Try our new research platform with insights from 80,000+ expert users

Elastic Stack vs Security Onion comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Scalability Issues

Sentiment score
4.0
Elastic Stack is praised for scalability and log handling, though manual setup and performance vary across teams.
No sentiment score available
The scalability is rated as four out of ten as it lacks auto detect and auto deploy features.
 

Room For Improvement

No sentiment score available
Elastic Stack struggles with dashboard implementation, integration issues, licensing concerns, and needs improvements in search, AI, and documentation.
No sentiment score available
Elastic Stack needs more features similar to other SIEM tools such as Sentinel.
 

Valuable Features

No sentiment score available
Elastic Stack offers seamless deployment, real-time monitoring, robust search, security, machine learning, and easy integration for diverse systems.
No sentiment score available
 

Stability Issues

Sentiment score
5.0
Elastic Stack's stability receives mixed reviews, influenced by server quality and company size, with ratings ranging from three to nine.
No sentiment score available
The stability of the solution is rated as three or four out of ten.
 

Customer Service

No sentiment score available
Elastic Stack's customer service is mixed, with valued expertise but slow responses, prompting reliance on community and forums.
No sentiment score available
 

Setup Cost

No sentiment score available
Elastic Stack offers varied pricing with free and licensed options, considered competitive against IBM QRadar SIEM and others.
No sentiment score available
We use Elastic Stack's open source version, so it is free for us.
 

Categories and Ranking

Elastic Stack
Ranking in Log Management
12th
Average Rating
7.8
Reviews Sentiment
6.0
Number of Reviews
15
Ranking in other categories
No ranking in other categories
Security Onion
Ranking in Log Management
23rd
Average Rating
7.6
Reviews Sentiment
5.5
Number of Reviews
3
Ranking in other categories
AWS Marketplace (1st)
 

Mindshare comparison

As of November 2024, in the Log Management category, the mindshare of Elastic Stack is 3.5%, up from 0.2% compared to the previous year. The mindshare of Security Onion is 6.1%, up from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Mahesh Ramichetty - PeerSpot reviewer
A stable product that can be fine-tuned easily
Elastic Stack provides all sorts of things, so it provides Elasticsearch for the transformations into a specific format, and pipelines can be defined for distributed applications along with the logs that come in the JSON format, which is clean. It's only the enhancements or the security that the product lacks and needs to be enhanced. I don't think further enhancement of the features needs to be added to the solution because it is already equivalent to a monitoring or alerting system, like Dynatrace and other tools. Some developments in the area of AI, which Elastic Stack is currently working on, should be fine in terms of the enhancements. Whenever some critical issue happens, there should be some kind of a co-pilot that helps resolve the issue. The tool should learn from its own previous issues. If you take Databricks, you see that it provides a co-pilot for Python, so a similar kind of development in Elastic Stack would be a real asset for it. AI would be considered a good way to enable the tool further for more in 2024, and even a beta launch would be helpful. If you take any sort of cloud-native monitoring product, like Azure Monitor or AWS CloudWatch, you see that such products don't provide much of the insights. If you go with Azure Monitor for any sort of ML models to be there, Sentinel needs to be used from Azure, which is very costly. AI-enablement would be a big improvement in Elastic Stack. Everyone in the monitoring space, including Dynatrace and New Relic, has lately been discussing AI, but it doesn't seem to be coming out. If there is room for an ML model in Elastic Stack, then it would be good.
Jörg Kippe - PeerSpot reviewer
A mature and affordable solution that is easy to install and easy to update
The product takes time to learn, it's not that easy. In the beginning we had a lot of questions. If you want to use such a tool in an real (industrial) environment, you have to ask how to get the network data. Can we do a full packet capture? Can we provide agents to our end systems? There are no simple solutions to these questions. It's a general problem when running such systems in an industrial environment.
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
816,406 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
12%
Government
9%
Comms Service Provider
9%
Computer Software Company
13%
Government
11%
University
11%
Comms Service Provider
11%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Elastic Stack?
The tool is huge, and it performs brilliantly. I tested it for malware, and within two weeks of launching, the product alerted me about a network intrusion. This was a tough test for it, but it per...
What is your experience regarding pricing and costs for Elastic Stack?
I rate the product’s pricing as five out of ten, where one is cheap, and ten is expensive.
What needs improvement with Elastic Stack?
There could be better documentation. They should improve to capture more data because we have to migrate to another vendor called Wazuh, which provides a full-fledged capability compared to Elastic.
What do you like most about Security Onion?
The most valuable feature of Security Onion for security monitoring is its ability to find infected ports.
What is your experience regarding pricing and costs for Security Onion?
Security Onion is an open-source solution. On a scale from one to ten, where ten is expensive and one is cheap, I rate the solution's pricing a six out of ten.
What needs improvement with Security Onion?
The initial setup of the solution is a little bit difficult.
 

Comparisons

 

Overview

Find out what your peers are saying about Elastic Stack vs. Security Onion and other solutions. Updated: October 2024.
816,406 professionals have used our research since 2012.