Try our new research platform with insights from 80,000+ expert users
System Administrator at a insurance company with 51-200 employees
Real User
Unstable features, poor technology integration, and support needs improvement
Pros and Cons
  • "The solution has all the features that we need, however they do not work correctly."
  • "In the future, I would like to see all these features of the solution working properly."

What is our primary use case?

I am using the solution for security information and event management.

What is most valuable?

The solution has all the features that we need, however they do not work correctly.

What needs improvement?

This solution has too many issues with integration with other technologies. For example, you can configure the solution to integrate with your technology today but tomorrow it will stop working. You have to continually update the login, save the issue, and create a ticket with support. It is a long process that takes too long for the support to resolve quickly.

In the future, I would like to see all these features of the solution working properly.

For how long have I used the solution?

I have been using the solution for two years.

Buyer's Guide
USM Anywhere
December 2024
Learn what your peers think about USM Anywhere. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
831,265 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is not stable. Sometimes the virtual machines are not working and it is not a network issue. There are many compatibility issues. There have been times when upgrading the firmware the device is not operational, you then have to restore to the older version.

How are customer service and support?

The customer support has not been very helpful when issues arise.

What's my experience with pricing, setup cost, and licensing?

The price for this solution is very good, but since the features do not work the price is expensive.

What other advice do I have?

I would not recommend anyone to use it.

I rate ATT AlienVault USM a one out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Security Analyst SOC at Sumasoft Pvt Ltd
Real User
It is easy to deploy with their cloud-based model, and deploying the required agents is quick and easy

What is our primary use case?

AlienVault USM is a single pane of glass solution. It has not only SIEM capabilities but also other capabilities. AlienVault USM Anywhere is easy to deploy with their cloud-based model, and deploying the required agents on-prem (or in the cloud) is quick and easy. USM Anywhere also takes care of reporting for ISO and PCI, allowing you to pull reports for auditors at a moment's notice.

How has it helped my organization?

  • The system slows down considerably when a large number of events are fed in.
  • Also, AlienVault support has to make some improvements.

What is most valuable?

A vulnerability assessment feature is very helpful for me. Because of this feature, I can schedule a vulnerability assessment for my critical server.

What needs improvement?

While it is relatively easy to use, it takes a little time to get used to where everything is located in the web interface. I do wish that their support would help a bit more with the analysis of alarms.

For how long have I used the solution?

One to three years.

Which solution did I use previously and why did I switch?

No. This is the first security tool I am using.

What's my experience with pricing, setup cost, and licensing?

It is easy to deploy and install an entire solution. I don't have an idea about pricing.

Which other solutions did I evaluate?

N/A.

What other advice do I have?

They should have to improve support. So they can solve customers' problems in less time.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Thank you Rajnikant for taking time to provide your thoughtful feedback!

Buyer's Guide
USM Anywhere
December 2024
Learn what your peers think about USM Anywhere. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
831,265 professionals have used our research since 2012.
it_user829383 - PeerSpot reviewer
Engineer - Network Security at a tech company with 11-50 employees
User
Review about AlienVault

What is our primary use case?

I'm a System Engineer working for a IT Security Solution Provider. My organization received a request for SIEM and FIM solution to be deployed for a Financial Organization. We have found AlienVault provide SIEM and FIM features in USM All In One

This was my first ever SIEM deployment and started from the scratch after doing a good POC with the customer.

How has it helped my organization?

It has helped me to give some InfoSec guidance to my customer after deployed the AlienVault in their premises.

Now they were able to get to know what kind of traffic passing through the firewalls and what kind of traffic hits the traffic.

What is most valuable?

SIEM and the FIM are the first preferences when I started the deployment. Because the customer wanted to monitor network security incidents of the Servers and any file modification done to their critical files residing in the production servers. 

Vulnerability scanning and OTX helped us to manage all in one single point.

The alerting and security intelligence is the heart of the product. Monitoring customer's critical network is now almost a one man job.

What needs improvement?

Still I was working on the implementation I have found difficulties in searches within security events. Configuring some areas looks complicated.

I had issues while installing OSSEC agent in Solaris and CentOS Servers. A workaround for this issue will give some value for users.

For how long have I used the solution?

Still implementing.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Thank you for your time to review AlienVault USM and for your candid feedback!

PeerSpot user
Security Engineer at a tech services company with 201-500 employees
MSP
The low cost of entry SIEM functionality has increased due to network views and network traffic
Pros and Cons
  • "Ease of deployment across various environments."
  • "Support can be slow at times, but the quality is high. Posted knowledge base articles could use improvement."

How has it helped my organization?

The low cost of entry SIEM functionality has increased due to network views and network traffic.

What is most valuable?

  • General SIEM tool functionality.
  • Ease of deployment across various environments.

What needs improvement?

Support can be slow at times, but the quality is high. Posted knowledge base articles could use improvement.

What do I think about the stability of the solution?

None, which are related to this solution.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

Customer Service:

Seven out of ten.

Technical Support:

Seven out of ten.

Which solution did I use previously and why did I switch?

No.

How was the initial setup?

The initial setup was straightforward.

What about the implementation team?

It was a a blend. The implementation was primarily internal with support provided as needed. The vendor team had a good quality of expertise.

What was our ROI?

Medium-high.

What's my experience with pricing, setup cost, and licensing?

Research the solution heavily prior to investing.

