No more typing reviews! Try our Samantha, our new voice AI agent.

NetWitness Platform vs VMware Aria Operations for Logs comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetWitness Platform
Ranking in Log Management
36th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Security Information and Event Management (SIEM) (35th)
VMware Aria Operations for ...
Ranking in Log Management
18th
Average Rating
8.2
Reviews Sentiment
6.2
Number of Reviews
29
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2026, in the Log Management category, the mindshare of NetWitness Platform is 1.2%, up from 0.4% compared to the previous year. The mindshare of VMware Aria Operations for Logs is 1.1%, down from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
VMware Aria Operations for Logs1.1%
NetWitness Platform1.2%
Other97.7%
Log Management
 

Featured Reviews

reviewer1130436 - PeerSpot reviewer
Information Technology Security and Infrastructure Expert at a government with 201-500 employees
Helps to deal with potential attacks and is available at a reasonable price
My company has had many benefits from the use of the product in the last eight years. The tool has streamlined our company's incident response process since it serves as a log repository, which allows us to correlate events and access different technology stacks. In our company, we were able to actually find some potential attacks, so it has been very helpful. The tool's integration capability isn't so great. In my company, we managed to integrate it with our Microsoft Azure Subscription, after which we managed to integrate it with other tools. You will face a lot of difficulties if you want to integrate it with your database monitoring tool, PAM solutions, or IAM products. The product has done well overall for my company's teams to deal with their workflow efficiency. I would not recommend the product to others. I rate the tool a seven out of ten.
DineshKumar21 - PeerSpot reviewer
Service Delivery Manager at DXC Technology
Comprehensive monitoring has improved performance, capacity planning, and multi-source log analysis
VMware Aria Operations for Logs would be used to completely monitor the health of your environment. Second is to understand your existing capacity and forecast your capacity for the next year or so. Third would be on performance management, understanding how the environment is performing, and what has to be done to optimize it. We use VMware Aria Operations for Logs for these purposes. We also use VMware Aria Operations for Logs to monitor non-VMware components as well. VMware Aria Operations for Logs is now part of a bigger suite with several modules added. You have an option to collect logs from various sources and then you can do some sorts of analytics from it as well. All of this can be done with VMware Aria Operations for Logs.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's fully scalable. There is no limit. Of course, the license limits per day the number of terabytes. In my opinion, it's very flexible."
"The detection of ransomware in the internal network has benefited my organization."
"Technical support is very good; they try to resolve issues with the proper SLAs which are defined by them and they understand the client's requirements as well as the client's infrastructure in a better manner."
"NetWitness Platform is valuable for creating rules that the solution must detect."
"The product's initial setup phase was not at all difficult."
"Possibility to investigate incidents based on logs and raw packets, such as extracting files sent over the network"
"Thanks to this tool, we have a small SOC running in our company."
"The most valuable feature is that we can create our own connectors for any application, and NetWitness provides the training and tools to do it."
"I believe it is a very useful solution if you have a large environment and C4 vCenter, or if you have thousands of virtual machines in your environment."
"I rate the overall solution a ten out of ten."
"The system's management and its alerts are the most valuable aspects of the solution."
"The events are notably more descriptive, aiding in security and event analysis. We've also integrated Sky Collector, providing valuable insights and solutions for troubleshooting."
"It is a scalable solution; I can say that I agree with the claims that it can be scaled, it is an awesome product, and organizationally it is able to cover our needs completely."
"We use the on-premises version of this solution for log analysis and to find details about certain issues."
"The setup costs can sometimes be a bit expensive but I think for the technology they are offering it's top of the mark."
"It provides multiple platforms, you can use a Windows Operating System, you can Mac, and you can use Linux on a particular server."
 

Cons

"Security needs improvement. We would still like to know how the traffic is entering the organization."
"The product continues to crash. Even with tech support help, it does not resolve itself."
"But the 11.3 version is a complete disaster. You cannot analyze anything."
"Technical support could be improved."
"The solution is pretty complex to set up. Comparatively, I have worked on IBM QRadar and Splunk; they are much easier to set up."
"The system looks like it is a mix of a bunch of different systems, and nothing looked like it was quite together."
"We have encountered issues with unresolved crashes."
"RSA NetWitness Logs and Packets can improve the threat level aspect, it is lacking compared to other solutions. Whenever any hacking activity or any other threat factor occurred they used to provide the coverages very fast when comparing RSA NetWitness Logs and Packets. I heard the other three solutions, from a discussion with my team members who had experience in other solutions, they used to say that. Whenever any issues happened across the globe RSA NetWitness Logs and Packets are a little bit slow improving those detection mechanisms."
"In vRealize login files, we have limitations regarding log partitions."
"Customer service and support have declined. Six months ago, I would have rated it as an eight or nine. Currently, it feels more like a four, five, or six."
"If data migration occurs during a search, it alters performance, causing delays."
"The solution is a very good tool, but it has a lot of limitations."
"Technical support should be improved."
"It's great for VMware, but it would be good if they had third-party logins."
"The pricing of the solution could be improved."
"The response time and quality need improvement. It takes too long to prove a problem and get a solution."
 

Pricing and Cost Advice

"The NetWitness Platform may be affordable only for enterprise-level customers, as it may not be within the budget of small and medium-sized businesses."
"This is a pricey solution; it's not cheap."
"Compared to the competition, the is price is not that high."
"The product is expensive."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
"The licenses are good but the cost is very expensive."
"We have yearly licensing costs. The license fee can be based on the volume of EPS. Some organizations may have, as a gentlemanly gesture, 10,000 EPS and get a 3,000 EPS license but actually use 5,000 EPS."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"It is not cheap. But it is worth it."
"I am not sure what the exact cost is. However, I believe the vRealize suite costs $2,500.00 per year."
"Pricing is good because it is part of the suite package. It comes in a bundle for us."
"I think it is a reasonably priced product."
"I rate the product's price a six on a scale of one to ten, where one is cheap, and ten is expensive."
"The pricing has been updated recently."
"Pricing could always be lower. If it were free, I would be more satisfied."
"The license cost for any other monitoring tool is too high compared to this product."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
915,383 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
11%
Comms Service Provider
10%
Outsourcing Company
10%
Financial Services Firm
10%
Government
9%
Manufacturing Company
9%
Outsourcing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise9
Large Enterprise13
 

Questions from the Community

What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
What is your experience regarding pricing and costs for vRealize Log Insight?
VMware Aria Operations for Logs does have device licenses. The license is perpetual and you do not have to pay monthly as it is a one time purchase. The only thing is if you are looking for support...
What needs improvement with vRealize Log Insight?
VMware periodically provides upgrades and updates to the product. They are also extending support to various third party hardware as well. I am not sure whether they have any ready made APIs for cl...
What is your primary use case for vRealize Log Insight?
We have been using this for the last five years.
 

Also Known As

RSA Security Analytics
vRealize Log Insight
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
Wildlands Adventure Zoo, Medic Mobile, IBM, Seventy Seven Energy, Baystate Health, Osis, Oxford University, Columbia University, Siemens, Cardinal Health, Ashdod Port, Vasakronan, Sydney Adventist Hospital, University of Derby
Find out what your peers are saying about NetWitness Platform vs. VMware Aria Operations for Logs and other solutions. Updated: September 2026.
915,383 professionals have used our research since 2012.