AlienVault USM vs. ScienceLogic SL1

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
AlienVault USM
Score 8.0 out of 10
N/A
AlienVault® Unified Security Management® (USM) delivers threat detection, incident response, and compliance management in one unified platform. It is designed to combine all the essential security capabilities needed for effective security monitoring across cloud and on-premises environments, including SIEM, intrusion detection, vulnerability management, as well as continuous threat intelligence updates. The vendor states that even for resource-limited IT security teams, AlienVault…
$1,075
per month
ScienceLogic SL1
Score 8.6 out of 10
Enterprise companies (1,001+ employees)
ScienceLogic is a system and application monitoring and performance management platform. ScienceLogic collects and aggregates data across and IT ecosystems and contextualizes it for actionable insights with the SL1 product offering.
$7.50
per month per node
Pricing
AlienVault USMScienceLogic SL1
Editions & Modules
Essentials
$1,075
per month
Standard
$1,695
per month
Premium
$2,595
per month
No answers on this topic
Offerings
Pricing Offerings
AlienVault USMScienceLogic SL1
Free Trial
YesNo
Free/Freemium Version
YesNo
Premium Consulting/Integration Services
YesYes
Entry-level Setup FeeOptionalRequired
Additional DetailsScienceLogic SL1 offers four tiers: SL1 Advanced – Application Health, Automated Troubleshooting and Remediation Workflows SL1 Base – Infrastructure Monitoring, Topology & Event Correlation SL1 Premium – AI/ML-driven Analytics, Low-Code Automated Workflow Authoring SL1 Standard – Infrastructure Monitoring – with Agents, Business Services, Incident Automation, CMDB Synchronization, Behavioral Correlation To get pricing for each tier, please contact the vendor.
More Pricing Information
Features
AlienVault USMScienceLogic SL1
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
AlienVault USM
8.0
8 Ratings
2% above category average
ScienceLogic SL1
-
Ratings
Centralized event and log data collection8.58 Ratings00 Ratings
Correlation8.58 Ratings00 Ratings
Event and log normalization/management8.08 Ratings00 Ratings
Deployment flexibility8.67 Ratings00 Ratings
Integration with Identity and Access Management Tools7.35 Ratings00 Ratings
Custom dashboards and workspaces7.08 Ratings00 Ratings
Host and network-based intrusion detection8.05 Ratings00 Ratings
AIOps Features
Comparison of AIOps Features features of Product A and Product B
AlienVault USM
-
Ratings
ScienceLogic SL1
6.9
2 Ratings
8% above category average
Monitoring and Alerting00 Ratings9.02 Ratings
Performance Analytics00 Ratings5.22 Ratings
Incident Management00 Ratings8.52 Ratings
Service Desk Integration00 Ratings9.02 Ratings
Root Cause Analysis00 Ratings4.62 Ratings
Capacity Planning Tool00 Ratings7.42 Ratings
Configuration and Change Management00 Ratings4.62 Ratings
Automated Remediation00 Ratings7.92 Ratings
Collaboration and Communication00 Ratings8.52 Ratings
Threat Intelligence00 Ratings4.62 Ratings
Best Alternatives
AlienVault USMScienceLogic SL1
Small Businesses

