2020-04-28T08:50:45Z
it_user434868 - PeerSpot reviewer
Senior Director of Delivery at a tech services company with 51-200 employees
  • 0
  • 8

What do you like most about Elastic SIEM?

Hi Everyone,

What do you like most about Elastic SIEM?

Thanks for sharing your thoughts with the community!

14
PeerSpot user
14 Answers
PC
Consultant at RIPEN
Real User
Top 5
2022-10-03T10:41:11Z
Oct 3, 2022

What customers found most valuable in Elastic Security feature-wise is the search capability, in particular, the way of writing the search query and the speed of searching for results.

Search for a product comparison
Omar Mezrag - PeerSpot reviewer
CyberSecurity Specialist at a security firm with 11-50 employees
Real User
Top 10
2022-08-12T16:29:59Z
Aug 12, 2022

Elastic Security allows us to deliver visibility in a few hours, which makes our customers more confident in our service.

KF
Engineer at a tech services company with 501-1,000 employees
Real User
2022-07-01T05:07:16Z
Jul 1, 2022

We chose the product based on the ability to scan for malware using a malware behavioral model as opposed to just a traditional hash-based antivirus. Therefore, it's not as intensive.

WI
Principal Cyber Security Manager at Ask4key
Real User
Top 20
2022-06-21T06:05:00Z
Jun 21, 2022

The most valuable features of the solution are the prevention methods and the incident alerts.

MF
Chief Operating Officer / SR. Project Manager at SCS
Real User
Top 20
2022-05-20T17:40:00Z
May 20, 2022

One of the most valuable features of this solution is that it is more flexible than AlienVault.

Giuseppe Ragazzini - PeerSpot reviewer
Project Delivery Manager at Spindox
Real User
Top 20
2022-04-06T19:47:30Z
Apr 6, 2022

It's not very complicated to install Elastic.

Learn what your peers think about Elastic Security. Get advice and tips from experienced pros sharing their opinions. Updated: December 2022.
657,397 professionals have used our research since 2012.
Haitham AL-Sarmi - PeerSpot reviewer
Information Security Analyst at a financial services firm with 1,001-5,000 employees
Real User
Top 5
2022-02-06T07:24:04Z
Feb 6, 2022

ELK is open-source, and it will give you the framework you need to build everything from scratch.

TeguhBudyantara - PeerSpot reviewer
Professional Services Manager at PT Korelasi Persada Indonesia
Real User
Top 5Leaderboard
2022-01-05T07:23:09Z
Jan 5, 2022

Elastic is straightforward, easy to integrate, and highly customizable.

SA
Consultant at a computer software company with 5,001-10,000 employees
Real User
Top 5
2021-05-21T09:52:37Z
May 21, 2021

It is very quick to react. I can set it to check anomalies or suspicious behavior every 30 seconds. It is very fast.

TW
I.T. Manager at a healthcare company with 51-200 employees
Real User
Top 10
2020-10-01T09:58:00Z
Oct 1, 2020

Just the ability to do a lot more than just up-down is nice, which a lot of people take for granted.

SA
Consultant at a computer software company with 5,001-10,000 employees
Real User
Top 5
2020-07-29T07:45:59Z
Jul 29, 2020

The most valuable feature is the speed, as it responds in a very short time.

JM
Director of Engineering at a tech services company with 201-500 employees
Real User
2020-05-18T07:50:00Z
May 18, 2020

The most valuable features are the speed, detail, and visualization. It has the latest standards.

KE
Cyber Security Consultant at a tech services company with 51-200 employees
Real User
2020-04-28T08:50:48Z
Apr 28, 2020

The performance is good and it is faster than IBM QRadar.

JJ
CEO at a tech services company with 51-200 employees
Real User
2020-04-28T08:50:45Z
Apr 28, 2020

The most valuable feature is the machine learning capability.

