LogRhythm SIEM Stability

KM
Global Security Manager at Chart Industries Inc

The stability of the solution, if it's deployed properly with the right resources, is rock solid. We have not experienced any performance issues. When we first bought the SIEM, we undersized it, and the performance was compromised. 

View full review »
Joseph W. - PeerSpot reviewer
System Administrator at GOLDENWEST FEDERAL CREDIT UNION

It's very stable. We've been on the same system for the seven years that we've had the product. We've had no issues and haven't even had to upgrade any of the systems or increase anything hardware-wise up to this point.

View full review »
Subhash Sreenivasan - PeerSpot reviewer
Founder & CTO at NiyoSecure

We haven't encountered any significant problems, so it effectively keeps our processes running smoothly. I'd rate it an eight. It's generally stable, though we haven't faced any major stability issues.

View full review »
Buyer's Guide
LogRhythm SIEM
March 2024
Learn what your peers think about LogRhythm SIEM. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
768,578 professionals have used our research since 2012.
YI
Regional Technical Manager at HTBS

It is a pretty stable solution. Stability-wise, I rate the solution an eight out of ten.

View full review »
JG
Senior Cyber Security Engineer at a individual & family service with 10,001+ employees

It is stable when all the resource recommendations are met.

View full review »
Wail Khachfa - PeerSpot reviewer
Network and Security Specialist at Ajman Digital Government

I would rate it 10 out of 10.

View full review »
SK
Manager Solutions Architect at a comms service provider with 10,001+ employees

The solution is scalable. I'd rate it eight out of ten. There are no bugs or glitches. It's reliable, and the performance is good. 

View full review »
SR
Sr Manager - Information Security at a computer software company with 1,001-5,000 employees

I rate the tool’s stability a seven out of ten.

View full review »
DH
SOC Analyst at PLS Financial

In terms of using it on-premises, it is very stable. Granted, we have some hiccups here and there. However, that's what we reach out to tech support for. They're able to provide us with immediate support, and they're willing to really put in the effort to figure out what the cause of the problem is and will work until it's fixed in a timely fashion. 

View full review »
AS
Senior Network Engineer at a government with 5,001-10,000 employees

With respect to stability, I can only speak to our environment, but we have had issues with the hardware. It's a Windows product. We have seen the system spontaneously seizing, and we have experienced complete failure.

When an incoming log message is processed there are a lot of operations that have to take place. These include analyzing the time, identifying fields to see which are present, naming the fields, and indexing the information. We have seen this process fail quite a few times. With the recent purchase of new hardware, however, I don't think that we have had this problem lately. It may be related to an older version of the hardware, but I don't know.

View full review »
AG
Cybersecurity Solutions Architect at a tech vendor with 10,001+ employees
JB
SIEM Architect at Marsh & McLennan Companies, Inc.

After a year-and-a-half, we're not stable yet. Every time we think we're stable for a week or two, we wake up the next morning to another million logs backlogged somewhere. We're very unhappy with that, very frustrated. We've been working with engineering and upper levels, with everybody. The one positive part of that is that everybody has been very responsive and everybody has been very helpful in trying to stabilize our environment. Version 7.3 destroyed us. There is not one device that we have original code on. Everything is DevCode.

To be fair, we're a very tough company. We're presently at 5.5 billion events a day. We're sustaining 55,000 logs a second. We have a pretty big deployment, but it's not stable.

View full review »
KM
Global Security Manager at Chart Industries Inc

It has been incredibly stable. I had one minor hardware problem, where it did not reboot at all. It just sat there, but it was just a minor hardware thing, other than that, the software itself has been incredibly stable.

View full review »
LV
Security Analyst at Secure-24

I rate the tool’s stability a seven out of ten. The tool fails if we run big queries. The search breaks down even if we put a limit on the number of events.

View full review »
JG
Senior Cyber Security Engineer at a individual & family service with 10,001+ employees

The stability is very good, now. Initially, when I started working on this four years ago, the actual solution that was brought into our company wasn't very scalable, it wasn't architected properly for our type of environment. I've since re-engineered and architected a different solution with LogRhythm to actually meet our needs.

