ArcSight Enterprise Security Manager (ESM) and Elastic Security are both in the SIEM solutions category. Based on user reviews, Elastic Security has the upper hand due to its flexibility and scalability, notwithstanding its higher price.
Features: ArcSight ESM is noted for its ability to handle large volumes of data, real-time monitoring, and advanced threat detection. Elastic Security is highlighted for its open-source nature, integrated threat intelligence, and customizable search functionalities.
Room for Improvement: ArcSight ESM should improve its integration with other security tools and reduce complexity. Users suggest enhancements in Elastic Security's documentation and customer support. However, it still remains more user-friendly in configuring compared to ArcSight ESM.
Ease of Deployment and Customer Service: ArcSight ESM users report a steeper learning curve, longer deployment times, and a need for extensive training. Elastic Security has an easier deployment process and better initial setup guides, but its customer service can improve. It is faster to get running compared to ArcSight ESM.
Pricing and ROI: ArcSight ESM is considered expensive due to its high setup cost and ongoing maintenance fees. Elastic Security, though also associated with significant costs, is viewed as providing better value for money due to its scalability and lower total cost of ownership. Users feel the ROI for Elastic Security is superior, even with higher initial expenses.
ArcSight Enterprise Security Manager (ESM) is a powerful SIEM solution for analyzing, collecting, correlating, and reporting on security event information. ArcSight ESM analyzes information from all of your data sources while helping your organization maintain high security. In addition, the solution is very customizable and enables users to create their own company-specific rule sets to automatically trigger instant alerts.
ArcSight Enterprise Security Manager (ESM) Features
ArcSight Enterprise Security Manager (ESM) Benefits
Some of the benefits of using ESM include:
Reviews from Real Users
Below are some reviews and helpful feedback written by ArcSight Enterprise Security Manager (ESM) users.
A Head of Professional Services at a computer software company says, “The simplicity of the solution is the most valuable aspect of the product. The product is quite mature. It's been around for a long time. The integration is easy for the most part.”
A Managing partner at a tech services company states that the solution is “Good at consolidating logs, fairly stable, and can scale.”
PeerSpot user Abbasi P., Vice President Derivatives Ops IT at a financial services firm, explains, “The user interfaces are quite good and speedy, and I like the consoles too. The typology and the setup are also good.”
A Chief Technological Officer at a tech services company says, "It is a very useful tool for intelligence building because it has many use cases and many rule sets."
An Associate Vice President at a consumer goods company comments, “We primarily use the solution for its technology including its independent logs, and those types of things. The solution offers very good monitoring. The product's log management and event management capabilities are excellent. There are a lot of really good analytical components. It helps us focus on analysis.”
Elastic Security combines the features of a security information and event management (SIEM) system with endpoint protection, allowing organizations to detect, investigate, and respond to threats in real time. This unified approach helps reduce complexity and improve the efficiency of security operations.
Additional offerings and benefits:
Finally, Elastic Security benefits from a global community of users who contribute to its threat intelligence, helping to enhance its detection capabilities. This collaborative approach ensures that the solution remains on the cutting edge of cybersecurity, with up-to-date information on the latest threats and vulnerabilities.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.