What is our primary use case?
We needed more eyes on the prize and Microsoft performance reporting is severely lacking for security compliance as geo blocking in the firewall can only address a small part of the attack grid. It's nice to know that people and machine learning are monitoring my environment for known assaults and unusual behaviors.
Being a small business we just can't afford to have a full time security engineer and Arctic Wolf gives us the tools and services the big boys have at a reasonable cost.
With the playing field always changing, it is nice to know our backs are covered.
How has it helped my organization?
We did not have any advanced tools in place for security monitoring.
Personally, I love having Big Brother (Blue Eyed Wolf?) watching and it is nice to sleep well knowing 24/7 my network is being protected.
After an easy onboarding, the monitoring started immediately.
We also run AV on work stations. There was an instance when AWN notified us of a malware download before the end point monitors kicked in. We immediately shut down and reimaged the machine.
We feel very strongly that we picked the best solution for our organization.
What is most valuable?
The weekly reports are great. I very much appreciate having a quick review of what occurred over the last seven days. I can't give enough kudos to the folks in the SOC. They are friendly, professional, and always available. Even tickets I put in for educational purposes are responded to quickly, and answers are specific. I enjoy not having to rephrase a question due to a generic response.
The new dashboard is visually appealing, and I can drill down with just a couple of clicks for details. It offers great, easy navigation.
What needs improvement?
The service is fabulous. AWN is one vendor I don't mind having to call. It doesn't matter what urgency you put on the ticket - all I have entered have always received fast replies. Also, this solution offers huge peace of mind. I know I can pick up the phone and get a live person and not be trapped in a looping call tree.
In the future, I would like to see a summary report. One of my bosses is on the distribution, and I spend time every Monday explaining what the reports mean. Graphs are nice visuals and would help communicate what's happening more effectively.
For how long have I used the solution?
I've used the solution for 15 months.
What do I think about the stability of the solution?
The solution is extremely stable. We have not had a single issue with any of the agents.
What do I think about the scalability of the solution?
The solution is very scalable. Our environment is pretty stagnant, however, if I decided to add a server farm, it's just a click, and we pay a little more.
How are customer service and support?
Technical support has been excellent. We haven't had a customer service issue; I have had a few tickets to ask questions, and they have been all handled with high urgency, even if they are not.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I did not previously use a different solution. I had been asking management and had a budget line item for security services for three years. My request was finally approved.
How was the initial setup?
The setup is straightforward. The documentation was detailed, and the implementation team was available to explain and assist.
What about the implementation team?
The implementation was done with the assistance of a vendor team. I was a bit sad when I was notified that I would be moving from the implementation to the account management team. However, every person I have worked with has been wonderful.
What was our ROI?
We've witnessed an ROI after three years on software and five on hardware.
What's my experience with pricing, setup cost, and licensing?
The setup was not hard. The implementation was very straightforward, and the team was knowledgeable and easy to work with. Compared to other vendors, licensing was a dream. The cost comes down to what people think their protection is worth. I have no qualms about approving AWN invoices for payment.
Which other solutions did I evaluate?
I did evaluate Sophos, Red Canary, Crowdstrike, and several others that only included monitoring without any security services.
What other advice do I have?
I will be required to obtain additional quotes when our term is up. That said, unless there is a sleeper that will be coming up in the field, I intend to negotiate a renewal.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.