View full review »
KS
Senior Security Engineer at a manufacturing company with 5,001-10,000 employees

Stability has been good. We have been bitten by the knowledge base (KB) twice in the last two years. I had some things that I did that caused the AI Engine to have problems. 

Once you get stuff up tuned, it just runs.

View full review »
GC
Security Engineer at a logistics company with 10,001+ employees

I would say that stability for us, overall, considering we're a brand new customer of LogRhythm, it's been very stable. We've had a couple of things come up, and I'd say those are more than anything just a "Oh, we didn't know that this should be tuned to a particular way or that the database wouldn't auto grow on its own". And there've been a couple of things like that, but there's been no major issue of, "Oh no, we threw too much data at it and the whole thing just died."

That's one thing that I'm pretty grateful for is that the whole thing hasn't come crumbling down upon us. And that can happen with a SIEM, particularly when you've got multiple data streams feeding in. As one piece of the puzzle breaks down, there's a downstream effect of killing every other part of the SIEM further on down the line. That hasn't happened yet. So, we haven't had any cascading failures or anything like that. It's actually been really stable so far and we've enjoyed that.

View full review »
it_user711480 - PeerSpot reviewer
Works at a aerospace/defense firm with 1,001-5,000 employees

We have a HA setup and have had zero down time so far.

View full review »
AS
Information Technology with 501-1,000 employees

LogRhythm is very stable and reliable.

View full review »
RC
Senior Security Analyst at a transportation company with 501-1,000 employees

The solution's been very stable for us. We bought a high-availability solution, so we have two systems in a high-availability pair. That redundancy gives us resilience. It comforts us to know that if we lose one data center, we've still got logs going into our SIEM in the second data center.

View full review »
DS
IT Security Analyst at a hospitality company with 10,001+ employees

Stability in the LogRhythm product has been very solid for me. I'm a very experienced user, I've used the product for about five to six years now. I have a lot of administration and analyst experience with the tool. The other great feature is that LogRhythm support is really excellent, they're easy to get a hold of, they're very talented and if they aren't able to answer your question right away, they have a very good internal escalation process to get an answer to resolve your issue.

View full review »
RH
Security Engineer at U.S. Acute Care Solutions

When it comes to a single version, it is rock solid. We haven't had any major bugs or flaws that haven't been involved with upgrading or going to another version. As long as you're on the same version, it is rock solid.

View full review »
EE
Administrator Executive at a individual & family service with 10,001+ employees

Stability has been great.

View full review »
Mohammed Jamous - PeerSpot reviewer
Chief Information Technology Officer at a insurance company with 11-50 employees

I rate it at 10 out of 10 for stability.

View full review »
RO
FSE at a computer software company with 1,001-5,000 employees

It is stable.

View full review »
JM
Principal Security Analyst at a healthcare company with 10,001+ employees

In LogRhythm the stability is very good. We're pleased with it. However we have a high rate of logs for at least I think it is. We approach 750 million logs on a daily basis is about our average and if anything stops working or service needs to be restarted it will rapidly vary itself. We don't have too many problems with anything like that it's just from time to time if something's not available, resource it needs, things will begin to back up and then it's exciting trying to recover.

View full review »
JH
Security Engineer at Managed Technology Services, LLC fka LexisNexis

It has been completely stable. We have had it in for a little over a year now, fully in production, and it has never gone down once. 

The only thing we had an issue with was when I tweaked the AI roles to basically fire on everything, which then caused a lot of accelerated rollover in our events. This was simply user configuration, and not anything on the LogRhythm side. It has been a very stable solution the whole time that we've had it in.

View full review »
DO
Senior Security Engineer at a healthcare company with 10,001+ employees

So far the stability has been great. No issues whatsoever.

View full review »
AA
Assistant Manager Enterprise Security

LogRhythm NextGen SIEM is a stable tool. I didn't find any instability in it.

View full review »
WF
Information Security Engineer at Seminole Tribe of Florida

In the three weeks that we have had it, we have had 99 percent uptime. It is a very stable platform.

View full review »
Rahul Kate - PeerSpot reviewer
Co-Founder at First Defense WLL

The solution is stable.

