Try our new research platform with insights from 80,000+ expert users

BlackBerry Cylance Cybersecurity vs Elastic Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

BlackBerry Cylance Cybersec...
Average Rating
8.0
Reviews Sentiment
4.6
Number of Reviews
44
Ranking in other categories
Endpoint Protection Platform (EPP) (29th)
Elastic Security
Average Rating
7.8
Reviews Sentiment
6.8
Number of Reviews
65
Ranking in other categories
Log Management (11th), Security Information and Event Management (SIEM) (5th), Endpoint Detection and Response (EDR) (17th), Security Orchestration Automation and Response (SOAR) (8th), Extended Detection and Response (XDR) (10th)
 

Mindshare comparison

BlackBerry Cylance Cybersecurity and Elastic Security aren’t in the same category and serve different purposes. BlackBerry Cylance Cybersecurity is designed for Endpoint Protection Platform (EPP) and holds a mindshare of 1.1%, down 1.5% compared to last year.
Elastic Security, on the other hand, focuses on Log Management, holds 3.0% mindshare, down 6.0% since last year.
Endpoint Protection Platform (EPP)
Log Management
 

Featured Reviews

Sooraj Makkancherrry - PeerSpot reviewer
Doesn't have daily updates, which is important for healthcare IT
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we contact support, they tell us to update the latest agent, but we can't do that immediately due to medical device protocols and validation testing. I wish support would try to understand our issues better instead of giving this standard response. The machine learning feature they use often tells us to upgrade the agent or add things to the exclusion list, which isn't unacceptable. It's a very good and new technology as a tool and antivirus. But sometimes, it doesn't work properly with our medical devices and products, quarantining files it shouldn't even after we add them to exclusions. This is tricky for us.
SyedAli17 - PeerSpot reviewer
Centralized monitoring improves security posture through rapid data processing
The processing part of Elastic Security ( /products/elastic-security-reviews ) is very interesting for us since we handle almost 7,000 to 8,000 alerts per minute. We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data. Additionally, Elastic Security helps improve the security posture of Pakistan through centralized visibility and real-time processing.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Has good RAM capacity for the power I need"
"Endpoints are protected in real-time without the need of a centralized server."
"It handles situations that the other threat management tools wouldn't find. It has worked well covering the weaker sides of the other products that we're integrating."
"In most cases, the solution's ability to detect in the MITRE framework, and its ability to be able to detect attacks in any one of seven or eight different areas of the life cycle of an attack is very useful."
"On the management side, we liked the way it displays things."
"​Centralized dashboard online which can be used for managing a huge product."
"I find the actual overall endpoint malware protection the most valuable feature of CylancePROTECT."
"We chose the solution because it doesn't have daily updates, which is important for us in healthcare IT, where network usage and connectivity to hospitals matter."
"Elastic Security offers advanced features such as machine learning and integration with ChatGPT."
"Elastic Security is cost-effective compared to Defender and CrowdStrike."
"The performance is good and it is faster than IBM QRadar."
"Elastic has a lot of beats, such as Winlogbeat and Filebeat. Beats are the agents that have to be installed on the terminals to send the data. When we install beats or Elastic agents on every terminal, they don't overload the terminals. In other SIEM solutions such as Splunk or QRadar, when beats or agents are installed on endpoints, they are very heavy for the terminals. They consume a lot of power of the terminals, whereas Elastic agents hardly consume any power and don't overload the terminals."
"The solution's most valuable features are anomaly detection and connectivity reporting."
"The intelligence of the system has been very impressive. It's not quite AI, but the technical bit where it correlates information, based on the seen attacks within an organization is good."
"The visualization is very good."
"The most valuable feature is the search function, which allows me to go directly to the target to see the specific line a customer is searching for."
 

