What users are saying about
<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
679 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
225 Ratings

AlienVault USM

<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
679 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 7.5 out of 100

ScienceLogic SL1

<a href='https://www.trustradius.com/static/about-trustradius-scoring#question3' target='_blank' rel='nofollow noopener noreferrer'>Customer Verified: Read more.</a>
Top Rated
225 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8 out of 100

Likelihood to Recommend

AlienVault USM

At this point I'm saying a 4. While the marketing material make it appear to be easy to use and it was relatively easy to set up, as previously mentioned, each event description is based upon the individual asset making it nearly impossible for the administrator to be a SME for each asset. For example, if one of the assets reporting is a router, the administrator monitoring alerts would need to know what the various events are that can be triggered as an event for the particular router; however, if the asset is a workstation, the administrator would need to know the various events that are triggered for workstations.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

An answer as to whether this is the right system for you greatly depends on several factors:
1) Your budget
2) Governance in your organization
3) Whether you are willing to invest in education
If your budget is below the leader's quadrat, but you are looking for a versatile infra management tool with AI built-in and have a limited time to deploy, my suggestion would be to consider SL1. Do bear in mind that investing in the user and admin training is essential.
Anonymous | TrustRadius Reviewer

Feature Rating Comparison

Security Information and Event Management (SIEM)

AlienVault USM
7.2
ScienceLogic SL1
Centralized event and log data collection
AlienVault USM
7.1
ScienceLogic SL1
Correlation
AlienVault USM
7.7
ScienceLogic SL1
Event and log normalization
AlienVault USM
7.7
ScienceLogic SL1
Deployment flexibility
AlienVault USM
6.7
ScienceLogic SL1
Integration with Identity and Access Management Tools
AlienVault USM
6.9
ScienceLogic SL1
Custom dashboards and views
AlienVault USM
6.9
ScienceLogic SL1
Host and network-based intrusion detection
AlienVault USM
7.7
ScienceLogic SL1

Pros

AlienVault USM

  • AlienVault USM is simple and easy to deploy. Sensors can be deployed in as little as 15 minutes through the setup wizard.
  • The USM UI is easy to understand. I've trained multiple analysts who are able to perform their duties on their first day, in part because of USM Anywhere's ease of use.
  • Top-notch built-in compliance templates and reporting features.
Matthew Stacks | TrustRadius Reviewer

ScienceLogic SL1

  • Automation engine - easy to take scripted action on specific device events.
  • Automation action open source - the platform allows you to custom build snippet actions with Python to remediate any unhealthy event detected on devices.
  • Manager of managers - the platform has several ways of receiving inbound alerts and alarms not only from directly monitored devices but from 3rd-party solutions in the form of traps, emails and REST API connections.
Rob Duram | TrustRadius Reviewer

Cons

AlienVault USM

  • Personally, I've wished I could purchase a service that would configure AV for my environment. I get a lot of traffic on a daily basis and I almost need to hire an analyst that just works on AV.
  • Some of the filters when looking for a specific alert aren't that easy to use.
Christian Holton | TrustRadius Reviewer

ScienceLogic SL1

  • Ability to utilize Downstream Suppression within different organizations. Monitoring multiple organizations requires an all or none with downstream suppression.
  • Access and hooks to the product can be cumbersome and almost too granular.
  • No configuration management or Netflow data. These additions could be game-changers for the product.
Anonymous | TrustRadius Reviewer

Likelihood to Renew

AlienVault USM

AlienVault USM 6.5
Based on 19 answers
The centralized logging and retention for PCI compliance was our main driver, and it is meeting that need. Otherwise there has been enough frustration with the lack of documentation and the need to customize through the CLI that I would be open to alternatives.
Aaron Rothstein | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 8.5
Based on 8 answers
We migrated away from our 20-year-old homegrown solution and have no back-tracking capability. ScienceLogic is demonstrating new capabilities that we would not have been able to do on our own using our legacy system.
We understand the capabilities of competitors based on our bake-off selection where ScienceLogic won on capabilities and future near-term potential (expandability, platform growth). We know that those competitors are not really close to where we have been able to push ScienceLogic (as a partner).
Anonymous | TrustRadius Reviewer

Usability

AlienVault USM

AlienVault USM 6.9
Based on 35 answers
Once you are able to navigate the different panels, finding what you need is quite easily. Before getting used it it can be a bit of challenge .Each panel is quite well laid out and the filtering search capabilities are quite strong.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 6.5
Based on 5 answers
The core functions are there.
The complexity is due to the complexity of the space.
The score is based on comfort (I no longer notice the legacy UI) and the promise that I see in the 8.12 Unified UI (a vast improvement).
It is also based on the fact that with 8.12, you can now do everything in the new UI but you still have the legacy UI as a fallback (which should now be unnecessary for new installations)
Anonymous | TrustRadius Reviewer

