Try our new research platform with insights from 80,000+ expert users

Elastic Security vs Symantec Endpoint Detection and Response comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Elastic Security
Ranking in Endpoint Detection and Response (EDR)
16th
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
63
Ranking in other categories
Log Management (7th), Security Information and Event Management (SIEM) (5th), Security Orchestration Automation and Response (SOAR) (6th), Extended Detection and Response (XDR) (8th)
Symantec Endpoint Detection...
Ranking in Endpoint Detection and Response (EDR)
25th
Average Rating
7.6
Reviews Sentiment
7.2
Number of Reviews
30
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of February 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of Elastic Security is 2.4%, up from 2.3% compared to the previous year. The mindshare of Symantec Endpoint Detection and Response is 0.5%, down from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Featured Reviews

Nikhil-Kumar - PeerSpot reviewer
Customizable with great dashboards but the premium support is poor
The initial setup can be complex if you don't have technical knowledge. However, once it is deployed, it works well. I'm not sure how long it took to deploy. I wasn't there when it was set up and configured. We have an internal team that handles deployment and maintenance. It doesn't require too many people to deploy. Five or six people would be enough. However, for 24/7 monitoring, you need to have someone always on it.
YusufAhmed - PeerSpot reviewer
Easy to use and competitively priced
Honestly, the product needs to continue the way it is, and I feel that everything will be fine. I haven't had any reasons to complain about the product. The product doesn’t offer MDM functionality under its current licensing model. In the future, I want the product to offer MDM. It can allow me to manage my mobile device more efficiently and effectively. Currently, there is a need for a separate license to be added to Symantec Endpoint Detection and Response to be able to use the MDM part. If both are bundled up under the same license, the administration part can be made easier.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Elastic Security offers advanced features such as machine learning and integration with ChatGPT."
"ELK documentation is very good, so never needed to contact technical support."
"The visualization is very good."
"The performance is good and it is faster than IBM QRadar."
"ELK Logstash is easy and fast, at least for the initial setup with the out of box uses."
"It is the best open-source product for people working in SO, managing and analyzing logs."
"It's very customizable, which is quite helpful."
"It's very stable and reliable."
"The most valuable features of the solution are that it is easy to use and has good support."
"It is mostly used for malware detection and antivirus purposes."
"It is very simple to use."
"The most valuable feature is that the same agent can act as the endpoint detection and response agent."
"The Detection vulnerability is very effective."
"There are times when Symantec Endpoint Detection and Response tags an executable as malicious when it is trying to get executed on the machine. In this case, it prevents the execution and it gives you a process view of things where you can look into what has happened and whether it is a genuine process trying to access some system activities, or it's a malicious one. Depending upon the process, it gives you a clear identification, and we can do the containment from the interface itself and isolate the machine from the network. The process review on network isolation is good."
"The most valuable features of Symantec Endpoint Detection and Response are its immediate response and investigation."
"The solution is scalable."
 

Cons

"In terms of what could be improved with Elastic, in some use cases, especially on the advanced level, they are not ready made, so you'll have to write some scripts."
"We'd like better premium support."
"They don't provide user authentication and authorisation features (Shield) as a part of their open-source version."
"The initial configuration and setup are complicated and not straightforward."
"Elastic Security can be a bit difficult to use if a person only has experience in SMBs with tools like Zoho. The product can also be difficult for those who have never dealt with query language."
"The tool should improve its scalability."
"Email notification should be done the same way as Logentries does it."
"There isn't really a very good user experience. You need a lot of training."
"It would be good if it can anticipate zero-day attacks. I don't know how it can be done and if it is even a feature of this product."
"One potential area for improvement in Symantec EDR is the reporting engine."
"The interface has many issues."
"While they are quite dynamic, they need to ensure they are detecting threats faster in the future to keep people safer."
"They need to improve their cloud presence."
"They do need to minimize the number of agents installed on a server."
"The solution’s scalability and stability could be improved."
"It would be beneficial to have more integration and compatibility with other platforms."
 

Pricing and Cost Advice

"We use the open-source version, so there is no charge for this solution."
"The price is reasonable. It probably costs the same as ArcSight and LogRhythm SIEM. FortiSIEM might cost less than Elastic Security. There are no hidden or additional costs."
"Compared to other tools, Elastic Security is a cheaper solution."
"We are using the free, open-source version of this solution."
"This is an open-source product, so there are no costs."
"The solution is not expensive and costs around ten dollars a month."
"Compared to other products such as Dynatrace, this is one of the cheaper options."
"I find it better than Splunk in terms of cost-effectiveness. For cost-effectiveness, I would rate it a nine out of 10."
"Of late, because of the Broadcom purchase, its price has been increasing."
"We pay around $100,000 for 5000 licenses every year."
"It's a yearly subscription."
"We have a yearly subscription, and the pricing is fair."
"Symantec Endpoint Detection and Response is expensive."
"Compared to the tools of competitors, Symantec Endpoint Detection and Response is a cheaply priced product."
"The product is cheap."
"It is an expensive solution."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Government
10%
Financial Services Firm
10%
University
7%
Computer Software Company
16%
Financial Services Firm
15%
Manufacturing Company
8%
University
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
What do you like most about Elastic Security?
Elastic provides the capability to index quickly due to the reverse indexes it offers. This data is crucial as it contains critical information. The reverse index allows fast data indexing because ...
What is your experience regarding pricing and costs for Elastic Security?
Elastic Security is considered cost-effective, especially at lower EPS levels. However, a direct comparison was not made due to different pricing structures.
What is your experience regarding pricing and costs for Symantec Endpoint Detection and Response?
I am not aware of the pricing details, as that falls under the management's responsibility.
What needs improvement with Symantec Endpoint Detection and Response?
There are several areas where Symantec Endpoint Detection and Response can improve, including shell features, web control, asset management, and device control. Specifically, the application contro...
 

Also Known As

Elastic SIEM, ELK Logstash
No data available
 

Overview

 

Sample Customers

Texas A&M, U.S. Air Force, NuScale Power, Martin's Point Health Care
Information Not Available
Find out what your peers are saying about Elastic Security vs. Symantec Endpoint Detection and Response and other solutions. Updated: January 2025.
838,713 professionals have used our research since 2012.