What users are saying about
15 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow'>trScore algorithm: Learn more.</a>
Score 8.5 out of 101
5 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow'>trScore algorithm: Learn more.</a>
Score 6.6 out of 101

Likelihood to Recommend

AlienVault OSSIM

Small, medium or large, every company can benefit from this tool. Even if you decide to supplement your existing SIEM this is the way to go and chances are you might end up switching to this as your primary.
No photo available

Sourcefire 3D

This is great for large and small organizations as they have different models and modules that fit every scenario.
Marc Uydess profile photo

Feature Rating Comparison

Security Information and Event Management (SIEM)

AlienVault OSSIM
8.1
Sourcefire 3D
Centralized event and log data collection
AlienVault OSSIM
8.4
Sourcefire 3D
Correlation
AlienVault OSSIM
8.0
Sourcefire 3D
Event and log normalization
AlienVault OSSIM
7.9
Sourcefire 3D
Deployment flexibility
AlienVault OSSIM
8.6
Sourcefire 3D
Integration with Identity and Access Management Tools
AlienVault OSSIM
7.4
Sourcefire 3D
Custom dashboards and views
AlienVault OSSIM
8.1
Sourcefire 3D
Host and network-based intrusion detection
AlienVault OSSIM
8.6
Sourcefire 3D

Pros

AlienVault OSSIM

  • Being a part of the Open Source community, open source tools are always a big plus for me.
  • Being a simple straightforward tool, it does a great job especially with the asset management piece built into it.
  • Straightforward
  • Open Threat Exchange(OTX) gives a straightforward live threat intel feed to work off.
No photo available

Sourcefire 3D

  • Low false positive rate as long as it is properly managed/tuned.
  • Easy to manage and configure with the GUI.
  • Support is great if assistance is needed.
Marc Uydess profile photo

Cons

AlienVault OSSIM

  • It's a free product! Yes, it doesn't have all the capabilities of the USM anywhere, but it does a great job. Can't really complain.
No photo available

Sourcefire 3D

  • Wish additional modules were included such as FireAmp.
  • Wish it was easier to include customized signatures if needed. Required to know how to code with Snort in order to add real customization.
Marc Uydess profile photo

Likelihood to Renew

AlienVault OSSIM

No score
No answers yet
No answers on this topic

Sourcefire 3D

Sourcefire 3D 9.0
Based on 1 answer
We are in the middle of outsourcing and may not be able to keep this product.
Marc Uydess profile photo

Usability

AlienVault OSSIM

AlienVault OSSIM 8.0
Based on 1 answer
AlienVault OSSIM is far easy to use and manage - provided you know what you're doing. As any SIEM application, there is some background knowledge required in order to take advantage of the product's functionalities, such as the log correlation and analysis. Other than that, the application is quite usable and robust.
Jose Quintero profile photo

Sourcefire 3D

No score
No answers yet
No answers on this topic

Alternatives Considered

AlienVault OSSIM

AlienVault OSSIM has the upper ante in initial deployment price, being that it's open source. Also, with perhaps the exception of SolarWinds, it has a lower optimal requirements for onsite deployment, hence your OPEX won't be hit very hard by investing in new hardware to suit the appliance. The correlation engine is somewhat more robust that their counterparts in LogRhythm and SolarWinds, and the IDS (both NIDS and HIDS) are more reliable as well in terms of results. Finally, although Tenable SecurityCenter is more robust in dashboards, alerts and reports, it comes short in front of OSSIM in terms of real-time IDS and SIEM correlation.
Jose Quintero profile photo

Sourcefire 3D

Sourcefire 3D is Snort on steroids. Snort is a great free open source tool but Sourcefire adds a lot of functionality on top of the Snort engine. It opens a whole new world when it comes to detecting and blocking malicious traffic if you decide to place it inline. We needed to enhance our Security posture and Sourcefire allowed us to do that.
Marc Uydess profile photo

Return on Investment

AlienVault OSSIM

  • The only investment here is setting it up and I think seeing it's performance it's a fantastic tool and has a great positive ROI!
No photo available

Sourcefire 3D

  • We have noticed a drop in the amount of infections within the environment since introducing Sourcefire 3 years ago. This saves on time and effort on our desktop teams to remediate threats.
Marc Uydess profile photo

Pricing Details

AlienVault OSSIM

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No
Additional Pricing Details

Sourcefire 3D

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No
Additional Pricing Details

Add comparison