View full review »
MohamedKarram - PeerSpot reviewer
SOC Manager at Infratech Co

LogRhythm SIEM is stable.

View full review »
JM
Senior System Administrator at DP Infotech Pvt Ltd

It is stable. There are no bugs or glitches and it doesn't crash or freeze. It's reliable and the performance is good. 

View full review »
KM
Global Security Manager at Chart Industries Inc

I have had a lot of trouble with stability, perfect timing. We onboarded way too many log sources on the get-go and overran our appliance's capabilities. And I've spent probably the last 12 months working to stabilize the damage that I caused the system when I did that. It's been a rough year for stability. Even just before I came to this conference, I think I got it finally stabilized. I'm cautiously optimistic that I can take a deep breath and start focusing more on the logs instead of the appliance itself.

View full review »
AW
Systems CSO at a manufacturing company with 1,001-5,000 employees

Generally, the stability has been good. We have run into problems with stability going through upgrade processes. Recently, we have been on the front edge of the upgrade path. When that happens we tend to run into issues either with certain functionality not working after the upgrades or stability issues because of the upgrades.

View full review »
TG
Cybersecurity Analyst with 201-500 employees

The stability is great. We had an agent go down on a DC once or twice, and it just involved a restart. That is about it. The stability of the hardware and the software itself is awesome.

View full review »
it_user576042 - PeerSpot reviewer
Senior IT Security Analyst at a retailer with 1,001-5,000 employees

The stability is pretty much straightforward. I know the product has grown very big and it has tried to cover a lot more features, it has brought more features, and I was surprised that I've seen a lot more features coming out in version 7.3.

View full review »
SN
Sr. Systems Support Analyst at a manufacturing company with 10,001+ employees

Rock solid so far.

View full review »
it_user338868 - PeerSpot reviewer
VP, Information Systems Security Officer at a financial services firm with 501-1,000 employees

When I first deployed the product, I did find some issues with log consumption. The appliance we had was rated at 25,000 messages per second and we run an average of 1,204 messages per second. We are seeing performance issues with the appliance. It appears that there are some inconsistencies that are running with the hardware of the solution.

View full review »
SB
Technology Solutions Head at MANTRA TECHNOLOGIES LTD

The stability is there, it is good.

As of November we have four customers in the field of info, security, officers, managers, and risk and compliance. Generally, these are all risk and compliance teams at the financial institutions or in the government. The implementation is done by the IT security team but the reports and everything are part of the risk and compliance team.

View full review »
AB
Manager of Information Security at a real estate/law firm with 51-200 employees

We have gone through a few versions which has caused a lot of instability. We have logged a lot of hours with professional services. The version that we are currently on is a lot more stable than what we have experienced in the past. So, it is progressively getting better day-by-day. However, we have had some instability in the past.

View full review »
GW
IT Security Administrator at a energy/utilities company with 1,001-5,000 employees

It seems like a stable product. We haven't had any downtime yet. All the network monitoring seems to be going smoothly.

View full review »
JC
Senior Security Analyst at a financial services firm with 501-1,000 employees

I find it very mature, it's well designed. 

I'm sure if you're speaking with other folks today here at the LogRhythm User conference, you'll find that they're talking about all the new product roll-outs. They think these things through. Since I've been in the industry for many years, I've often found people will roll out products very soon. Often before they're mature enough to be out in the field. LogRhythm doesn't have that problem. I've been very impressed with that.

Except for the experience you often have when you do upgrades - and mostly it's the human, not the software - becoming accustomed to the new material, they've done a really great job.

View full review »
it_user769674 - PeerSpot reviewer
Sec And Risk Lead at Baker Tilly Virchow Krause, LLP

It's been real good. We've done several upgrades since then. Each time, if there has been an issue, we've just opened up a ticket with support and literally, it's hours to minutes sometimes - depending on time you open up the ticket. There's a response and then engineers calling you, and helping you out through some of those issues. It's been good.

View full review »
it_user756429 - PeerSpot reviewer
Senior Security Engineer at Augeo Marketing

We haven't had any issues. I believe we had an alarm for a service restart, it kind of self-corrected itself. Something I noticed, but other than that, it has been rock solid.

