Try our new research platform with insights from 80,000+ expert users

Sentinel vs Wazuh comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 18, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Customer Service

Sentiment score
8.0
Micro Focus technical support varies from needing multiple emails to being very good, while Microsoft's support is generally effective.
No sentiment score available
Wazuh's customer service is highly rated, with excellent paid support and active community forums for troubleshooting assistance.
We use the open-source version of Wazuh, which does not provide paid support.
 

Room For Improvement

Sentiment score
3.9
Sentinel requires enhancements in scripting, integration, security, user interface, customization, vendor support, and reducing region-specific outages.
Sentiment score
5.1
Wazuh's interface is complex, lacking integration, scalability, AI capabilities, and requires better support, efficiency, and automated features.
The integration modules are insufficiently developed, necessitating the creation of custom integration solutions using tools like Logstash and PubSub.
 

Scalability Issues

Sentiment score
7.5
Sentinel's high scalability, cost-effectiveness, and seamless cloud integration make it popular among large enterprises, educational institutions, and SMBs.
Sentiment score
7.1
Wazuh's scalability is mixed, requiring technical expertise, with feedback ranging from four to ten, noting resource challenges.
Scalability depends on the configuration and the infrastructure resources like compute and memory we allocate.
 

Stability Issues

Sentiment score
8.5
Sentinel is highly stable and reliable, supporting 5,000 events per second, but can experience occasional region-specific outages during fixes.
Sentiment score
7.2
Wazuh is generally stable with minor glitches, suitable for small to mid-level businesses, often affected by configuration issues.
The stability of Wazuh is strong, with no issues stemming from the solution itself.
 

Valuable Features

Sentiment score
8.0
Sentinel excels in log monitoring, threat detection, automation, cloud security, and offers a user-friendly interface with advanced analysis tools.
Sentiment score
7.9
Wazuh provides cost-effective, open-source security with integration, compliance, monitoring, and vulnerability assessment for diverse systems and platforms.
We found the MITRE framework mapping and the agent enrollment service to be the most valuable features of Wazuh.
 

Setup Cost

No sentiment score available
No sentiment score available
Wazuh is cost-effective but includes support and infrastructure expenses, appealing to smaller organizations despite scalability limitations.
Totaling around two lakh Indian rupees per month.
 

Categories and Ranking

Sentinel
Ranking in Security Information and Event Management (SIEM)
15th
Average Rating
7.6
Reviews Sentiment
7.3
Number of Reviews
16
Ranking in other categories
No ranking in other categories
Wazuh
Ranking in Security Information and Event Management (SIEM)
3rd
Average Rating
7.4
Reviews Sentiment
6.5
Number of Reviews
44
Ranking in other categories
Log Management (2nd), Extended Detection and Response (XDR) (4th)
 

Mindshare comparison

As of November 2024, in the Security Information and Event Management (SIEM) category, the mindshare of Sentinel is 2.8%, up from 0.9% compared to the previous year. The mindshare of Wazuh is 15.5%, up from 11.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
 

Featured Reviews

JaideepSingh - PeerSpot reviewer
An automated solution that helped me detect threats in less than half the time it used to take
Sentinel gave us logs to tell us what's going right and wrong in your environment so we could secure the network. We also got multiple kinds of logs. By running some queries from the logs, we could find and fix the anomalies in the environment. Sentinel's threat visibility was great at telling us if we had something going on in our environment. We had to set up alerts in our environment based on the logs. If we had the right alerts set up, we got notified about threats and where security was lacking, so we could also take care of that. Sentinel's threat intelligence helped us prepare and take proactive steps for potential threats before they hit. Having preparation before a threat has helped our security operations. When I was using it, I used to keep going into my dashboards and looking for any threats on a weekly basis, or maybe two or three times a week. Based on that, we would recommend certain changes to the server and infrastructure teams to block or allow some ports. Sentinel's threat intelligence helped plan security against risks.
Vikrant Puranik - PeerSpot reviewer
It integrates seamlessly with AWS cloud-native services
I worked with Splunk, Curator, ArcSight, and some legacy solutions that no longer exist. They became obsolete or transitioned to a different product. Cost-effectiveness was one reason we switched. We had to decide whether to spend $500,000 on a commercial product or rely on our skills to deploy an open-source solution. The big difference between Wazuh and other solutions is maturity and customization. Wazuh's scalability and out-of-the-box functionality are slightly lagging behind, but Wazuh has improved a lot since the first time we saw it. Others have more search capabilities, whereas Wazuh depends on Elasticsearch. Searching is a bit slower in Wazuh.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
816,406 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
10%
Manufacturing Company
7%
Retailer
6%
Computer Software Company
16%
University
7%
Comms Service Provider
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about NetIQ Sentinel?
The solution lets us get all the logs properly and regularly monitor customer infrastructure.
What needs improvement with NetIQ Sentinel?
There are still a few vendor-specific devices for which Sentinel needs to work on integration, such as Netskope devices. Also, we often face region-wise outages during operation due to product team...
What do you like most about Wazuh?
Integrates with various open-source and paid products, allowing for flexibility in customization based on use cases.
What needs improvement with Wazuh?
The latest version, 4.9, has improved the interface significantly. I am yet to explore more about the update to identify further areas for improvement. So far, the recent updates have addressed mos...
What is your primary use case for Wazuh?
We use Wazuh for our Security Information and Event Management (SIEM) needs. It serves as a log aggregator and provides us the capability to monitor our servers for brute force attacks and other se...
 

Comparisons

 

Also Known As

NetIQ Sentinel, Novell SIEM
No data available
 

Learn More

 

Overview

 

Sample Customers

Faysal Bank, GaVI, Handelsbanken, ISC Mªnster, Lambeth Council, Swisscard, The Municipality of Siena, Tukes, University of Dayton, University of the Sunshine Coast
Information Not Available
Find out what your peers are saying about Sentinel vs. Wazuh and other solutions. Updated: October 2024.
816,406 professionals have used our research since 2012.