Try our new research platform with insights from 80,000+ expert users

CrowdStrike Observability vs Elastic Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CrowdStrike Observability
Ranking in Log Management
35th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Elastic Security
Ranking in Log Management
7th
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
63
Ranking in other categories
Security Information and Event Management (SIEM) (5th), Endpoint Detection and Response (EDR) (16th), Security Orchestration Automation and Response (SOAR) (6th), Extended Detection and Response (XDR) (8th)
 

Mindshare comparison

As of February 2025, in the Log Management category, the mindshare of CrowdStrike Observability is 0.5%, down from 0.6% compared to the previous year. The mindshare of Elastic Security is 3.9%, down from 7.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

SM
Efficient resource management but backup extension needs improvement
The intelligence database provided by CrowdStrike is very impressive. It does not affect system performance, which is crucial for development purposes. Unlike other software that requires a lot of local resources, CrowdStrike is a thin tool and does not significantly impact the development environment. Additionally, manual intervention is minimal, leading to resource savings.
Nikhil-Kumar - PeerSpot reviewer
Customizable with great dashboards but the premium support is poor
The initial setup can be complex if you don't have technical knowledge. However, once it is deployed, it works well. I'm not sure how long it took to deploy. I wasn't there when it was set up and configured. We have an internal team that handles deployment and maintenance. It doesn't require too many people to deploy. Five or six people would be enough. However, for 24/7 monitoring, you need to have someone always on it.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The intelligence database provided by CrowdStrike is very impressive."
"The price is worth it."
"The log aggregation and correlation of data are notable features that enhance our operations."
"The intelligence database provided by CrowdStrike is very impressive."
"I like the indexing of the logs."
"We like Elastic Security because it's a REST API-based solution. That's the primary reason we use it."
"It is the best open-source product for people working in SO, managing and analyzing logs."
"The cost is reasonable. It's not overly pricey."
"The most valuable features of Elastic Security are it is open-source and provides a high level of security."
"It can handle millions of loads at a time, and you can always use the filters to find exactly what you are looking for and detect errors in every log message you are searching for, basically."
"It's very customizable, which is quite helpful."
"Elastic has a lot of beats, such as Winlogbeat and Filebeat. Beats are the agents that have to be installed on the terminals to send the data. When we install beats or Elastic agents on every terminal, they don't overload the terminals. In other SIEM solutions such as Splunk or QRadar, when beats or agents are installed on endpoints, they are very heavy for the terminals. They consume a lot of power of the terminals, whereas Elastic agents hardly consume any power and don't overload the terminals."
 

Cons

"For reporting or log management, having a longer duration for backup without needing to purchase a paid subscription would be beneficial."
"Integration with Huawei should be more straightforward."
"For reporting or log management, having a longer duration for backup without needing to purchase a paid subscription would be beneficial. Currently, there is a default ninety-day backup period."
"Integration with Huawei should be more straightforward."
"Anything that supports high availability or ease of deployment in a highly available environment would help to improve this solution."
"The solution's query building is not that intuitive compared to other solutions."
"The initial configuration and setup are complicated and not straightforward."
"The problem with ELK is it's difficult to administer. When you have a problem, it can be very, very difficult to rebuild indexes."
"There isn't really a very good user experience. You need a lot of training."
"Elastic Security has a steep learning curve, so it takes some time to tune it and set it up for your environment. There are some costs associated with logging things that don't have value. So you need to be cautious to only log things that make sense and keep them around for as long as you need. You shouldn't hold onto things just because you think you might need them."
"We had issues with scalability. Logstash was not scaling and aggregation was getting delayed. We moved to Fluentd making our stack from ELK to EFK."
"Sometimes, the solution isn't the easiest to use."
 

Pricing and Cost Advice

Information not available
"This is an open-source product, so there are no costs."
"It's a monthly cost with Elastic SIEM, but I am not sure of the exact cost."
"The solution is free."
"The pricing is in the middle. I think it is not an expensive experience if we compare it with big names, for example, QRadar, and also Oxide. I think Elastic Security is quite cheap. I would rate the pricing of this solution a five out of ten."
"There is no charge for using the open-source version."
"We are using the free, open-source version of this solution."
"Compared to other products such as Dynatrace, this is one of the cheaper options."
"The tool's pricing is flexible and comes at unit cost. You don't have to pay for everything."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
15%
Manufacturing Company
7%
University
6%
Computer Software Company
16%
Government
10%
Financial Services Firm
10%
University
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What needs improvement with CrowdStrike Observability?
Integration with Huawei should be more straightforward.
What is your primary use case for CrowdStrike Observability?
In my organization, the financial aspect in the bank is a significant factor influencing our operations.
What advice do you have for others considering CrowdStrike Observability?
The price is worth it. If I were to rate it on a scale from one to ten, with ten meaning a very good solution, I would rate it nine out of ten.
Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
What do you like most about Elastic Security?
Elastic provides the capability to index quickly due to the reverse indexes it offers. This data is crucial as it contains critical information. The reverse index allows fast data indexing because ...
What is your experience regarding pricing and costs for Elastic Security?
Elastic Security is considered cost-effective, especially at lower EPS levels. However, a direct comparison was not made due to different pricing structures.
 

Also Known As

No data available
Elastic SIEM, ELK Logstash
 

Overview

 

Sample Customers

Information Not Available
Texas A&M, U.S. Air Force, NuScale Power, Martin's Point Health Care
Find out what your peers are saying about Splunk, Wazuh, Datadog and others in Log Management. Updated: February 2025.
838,713 professionals have used our research since 2012.