View full review »
MR
CEO at a tech services company with 51-200 employees

It is a very stable solution.

View full review »
PP
Senior SIEM Engineer at a financial services firm with 501-1,000 employees

I've never had any issues with my SIEM. We just upgraded from physical to virtual, and it was a seamless process. Everything worked well.

View full review »
MN
Information Security Analyst at Endicott College

The only issues that we have had with it were Windows-based. The actual appliance has been up and continuously logging everything that we have, and CIS logging through it. There have been no signs of any problems nor instability.

View full review »
it_user756426 - PeerSpot reviewer
SOC Manager at a energy/utilities company with 10,001+ employees

For overall performance, it is very good. In terms of the correlation to the alarms rules, the AIE rules, I think in those terms of the reporting, maybe it can be further improved upon. The customization of the reporting could give more information that we need.

View full review »
MR
CEO at a tech services company with 51-200 employees

We encountered some system downtime issues.

View full review »
Haitham AL-Sarmi - PeerSpot reviewer
Information Security Analyst at a financial services firm with 1,001-5,000 employees

The stability of LogRhythm NextGen SIEM is good.

View full review »
JW
Security Administrator at a non-profit with 501-1,000 employees

Stability thus far has been really good. We've had it up for about six months and I've had no failure points with it. Little bugs here and there, but that's expected as you're working through and getting everything stood up. But it's been pretty stable and pretty rock-solid.

I'm probably gonna be around seven hundred and fifty sources that I'm using right now. Somewhere in that realm. It's been robust enough to handle everything that we've been putting through it. I have about 150 to 200 more that I need to stand into it, but it's been pretty stable there.

View full review »
DH
Information Security Analyst at a non-profit with 1,001-5,000 employees

Stability, it's very stable within our organization. What we're at is 7.25 right now, we do wanna go up to 7.4. we're a little nervous about that at the point because it's so new but eventually we will make that jump.

View full review »
EH
Senior Security Engineer at a healthcare company with 1,001-5,000 employees

Stability is very good, so stability for the LogRhythm platform has been very positive. We do have pain points around upgrades, but we have been able to engage with support and get rapid response to how those issues resolved.

View full review »
BH
SOC Analyst at a financial services firm with 1,001-5,000 employees

Going into the beta, stability was very good, but in the beta its not been as great for us lately.

There was a known bug where, after about five minutes it would duplicate alarms, up to about 10,000. After 10,000 alarms in five minutes, everything is shutting down. Also, some of the maintenance jobs get deleted when upgrading, so our database was filling up without deleting the old backups. Those are the two major issues so far.

View full review »
JM
Principal Security Analyst at a healthcare company with 501-1,000 employees

It's a well-written platform. That being said, with our log levels, we ultimately have almost 30 servers involved. Some of them are very large servers. It will bury itself quickly if there's a problem. 

I find the product to be well-written and very efficient. However, sometimes the error-logging is not altogether helpful. For example, on an upgrade, a systems data processor, a Windows box, was throwing an error code like 1083. Then it just stopped and it died right out of the installer and nobody looked. We searched through Google and what it means is the Windows Firewall wasn't turned on so that it could create a rule for the product. Why wouldn't they bubble up that description so that I wouldn't have to call support and I could just know, "Okay, the firewall wasn't turned on. Turn it back on. Re-run the installer and keep going."

There have been many times where I've been disappointed, where I'll ramp an agent up to Verbose and it will say, "LogRhythm critical error, the agent won't bind to a NIC," or the like. I end up with no really actionable or identifiable information coming in, even though I've ramped up the logging level.

There's room for the solution to grow in those situations, especially with regards to a large deployment where it can quickly bury itself if it can't bubble-up something meaningful. I need to be able to differentiate it from other stuff that can be triaged at a much lower priority.

View full review »
AB
Senior Security Analyst at a consultancy with 1,001-5,000 employees

When we had version 7.2.6, there were a lot of issues deploying that version and with the indexing. The indexer was unstable. So, we were not able to use the platform when we were on that version until we were able to upgrade to 7.3.4. That is when it became more useful to us.

Now, the stability is good. Right now, it is more a matter of fine tuning the alerts and rules that we have, then we can reduce the hit on the XM performance.