Cons

"It's a good solution but some features just need to be updated."
"I'd like them to do software distribution too, but they said that that's architecturally not at the product line."
"The high price of the product is an area of concern where improvements are required. The product's price should be more competitive."
"While you are working, you are finding these things that were supposed to be waived have come back to being blocked. That's frustrating."
"The OPTICS component could be made more user-friendly with respect to giving people more information."
"I would say one thing that they might need to bring in is protection for mobile devices."
"The AI of CylancePROTECT has room for improvement. I'm on a trial license of SentinelOne, and its AI is much better than what's on CylancePROTECT."
"The management console needs a little maturity in how it presents data and allows the administrator to drill down or search across systems."
"This type of monitoring is not very mature just yet. We need more real-time information in a way that's easier to manage."
"The problem with ELK is it's difficult to administer. When you have a problem, it can be very, very difficult to rebuild indexes."
"This solution is very hard to implement."
"I would like more ways to manage permissions and restrict access to certain users."
"There isn't really a very good user experience. You need a lot of training."
"Elastic Security has a steep learning curve, so it takes some time to tune it and set it up for your environment. There are some costs associated with logging things that don't have value. So you need to be cautious to only log things that make sense and keep them around for as long as you need. You shouldn't hold onto things just because you think you might need them."
"I would like the process of retrieving archived data and viewing it in Kibana to be simplified."
"One thing they could add is a quick step to enable users who don't have a solid background to build a dashboard and quickly search, without difficulty."
 

Pricing and Cost Advice

"Do not get hung up on price. You pay for what you get and expensive will hurt one time, where cheap will hurt forever, especially if you fall victim to a ransom attack, etc.​"
"We went through a third party initially to do the renewal, but we won't be renewing, we will move on to something else."
"It is expensive, but not unreasonable."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing a seven out of ten."
"I think that the price we are paying is good for what it is."
"Review closely how many endpoints you actually need before buying into a pricing level. Deal and deal with the VAR of your choice."
"We would just add more if there are new users, but right now you just need one license for per user."
"The license price for this solution could be better. It's on the expensive side."
"It is easy to deploy, easy to use, and you get everything you need to become operational with it, and have nothing further to pay unless you want the OLED plugin."
"The solution is not expensive and costs around ten dollars a month."
"It's a monthly cost with Elastic SIEM, but I am not sure of the exact cost."
"The pricing is in the middle. I think it is not an expensive experience if we compare it with big names, for example, QRadar, and also Oxide. I think Elastic Security is quite cheap. I would rate the pricing of this solution a five out of ten."
"I can say that the product is cheaply priced."
"Affordable but with additional costs"
"Its price is fine. Its licensing works on a yearly basis. We have to renew the license every year. I also have a good experience with Darktrace. When we buy Darktrace, we get training free of cost, which is not there in Elastic. We have to pay extra for training. There is certainly room for improvement."
"Elastic Security is free to use."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
861,524 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Manufacturing Company
12%
Government
7%
Financial Services Firm
7%
Computer Software Company
16%
Government
9%
Financial Services Firm
9%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Blackberry Protect?
It is a good endpoint solution. It is very easy to manage and detect the threat immediately. It will take the necessary actions.
What is your experience regarding pricing and costs for Blackberry Protect?
The price is reasonable for us at the moment. I rate the overall solution an eight out of ten.
What needs improvement with Blackberry Protect?
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we contact support, they tell us to update the latest agent, but we can't do that immedi...
Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
What do you like most about Elastic Security?
Elastic provides the capability to index quickly due to the reverse indexes it offers. This data is crucial as it contains critical information. The reverse index allows fast data indexing because ...
What is your experience regarding pricing and costs for Elastic Security?
Since Elastic Security is community-based, it does not require significant costs. This is beneficial for SMEs as they do not need extensive budgets for security solutions.
 

Also Known As

Blackberry Protect
Elastic SIEM, ELK Logstash
 

Overview

 

Sample Customers

Panasonic, Noble Energy, Apria Healthcare Group Inc., Charles River Laboratories, Rovi Corporation, Toyota, Kiewit
Texas A&M, U.S. Air Force, NuScale Power, Martin's Point Health Care
Find out what your peers are saying about BlackBerry Cylance Cybersecurity vs. Elastic Security and other solutions. Updated: March 2020.
861,524 professionals have used our research since 2012.