Try our new research platform with insights from 80,000+ expert users

Securonix Next-Gen SIEM vs Securonix UEBA comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Securonix Next-Gen SIEM
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
30
Ranking in other categories
Security Information and Event Management (SIEM) (11th), Identity Threat Detection and Response (ITDR) (7th)
Securonix UEBA
Average Rating
10.0
Number of Reviews
3
Ranking in other categories
User Entity Behavior Analytics (UEBA) (15th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Securonix Next-Gen SIEM is designed for Security Information and Event Management (SIEM) and holds a mindshare of 1.2%, down 1.8% compared to last year.
Securonix UEBA, on the other hand, focuses on User Entity Behavior Analytics (UEBA), holds 2.8% mindshare, down 5.1% since last year.
Security Information and Event Management (SIEM)
User Entity Behavior Analytics (UEBA)
 

Featured Reviews

Mohammed Nadeem Rais - PeerSpot reviewer
Sep 23, 2024
The visibility and analytics from Securonix SIEM have become indispensable in identifying and stopping potential threats before they escalate.
We use Securonix Next-Gen SIEM primarily for managed SOC, focusing on threat detection, baselining, and ensuring the maturity of our SOC security operations.  It is integrated with threat intelligence and utilizes frameworks like MITRE ATT&CK and the Cyber Kill Chain.  The solution helps in threat…
YL
Sep 12, 2019
Algorithms surface the exact indicators we need for insider threat detection
The aggregation library is definitely very comprehensive. It covers a lot of use cases. Also, the feature dashboard is very well organized and intuitive to use. It organizes information on a timeline which is exactly what we need for insider threat future-analysis. Data insights are where we can not only look at items but can visualize the activity trends over a period of time and compare them across organizations. That's very useful for us. The algorithms surface the exact indicators that we need for the purpose of insider threat detection. That is something that we have not always found is the case with other vendors we have evaluated. We consider cyber indicators as part of insider threat detection. We don't look at them in silos. We correlate them and look at them from a holistic point of view. The algorithm for surfacing those relevant indicators is very comprehensive. We almost find everything we need to surface the indicators we want. We're very impressed with that.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The scalability is one of the remarkable qualities of this product, which makes it very effective, especially when we are dealing with substantial data volumes in the cloud."
"We can customize our use cases with the tools provided by Securonix. It is an excellent tool that can ingest data in different ways and is very flexible."
"The solution's AI features reduce the need for manual analysis and help in decision-making. It displays the report in seconds. It saves my resources three to four hours of work."
"The user interface is easy to learn and navigate."
"One of the most valuable features is the integration of all types of data sources to extract relevant information regarding events. It is a good solution when it comes to the correlations that it makes within all the data handled in our company."
"The solution is stable and scalable."
"[The solution has] incident-management or case-management functionality. If someone were to download a high number and we decided we needed to investigate it, I could open a case right in the tool. It would be able to directly reference the data that they downloaded and we could open and shut the case directly in the tool, as well as report from it."
"The most valuable feature is being able to look at users' behavioral profiles to see what they typically access. One of the key events that we monitor is people's downloading of objects... It's very easy to see people's patterns, what they typically do."
"Their user and entity behavior analysis algorithms are the most valuable features."
"One of the most valuable features is UEBA. It's pretty helpful for us to make sure of our thresholds for any of our clients."
"The feature dashboard is very well organized and intuitive to use. It organizes information on a timeline which is exactly what we need for insider threat future-analysis."
 

Cons

"We would like a little more face-to-face training. Securonix has several tutorials on its website, but we want there to be a person in Colombia who does training or workshops to give us a better understanding of the platform."
"Regarding the analysis of security events on the SOC side, Securonix Next-Gen SIEM needs to improve its automation capabilities."
"Sometimes, there is instability in the data in terms of the customization of the time. I have sometimes observed discrepancies in the data, which is something they should work on. They should bring more stability to time customization. If we are seeing a particular data, when we change the time zone, there should be the same data. There should not be any discrepancy."
"Sometimes, the injectors lag and are not loading. It would be nice if that could be improved."
"A helpful feature would be an event export. A way to create more substantial summary reports would be nice."
"Securonix implements risk scores based on different policies that are triggered. We've seen some challenges with the risk scores and how they trigger. These are things that Securonix has recognized and they've been working with us to help improve things."
"The incident response area should be improved."
"We thought they were going to be a great product, however, they're actually not great at all as an MSP."
"When compared to others, if you look at the integration aspect, I believe that some aspects of integration can be enhanced."
"There is room for improvement in the algorithms. Although I said that we have a very solid starting point - our existing library is already very comprehensive - we constantly find areas where we need to develop new algorithms. That is common across platforms. Any vendor with a solid starting point would still need to continue to evolve."
"The area that needs improvement is reporting."
 

Pricing and Cost Advice

"I rate the pricing an eight on a scale of one to ten, where one is cheap, and ten is very expensive. It is a pretty expensive tool."
"A good thing about Securonix is that they don't charge by volume of data or number of devices... They charge by the number of employees, which is a much more predictable number for me, versus data. Our costs are in the $100,000 range over a three-year subscription."
"Compared to other known brands in the industry, the overall cost of the licenses is a bit higher than what customers expect."
"Its pricing is quite similar to others and is very competitive. The other solutions have different types of licensing, but when you do the math, it is competitive."
"We have a license from our 5.0, so that license just continued. We paid them the extra cloud-hosting costs for a year which were about $300,000."
"The pricing is fine compared to the market but I think that at some point the competitors will catch up on price."
"Compared to other brands it seems more affordable to us."
"I had heard that it was much cheaper than Splunk and some of the other tools, and they gave us a nice package with support. They accommodated the number of users and support very well."
"Their pricing is pretty comfortable. They will work with you on the cost."
"When compared to other solutions, it is less expensive."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
814,649 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Financial Services Firm
12%
Manufacturing Company
8%
Government
8%
Financial Services Firm
14%
Computer Software Company
11%
Manufacturing Company
11%
Insurance Company
11%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Which is the best SIEM tool for a mid-sized financial services firm: Arcsight or Securonix?
In my market, a lot of financial companies had or have an ArcSight installation. Just because in former times it was pretty good. Now a lot of them are looking for a more effective solution due to ...
What is your primary use case for Securonix Security Analytics?
We use Securonix Next-Gen SIEM primarily for managed SOC, focusing on threat detection, baselining, and ensuring the maturity of our SOC security operations. It is integrated with threat intelligen...
What do you like most about Securonix Next-Gen SIEM?
The two major features of this product we extensively use are the UEBA capability and the multi-tenant approach with the centralized data logs system. Customers are very happy with these features.
What are the biggest differences between Securonix UEBA, Exabeam, and IBM QRadar?
It mostly depends on your use-cases and environment. Exabeam and Securonix have a stronger UEBA feature set, friendlier GUI and are not licensed based on capacity (amount of logs and information in...
 

Also Known As

Securonix Security Analytics
Securonix User and Entity Behavior Analytics
 

Learn More

 

Overview

 

Sample Customers

Dtex Systems, Pfizer, Western Union, Harris, ITG
Pfizer, McKesson, BNY Mellon, New York Life
Find out what your peers are saying about Securonix Next-Gen SIEM vs. Securonix UEBA and other solutions. Updated: May 2023.
814,649 professionals have used our research since 2012.