Try our new research platform with insights from 80,000+ expert users
Wazuh Logo

Wazuh pros and cons

Vendor: Wazuh
3.7 out of 5
Badge Leader
120 followers
Post review

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Wazuh provides easy integration with cloud and on-prem environments, making it convenient for various applications.
It features powerful log monitoring and ELK stack integration, enhancing investigation and compliance monitoring capabilities.
Cost-effectiveness and flexible deployment options, including cloud-native configurations, make Wazuh accessible and adaptable.
Wazuh supports an extensive range of security features like file integrity monitoring, CIS benchmarking, and vulnerability management.
Compliance features in Wazuh cater well to standards like PCI DSS and GDPR, aiding in necessary reporting and management.

CONS

Wazuh doesn't integrate threat intelligence feeds, leaving a gap in incident feedback.
Scalability and resource consumption are issues, especially in distributed architecture using Elastic DB.
Deployment and configuration are complex and time-consuming.
Alerts and detection capabilities require improvement for specificity and efficiency.
Lack of support for AI, ML, and certain enterprise solutions limits its effectiveness.
 

Wazuh Pros review quotes

MB
Jun 15, 2023
Wazuh offers numerous features, such as the ability to define custom rules for detecting malicious activities and remembering behaviors.
reviewer2301372 - PeerSpot reviewer
Feb 9, 2024
One of the most beneficial features of Wazuh, particularly in the context of security needs, is the machine learning data handling capability.
Vikrant Puranik - PeerSpot reviewer
Aug 1, 2022
Wazuh's logging features integrate seamlessly with AWS cloud-native services. There are also Wazuh agent configurations for different use cases, like vulnerability scanning, host-based intrusion detection, and file integrity monitoring.
Learn what your peers think about Wazuh. Get advice and tips from experienced pros sharing their opinions. Updated: October 2024.
816,192 professionals have used our research since 2012.
AKASH MAJUMDER - PeerSpot reviewer
Mar 20, 2023
Wazuh offers an enhanced HDR version that outperforms its competitors.
Wajih Ul Hasan - PeerSpot reviewer
May 11, 2022
I find the PCI DSS feature the most valuable, along with the feature that monitors the compliance of Windows and the CIS benchmarks on other devices like Unix or Linux systems.
NH
Jul 11, 2024
The solution is easy to maintain.
PrzemekAndula - PeerSpot reviewer
Feb 7, 2024
The product is easy to customize.
Robert Cheruiyot - PeerSpot reviewer
Oct 28, 2021
It's very easy to integrate Wazuh with other environments, cloud applications, and on-prem applications. So, the advantage is that it's easy to implement and integrate with other solutions.
MS
Jul 10, 2024
The product's initial setup phase was easy.
Sulabh Khanal - PeerSpot reviewer
Nov 7, 2022
The deployment is easy and they provide very good documentation.
 

Wazuh Cons review quotes

MB
Jun 15, 2023
The only challenge we faced with Wazuh was the lack of direct support.
reviewer2301372 - PeerSpot reviewer
Feb 9, 2024
They could include flexibility and customization capabilities by modifying for customers based on partner agreements.
Vikrant Puranik - PeerSpot reviewer
Aug 1, 2022
Scalability is a constraint in the on-prem version of Wazuh in terms of the volume of logs we can manage.
Learn what your peers think about Wazuh. Get advice and tips from experienced pros sharing their opinions. Updated: October 2024.
816,192 professionals have used our research since 2012.
AKASH MAJUMDER - PeerSpot reviewer
Mar 20, 2023
While it is scalable, it can suffer from reduced latencies.
Wajih Ul Hasan - PeerSpot reviewer
May 11, 2022
Wazuh has a drawback with regard to Unix systems. The solution does not allow us to do real-time monitoring for Unix systems. If usage increases, it would be a heavy fall on the other SIEM solutions or event monitoring solutions.
NH
Jul 11, 2024
The product's configuration part and lack of AI capabilities are some of the major concerns associated with Wazuh.
PrzemekAndula - PeerSpot reviewer
Feb 7, 2024
The tool does not provide CTI to monitor darknet.
Robert Cheruiyot - PeerSpot reviewer
Oct 28, 2021
Wazuh doesn't cover sources of events as well as Splunk. You can integrate Splunk with many sources of events, but it's a painful process to take care of some sources of events with Wazuh.
MS
Jul 10, 2024
Wazuh currently fails to provide its users with AI and ML.
Sulabh Khanal - PeerSpot reviewer
Nov 7, 2022
We would like to see more improvements on the cloud.