View full review »
it_user545001 - PeerSpot reviewer
Security Operations Center Manager at a financial services firm with 1,001-5,000 employees

It is stable. We haven't had any major problems. We had a slight hiccup when we went through our upgrade procedure, but it wasn't anything overly complex, and support was there to help us. Therefore, we had it back up and running very quickly.

View full review »
JT
Information Security Engineer at a financial services firm with 501-1,000 employees

The stability is pretty good. We haven't really had any problems with it. I think in our deployments, we had about 25 monitoring agents. One of the agents did start acting kind of funky, so I just called up support. I said, "Hey, we can't get this agent to work properly." They helped us out right there that same day. We actually updated that specific agent, and its been working ever since.

View full review »
GN
Head Of Technical Services at a tech services company with 51-200 employees

All of the deployments that I have been involved in have been very stable, over long periods of time. There's very little in the way of breaking and fixing at all. Most complaints are typically just that the customer comes across extra requirements that need to added on to the base product.

View full review »
MC
Information Security Officer, Network Analyst at a university with 1,001-5,000 employees

Bugs are there. We've encountered quite a few, but support is pretty quick at picking up and working with us through those and then escalating through their different peers until we get a solution. Now, the bugs are becoming less and less. Initially, they were rolling out features pretty quickly, and maybe some use cases weren't considered. We ran into those bugs because it was a unique use case.

View full review »
JD
Vice President at a financial services firm with 201-500 employees

We have a lot of issues with stability. Sometimes it crashes and we have to rerun a scan. It also freezes. It hasn't been the best.

View full review »
SB
Information Security Manager at a tech vendor with 1,001-5,000 employees

Stability has been great. We have not had any unplanned outages, all the upgrades that we have done have gone as expected. So from that standpoint, stability's been great.

View full review »
it_user769665 - PeerSpot reviewer
Chief Security Officer at Optomany

On the whole it's been fine. We've not had any issues with volume, with the system going down. There are a couple of tweaks that you get with older systems. Patching time is always interesting. When you want to do an upgrade, if you're going from a minor version it's fine. If you're going from a major, then it's always good to use the autopilot services.

View full review »
it_user347160 - PeerSpot reviewer
Security Consultant and Co-Founder at a tech consulting company with 51-200 employees

We have had no issues with the stability. We haven't experienced instability.

View full review »
it_user326751 - PeerSpot reviewer
VP, Information Security Officer with 501-1,000 employees

There have been issues with the hardware which has resulted in the LRM going down a few times.

View full review »
Muhammad Ahtsham - PeerSpot reviewer
Information Security Engineer at RapidCompute

The solution is stable.

View full review »
Lahiru Prabath - PeerSpot reviewer
Engineer - Network and Security at Connex Information Technologies

It's very stable, unless something happens on the Windows storage side.

The performance is good, and we don't often get any complaints from our customers.

View full review »
it_user756336 - PeerSpot reviewer
Deputy Ciso at Temple University

We just went through an upgrade just to increase our capacity, so we could bring in more log sources, and it's been a wonderful product for us.

View full review »
it_user769683 - PeerSpot reviewer
Cyber Security Operations Manager at Old National Bancorp

It's definitely evolved. It's gotten to the point where you can scale it well. We recently got the AI Engine running and realize that we need to spin off the Web Console and the AI Engine to a separate box, and off the platform manager. Then we can easily add a data processor or a data indexer to expand our processing power too.

View full review »
SK
Security Engineer Analyst Admin at a aerospace/defense firm with 1,001-5,000 employees

As long as you don't overfeed it, it's fairly stable.

View full review »
PC
Consultant at RIPEN

The solution is stable. 

View full review »
it_user317229 - PeerSpot reviewer
Information Security Engineer at a tech vendor with 501-1,000 employees
NC
Team Lead - Network and Security at Connex Information Technologies

The product is very stable. I would rate its stability a nine out of ten. 

View full review »
YI
security solutions integrator at a consultancy with 1-10 employees

LogRhythm is stable. 

View full review »
SR
Senior System Engineer at a tech services company with 11-50 employees

The solution is very stable and reliable. There are no bugs or glitches. It doesn't crash or freeze. It's reliable. 

