We performed a comparison between ArcSight Logger and Elastic Security based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."We haven't had any crashes or bugs. It is stable."
"ArcSight's robustness is its most valuable feature."
"It's a robust, mature product and you can do some really complex operations and analytics."
"The machine learning is a good feature."
"It provides in-depth information on business activities once we log into the system."
"The log digestion features from threat intelligence platforms like Recorded Future or Talos are valuable."
"The most valuable feature is the level of detail that you can see about certain events, even when they do not come up in the console."
"Our return on investment for implementing ArcSight Logger over the past 12 months has been positive."
"Its flexibility is most valuable. We can have a number of scenarios, and we can get logs from anything. If we know how to use Logstash, we can tweak it in many ways. This makes the logging search on Elastic very easy."
"The performance is good and it is faster than IBM QRadar."
"We chose the product based on the ability to scan for malware using a malware behavioral model as opposed to just a traditional hash-based antivirus. Therefore, it's not as intensive."
"The most valuable thing is that this solution is widely used for work management and research. It's easy to jump into the security use case with the same technology."
"The visualization is very good."
"I use the stack every morning to check the errors and it's just so clear. I don't see any disadvantage to using Logstash."
"We've found the initial setup to be quite straightforward."
"The scalability is good. It can be scaled easily in the production environment."
"I think the ArcSight team should try to simplify legacy products for the customers, because that product is not easy to use or to work with. It needs more more competency or appeal to use. We hope Micro Focus is trying to resolve this."
"In the next release, I want to see more intelligence."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"The initial setup was a little bit complex."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"The integration with other systems could be improved."
"The solution must provide readymade connectors for different applications."
"I would like to see better scheduling in the next release of this solution."
"Elastic Security could improve the documentation. It would help if they were more simple and clean."
"The price of this product could be improved, especially the additional costs. I would also like to see better-quality graphics."
"The biggest challenge has been related to the implementation."
"Anything that supports high availability or ease of deployment in a highly available environment would help to improve this solution."
"If the documentation were improved and made more clear for beginners, or even professionals, then we would be more attracted to this solution."
"I think because we are a cybersecurity company, the thing that can be improved is the prebuilt tools, especially quality. Compared to its competitor, they still have fewer prebuilt security rules. Elastic Security, in terms of generating alerts, cannot group the same products into one another. Even though the alerts are the same, they still generate them one by one. So, it is very noisy in our dashboard. I would like the Elastic Security admin to group all the same alarms into one alarm so that our dashboard is not noisy."
"Elastic Security has a steep learning curve, so it takes some time to tune it and set it up for your environment. There are some costs associated with logging things that don't have value. So you need to be cautious to only log things that make sense and keep them around for as long as you need. You shouldn't hold onto things just because you think you might need them."
"The solution could also use better dashboards. They need to be more graphical, more matrix-like."
ArcSight Logger is ranked 28th in Log Management with 31 reviews while Elastic Security is ranked 5th in Log Management with 59 reviews. ArcSight Logger is rated 7.8, while Elastic Security is rated 7.6. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of Elastic Security writes "A stable and scalable tool that provides visibility along with the consolidation of logs to its users". ArcSight Logger is most compared with Splunk Enterprise Security, IBM Security QRadar, Wazuh, LogRhythm SIEM and VMware Aria Operations for Logs, whereas Elastic Security is most compared with Wazuh, Splunk Enterprise Security, Microsoft Sentinel, IBM Security QRadar and Rapid7 InsightIDR. See our ArcSight Logger vs. Elastic Security report.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.