Try our new research platform with insights from 80,000+ expert users

Lumu vs Wazuh comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Lumu
Ranking in Extended Detection and Response (XDR)
17th
Average Rating
9.4
Reviews Sentiment
7.8
Number of Reviews
7
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (10th), Network Detection and Response (NDR) (9th)
Wazuh
Ranking in Extended Detection and Response (XDR)
3rd
Average Rating
7.4
Reviews Sentiment
6.6
Number of Reviews
45
Ranking in other categories
Log Management (2nd), Security Information and Event Management (SIEM) (2nd)
 

Mindshare comparison

As of February 2025, in the Extended Detection and Response (XDR) category, the mindshare of Lumu is 1.0%, up from 0.1% compared to the previous year. The mindshare of Wazuh is 12.9%, up from 9.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Extended Detection and Response (XDR)
 

Featured Reviews

Juan Solano - PeerSpot reviewer
Protects against threats and handles it in time with moderate pricing
Mostly, Lumu is an automatic tool. We'll deploy on firewalls and DNS servers. Lumu detects every attack on our network. The other day, we had CLC, the command controller, and the tool reacted automatically. It detected the attack and immediately blocked it without intervention from my team. The improvement is in the security process, as it's now entirely automated. We no longer require a technician or engineer to monitor our network 24/7. Lumu updates with AI and global threat intelligence, which greatly assists us. Since our workload is lighter, Lumu handles all of our tasks. We're using FortiGate for the firewall and Kaspersky for endpoints. If you are going to Lumu, you need another solution for the endpoint. You need to integrate with other tools like firewalls or another antivirus. I recommend the solution based on the price, usability, and service offered by the solution. Overall, I rate the solution a nine out of ten.
Sandip_Patel - PeerSpot reviewer
Evaluating robust file monitoring with insights for community support improvements
Wazuh's most valuable features include file monitoring and compliance reporting, which do not require excessive costs. These aspects are vital as they provide alerts for changes and facilitate the monitoring of compliance. The platform is also relatively easy to set up and operate. Reports are straightforward to extract and prove useful for compliance requirements.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Most of it is automated, so I do not have to watch it to get alerts."
"The context provided by the tool is very complete, it includes the miter matrix, playbooks, links, hashes, and much more."
"It's been helpful for overall extended network visibility."
"You can access external links, playbooks, MITRE Matrix, and a lot of information."
"The tool's support team helps partners resolve any problems with the product."
"I like Lumu's simple user interface. When we deployed it, we got full access, allowing us to identify IP addresses on the network and connect machine names to users. It helped us identify and block threats via the firewall. I also appreciate the chat support and ticket closure process. We're currently reviewing network detection solutions, and my recommendations include Lumu, Sentinel, and a few others. Regarding functionality and user-friendliness, I would recommend Lumu over the others."
"Lumu protects against threats immediately and handles them in time."
"Wazuh offers numerous features, such as the ability to define custom rules for detecting malicious activities and remembering behaviors."
"Some of the strengths of Wazuh that stand out for us include its scalability when deployed on Azure, its open-source nature, which allows for customization based on our needs, and its compatibility with various security solutions like threat intelligence platforms."
"The configuration assessment and Pile integrity monitoring features are decent."
"I like the cloud-native infrastructure and that it's free. We didn't have to pay anything, and it has the capabilities of many premium solutions in the market. We could integrate all of our services and infrastructure in the cloud with Wazuh. From an integration point of view, Wazuh is pretty good. I had a good experience with this platform."
"Wazuh's best features are syscheck, its ability to immediately resolve vulnerabilities, and that it's open source."
"It is a stable solution."
"It offers built-in modules for file integrity and vulnerability management."
"The most valuable feature of Wazuh is its EDR capabilities."
 

Cons

"Lumu's ability to discover threats is an area of concern where improvements are needed."
"The free version is minimal compared to the full version."
"The integration with different vendors and endpoints could be improved."
"Nothing so far needs to be improved."
"I am happy with the current features. However, one important one is to improve the reports."
"The reports need improvement."
"It would be good if we could access the physical logs."
"The support channel is not optimal, and extensive research is required on our part to implement Wazuh effectively."
"Wazuh could improve the detection, it is not detecting all of the attacks. Additionally, it is lacking features compared to other solutions."
"Its user interface for sure can be improved. It is not so comfortable to use if you're looking for specific logs."
"The only challenge we faced with Wazuh was the lack of direct support."
"I think that the next release should be more suitable for large enterprises, because currently they are not because large companies do not rely on open source solutions."
"Some features, like alerting, are complex with Wazuh."
"So far, the recent updates have addressed most challenges we previously faced."
"One area where Wazuh could use some improvement is in its reporting mechanism, especially for high-level management like CSOs and CEOs."
 

Pricing and Cost Advice

"The tool is available at a good price. The tool offers a good and competitive price for customers."
"It is the cheapest solution we found."
"Compared to Lumu, other solutions are more expensive. SentinelOne was a bit cheaper, and another provider's price structure is unclear, but Lumu fit our budget nicely. SentinelOne's cost depends on the number of devices, and it might be similar to Lumu's, depending on deployment."
"Wazuh is totally free and open source. There are no licensing costs, only support costs if you need them."
"Wazuh is open-source, but you must consider the total cost of ownership. It may be free to acquire, but you spend a lot of time and effort supporting the product and getting it to a point where it's useful."
"It is a free-of-cost solution."
"The product is cheaper compared to other tools."
"My client uses the open-source version of Wazuh."
"Wazuh is open-source, therefore it is free. You can purchase support for $1,000 a year."
"Wazuh is an open-source tool."
"The solution's pricing is very competitive."
report
Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
832,138 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
13%
Computer Software Company
11%
Government
9%
Insurance Company
9%
Computer Software Company
16%
Comms Service Provider
8%
Government
7%
University
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Lumu?
Lumu protects against threats immediately and handles them in time.
What needs improvement with Lumu?
Lumu's ability to discover threats is an area of concern where improvements are needed.
What is your primary use case for Lumu?
My company is currently dealing with Lumu's onboarding process. Lumu is used to monitor the environment permanently and validate if there is ransomware that can exploit our infrastructure.
What do you like most about Wazuh?
Integrates with various open-source and paid products, allowing for flexibility in customization based on use cases.
What needs improvement with Wazuh?
I am investigating more about the community support for Wazuh. I can't provide a definitive answer yet. An issue I noticed is with tag values in certain rules not functioning properly. It's unclear...
What is your primary use case for Wazuh?
I am currently evaluating and using Wazuh for file monitoring and compliance reporting. We are in the process of conducting a POC to understand how the rules work. I lead this effort to explore and...
 

Comparisons

 

Overview

Find out what your peers are saying about Lumu vs. Wazuh and other solutions. Updated: January 2025.
832,138 professionals have used our research since 2012.