No answers on this topic

No answers on this topic

Medium-sized Companies
Splunk Enterprise
Splunk Enterprise
Score 8.4 out of 10
LogicMonitor
LogicMonitor
Score 8.6 out of 10
Enterprises
Splunk Enterprise
Splunk Enterprise
Score 8.4 out of 10
ignio AIOps
ignio AIOps
Score 8.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
AlienVault USMScienceLogic SL1
Likelihood to Recommend
8.8
(391 ratings)
8.5
(207 ratings)
Likelihood to Renew
7.2
(18 ratings)
9.2
(19 ratings)
Usability
6.7
(34 ratings)
9.0
(13 ratings)
Availability
6.4
(3 ratings)
9.9
(13 ratings)
Performance
7.3
(3 ratings)
8.0
(13 ratings)
Support Rating
7.3
(25 ratings)
6.5
(18 ratings)
In-Person Training
4.5
(1 ratings)
8.3
(5 ratings)
Online Training
8.3
(6 ratings)
8.6
(5 ratings)
Implementation Rating
6.4
(38 ratings)
8.1
(78 ratings)
Configurability
8.0
(3 ratings)
10.0
(7 ratings)
Ease of integration
7.3
(3 ratings)
7.8
(14 ratings)
Product Scalability
6.3
(3 ratings)
8.0
(1 ratings)
Vendor post-sale
7.6
(3 ratings)
8.5
(5 ratings)
Vendor pre-sale
8.2
(3 ratings)
7.7
(4 ratings)
User Testimonials
AlienVault USMScienceLogic SL1
Likelihood to Recommend
AT&T Cybersecurity
At this point I'm saying a 4. While the marketing material make it appear to be easy to use and it was relatively easy to set up, as previously mentioned, each event description is based upon the individual asset making it nearly impossible for the administrator to be a SME for each asset. For example, if one of the assets reporting is a router, the administrator monitoring alerts would need to know what the various events are that can be triggered as an event for the particular router; however, if the asset is a workstation, the administrator would need to know the various events that are triggered for workstations.
Read full review
ScienceLogic
Appropriate if you are setting up a monitoring suite in new Infrastructure Environment. Definitely NOT suited for Migration Projects. ScienceLogic SL1 cannot cater to a lot of monitoring requirements which already would have been configured in old monitoring suite. Plus, limited support for customizations and having to go to "Feature Requests" route makes in extremely complicated.
Read full review
Pros
AT&T Cybersecurity
  • AlienVault USM is simple and easy to deploy. Sensors can be deployed in as little as 15 minutes through the setup wizard.
  • The USM UI is easy to understand. I've trained multiple analysts who are able to perform their duties on their first day, in part because of USM Anywhere's ease of use.
  • Top-notch built-in compliance templates and reporting features.
Read full review
ScienceLogic
  • Best overall coverage of montioring different technologies.
  • Easy to use in any environment
  • Customizable being able to generate your own reports, dashboards, DA's, RBA's, etc.
  • Have very good out of the box integrations with other monitoring solutions such as ServiceNow
  • Always improving and regularly releasing new versions and upgrades to the system/DA's.
  • Interactive community
Read full review
Cons
AT&T Cybersecurity
  • Personally, I've wished I could purchase a service that would configure AV for my environment. I get a lot of traffic on a daily basis and I almost need to hire an analyst that just works on AV.
  • Some of the filters when looking for a specific alert aren't that easy to use.
Read full review
ScienceLogic
  • More freedom to create custom dashboards as on the previous versions we could do much more
  • The Performance TAB windows is too small and cannot be resized or maximized when looking at reports for "Overview", "File System" and any of those items.
  • There are not enough widgets to create stunning dashboard in AP2
  • The reporting feauture is a very untouched area.
Read full review
Likelihood to Renew
AT&T Cybersecurity
The centralized logging and retention for PCI compliance was our main driver, and it is meeting that need. Otherwise there has been enough frustration with the lack of documentation and the need to customize through the CLI that I would be open to alternatives.
Read full review
ScienceLogic
We migrated away from our 20-year-old homegrown solution and have no back-tracking capability. ScienceLogic is demonstrating new capabilities that we would not have been able to do on our own using our legacy system.
We understand the capabilities of competitors based on our bake-off selection where ScienceLogic won on capabilities and future near-term potential (expandability, platform growth). We know that those competitors are not really close to where we have been able to push ScienceLogic (as a partner).
Read full review
Usability
AT&T Cybersecurity
Once you are able to navigate the different panels, finding what you need is quite easily. Before getting used it it can be a bit of challenge . Each panel is quite well laid out and the filtering search capabilities are quite strong.
Read full review
ScienceLogic
We use ScienceLogic SL1 in our organization to serve effective monitoring solutions to our external customers. Our customers depend upon us for critical events/alerts related to their IT infrastructure gears and using SL1, we're able to provide them with a proactive monitoring solution that resolves an issue before an impact is noticed by the customer. There are very few monitoring solutions that can cater to a variety of Cloud platforms like Public Cloud (AWS, Azure) and private cloud simultaneously and SL1 addresses this business problem very well
Read full review
Reliability and Availability
AT&T Cybersecurity
We do have issues with maintenance on the AlienVault USM as the disk fills up from time to time with other data sources. Sources for scanning logs and net flow data isn't calculated in regular disk maintenance and can easily fill up our disk if we do not keep an eye on it with some custom Nagios plugins. The system does properly trim logging data from logging sources properly.
Read full review
ScienceLogic
Science Logic SL1 provides the option of Distributed deployment where multiple instances of each appliance can be deployed to manage the load and availability. SL1 provides a High Availability feature for Database Servers and Data Collection. If one of the Data Collectors in the collector group fails, it will automatically redistribute the devices from the failed Data Collector among the other Data Collectors in the Collector Group. The high availability feature for the Database server ensures that SL1 performs failover automatically to another server without causing the outage to the application.
Read full review
Performance
AT&T Cybersecurity
With the latest release of AlienVault USM overall performance has not been an issue. We have noticed single source events per second does not scale well with the overall system. 2,000eps on a vmware system with a single source produces delays of up to an hour for us. Pages, reporting and even raw log searches are rather quick though.
Read full review
ScienceLogic
The performance is entirely dependent on the complexity of the environment/network being used to host the platform. Outside of those factors, the platform runs very efficiently and quickly out of the box. We have integrations with other platforms and neither seem to take a hit from our moderate API usage. Any issues with performance would be experienced by choices made in infrastructure or complexity of things built by the customer to display in the GUI (overly complicated and cluttered dashboards for example)