View full review »
MS
Senior Network Engineer with 201-500 employees

Our appliance is a little older, so we need to upgrade it. We are going to probably move to the software-only version. However, the issues that we have are our own fault because we didn't buy the right-size appliance.

View full review »
it_user756435 - PeerSpot reviewer
Threat And Awareness Manager at a tech services company with 1,001-5,000 employees

We tend to struggle. We do see performance issues fairly regularly. I think part of this is the stress that we're putting it under, with the volume of events that it is receiving. When we put the new appliances in, which is imminently, we're hoping that it will solve a number of issues: the number of the performance issues that we see.

View full review »
it_user331431 - PeerSpot reviewer
Senior Information Systems Specialist at a manufacturing company with 1,001-5,000 employees

There were occasional stability problems, but they were resolved by support in a timely fashion.

View full review »
it_user756381 - PeerSpot reviewer
Manager Of Cyber Security at a healthcare company

My impressions of stability are exceedingly, that I've not heard any down-time. We have had to contact support a few times, but just to see how to do a few configuration settings.

View full review »
it_user756405 - PeerSpot reviewer
Principal Security Specialist at University Of Massachusetts

Unbelievable! Very good.

View full review »
DK
Information Security Analyst at a retailer with 201-500 employees

The stability is decent. During the day it works just fine. We do a lot of reporting at night and it hits the system pretty hard, but other than that, everything works perfectly. During the day, searching is perfect. It runs perfectly. The stability is fine except for those heavy hours.

Stability for CloudAI has been great. I haven't seen any issues with it dropping. I haven't had any issues with that at all.

View full review »
KW
Security Engineer at a financial services firm with 1,001-5,000 employees

The stability has been great since the upgrade.

View full review »
AO
Senior Security Analyst at a leisure / travel company with 10,001+ employees

We've had no issues with it regarding stability. It's been pretty rock solid.

View full review »
it_user769662 - PeerSpot reviewer
Operations Team Lead at Mary Kay Inc

We've been on LogRhythm since version 6. We've dealt with some bumps and bruises here and there. However, LogRhythm has clearly been dedicated to improving stability at every turn and every hotfix and every new agent release. It's gotten better and better.

With 7.2.2 we went to High Availability mode. We were having some issues, our deployment is global, we're in multiple datacenters across the world. Having HA has really helped us because if our platform manager went down, we could just failover perfectly to our second one, and not get called at midnight. So that's been great.

However, past 7.2.2, HA has almost become unnecessary because its stability has improved to such a level that HA is now just a bonus feature. It's a security blanket versus a necessity.

View full review »
it_user769659 - PeerSpot reviewer
Data Sec Program Manager at a insurance company

On the whole it's a stable product. Occasionally we do have issues with upgrades, but Professional Services and the support staff have been very helpful with fixing any of the challenges that we've had.

View full review »
it_user341232 - PeerSpot reviewer
IT Security Specialist at a manufacturing company with 1,001-5,000 employees

It is very stable, but we have to work with it and identify which logs we need. If we don’t, it doesn't handle the traffic well. 

Every tool is different, and you just have to work with it.

View full review »
EC
Security Admin with 1,001-5,000 employees

Stability has been pretty good. We've had some road blocks, or some, I'm sorry, some road bumps, in terms of A&E stability, as well as with some log parsing with some of our larger log sources.

View full review »
AW
Enterprise Information Technology Security Engineer at a government with 1,001-5,000 employees

I'm a little on the fence about stability, because the platform runs on Windows at the moment. There has been some finicky administration stuff, especially if we are going to try to integrate it with our own domain's policies which need to be correctly reflected. In the instance that we have, it is not necessarily a good idea to have an endpoint security, but when you have to meet compliance and follow rules, these are some of the exceptions. There needs to be a way to allow organizations to utilize these platforms and still be in compliant.

View full review »
CO
Senior Architect at a energy/utilities company with 201-500 employees

It seems to be stable.

View full review »
CG
Network Security at a energy/utilities company

I think it’s wonderful. I use a high-availability version that fails over for me if needed. I’ve got one in one datacenter and one in another. It seems to function properly.

