Compare RSA NetWitness Logs and Packets (RSA SIEM) vs. Zscaler Cloud Sandbox

Cancel
You must select at least 2 products to compare!
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pricing and Cost Advice
"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment.""Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day.""Our license is for one year."

More RSA NetWitness Logs and Packets (RSA SIEM) Pricing and Cost Advice »

Information Not Available
report
Use our free recommendation engine to learn which Advanced Threat Protection solutions are best for your needs.
511,307 professionals have used our research since 2012.
Questions from the Community
Top Answer: It would help if they could provide the malware analytics in the core package as that would make the cost more reasonable. Licensing is paid annually and I believe the cost is somewhere between 12,000… more »
Top Answer: I believe they could improve their support, there are often delays. The price of the solution could be reduced, it's very costly.
Ask a question

Earn 20 points

Ranking
Views
6,414
Comparisons
4,227
Reviews
10
Average Words per Review
502
Rating
7.7
Views
413
Comparisons
301
Reviews
0
Average Words per Review
0
Rating
N/A
Popular Comparisons
Also Known As
RSA Security Analytics
Learn More
Overview

If you’re relying on log data to detect and prevent cyber threats, you’re in trouble. Attackers increasingly evade detection of log-centric security and network monitoring tools. But logs combined with full packet, endpoint NetFlow data are proven to provide the essential details for early threat detection. Here’s a closer look at our solution.

Today’s appliance-based sandboxing solutions are expensive and, therefore, typically installed only in the data center. When users leave the network, they become exposed to new threats because sandbox protection can’t follow them. Traditional sandboxes usually operate out of line, allowing traffic through while inspecting suspicious files in TAP mode. If a threat is detected in the sandbox, it sends alerts, but they can arrive too late. Traditional sandboxes also lack the ability to fully inspect SSL traffic due to hardware limitations—and many malware authors are exploiting those limitations to distribute their malicious payloads. In order to provide sandbox protection, organizations have bolted sandboxing solutions onto their existing security stacks. It helps, but achieving a fully integrated threat platform across multiple products is nearly impossible.

For more details: https://www.zscaler.com/produc...

Offer
Learn more about RSA NetWitness Logs and Packets (RSA SIEM)
Learn more about Zscaler Cloud Sandbox
Sample Customers
Los Angeles World Airports, Reply
Zenith Live, Azure, Carlsberg Group
Top Industries
REVIEWERS
Comms Service Provider30%
Financial Services Firm30%
Computer Software Company20%
Healthcare Company10%
VISITORS READING REVIEWS
Computer Software Company32%
Comms Service Provider23%
Government7%
Financial Services Firm6%
VISITORS READING REVIEWS
Computer Software Company24%
Comms Service Provider20%
Energy/Utilities Company11%
Manufacturing Company8%
Company Size
REVIEWERS
Small Business26%
Midsize Enterprise16%
Large Enterprise58%
No Data Available
Find out what your peers are saying about Palo Alto Networks, RSA, FireEye and others in Advanced Threat Protection. Updated: May 2021.
511,307 professionals have used our research since 2012.

RSA NetWitness Logs and Packets (RSA SIEM) is ranked 3rd in Advanced Threat Protection with 11 reviews while Zscaler Cloud Sandbox is ranked 17th in Advanced Threat Protection. RSA NetWitness Logs and Packets (RSA SIEM) is rated 7.8, while Zscaler Cloud Sandbox is rated 0.0. The top reviewer of RSA NetWitness Logs and Packets (RSA SIEM) writes "Good support, powerful decoders and concentrator, but the dashboard is not reflecting events in real-time ". On the other hand, RSA NetWitness Logs and Packets (RSA SIEM) is most compared with Splunk, IBM QRadar, LogRhythm NextGen SIEM, RSA enVision and ArcSight Enterprise Security Manager (ESM), whereas Zscaler Cloud Sandbox is most compared with Microsoft Defender for Office 365, FireEye Network Security, Fortinet FortiEDR and Palo Alto Networks WildFire.

See our list of best Advanced Threat Protection vendors.

We monitor all Advanced Threat Protection reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.