Reliability and Availability

AlienVault USM

AlienVault USM 6.4
Based on 3 answers
We do have issues with maintenance on the AlienVault USM as the disk fills up from time to time with other data sources. Sources for scanning logs and net flow data isn't calculated in regular disk maintenance and can easily fill up our disk if we do not keep an eye on it with some custom Nagios plugins. The system does properly trim logging data from logging sources properly.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 7.6
Based on 11 answers
Science Logic SL1 provides the option of Distributed deployment where multiple instances of each appliance can be deployed to manage the load and availability. SL1 provides a High Availability feature for Database Servers and Data Collection. If one of the Data Collectors in the collector group fails, it will automatically redistribute the devices from the failed Data Collector among the other Data Collectors in the Collector Group. The high availability feature for the Database server ensures that SL1 performs failover automatically to another server without causing the outage to the application.
Aditya Dev | TrustRadius Reviewer

Performance

AlienVault USM

AlienVault USM 7.3
Based on 3 answers
With the latest release of AlienVault USM overall performance has not been an issue. We have noticed single source events per second does not scale well with the overall system. 2,000eps on a vmware system with a single source produces delays of up to an hour for us. Pages, reporting and even raw log searches are rather quick though.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 7.3
Based on 11 answers
The performance is entirely dependent on the complexity of the environment/network being used to host the platform. Outside of those factors, the platform runs very efficiently and quickly out of the box. We have integrations with other platforms and neither seem to take a hit from our moderate API usage. Any issues with performance would be experienced by choices made in infrastructure or complexity of things built by the customer to display in the GUI (overly complicated and cluttered dashboards for example)
Matthew Carter | TrustRadius Reviewer

Support Rating

AlienVault USM

AlienVault USM 7.3
Based on 28 answers
The support we received from alienvault was excellent. They went above and beyond in making sure everything was working as it needed to be. They REALLY want their product implementation to be a success and our security goals be achieved. They are like a member of our security team.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 6.2
Based on 13 answers
In some cases and depending on the support representative support is good, but in general, it requires customer management of the case vs. vendor management of the cases....like pulling teeth... time-consuming, etc, etc. Also want to comment that this applies to the Technical Support Group and the PSO Group at ScienceLogic. Support appears to be degrading over the past few years vs getting better and I suspect this is a result of structural changes in support group e.g. off-shoring/subcontract support. The roll-out of a new case management system and self-support tool made obtaining support much more difficult.
Anonymous | TrustRadius Reviewer

In-Person Training

AlienVault USM

AlienVault USM 4.5
Based on 1 answer
I did not have any experience with "in person" training directly. The free online classes offered for a half a day are based on the actual training offered. These little teasers are very good and well worth your time to learn a few quick and dirty ways of getting more information from your SIEM
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 8.2
Based on 2 answers
On our side (students), we had a number of teams who were provided the deep developer training.
Of those students, the customized training provided a complete, 5 day training which enabled the deployed platform team to successfully deploy and mitigate user-experience issues for the vast majority of our end-users, including some of the teams who attended the developer training.

The knowledge kept pace with the class and sped up / slowed down (within the time constraints) as needed throughout the course.

This was developer to developer training and for those students who were developers the training worked well. For those who were just coders it probably worked less well as some of the topics still do not apply (a function of our course outline specification based on our knowing nothing).

Due to problems in sequencing we did the developer course BEFORE the admin course and realized that our requested ORDER was wrong.

The onsite admin course was much better received and led to deeper understanding of the developer course held a few weeks prior.
Anonymous | TrustRadius Reviewer

Online Training

AlienVault USM

AlienVault USM 8.5
Based on 6 answers
It was very well organized and helpful in using the product to the fullest extent. The instructor allowed time for folks who were involved with managed services to receive tuning tips in order to better support their customers. In addition, the course materials were automatically updated when the new version came out.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 7.3
Based on 2 answers
Only cover the basic, the most powerfull part of the tool was not covered.
Anonymous | TrustRadius Reviewer

Implementation Rating

AlienVault USM

AlienVault USM 6.4
Based on 39 answers
AlienVault USM was a very simple to implement and get up and running. We started with a trial version and had that up and going within an hour of receiving email instructions from the sales engineer. We never had to contact support to get the system up and going. It was extremely easy to convert over to a full license once we started with a paid version.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 7.7
Based on 14 answers
if we were to redo it, we would definitely engage a 3rd party company specialized in the implementataion and integration of ScienceLogic SL1. We took the out of the box product and tried to implemented to our envrionment. We struggled to integrated with our environment and our tools, as well as some limitation of ScienceLogic SL1 with some of our tools and ticketing system
Anonymous | TrustRadius Reviewer

Alternatives Considered

AlienVault USM

Splunk's ES is a paid add-on on top of an already pricey product. Finding a MSSP that supports Splunk and isn't a 6 figure annual commitment seems unlikely. LogRhythm did not have a cloud-based solution when we were considering SIEMs. Fantastic product though and have a good MSSP base.Devo did not have a MSSP partner base when we looked. Their product is fantastic too.AlienVault USM has good partners to choose from as well as an affordable cloud model, that's why we chose it.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

