The primary use case is an analysis of server logs with some deeper analysis done on searches. Reports help ensure various departments have daily notices of any activity that they should be reviewing.
CISO at a religious institution with 501-1,000 employees
Daily alerts allow me to quickly find security and operational issues
Pros and Cons
- "The daily alerts allow me to quickly find security and operations issues which need to be addressed."
- "More detail in the alerts given to avoid additional searches, as often the source or destination associated with the alert is not evidenced."
What is our primary use case?
How has it helped my organization?
- Alerts to account usage errors.
- Reports of malware from the antivirus.
- Reports application errors presented in logs.
What is most valuable?
Daily alerts: These allow me to quickly find security and operational issues which need to be addressed.
What needs improvement?
More detail in the alerts given to avoid additional searches, as often the source or destination associated with the alert is not evidenced.
Buyer's Guide
LogRhythm SIEM
February 2025

Learn what your peers think about LogRhythm SIEM. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
For how long have I used the solution?
One to three years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Senior Information Security Manager with 1,001-5,000 employees
It's simplified and clarified complex volumes of information, but customizing features could be improved.
Valuable Features
- Clarity of information
- Ease of deployment
Improvements to My Organization
The ability to provide insights and simplification for complex volumes of information.
Room for Improvement
The ability to customize certain features of the product.
Use of Solution
I've used it for one year.
Stability Issues
I find that the system is stable and handling our traffic very well.
Customer Service and Technical Support
Customer Service:
The customer service teams is excellent and have they resolved anything we have thrown at them in a timely fashion.
Technical Support:The technical support team is excellent and have they resolved anything we have thrown at them in a timely fashion.
ROI
We do not have one yet, but we definitely foresee a ROI.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Buyer's Guide
LogRhythm SIEM
February 2025

Learn what your peers think about LogRhythm SIEM. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
SOC Analyst
Great dashboards at a competitive price
Pros and Cons
- "NextGen SIEM's best feature is how it presents logs."
- "NextGen SIEM has separate rules for AI, advanced intelligence, and MP rules - it would be better to have a centralized way to write the rules and create alarms."
What is most valuable?
NextGen SIEM's best feature is how it presents logs. For example, the dashboard view is detachable from other things.
What needs improvement?
NextGen SIEM has separate rules for AI, advanced intelligence, and MP rules - it would be better to have a centralized way to write the rules and create alarms. In the next release, I would like to see the network hierarchy diagram that QRadar offers.
For how long have I used the solution?
I've been using LogRhythm NextGen SIEM for one year.
What do I think about the stability of the solution?
NextGen SIEM's performance is quite good.
What do I think about the scalability of the solution?
NextGen SIEM is easy to scale.
Which solution did I use previously and why did I switch?
I previously used QRadar SIEM.
How was the initial setup?
The initial setup was simple, and it took two days to deploy.
What's my experience with pricing, setup cost, and licensing?
NextGen SIEM's pricing is moderate. There are additional costs for different applications.
What other advice do I have?
I would recommend NextGen SIEM to other users as it is a leading solution with new features at a better price than competitors like Splunk and QRadar.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: partners
Consultant at a tech services company with 11-50 employees
User-friendly security solution
Pros and Cons
- "NextGen SIEM's most valuable feature is its user-friendliness."
- "NextGen SIEM's integration with other software is good but could be improved."
What is our primary use case?
NextGen SIEM is primarily used by the SOC team to detect attacks.
What is most valuable?
NextGen SIEM's most valuable feature is its user-friendliness.
What needs improvement?
NextGen SIEM's integration with other software is good but could be improved.
For how long have I used the solution?
I've been working with LogRhythm NextGen SIEM for three years.
What do I think about the stability of the solution?
NextGen SIEM is stable.
How was the initial setup?
The initial setup was straightforward.
What other advice do I have?
I would recommend NextGen SIEM to those considering implementing it and would rate it eight out of ten.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer:
Systems Administrator at a construction company
Our security analytics have clearly improved
What is most valuable?
- Security analytics
- Compliance: The reason we implemented was compliance. We're hoping to use it more now.
How has it helped my organization?
Security analytics have definitely improved. It is definitely more dynamic than our old flat file archives system.
As a security organization, the key challenges and goal are data integrity and definitely user access to insure that certain sections are kept more secure than others.
What needs improvement?
It seems with all of the advanced features that we haven't quite figured them out.
It is very complex. More training maybe, in addition to the LogRhythm training on the community website, which is a lot. Better adoption starting out, so we are more comfortable when we start and when we go live.
For how long have I used the solution?
We are pretty new.
What was my experience with deployment of the solution?
We are learning more as the days go on. I am sure a lot of the really impressive stuff will come later.
What do I think about the scalability of the solution?
Scalability is extremely great. We are looking to scale it way more than we already are as we grow.
How is customer service and technical support?
We haven't contacted them yet.
How was the initial setup?
The initial setup was straightforward.
What about the implementation team?
LogRhythm came in and did so much for us. We were up and running before the week was over.
What other advice do I have?
Take advantage of the feature set that LogRhythm has to offer. It has more features than a lot of their competitors. You will be further in the end.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.

Buyer's Guide
Download our free LogRhythm SIEM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: February 2025
Popular Comparisons
CrowdStrike Falcon
Microsoft Sentinel
Splunk Enterprise Security
IBM Security QRadar
Elastic Security
Rapid7 InsightIDR
Sumo Logic Security
Fortinet FortiSIEM
AlienVault OSSIM
Securonix Next-Gen SIEM
Exabeam
Google Chronicle Suite
ManageEngine Log360
USM Anywhere
Buyer's Guide
Download our free LogRhythm SIEM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Between AlienVault and LogRhythm, which solution is suitable for Banks in Gulf Region
- IBM QRadar is rated above competitors (McAfee, Splunk, LogRhythm) in Gartner's 2020 Magic Quandrant. Agree/Disagree?
- Does LogRhythm NextGen SIEM offer good security?
- What Solution for SIEM is Best To Be NIST 800-171 Compliant?
- When evaluating Security Information and Event Management (SIEM), what aspect do you think is the most important feature to look for?
- What are the main differences between Nessus and Arcsight?
- What's The Best Way to Trial SIEM Solutions?
- Which is the best SIEM solution for a government organization?
- What is the difference between IT event correlation and aggregation?
- What Is SIEM Used For?