View full review »
it_user386685 - PeerSpot reviewer
Director of Information Technology at a university with 1,001-5,000 employees

Stability has been fine. There were some problems in earlier versions, but I wouldn't put that all on LogRhythm. Part of it was that we needed and equipment upgrade and it was literally a year and a half or two years where it was optimally built for that we had to continue using the old version, the old appliance, and it took us a long time to get upgraded. So we were dealing with some rather clunky situations, running out of disk space, that kind of thing.

View full review »
it_user375531 - PeerSpot reviewer
Information Security Analyst at a financial services firm with 1,001-5,000 employees

Since we purchased one of their boxes, we've had 99% uptime. The only downtime has been for updates and upgrades. So we've had no issues with instability.

View full review »
it_user331482 - PeerSpot reviewer
Senior Manager, Distributed Systems at a insurance company with 501-1,000 employees

No issues encountered.

View full review »
TS
Security Analyst at a financial services firm with 201-500 employees

Stability of the products is mostly pretty good. Like anything else, there are incidents that we have to respond to. Some very small amount of downtime, some system administration that goes along with any implementation like that.

View full review »
HM
IT Security Architect at a construction company with 10,001+ employees

Stability has probably been one area where Health Checks have not been great with the product. We have been told that they are going to improve Health Checks on product, though we do struggle with them on a daily basis.

View full review »
it_user769680 - PeerSpot reviewer
Sec Eng at a financial services firm

The stability, it's pretty high, there were some early issues, we were overrunning it with data, and part of it was a sizing issue. Once we got through that it's been running a lot better and it's been more stable. We haven't had to worry about it falling over on itself.

View full review »
it_user769689 - PeerSpot reviewer
Technical Systems Analyst

Out of 10, I would give it an eight. We upgraded our firewall and that broke our parsing rules and it took a while to get that all fixed, but other than that it's been great.

View full review »
it_user769692 - PeerSpot reviewer
Information Security Officer at a insurance company with 201-500 employees

Stability has been, for the most part, quite good. We do have a HA, High Availability configuration, between two different datacenters. 

There have been a few challenges that we're working through. Mostly it's a Windows-based, all-in-one appliance that we have. We are in discussions with LogRhythm support right now in respect to HA breaking through automated patching. But we're encouraged that we're going to be able to get over that hurdle, and then we'll have a 100% up-time with it.

View full review »
it_user756408 - PeerSpot reviewer
Information Security Analyst 2 at a non-profit with 1,001-5,000 employees

So far it's been really good.

View full review »
it_user756417 - PeerSpot reviewer
Information Security Engineer at Lancaster General Health

Hit or miss, it depends. A month or two will go by and everything will be fine, and all of a sudden, something breaks. Then it's in the air for a little while, and then I manage to figure out what is causing the problem, fix that, and then everything is fine for a couple months. Then something else happens.

It's different every time. One specific example, I think it was related to a KB-update that basically broke a log source type, that was doing tens of millions of logs per day. And that just trashed our data processors. It put everything behind, we went down to single-digit processing, blocks-per-second processing, for a period a few weeks. I had to rebuild all the MPE rules into a new log source policy, and then everything was fine.

For a few months everything was working and then all of a sudden one day it just goes into the toilet. We didn't do any upgrades, nothing like that, so that is why I'm thinking KB-update, but I haven't pushed it.

View full review »
it_user756378 - PeerSpot reviewer
Information Security Analyst at Aims Community College

It's very scalable. Right now, we have the XML appliance cell all-in-one, but I am looking to move the web platform off to another server. Clustering has really been impressive to me with the product.

View full review »
it_user756327 - PeerSpot reviewer
Senior IT Security Analyst at a financial services firm

It is quite scalable. This whole solution, you can have different components on different servers or platforms. For example, I was in that meeting, and we were talking about collecting 50,000 to 60,000 messages per second, which is really a high number. I was very impressed to see how many records, 12 DPX or five or six AIE servers or similar platform managers. It looks like it's quite scalable and they are quite happy with that.

