Compare RSA NetWitness Logs and Packets (RSA SIEM) vs. Sumo Logic

RSA NetWitness Logs and Packets (RSA SIEM) is ranked 13th in Security Information and Event Management (SIEM) with 6 reviews while Sumo Logic is ranked 5th in Log Management with 10 reviews. RSA NetWitness Logs and Packets (RSA SIEM) is rated 6.6, while Sumo Logic is rated 8.6. The top reviewer of RSA NetWitness Logs and Packets (RSA SIEM) writes "Provides accurate information, quick analysis from the endpoint perspective, and quick identification of any potential malware". On the other hand, the top reviewer of Sumo Logic writes "The dashboards are great. We use them for monitoring certain events". RSA NetWitness Logs and Packets (RSA SIEM) is most compared with Splunk, IBM QRadar and ArcSight, whereas Sumo Logic is most compared with Splunk, LogRhythm NextGen SIEM and AT&T AlienVault USM.
Cancel
You must select at least 2 products to compare!
Most Helpful Review
Find out what your peers are saying about Splunk, LogRhythm, IBM and others in Security Information and Event Management (SIEM). Updated: September 2019.
366,918 professionals have used our research since 2012.
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
It's fully scalable. There is no limit. Of course, the license limits per day the number of terabytes. In my opinion, it's very flexible.The most valuable feature is the ability to write rules and triggers for network communication, and then being able to investigate based on that.The most valuable features are its ingestion of logs and raising of alerts based on those logs.Their technical support responds quickly and are knowledgable.The most valuable feature is the correlation. It can report in real-time and monitor the management.It gives the ability to investigate into network traffic in the Net and the organization what we couldn't do before.

Read more »

We are able to diagnose problems before our customers.It helps a lot because we can troubleshoot issues pretty easily.We have used it many times to find a root cause of a live issue, then fix the problem in the applications.Support has been excellent. Sumo Logic's support staff is really good, both their account management staff and direct support.It provides easy visibility. I also like the shareable queries because we share a lot across groups.For many of our services, we use Sumo Logic to track errors and send notifications to our Slack channel, if there are issues. Then, we have our support people monitoring this, and they can react quickly.Scalability has been good for our needs. We haven't run into any scaling issues in regards to size so far.I have no concerns about the stability of the product. I feel it handles the stress we put on it very well.

Read more »

Cons
They should implement algorithms to digest that data and produce additional, more advanced reporting, alerting and support of internal security teams.The system looks like it is a mix of a bunch of different systems, and nothing looked like it was quite together.I'd like to see improvement in its ease of use. It's basically unusable. It's overly complex.The initial setup was complex because it takes a lot of time to complete the implementation.The implementation needs assistance.We have encountered issues with unresolved crashes.

Read more »

There are some API gaps that are missing.We would like to have some type of predefined setup for the logs, making the setup easier by default.We would like the ability to drill down into a dashboard and get into deeper levels.There needs to be improvement on imported data which can be used within Sumo Logic to do more advanced queries.I would like better UI-driven functionality to create alerts and reports. Now, we have to understand the syntax, so it is a little difficult for someone to pick it up without using the manuals. If there was more of a graphical user interface, it would be beneficial.It would be nice to have an improved ability to scroll through logs within a time frame. Right now, we can search for specific errors. However, if we want to look for "before and after" within a specific time frame, it's not easy using the tool. This would be an improvement.It took a bit of trial and error to get it set up correctly based on everything we had to do. In the end, we had to send everything over HTTP, which was sort of a stop-gap.If you want to up your subscription through the AWS Marketplace, it can be difficult. You can't just go back to the AWS Marketplace, and say, "I want a bigger one now." You have to contact the sales team, then they do it on the back-end. This could definitely be improved.

Read more »

Pricing and Cost Advice
We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment.This is a pricey solution; it's not cheap.The licenses are good but the cost is very expensive.It is cheap.

Read more »

The AWS Marketplace pricing is borderline. Every annual renewal, we always contemplate if we are getting what we think we could out of it or could we do it cheaper with some other product.The pricing is a little high, but for the features that we receive from Sumo Logic, it suits the price. For some small organizations, the price might be a little high.I don't pay the bill. I've heard the AWS Marketplace pricing is high, but I like the value.Pricing has been cheaper than some of the competing tools, like Splunk.If we went to ELK Stack, which is open source, it would have been less costly, but it would have required more development from our side.The only limit to the scalability of the product for us is how much we are willing to pay.The price scaling comes in a bit expensive.Purchasing the solution through the AWS Marketplace is very easy.

Read more »

report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
366,918 professionals have used our research since 2012.
Ranking
Views
6,549
Comparisons
4,372
Reviews
6
Average Words per Review
392
Avg. Rating
6.5
5th
out of 44 in Log Management
Views
3,728
Comparisons
2,645
Reviews
10
Average Words per Review
434
Avg. Rating
8.6
Top Comparisons
Compared 12% of the time.
Compared 11% of the time.
Compared 9% of the time.
Also Known As
RSA Security Analytics
Learn
RSA
Sumo Logic
Overview

If you’re relying on log data to detect and prevent cyber threats, you’re in trouble. Attackers increasingly evade detection of log-centric security and network monitoring tools. But logs combined with full packet, endpoint NetFlow data are proven to provide the essential details for early threat detection. Here’s a closer look at our solution.

Sumo Logic simplifies how you collect and analyze machine data so that you can gain deep visibility across your full application and infrastructure stack. With the Sumo Logic service, you can accelerate modern application delivery, monitor and troubleshoot in real time and improve your security and compliance posture.
Offer
Learn more about RSA NetWitness Logs and Packets (RSA SIEM)
Learn more about Sumo Logic
Sample Customers
Los Angeles World Airports, ReplyOoyala, Webjet, Akamai, Kaiser Permanente, Alaska Airlines, Hotel Tonight, Dollar Shave Club, Interactive Intelligence, Restoration Hardware, RingCentral, WD-40, Zillow, Sage Software, Tunein Radio, Lookout, Infor, Houzz, Estee Lauder, Brightcove, Actelion, Anki, Elance, Voxer, Cytobank, Medicom Health Interactive, Task Rabbit, Zscaler, Thred Up, Netskope, Tobi, Infoblox, Imperva, Okta, Medallia, RelateIQ, Bazaar Voice, Blurb, Guidewire, Apigee, Swipely, Progress Software, Card Spring, Ubiquiti Networks, Pager Duty, McGraw Hill, Acquia, Limelight Networks, Blucora, Scripps Networks Interactive, Orange, Medidata, 3 Share
Top Industries
VISITORS READING REVIEWS
Software R&D Company26%
Financial Services Firm17%
Comms Service Provider16%
Energy/Utilities Company9%
VISITORS READING REVIEWS
Software R&D Company22%
Media Company14%
Financial Services Firm10%
Pharma/Biotech Company8%
Find out what your peers are saying about Splunk, LogRhythm, IBM and others in Security Information and Event Management (SIEM). Updated: September 2019.
366,918 professionals have used our research since 2012.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.
Sign Up with Email