No more typing reviews! Try our Samantha, our new voice AI agent.

Devo vs OpenText Enterprise Security Manager comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 29, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.5
Devo enhances data analysis and threat detection cost-effectively, offering scalability, customization, and efficiency in resource allocation.
Sentiment score
4.9
OpenText Enterprise Security Manager aids compliance and threat detection, though ROI clarity varies due to costs and licensing model.
I find that using ArcSight Enterprise Security Manager (ESM) provides a valuable return on investment as it serves as a single point of glass for logs and data analysis.
Cloud Security Archirect at IBM
 

Customer Service

Sentiment score
6.7
Devo's customer service is praised for responsiveness and effectiveness, but some seek better documentation and clarity in ticket handling.
Sentiment score
5.4
OpenText Enterprise Security Manager receives mixed reviews, with inconsistent technical support and reliance on self-resolution despite improvements.
I rate the customer support a nine out of ten because of their timely technical guidance and responsiveness during the deployment and troubleshooting periods.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
Both response time and support quality need attention.
Team Lead Soc at a tech services company with 51-200 employees
I would rate the technical support of ArcSight Enterprise Security Manager (ESM) a nine as they are always available and responsive whenever we open a case.
Cloud Security Archirect at IBM
If I raise a P1 or P0 ticket, the response time is often delayed by four to eight hours.
Senior Security Engineer at Valuepoint Systems
 

Scalability Issues

Sentiment score
7.0
Devo's cloud-based architecture ensures impressive scalability, efficiently managing large data volumes and integrating users across regions without limitations.
Sentiment score
5.9
OpenText Enterprise Security Manager is adaptable but costly, with licensing concerns affecting budget forecasting despite user satisfaction.
Devo is a unified SIEM solution designed to handle growing log volumes and enterprise-scale monitoring requirements.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
It is easy to scale, and I have not encountered any issues when we require more storage or deployment.
Cloud Security Archirect at IBM
It lacks some capabilities compared to other tools available in the market.
Senior Security Engineer at Valuepoint Systems
 

Stability Issues

Sentiment score
7.3
Devo is praised for its stability, reliable uptime, proactive support, and effective management of large deployments despite minor issues.
Sentiment score
5.1
OpenText Enterprise Security Manager's stability varies by environment, requiring proper setup; recent patches improve performance but challenges persist.
It is stable and reliable for our security operations.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
I would rate the stability of ArcSight Enterprise Security Manager (ESM) a nine because I have not encountered significant issues, unlike other solutions that sometimes have database errors.
Cloud Security Archirect at IBM
The stability of ArcSight Enterprise Security Manager (ESM) is not very robust.
Senior Security Engineer at Valuepoint Systems
 

Room For Improvement

Devo's Activeboards need better customization, integration, UI, and AI capabilities, while cost and usability require attention.
Users seek better reporting, UX, licensing, enhanced performance, integration, automation, AI advancements, and improved support and training.
I would appreciate more third-party integrations including Fortinet and others.
Team Lead Soc at a tech services company with 51-200 employees
UI improvements, a simplified dashboard, or an easier reporting workflow could further improve analyst productivity.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
Integrations with other sandboxes could be improved to better interpret data using AI and machine learning models.
Strategic Account Executive at a computer software company with 51-200 employees
I would like to see the detection and response features included in the next release of ArcSight Enterprise Security Manager (ESM), as security orchestration and automation are increasingly important.
Cloud Security Archirect at IBM
The integration aspect of ArcSight Enterprise Security Manager (ESM) needs improvement.
Senior Security Engineer at Valuepoint Systems
 

Setup Cost

Devo offers transparent pricing per gigabyte, with potential metadata charges, including 400-day storage and additional feature benefits.
OpenText Enterprise Security Manager is considered costly, with varied licensing options, and negotiation advised for potential discounts.
The pricing of the product is reasonable if we compare it with other Gartner leading products like Splunk, LogRhythm, Microsoft Sentinel, Google SecOps.
Team Lead Soc at a tech services company with 51-200 employees
ArcSight Enterprise Security Manager (ESM) is very cheap compared to other tools.
Senior Security Engineer at Valuepoint Systems
I would rate the pricing of ArcSight Enterprise Security Manager (ESM) around seven, as it varies based on features and demand, making it more affordable for larger organizations, while smaller ones might find it expensive.
Cloud Security Archirect at IBM
 

Valuable Features

Devo impresses with real-time analytics, intuitive UI, customization, advanced alerting, cloud-native architecture, and 400 days of data retention.
OpenText Enterprise Security Manager offers versatility, strong vendor support, effective event correlation, and user-friendly integration for enhanced security analysis.
Devo has 400 days of hot storage and you can draw your attack chain from more than a year if you are hunting for threats.
Team Lead Soc at a tech services company with 51-200 employees
When the analyst uses queries to search, it pulls the data quickly, in a second, which aids us greatly with the investigation.
Cyber Security Engineer Ii (Vulnerability & Threat Management) at FICO
When they see a spike in a line chart for a failed login, which could be a true or false attempt, they can click that spike, and a table widget on the same active board instantly populates with raw logs of data for those specific failed logins.
Strategic Account Executive at a computer software company with 51-200 employees
The log analysis feature is particularly valuable as it allows analysts to interpret intrusion-related logs efficiently.
Cloud Security Archirect at IBM
The ability to interpret data is highly valued.
Senior Security Engineer at Valuepoint Systems
 

