Try our new research platform with insights from 80,000+ expert users

Elastic Stack vs Falcon LogScale comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024
 

Categories and Ranking

Elastic Stack
Ranking in Log Management
14th
Average Rating
7.8
Reviews Sentiment
6.0
Number of Reviews
15
Ranking in other categories
No ranking in other categories
Falcon LogScale
Ranking in Log Management
33rd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of December 2024, in the Log Management category, the mindshare of Elastic Stack is 4.0%, up from 0.3% compared to the previous year. The mindshare of Falcon LogScale is 0.8%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Mahesh Ramichetty - PeerSpot reviewer
A stable product that can be fine-tuned easily
Elastic Stack provides all sorts of things, so it provides Elasticsearch for the transformations into a specific format, and pipelines can be defined for distributed applications along with the logs that come in the JSON format, which is clean. It's only the enhancements or the security that the product lacks and needs to be enhanced. I don't think further enhancement of the features needs to be added to the solution because it is already equivalent to a monitoring or alerting system, like Dynatrace and other tools. Some developments in the area of AI, which Elastic Stack is currently working on, should be fine in terms of the enhancements. Whenever some critical issue happens, there should be some kind of a co-pilot that helps resolve the issue. The tool should learn from its own previous issues. If you take Databricks, you see that it provides a co-pilot for Python, so a similar kind of development in Elastic Stack would be a real asset for it. AI would be considered a good way to enable the tool further for more in 2024, and even a beta launch would be helpful. If you take any sort of cloud-native monitoring product, like Azure Monitor or AWS CloudWatch, you see that such products don't provide much of the insights. If you go with Azure Monitor for any sort of ML models to be there, Sentinel needs to be used from Azure, which is very costly. AI-enablement would be a big improvement in Elastic Stack. Everyone in the monitoring space, including Dynatrace and New Relic, has lately been discussing AI, but it doesn't seem to be coming out. If there is room for an ML model in Elastic Stack, then it would be good.
Shaik Shaheer - PeerSpot reviewer
A highly commendable and robust solution offering powerful features and comprehensive log data management
It allows us to efficiently manage and store our data. Its compression and archiving features not only reduce storage costs but also minimize the infrastructure resources needed for data backup. Since we have multiple security solutions in place, it allows us to streamline data handling. We can selectively send security-related events to the SIEM while directing other non-security events from various tools to Falcon LogScale. This flexibility ensures that we have access to all the data we need when required, and we can easily export this data from it as necessary, optimizing our data management and making it readily available for analysis or other purposes.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I think the ecosystem is well supported, and for logs, it was faster compared to our previous previous log management."
"It is a very scalable solution...I didn't face any problem with this scalability part of the solution since we only have a few pieces of equipment in our company."
"The tool's most powerful aspect is its search engine capability. It's a highly effective and powerful solution for searching. We use it in professional and student projects at universities, and it delivers promising results."
"Prior to the latest updates, data lake management was a standout feature. The hybrid capability for on-premise and cloud integration was also crucial. Now, with Elastic Defense, the agent simplifies security monitoring, making it a key asset."
"I have experienced a return on investment from the use of the solution."
"It supports various integrations. It's open source and has excellent community support."
"Elastic Stack has made a positive impact as we can now see our logs."
"The solution's technical support is good...Elastic Stack offers good value for value for money based on the product's features and what they offer."
"It offers the capability to view live log ingestion directly from the console which means you can seamlessly manage live log data ingestion alongside accessing and analyzing older data from the past."
"The fast search and index-free data retention are very valuable."
"One of the key features is the fast search functionality, enabling us to get results within a few seconds."
 

Cons

"The implementation of dashboards in the solution needs to be made easier...I had some issues with the ports and configuration since it was kind of complex to implement with Docker."
"The main issue related to Elastic Stack is in the area of its licensing."
"When people try to move the data from another source to Elastic Stack for visualization, they face challenges when connecting to Elastic Stack from such different sources."
"The stability of the solution is rated as three or four out of ten as we frequently encounter issues."
"Support could be improved. The error code is not helpful. We have to ask for it or pass it on to community forums."
"Improving integration capabilities, especially with authentication systems, firewalls, and security controls, is a crucial area for improvement in Elastic Stack. Additionally, enhancing functionality to handle large Yara queries more efficiently would be beneficial, as many EDR solutions can run such queries faster than Elastic Stack's current limitations."
"It lacks a clear NDR (Network Detection and Response) feature. If Elastic could enhance this aspect, it would significantly boost its capabilities."
"There could be better documentation."
"The integration could improve."
"There are some overlapping features found in multiple tools."
"The price could be lower."
 

Pricing and Cost Advice

"Ultimately, the pricing depends upon the capacity planning that the enterprise architect does."
"We are using the open-source community version of the product."
"I used the open-source version of Elastic Stack, because of which I did not have to pay anything."
"The pricing is reasonable."
"I rate the solution's pricing a six out of ten."
"It depends on the specifics, but generally, Elastic is economical for certain use cases."
"The product is expensive."
"If I compare Elastic Stack to the other products in the market, I would say that the tool is available at a competitive price."
Information not available
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
12%
Comms Service Provider
9%
Government
8%
Computer Software Company
15%
Manufacturing Company
15%
Financial Services Firm
14%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Elastic Stack?
The tool is huge, and it performs brilliantly. I tested it for malware, and within two weeks of launching, the product alerted me about a network intrusion. This was a tough test for it, but it per...
What is your experience regarding pricing and costs for Elastic Stack?
We use Elastic Stack's open source version, so it is free for us.
What needs improvement with Elastic Stack?
Elastic Stack needs more features similar to other SIEM tools such as Sentinel or the ability to create automations. Additionally, it should facilitate easier manual integration.
What do you like most about Falcon LogScale?
It offers the capability to view live log ingestion directly from the console which means you can seamlessly manage live log data ingestion alongside accessing and analyzing older data from the past.
What needs improvement with Falcon LogScale?
The integration could improve. Easy parser writing should be an option to ingest log in a human-readable format for unsupported devices. For visibility perspective, the dashboard should be more use...
What is your primary use case for Falcon LogScale?
Initially, the log was for log management. We store our logs for achieving compliance and log retention for longer periods. This function, LogScale, is now a platform where we can do correlation as...
 

Learn More

Video not available
 

Overview

Find out what your peers are saying about Elastic Stack vs. Falcon LogScale and other solutions. Updated: December 2024.
824,053 professionals have used our research since 2012.