Try our new research platform with insights from 80,000+ expert users

NetWitness Platform vs VMware Aria Operations for Logs comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetWitness Platform
Ranking in Log Management
22nd
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
37
Ranking in other categories
Security Information and Event Management (SIEM) (22nd)
VMware Aria Operations for ...
Ranking in Log Management
9th
Average Rating
8.2
Reviews Sentiment
6.4
Number of Reviews
28
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2025, in the Log Management category, the mindshare of NetWitness Platform is 0.3%, down from 0.4% compared to the previous year. The mindshare of VMware Aria Operations for Logs is 1.2%, down from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

MdZaman - PeerSpot reviewer
Really scalable for enterprise customers
The solution should have more integration capabilities with different platforms. The API is nearly open and scalable, so the solution can integrate with many platforms. The solution has more than 200 log sources in the scalability to support, but this is its limit. Installation is pretty easy. However, there are a couple of modules involved, so it is not as easy as it could be. We are talking about a distributed module, not a single-module type. This is what makes things a bit complex, instead of easier. I rate it as a seven out of ten on its installation and configuration capabilities.
LarsChristensen - PeerSpot reviewer
Efficient troubleshooting with precise log filtering and an easy setup
The tool could benefit from improved filter settings and dashboarding. While there are dashboards available, they are often created by community members and may not work after updates. It would be beneficial to have a roadmap for these dashboards to ensure consistent functionality. It would also be advantageous if the tool could process even large amounts of data faster, though this may be more related to data movement challenges rather than the software itself.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the hunting ability to work in a CERT."
"The packet capture aspect of it is a valuable feature because it is quite different from a traditional SIEM solution that only carries out investigations based on captured logs."
"The most valuable features are the integration and ease of use."
"It's fully scalable. There is no limit. Of course, the license limits per day the number of terabytes. In my opinion, it's very flexible."
"It gives the ability to investigate into network traffic in the Net and the organization what we couldn't do before."
"Their technical support responds quickly and are knowledgable."
"It gives the capability for the incident response team to correlate logs to identify any kind of problem like malware and incidents in a general sense, both for logs and packets."
"It's quite economical compared to other solutions in the market."
"What I like is that you can have different storage locations for different applications."
"One of the most valuable features of vRealize Log Insight is that it gives you a clear forecast about your existing machines, for example, how long your machines could be supported and how long the remaining capacity is to host your machines. This is one of the best options available within vRealize Log Insight. Another valuable feature of the solution is automation. My company deploys a lot of automation when required in a very, very short period, and in a very uniform manner, and even if the automation is being deployed for different processes and departments, it's pretty much the same across the environment, so vRealize Log Insight helps reduce a lot of ambiguities and helps my company manage operational efficiencies well."
"We use the on-premises version of this solution for log analysis and to find details about certain issues."
"The system's management and its alerts are the most valuable aspects of the solution."
"VMware Aria Operations for Logs is a very stable product."
"vRealize Log Insight has been running without any issues."
"The most valuable features are log centralization and long-term retention for logs."
"It is very scalable and can handle a large workload."
 

Cons

"The initial setup is very complex and should be simplified."
"It should have a monitoring feature. It would help us analyze the current state of attacks faster from a single platform."
"The initial setup is complex. There are other solutions that are easier to implement."
"I'd like to see improvement in its ease of use. It's basically unusable. It's overly complex."
"An area for improvement would be better automation and more inbuilt use cases."
"It is not so easy to customize this product."
"The initial setup was complex because it takes a lot of time to complete the implementation."
"Log aggregation is an issue with this solution because there are a huge number of alerts in a single instance."
"It needs better integration with third-party analytics tools."
"The solution isn't user-friendly for admins."
"In the VMware environment, one area for improvement is the handling of VM failovers due to host failures, such as unexpected shutdowns from hardware issues. Currently, High Availability (HA) doesn't seem to recognize whether the VMs are online during failover, treating them as offline or unavailable."
"The tool does not provide a centralized pane for monitoring."
"Paid or free does not matter, but it is complex to find good training material for vRealize Log Insight."
"The tool could be cheaper."
"The solution should be more user-friendly. The user interface and dashboard could be simplified."
"In vRealize login files, we have limitations regarding log partitions."
 

Pricing and Cost Advice

"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment."
"It’s cheaper to run virtual machines in a VMware environment."
"We have yearly licensing costs. The license fee can be based on the volume of EPS. Some organizations may have, as a gentlemanly gesture, 10,000 EPS and get a 3,000 EPS license but actually use 5,000 EPS."
"The product price was reasonable for my region and the market."
"Our license is for one year."
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"In comparison to other SIEM solutions such as Splunk, NetWitness is less costly."
"The license cost for any other monitoring tool is too high compared to this product."
"The pricing has been updated recently."
"I am not sure what the exact cost is. However, I believe the vRealize suite costs $2,500.00 per year."
"I rate the product's price a six on a scale of one to ten, where one is cheap, and ten is expensive."
"The product's price is reasonable, but when it comes to SQL licensing, it's a bit expensive."
"Pricing could always be lower. If it were free, I would be more satisfied."
"Pricing is good because it is part of the suite package. It comes in a bundle for us."
"I think it is a reasonably priced product."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
850,028 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Financial Services Firm
18%
Government
6%
Insurance Company
6%
Computer Software Company
15%
Government
13%
Financial Services Firm
11%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about NetWitness Platform?
The product's initial setup phase was not at all difficult.
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What do you like most about vRealize Log Insight?
The events are notably more descriptive, aiding in security and event analysis. We've also integrated Sky Collector, providing valuable insights and solutions for troubleshooting.
What is your experience regarding pricing and costs for vRealize Log Insight?
Pricing for VMware Aria Operations for Logs can depend on several variables, including the workload and the customer. The price has risen significantly, and for smaller customers, the cost can be u...
What needs improvement with vRealize Log Insight?
It is not the main tool in my stack. I can do similar tasks using solutions like Grafana ( /products/grafana-reviews ). My focus is mainly on finding alternatives for hypervisor and automation purp...
 

Also Known As

RSA Security Analytics
vRealize Log Insight
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
Wildlands Adventure Zoo, Medic Mobile, IBM, Seventy Seven Energy, Baystate Health, Osis, Oxford University, Columbia University, Siemens, Cardinal Health, Ashdod Port, Vasakronan, Sydney Adventist Hospital, University of Derby
Find out what your peers are saying about NetWitness Platform vs. VMware Aria Operations for Logs and other solutions. Updated: April 2025.
850,028 professionals have used our research since 2012.