Read full review
Support Rating
AT&T Cybersecurity
The support we received from alienvault was excellent. They went above and beyond in making sure everything was working as it needed to be. They REALLY want their product implementation to be a success and our security goals be achieved. They are like a member of our security team.
Read full review
ScienceLogic
So far, it's good as part of my overall experience, except for a couple of use cases. The support team is well knowledgeable, has technical sound, and is efficient. When support escalates to engineering, the issue gets stuck and takes months to resolve.
Read full review
In-Person Training
AT&T Cybersecurity
I did not have any experience with "in person" training directly. The free online classes offered for a half a day are based on the actual training offered. These little teasers are very good and well worth your time to learn a few quick and dirty ways of getting more information from your SIEM
Read full review
ScienceLogic
When I joined our company, I did not know about the in person training at firts. Logging onto the SL University, I realised that there were different sessions being held at different times throughout the year. The training itself was good, but being in a different time zone, made it difficult to attend, but the sessions that I attended was great!
Read full review
Online Training
AT&T Cybersecurity
It was very well organized and helpful in using the product to the fullest extent. The instructor allowed time for folks who were involved with managed services to receive tuning tips in order to better support their customers. In addition, the course materials were automatically updated when the new version came out.
Read full review
ScienceLogic
There are a lot of educational materials and courses on the SL1 training site (Litmos university). However the recording quality is sometimes not very good - screen resolution is low. There is a lack of professional rather than user-oriented documents and there are mistakes in documentation and education is not well structured.
Read full review
Implementation Rating
AT&T Cybersecurity
AlienVault USM was a very simple to implement and get up and running. We started with a trial version and had that up and going within an hour of receiving email instructions from the sales engineer. We never had to contact support to get the system up and going. It was extremely easy to convert over to a full license once we started with a paid version.
Read full review
ScienceLogic
Love to use Science logic tool as our first monitoring tool to provide services to the customer. Auto restart feature in Sl1 will allow us to get event when those crucial services has not started after server reboots and also minimize the P1's that we have as a result of that.
Read full review
Alternatives Considered
AT&T Cybersecurity
Splunk's ES is a paid add-on on top of an already pricey product. Finding a MSSP that supports Splunk and isn't a 6 figure annual commitment seems unlikely. LogRhythm did not have a cloud-based solution when we were considering SIEMs. Fantastic product though and have a good MSSP base. Devo did not have a MSSP partner base when we looked. Their product is fantastic too. AlienVault USM has good partners to choose from as well as an affordable cloud model, that's why we chose it.
Read full review
ScienceLogic
Science logic SL1 is so user friendly and it's really easy to navigate between function. I would recommend Sciene logic SL1 to all of them who are looking for really useful monitoring tool and expecting easy way of managing it.
Read full review
Scalability
AT&T Cybersecurity
The AlienVault USM is not very scalable. Some scalability can be achieved by installing additional sensors, but this only offers 500eps per sensor and is still overall limited by the installation type of VM or physical. We have also noticed the EPS (events per second) is rated overall and not towards a single source. A single source on a very healthy VMware partition tops out at 2,000eps for us, no matter how we configure it. Maybe this is a problem of the 5.2 release?
Read full review
ScienceLogic
Our deployment model is vastly different from product expectations. Our global / internal monitoring foot print is 8 production stacks in dual data centers with 50% collection capacity allocated to each data center with minimal numbers of collection groups. General Collection is our default collection group. Special Collection is for monitoring our ASA and other hardware that cannot be polled by a large number of IP addresses, so this collection group is usually 2 collectors). Because most of our stacks are in different physical data centers, we cannot use the provided HA solution. We have to use the DR solution (DRBD + CNAMEs). We routinely test power in our data centers (yearly). Because we have to use DR, we have a hand-touch to flip nodes and change the DNS CNAME half of the times when there is an outage (by design). When the outage is planned, we do this ahead of the outage so that we don't care that the Secondary has dropped away from the Primary. Hopefully, we'll be able to find a way to meet our constraints and improve our resiliency and reduce our hand-touch in future releases. For now, this works for us and our complexity. (I hear that the HA option is sweet. I just can't consume that.)
Read full review
Return on Investment
AT&T Cybersecurity
  • Once you hit the 150 asset mark, you have to jump to their unlimited license. There is no middle ground. We were only 10 or so assets above the 150 so we had to chose to either not monitor those assets or pay the price of the upgrade.
  • AlienVault brings all the information to one place which makes it much quicker to track down problems.
Read full review
ScienceLogic
  • Once a powerpack is developed and configured for a device for one customer, it is easy to deploy the same powerpack on a second customer estate and configure specifically for that customer without having to reinvent the powerpack. This saves time and therefore money.
  • Once the customer estate tuning is complete, the Operations team have come trust the alerts. This is especially true when transient or self-correcting alerts are automatically cleared without ops team involvement, but a record is still available for audit and debugging purposes. This saves time and therefore money.
  • When setup correctly, it provides good visibility into applications, devices and whole customer estates. This saves time and therefore money when issues arise.
Read full review
ScreenShots

AlienVault USM Screenshots

Screenshot of USM Anywhere NIDS Dashboard

ScienceLogic SL1 Screenshots

Screenshot of Application to infrastructure mapping with APM toolsScreenshot of CRM Business Service MapScreenshot of Mobile Banking Business Service Dashboard OverviewScreenshot of Mobile Banking Business Service Dashboard Availability ViewScreenshot of Mobile Banking Business Service Dashboard Anomalies ViewScreenshot of Business Services Leaderboard Dashboard Overview