View full review »
AW
Principal Consultant at ITSEC Asia

LogRhythm's performance is average. We don't have many issues. There are a few at the moment, but I think it's because the message per second is above the design. If we reduce that, the solution will perform well

View full review »
SB
Cyber Security Researcher at a tech services company with 1-10 employees

The solution is quite stable. There aren't issues related to bugs or glitches. It doesn't crash. It's reliable.

View full review »
it_user756387 - PeerSpot reviewer
IT Security Administrator at a financial services firm

In terms of just stability of the product, sometimes we have run into some issues there.

View full review »
it_user756402 - PeerSpot reviewer
Cyber Security Engineer at a healthcare company with 1,001-5,000 employees

In a two month period, we had one hardware issue, which might not be LogRhythm-related. It might be on the hardware side. It's fairly new, so we were expecting that to happen, the actually failure on the platform manager (PM) side.

View full review »
it_user756396 - PeerSpot reviewer
Security Administrator at a tech services company

It seems pretty stable. I'm not had any issues with it.

View full review »
it_user320625 - PeerSpot reviewer
Senior Security Engineer at a tech vendor with 10,001+ employees

No issues encountered.

View full review »
it_user756399 - PeerSpot reviewer
EMS-Scada Infrastructure Engineer at a energy/utilities company

It is very stable once it is configured. We have not had any downtime.

View full review »
it_user756414 - PeerSpot reviewer
Lead Info Security Architect with 501-1,000 employees

We haven't seen issues with the product itself. There are updates which are now automatic through the knowledge-base. So, I'd say it's a stable product.

View full review »
it_user326481 - PeerSpot reviewer
Sr. Mgr of Network Operations at a comms service provider with 501-1,000 employees

Some minor bugs with the mediator. Those have been fixed in patch releases a long time ago.

View full review »
it_user756420 - PeerSpot reviewer
Security Advisor at a manufacturing company

It's pretty stable.

View full review »
it_user756411 - PeerSpot reviewer
Security Analyst at a financial services firm

Stability is perfect. We have had no issues whatsoever with the servers, or with the Web Console or anything else.

View full review »
it_user756393 - PeerSpot reviewer
Junior Information Security Analyst at a financial services firm with 51-200 employees

Stability is not great but I think that's our issue. Qualys seems to blow it up all the time, but that's more on us to stop Qualys from scanning LogRhythm.

View full review »
SS
Systems Administrators at a tech services company with 201-500 employees

It has been very stable. There are no major issues. It has been exactly doing what I expected it to do.

View full review »
CE
Associate Senior Engineer - Network & Security at Connex Information Technologies (Pvt) Ltd.

The stability depends on the client we installing or integrating for based on the server's requirements. We can create them according to that defined time period. It's not that difficult but depending on the customer or the other server requirements.

We can have a dashboard in a single platform, we can get notifications via email or SMS, and we have Smart Response actions. So that kind of possibility is there.

View full review »
it_user769656 - PeerSpot reviewer
Information Security Architect at a healthcare company with 1,001-5,000 employees

We installed in 2009, and the stability has improved over the years. I consider it to be quite a stable product now. It seems to work day after day, week after week.

View full review »
it_user341220 - PeerSpot reviewer
Systems Administrator at a financial services firm with 501-1,000 employees

It handles what we throw at it.

View full review »
it_user341262 - PeerSpot reviewer
Security Analyst at a retailer with 1,001-5,000 employees

I can’t remember the last time it was down. It’s very stable.

View full review »
RJ
Consultant at a tech services company with 11-50 employees

NextGen SIEM is stable.

View full review »
MR
SOC Analyst

NextGen SIEM's performance is quite good.

View full review »
SB
Cyber Security Researcher at a tech services company with 1-10 employees

LogRhythm NextGen SIEM is stable.

View full review »
it_user317892 - PeerSpot reviewer
Senior Information Security Manager with 1,001-5,000 employees

I find that the system is stable and handling our traffic very well.

View full review »
it_user418188 - PeerSpot reviewer
IT Security Manager at a financial services firm with 501-1,000 employees

There were no issues with the stability.

View full review »
Buyer's Guide
LogRhythm SIEM
March 2024
Learn what your peers think about LogRhythm SIEM. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
768,578 professionals have used our research since 2012.