Setting up a bench OSSIM install should help identify possible pain points with the setup.

Which other solutions did I evaluate?

No.

What other advice do I have?

The solution is improving steadily, particularly in relation to the quality and breadth of documentation. Though some areas are still weak.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Thank you Paul for your time to review AlienVault USM and for your candid feedback!

PeerSpot user
Infrastructure Engineer at a tech services company with 1,001-5,000 employees
Consultant
Holistic view of SIEM environment

What is most valuable?

The UI is clean and easy to use. Lots of documentation, training, and community involvement available as well.

How has it helped my organization?

Holistic view of SIEM environment.

What needs improvement?

API, ETL, or connector to support BI tools such as Tableau, Power BI, etc.

For how long have I used the solution?

Only for a few months. We just went live with the USM when we transitioned away from on-prem.

What was my experience with deployment of the solution?

Not on the AV side, pretty easy to use.

What do I think about the stability of the solution?

No.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

Customer Service:

Very good.

Technical Support:

Very good.

Which solution did I use previously and why did I switch?

N/A.

How was the initial setup?

Yes.

What about the implementation team?

Vendor. Not the best.

What was our ROI?

Too soon to tell.

What's my experience with pricing, setup cost, and licensing?

Check logging.

Which other solutions did I evaluate?

N/A.

What other advice do I have?

No.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Thank you Adam for your time to review AlienVault USM and for your candid feedback!

PeerSpot user
Information Technology Security Administrator at a healthcare company with 1,001-5,000 employees
Vendor
We use policies as alerts on many compliance requirements and concerns.

What is most valuable?

Policies have been very valuable. We use them as alerts on many compliance requirements and concerns.

How has it helped my organization?

  • Identifying the sending of clear text account information
  • Identifying and fixing vulnerabilities that we were not aware of

For how long have I used the solution?

We have been using AlienvVault for the past two years.

What was my experience with deployment of the solution?

There was an issue in setting up the log storage location.

What do I think about the stability of the solution?

I did not encounter any issues with stability.

What do I think about the scalability of the solution?

I did not encounter any issues with scalability.

How are customer service and technical support?

Customer Service:

There is excellent customer service and we have never had a complaint.

Technical Support:

Technical support has a very knowledgeable support staff. Everyone we have worked with has really displayed great knowledge of this product.

Which solution did I use previously and why did I switch?

We used different solutions. Pricing was an issue and support was limited.

How was the initial setup?

We had the installation done by support when we purchased the solution.

What about the implementation team?

The implementation was though the vendor and they were great to work with. They were able to answer any questions that we had.

What's my experience with pricing, setup cost, and licensing?

The pricing was great and we were not disappointed.

Which other solutions did I evaluate?

We did not evaluate other solutions.

What other advice do I have?

Thank you for the great solution that you provided for us.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Thanks Dan for your feedback on USM!

PeerSpot user
Network Engineer II at a healthcare company
Vendor
We now can find the source of where Windows account lockouts are occurring.

What is most valuable?

We now have the ability to see what is happening in the environment.

How has it helped my organization?

We now can find the source of where Windows account lockouts are occurring.

What needs improvement?

It needs to be easier to deploy switch monitoring.

For how long have I used the solution?

We've been using it for four months.

What do I think about the stability of the solution?

We've had no issues so far.

What do I think about the scalability of the solution?

We've been able to scale it for our needs without issues.

How are customer service and technical support?

I've not had to contact them yet.

Which solution did I use previously and why did I switch?

We switched because our previous solution wasn't scalable.

How was the initial setup?

It was pretty straightforward.

What's my experience with pricing, setup cost, and licensing?

It was a reasonably priced solution.

Which other solutions did I evaluate?

We didn't look at any other solutions.

What other advice do I have?

It’s pretty easy to setup but to really take advantage you should have a dedicated person who will devote their time, to customizing and utilizing the power this solution has.

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Lenny - thank you so much for your feedback & comments.

PeerSpot user
Engineer - Information Security at a tech services company with 51-200 employees
Reseller
Categorization of Security Events Helps Our Soc Analyst for Further Analysis.

What is our primary use case?

I'm a re-seller of AlienVault SIEM in Sri Lanka. We have deployed AlienVault SIEM in one of the bank in Sri Lanka three months back. Currently we are working on the fine tuning. It took me two weeks to complete the basic deployment and integration of devices up-to 50 with the clients technical team.

How has it helped my organization?

Since we are re-seller, AlienVault helped us because of their cheaper price compared to other SIEM solutions and the addition of FIM in the solution. Implementation took few days and it's easy to complete the task within the given project time line.

What is most valuable?

Raw logs: Clients require to store their raw logs in a data-store rather than keep it in the actual device.

Alarm section: It's very easy to see the Alarms for any incidents rather than going through all the logs.

Security events: Categorization of Security events helps our SOC analyst for further analysis.

What needs improvement?

User friendly interface could be an advantage. Sometimes we may face trouble when we were going through the settings of AlienVault SIEM.

For how long have I used the solution?

Less than one year.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at AlienVault
Real User

Thank you Shayanthan for your time to review AlienVault USM and for your candid feedback!

Buyer's Guide
Download our free USM Anywhere Report and get advice and tips from experienced pros sharing their opinions.
Updated: December 2024
Buyer's Guide
Download our free USM Anywhere Report and get advice and tips from experienced pros sharing their opinions.