Related Questions
Faustine Chisasa - PeerSpot reviewer
Engineering Supervisor- Corporate Data Solutions and Services at TZ Telecoms. Corporation
Oct 2, 2021
Hi community, Grafana observability has Grafana for visualization and analytics, Loki for logs, Tempo for traces and Prometheus for metrics while ELK stack has tools like Elasticsearch for search, Logistash for logs and Kibana for visualization.  Which of these 2 platforms would you choose and why? Thank you.
See 1 answer
SC
AVP, Site Reliability Engineer at a financial services firm with 10,001+ employees
Oct 2, 2021
Hi @Faustine Chisasa,  I will go with ELK + Grafana. Elasticsearch is highly distributed, scalable and fast. You got power of storage. Logstash is highly pluggable and rich in plugins. You can use any buffer or streaming platform in Logstash pipeline example: RabbitMQ, Kafka, redis, etc. ELK has watchers alerts. S3 searchable snapshot is the best thing in the latest version of ELK which gives you long retention capabilities and search directly from S3 without restore to Elasticsearch.  Grafana can be used to connect to Elasticsearch and you can use all dashboard templates for monitoring. Metricbeat gives you metrics from On-premise, EC2, Pivotal, cloudfoundry, cloudwatch.  Functionbeat gives you cloudwatch logs.  Grafana needs a separate license and native agents. So all in all, a premium ELK license with open-source Grafana is the best stack for observability.  Cheers, Sunil. 
HAPPY BHALLA - PeerSpot reviewer
Senior Software Engineer at a tech services company with 501-1,000 employees
Sep 29, 2022
Dear community members,  I've been exploring Datadog vs ELK and I need your opinion about both of them in terms of performance, cost, and efficiency? Which one would you recommend?
2 out of 7 answers
TA
Cyber Security Consultant at a tech services company with 11-50 employees
Jun 21, 2021
Dear, Unfortunately, I can't say much about Datadog but I have used ELK for a short period.  And I can tell you not everything works the way it should. For example, I noticed heavy CPU usage for a Windows client on MS AD servers. I advise you to consider this if it's important to you. Good luck!
Shibu Babuchandran - PeerSpot reviewer
Regional Manager/ Service Delivery Manager at ASPL INFO Services
Jun 22, 2021
Datadog: Unify logs, metrics, and traces from across your distributed infrastructure. Datadog is the leading service for cloud-scale monitoring. It is used by IT, operations, and development teams who build and operate applications that run on dynamic or hybrid cloud infrastructure. Start monitoring in minutes with Datadog! Datadog features offered are:200+ turn-key integrations for data aggregationClean graphs of StatsD and other integrations Elasticsearch: Open Source, Distributed, RESTful Search Engine. Elasticsearch is a distributed, RESTful search and analytics engine capable of storing data and searching it in near real time. Elasticsearch, Kibana, Beats and Logstash are the Elastic Stack (sometimes called the ELK Stack). Elasticsearch provides the following key features:Distributed and Highly Available Search Engine.Multi Tenant with Multi Types.Various set of APIs including RESTful
Related Articles
Netanya Carmi - PeerSpot reviewer
Content Manager at PeerSpot (formerly IT Central Station)
May 2, 2022
PeerSpot’s crowdsourced user review platform helps technology decision-makers around the world to better connect with peers and other independent experts who provide advice without vendor bias. Our users have ranked these solutions according to their valuable features, and discuss which features they like most and why. You can read user reviews for the Top 8 Log Management Tools to help you d...
Related Articles
Netanya Carmi - PeerSpot reviewer
Content Manager at PeerSpot (formerly IT Central Station)
May 2, 2022
Top 8 Log Management Tools 2022
PeerSpot’s crowdsourced user review platform helps technology decision-makers around the world to...
Download Free Report
Download our free Elastic Security Report and get advice and tips from experienced pros sharing their opinions. Updated: December 2022.
DOWNLOAD NOW
657,397 professionals have used our research since 2012.