We use two monitoring systems in our environment for the sake of redundancy and cross-checking. That said, we have seen that Sciencelogic occupies a unique space in the market. Its primary competition in our use case was SolarWinds NPM, and Whatsupgold. We found it could produce polished-looking results even better than SolarWinds while being nearly as customizable as WhatsUp Gold. While we eventually settled on using 2 of the 3 we heavily tested, we found Sciencelogic's graphing and customization to be indispensable, even if ease of use was lacking at times.
Britton Starr | TrustRadius Reviewer

Scalability

AlienVault USM

AlienVault USM 6.3
Based on 3 answers
The AlienVault USM is not very scalable. Some scalability can be achieved by installing additional sensors, but this only offers 500eps per sensor and is still overall limited by the installation type of VM or physical. We have also noticed the EPS (events per second) is rated overall and not towards a single source. A single source on a very healthy VMware partition tops out at 2,000eps for us, no matter how we configure it. Maybe this is a problem of the 5.2 release?
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

ScienceLogic SL1 7.3
Based on 1 answer
Our deployment model is vastly different from product expectations.Our global / internal monitoring foot print is 8 production stacks in dual data centers with 50% collection capacity allocated to each data center with minimal numbers of collection groups.General Collection is our default collection group.Special Collection is for monitoring our ASA and other hardware that cannot be polled by a large number of IP addresses, so this collection group is usually 2 collectors).Because most of our stacks are in different physical data centers, we cannot use the provided HA solution. We have to use the DR solution (DRBD + CNAMEs).We routinely test power in our data centers (yearly).Because we have to use DR, we have a hand-touch to flip nodes and change the DNS CNAME half of the times when there is an outage (by design). When the outage is planned, we do this ahead of the outage so that we don't care that the Secondary has dropped away from the Primary.Hopefully, we'll be able to find a way to meet our constraints and improve our resiliency and reduce our hand-touch in future releases. For now, this works for us and our complexity. (I hear that the HA option is sweet. I just can't consume that.)
Anonymous | TrustRadius Reviewer

Return on Investment

AlienVault USM

  • Once you hit the 150 asset mark, you have to jump to their unlimited license. There is no middle ground. We were only 10 or so assets above the 150 so we had to chose to either not monitor those assets or pay the price of the upgrade.
  • AlienVault brings all the information to one place which makes it much quicker to track down problems.
Anonymous | TrustRadius Reviewer

ScienceLogic SL1

  • ScienceLogic allowed our Managed Service to implement Incident automation for the first time ever, which greatly increased our ability to accurately catch and triage issues.
  • As a diagnostic tool, it allows our Engineers to quickly verify their current status and identify trends, which increased our efficiency and effectiveness.
  • Increased the capabilities of our CMDB immensely, and allows our Solution Architects to quickly identify clients that may be in need of additional services.
  • Provided an avenue for additional lines of business, such as Monitoring as a Service (MaaS).
Tim Reaves | TrustRadius Reviewer

Screenshots

Pricing Details

AlienVault USM

General

Free Trial
Yes
Free/Freemium Version
Yes
Premium Consulting/Integration Services
Yes
Entry-level set up fee?
Optional

AlienVault USM Editions & Modules

Edition
Essentials$1,0751
Standard$1,6951
Premium$2,5951
  1. per month
Additional Pricing Details

ScienceLogic SL1

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Yes
Entry-level set up fee?
Required

ScienceLogic SL1 Editions & Modules

Edition
SL1 Premium – AI/ML-driven Analytics, Low-Code Automated Workflow Authoring$0
SL1 Base – Infrastructure Monitoring, Topology & Event Correlation$0
SL1 Advanced – Application Health, Automated Troubleshooting and Remediation Workflows$0
SL1 Standard – Infrastructure Monitoring – with Agents, Business Services, Incident Automation, CMDB Synchronization, Behavioral Correlation$0
    Additional Pricing Details

    Rating Summary

    Likelihood to Recommend

    AlienVault USM
    7.6
    ScienceLogic SL1
    7.7

    Likelihood to Renew

    AlienVault USM
    6.5
    ScienceLogic SL1
    8.5

    Usability

    AlienVault USM
    6.9
    ScienceLogic SL1
    6.5

    Reliability and Availability

    AlienVault USM
    6.4
    ScienceLogic SL1
    7.6

    Performance

    AlienVault USM
    7.3
    ScienceLogic SL1
    7.3

    Support Rating

    AlienVault USM
    7.3
    ScienceLogic SL1
    6.2

    In-Person Training

    AlienVault USM
    4.5
    ScienceLogic SL1
    8.2

    Online Training

    AlienVault USM
    8.5
    ScienceLogic SL1
    7.3

    Implementation Rating

    AlienVault USM
    6.4
    ScienceLogic SL1
    7.7

    Scalability

    AlienVault USM
    6.3
    ScienceLogic SL1
    7.3

    Add comparison