No more typing reviews! Try our Samantha, our new voice AI agent.

NetWitness Platform vs RiskIQ Illuminate comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetWitness Platform
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Log Management (32nd), Security Information and Event Management (SIEM) (34th)
RiskIQ Illuminate
Average Rating
0.0
Number of Reviews
1
Ranking in other categories
Attack Surface Management (ASM) (33rd)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. NetWitness Platform is designed for Log Management and holds a mindshare of 0.9%, up 0.3% compared to last year.
RiskIQ Illuminate, on the other hand, focuses on Attack Surface Management (ASM), holds 0.9% mindshare, up 0.2% since last year.
Log Management Mindshare Distribution
ProductMindshare (%)
NetWitness Platform0.9%
Splunk Enterprise Security6.6%
Wazuh6.1%
Other86.4%
Log Management
Attack Surface Management (ASM) Mindshare Distribution
ProductMindshare (%)
RiskIQ Illuminate0.9%
CrowdStrike Falcon6.3%
Darktrace4.4%
Other88.4%
Attack Surface Management (ASM)
 

Featured Reviews

reviewer2256927 - PeerSpot reviewer
Head of Information Security, Cyber Defense and IT Risk Management at HCT. at a transportation company with 201-500 employees
A solid SIEM solution that should improve technical support and online resources to be easier to use
A big problem with the product is that we don't have much professional experience in Israel installing, implementing, and integrating this product. There is not enough of a knowledge base. There is no support for this product in this country, so problems have to be resolved through global technical teams. We like to work locally because of the language, and when the product is only supported outside the country, it's a little difficult to implement and use this product. Moreover, AI is something that must be added immediately. Artificial intelligence is a part of the competitors' products, and it's not been implemented for us.
SimonClark - PeerSpot reviewer
Cyber Security Advisor - Director at Fort Net UK
Able to discover unpatched servers, offers good stability, and scales very well
A low-cost service to evaluate the risk score of a supply chain would be very helpful. This could be useful for insurance companies offering cyber insurance to enterprise customers, providing the insurer with a valuable way to unobtrusively, quickly, and frequently assess their customers and apply appropriate premiums for the level of risk. This would also be useful for enterprises. They could, for example, assess companies prior to a merger or acquisition. What would also be useful for any enterprise would be if their supply chain has some kind of direct digital access to parts of their network.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is reliable."
"The most valuable feature of RSA NetWitness Logs and Packets are the alerts and correlations tools."
"The most valuable feature of RSA NetWitness Logs and Packets are the alerts and correlations tools."
"It gives the capability for the incident response team to correlate logs to identify any kind of problem like malware and incidents in a general sense, both for logs and packets."
"Once it is deployed and you are used to it, you can do whatever you want."
"The development of use cases on the SSA console is quite user friendly, which means that the security analyst or the researcher does not have to learn another language."
"The product has a user-friendly interface and a valuable feature for threat intelligence integration."
"The most valuable feature is the ability to write rules and triggers for network communication, and then being able to investigate based on that."
"The solution is stable with 12 years of established historical data."
"Attack Surface Management provided our customers with visibility on everything in their network and domains - anything publicly-facing on the internet - and shows where they have potential vulnerabilities."
 

Cons

"I believe they could improve their support, there are often delays."
"The log system is a bit complex and has room for improvement."
"The initial setup is complex. It requires some knowledge in order to set it up."
"It is not so easy to customize this product."
"An area for improvement would be better automation and more inbuilt use cases."
"Health monitoring of the event sources and devices."
"More customizability is required, which is something that they need to improve on."
"But the 11.3 version is a complete disaster. You cannot analyze anything."
"A low-cost service to evaluate the risk score of a supply chain would be very helpful."
"The product scales from small to enormous, however, the pricing is not suitable for very small companies."
 

Pricing and Cost Advice

"RSA NetWitness Logs and Packets do not have a subscription model, it's a one-time purchase. There is only a perpetual license."
"There is a licensing fee and the customer can choose whether he wishes this to be subscription-based or perpetual."
"In comparison to other SIEM solutions such as Splunk, NetWitness is less costly."
"We are on an annual license for the use of the solution."
"The NetWitness Platform may be affordable only for enterprise-level customers, as it may not be within the budget of small and medium-sized businesses."
"Compared to the competition, the is price is not that high."
"It’s cheaper to run virtual machines in a VMware environment."
"The product is expensive."
Information not available
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Construction Company
8%
Performing Arts
7%
Comms Service Provider
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
Ask a question
Earn 20 points
 

Also Known As

RSA Security Analytics
RiskIQ Digital Threat Management
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
DocuSign, Outbrain, The Economist Group, Rackspace, The Citizen Lab
Find out what your peers are saying about Wazuh, Splunk, Cribl and others in Log Management. Updated: March 2026.
886,719 professionals have used our research since 2012.