What is our primary use case?
- MDR provider
- Logs aggregation
- Vulnerability assessments
- Some automation.
We needed a way to see all of these items under one pane of glass without spending incredible amounts of money on log aggregation, vulnerability assessments, etc., then putting it all together with an IR platform.
How has it helped my organization?
It answered a bunch of questions for us, such as what will we use for vulnerability assessments on a continual basis, how do we tie those reports into alerts/incidents, log aggregation, correlation, etc.
What is most valuable?
- Vulnerability assessments and log aggregation/correlation
These were the two answers we needed for our solution. It gave those solutions very easily. It is easy to implement, and effective.
What needs improvement?
The support could absolutely be better. It seems to have gotten worse with the AT&T acquisition.
We have been hearing some not so great things from our associates in the field as well.
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
Very stable so far. We have seen very few bugs, or downtime so far.
What do I think about the scalability of the solution?
It is pretty scalable for small/medium businesses. It starts to fade at enterprise. It is possible, but you will definitely run into limitations.
How are customer service and technical support?
Eh. Our experiences have been very mixed. If you get someone who is motivated to help, expect to be good to go. Otherwise, expect the problem not to get a good priority, and it may even get dragged out to a conclusion.
Which solution did I use previously and why did I switch?
We used, tested, and tried several solutions prior to this solution. This solution answered too many questions under one reasonable cost, as opposed to piecemealing everything together for more money.
How was the initial setup?
Super simple, almost anyone could do it. It is quick as well.
What about the implementation team?
We do everything in-house.
What was our ROI?
What's my experience with pricing, setup cost, and licensing?
It is I think for the market very straightforward, super easy to deploy. Licensing is straightforward in comparison to others.
Which other solutions did I evaluate?
Which version of this solution are you currently using?
Find out what your peers are saying about AT&T, Splunk, LogRhythm and others in Security Information and Event Management (SIEM). Updated: February 2021.
463,678 professionals have used our research since 2012.