ArcSight Logger and Microsoft Purview Audit are both key players in the log management and auditing category. Microsoft Purview Audit edges ahead due to its integration capabilities and scalability.
Features: ArcSight Logger offers extensive customization, advanced search capabilities, and flexible log management. Microsoft Purview Audit excels with seamless integration with Microsoft environments, robust auditing features, and a holistic approach to compliance automation.
Room for Improvement: ArcSight Logger users cite interface complexity, a steep learning curve, and challenges with cloud integrations. Microsoft Purview Audit could improve in areas like real-time analytics, system performance under heavy loads, and setup complexity for new users.
Ease of Deployment and Customer Service: ArcSight Logger is strong in traditional deployments but has cloud integration challenges; its customer service is responsive. Microsoft Purview Audit is easy to deploy in Microsoft cloud environments but its setup can be extensive; its customer service is generally supportive but varies.
Pricing and ROI: ArcSight Logger has moderate setup costs, with ROI stemming from its customization. Microsoft Purview Audit might have higher initial costs but offers significant ROI through streamlined compliance and reduced maintenance costs.
The unified auditing functionality in Microsoft 365 provides organizations with visibility into many types of audited activities across many different services in Microsoft 365. Advanced Audit helps organizations to conduct forensic and compliance investigations by increasing audit log retention required to conduct an investigation, providing access to crucial events that help determine scope of compromise, and faster access to Office 365 Management Activity API.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.