Categories and Ranking

Devo
Ranking in Security Information and Event Management (SIEM)
18th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
26
Ranking in other categories
Log Management (18th), IT Operations Analytics (7th), AIOps (13th)
OpenText Enterprise Securit...
Ranking in Security Information and Event Management (SIEM)
25th
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
99
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Security Information and Event Management (SIEM) category, the mindshare of Devo is 1.2%, up from 1.1% compared to the previous year. The mindshare of OpenText Enterprise Security Manager is 1.6%, up from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Devo1.2%
OpenText Enterprise Security Manager1.6%
Other97.2%
Security Information and Event Management (SIEM)
 

Featured Reviews

Usama Khan - PeerSpot reviewer
Team Lead Soc at a tech services company with 51-200 employees
Advanced threat hunting has improved SOC visibility and now supports faster incident response
Devo can improve in how its connectors enhance integration with third-party tools. Devo's architecture works by having you deploy a relay server in the data center of the client side and Devo SIEM is basically on the AWS cloud. There are specific ports which are enabled on the relay server, which are 514 and 13000, 13151, 152. However, when we talk about databases and custom integrations, there are not default ports in the relay server. No default ports are defined. For JDBC drivers, the port number is 1433, but it is not in the relay server. You have to add it manually. For Oracle RDBMS, the port is 1521, and it is also not there by default. I would appreciate more third-party integrations including Fortinet and others. Machine learning models can also be improved. Playbooks in the SOAR can also be improved. Regarding playbooks for automation, we utilize playbooks for automation in SOAR for automated IOC blocking on a firewall, on a web application firewall, on DNS security, etc. The only option for us to run the playbook is to schedule the job for it. However, if I want to manually run the playbook, there is no option for doing so. This needs improvement.
SM
Cloud Security Archirect at IBM
Unified log analysis has strengthened incident detection and supports continuous attack simulation
I do not have any areas for improvement in ArcSight Enterprise Security Manager (ESM) as I have not delved deeply into it; overall, it is a good package. I would like to see the detection and response features included in the next release of ArcSight Enterprise Security Manager (ESM), as security orchestration and automation are increasingly important.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
907,787 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Jun 28, 2015
Qradar vs. ArcSight
Continuing with the SIEM posts we have done at Infosecnirvana, this post is a Head to head comparison of the two Industry leading SIEM products in the market – HP ArcSight and IBM QRadar Both the products have consistently been in the Gartner Leaders Quadrant. Both HP and IBM took over niche SIEM…
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Construction Company
10%
Outsourcing Company
9%
Manufacturing Company
9%
Financial Services Firm
13%
Construction Company
12%
Outsourcing Company
9%
Marketing Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise5
Large Enterprise12
By reviewers
Company SizeCount
Small Business37
Midsize Enterprise14
Large Enterprise59
 

Questions from the Community

What is your experience regarding pricing and costs for Devo?
Pricing generally depends on the scale, data ingestion requirements, and integrations for what the enterprise monitoring needs. I have not been part of the procurement process, so I am not aware of...
What needs improvement with Devo?
I think some features could be added to Devo. The cost is a little higher compared to other tools such as DataDog or Elasticsearch, so they could work on reducing costs. Additionally, while the sup...
What is your primary use case for Devo?
My main use case for Devo is that it serves as a primary tool for centralized logging solutions, mainly for threat investigation and alert monitoring. It helps us with security and analytic analyti...
Which is the best SIEM tool for a mid-sized financial services firm: Arcsight or Securonix?
In my market, a lot of financial companies had or have an ArcSight installation. Just because in former times it was pretty good. Now a lot of them are looking for a more effective solution due to ...
What is your experience regarding pricing and costs for ArcSight Enterprise Security Manager (ESM)?
I would rate the pricing of ArcSight Enterprise Security Manager (ESM) around seven, as it varies based on features and demand, making it more affordable for larger organizations, while smaller one...
What needs improvement with ArcSight Enterprise Security Manager (ESM)?
I do not have any areas for improvement in ArcSight Enterprise Security Manager (ESM) as I have not delved deeply into it; overall, it is a good package. I would like to see the detection and respo...
 

Also Known As

No data available
Micro Focus ArcSight, HPE ArcSight, ArcSight
 

Overview

 

Sample Customers

United States Air Force, Rubrik, SentinelOne, Critical Start, NHL, Panda Security, Telefonica, CaixaBank, OpenText, IGT, OneMain Financial, SurveyMonkey, FanDuel, H&R Block, Ulta Beauty, Manulife, Moneylion, Chime Bank, Magna International, American Express Global Business Travel
Lake Health, U.S. Department of Health and Human Services, Bank AlJazira, Banca Intesa, and Obrela.
Find out what your peers are saying about Devo vs. OpenText Enterprise Security Manager and other solutions. Updated: June 2026.
907,787 professionals have used our research since 2012.