, are valuable. We can monitor whether the traffic is up to the mark or whether they need to add more bandwidth. Also, we can see if we're able to get real-time environment data as well. The customization dashboard is really good. LogRhythm NetMon has its own in-built dashboards which are helpful in guiding customization."
"The second feature is that within the SNYPR product there is a functionality called Spotter. We use that for link analysis diagrams and to run the stats command. That's extremely useful because it replaces a tedious, manual process we used to use, using Microsoft Excel and a couple of other methods, to bring data together."
"The most valuable feature is that it works on user behavior and event rarities."
"The user interface is easy to learn and navigate."
"The most valuable feature is what Securonix calls enrichment. Securonix is very powerful because of all the data it can process and automatically enrich. The actionable intelligence it provides is one of its benefits, due to the processing capacity it has."
"The machine-learning algorithms are the most valuable feature because they're able to identify the 'needle in the haystack.'"
"The detection of threats and reduction of false positive alarms as compared to other solutions are valuable features. It has improved threat detection response and reduced a lot of noise from false positives as compared to our previous SIEM solutions."
"What I like most is that the threat models and risk scoring are very accurate and very helpful to the analysts on my team. They help highlight the most important things for them to look at."
"There aren't any positive aspects of the solution. It was a complete failure. There are no redeeming features."
 

Cons

"The training for this product is not very good and needs to be improved."
"Could use a topology diagram which would help get an exact visual."
"The main concern is that LogRhythm has not improved NetMon but instead introduced a separate product, which many customers, including us, would prefer to be integrated into a single platform for easier management."
"The platform's integration features often need to be improved."
"Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time."
"I would like to see better integration with multiple products. Integration is not something that is readily available for most of the products."
"There is an issue with tunneling in relation to how the connectivity is established between the end devices and where NetMon is installed. On the console, I often observe that there's a difference of a few seconds or maybe a minute, and this lag time should not be there."
"LogRhythm NetMon's pricing model is an area of concern that should be made a little bit cheaper in comparison to the other players in the market currently."
"SIEM could have better integration with other technologies."
"Regarding the analysis of security events on the SOC side, Securonix Next-Gen SIEM needs to improve its automation capabilities."
"The passing and setup are quite complex at the beginning, making onboarding not smooth, which is an area that needs improvement."
"It takes too long to generate Spotter reports. For example, a 90-day report is around 100 megabytes. That takes a while, but a one-day report can be generated in a few seconds. We would be happy if they sped up the process."
"We have a lot of users who, because they're engineers and they're bringing down product data - where, at times, a top-level product could be 10,000 or 15,000 objects - it's difficult for us to determine what should be a concern and what shouldn't be a concern. We work with the Securonix folks to try to come up with better ways to identify that."
"A helpful feature would be an event export. A way to create more substantial summary reports would be nice."
"Securonix implements risk scores based on different policies that are triggered. We've seen some challenges with the risk scores and how they trigger. These are things that Securonix has recognized and they've been working with us to help improve things."
"It could be improved a little bit more for admin users. There should be more administrative options related to security for admin users. For example, for forensic purposes, the admin should be able to stop a specific user from erasing some information. I would be helpful in certain situations, such as during an internal fraud."
 

Pricing and Cost Advice

"The product is expensive for smaller companies."
"Pricing is okay. There were some competitors that were extremely expensive and there were some which were really inexpensive but LogRhythm stayed in the middle of them."
"The price of this solution is too high, so it should be made more practical and more valuable for the customer."
"LogRhythm's licensing part is something that depends on the license you want since they offer it on a perpetual and subscription basis."
"NetMon's licensing costs about $85k per year, with some extra costs for support."
"I don't have visibility into the pricing of LogRhythm NetMon as it's handled through our commercial partnerships."
"Compared to other known brands in the industry, the overall cost of the licenses is a bit higher than what customers expect."
"Its price is fine. We found it to be cheaper than LogRhythm, Exabeam, Splunk, as well as Elastic Security. A few months ago, when we were comparing Securonix with Elastic Security, we found Securonix to be cheaper than Elasticsearch. We were pretty surprised that Elastic Security is more expensive than Securonix because Elasticsearch is just starting, and it cannot compete with Securonix at this time. So, the pricing of Securonix is pretty good for now."
"Licensing is based on events per second (EPS), costing between $50 to $60 per EPS."
"The solution's price is double the competitors."
"The pricing is good, but by adding more things, the licensing becomes more complex because an EPS license fluctuates a lot. This licensing concept is going to be problematic in the long run."
"A good thing about Securonix is that they don't charge by volume of data or number of devices... They charge by the number of employees, which is a much more predictable number for me, versus data. Our costs are in the $100,000 range over a three-year subscription."
"We went in on a three-year agreement which has an annual licensing fee, based upon the number of people that we're monitoring. There have not been any additional costs to the standard licensing fees."
"Its pricing is quite similar to others and is very competitive. The other solutions have different types of licensing, but when you do the math, it is competitive."
report
Use our free recommendation engine to learn which Identity Threat Detection and Response (ITDR) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Transportation Company
19%
Performing Arts
13%
Financial Services Firm
11%
Comms Service Provider
7%
Computer Software Company
12%
Financial Services Firm
10%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise7
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise5
Large Enterprise19
 

Questions from the Community

What do you like most about LogRhythm NetMon?
It has a very strong artificial intelligence engine.
What is your experience regarding pricing and costs for LogRhythm NetMon?
I don't have visibility into the pricing of LogRhythm NetMon as it's handled through our commercial partnerships.
What needs improvement with LogRhythm NetMon?
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to i...
Which is the best SIEM tool for a mid-sized financial services firm: Arcsight or Securonix?
In my market, a lot of financial companies had or have an ArcSight installation. Just because in former times it was pretty good. Now a lot of them are looking for a more effective solution due to ...
What is your primary use case for Securonix Security Analytics?
We work with CrowdStrike, Securonix Next-Gen SIEM, and other cybersecurity products such as Gurucul. We are a service provider and partner of Securonix Next-Gen SIEM. We operate as a reseller of Se...
What is your experience regarding pricing and costs for Securonix Next-Gen SIEM?
The solution is definitely not expensive. It's benchmarked against others in this space, and we haven't received any negative feedback about pricing from customers or prospects.
 

Also Known As

LogRhythm Network Monitor
Securonix Security Analytics
 

Overview

 

Sample Customers

Sera-Brynn
Dtex Systems, Pfizer, Western Union, Harris, ITG
Find out what your peers are saying about NetMon vs. Securonix Next-Gen SIEM and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.