Amazon GuardDuty vs. Security Onion

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Amazon GuardDuty
Score 9.9 out of 10
N/A
Amazon GuardDuty is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts and workloads.N/A
Security Onion
Score 9.7 out of 10
N/A
Security Onion is a free and open source Linux distribution for threat hunting, enterprise security monitoring, and log management, developed by the company of the same name in Evans. Their products include both the Security Onion software and specialized hardware appliances that are built and tested to run Security Onion. The company also offers paid support and training services.N/A
Pricing
Amazon GuardDutySecurity Onion
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Amazon GuardDutySecurity Onion
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Best Alternatives
Amazon GuardDutySecurity Onion
Small Businesses
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.0 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.0 out of 10
Medium-sized Companies
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Enterprises
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Amazon GuardDutySecurity Onion
Likelihood to Recommend
10.0
(1 ratings)
8.0
(1 ratings)
User Testimonials
Amazon GuardDutySecurity Onion
Likelihood to Recommend
Amazon AWS
In a multi-account/multi-tenant environment, GuardDuty often alerts us to possible malicious traffic before it becomes an issue. The ability to automatically enable GuardDuty creates baseline security which is crucial when an account is first created. It also helps greatly in environments where other users are able to create resources as often GuardDuty alerts us to insecure resources we did not know about. It can however sometimes be a little overzealous with its assessments alerting on benign activity which then requires suppression rules.
Read full review
Security Onion Solutions, LLC
Security Onion works well for setting up within a Linux environment. This brings a new platform to run and maintain though. The application its self has helped to keep track of logs and vulnerabilities in the environment. Alert triage and case creation is simple to start and follow through to the end.
Read full review
Pros
Amazon AWS
  • Monitors outgoing connections from AWS resources to known malicious hosts.
  • Monitors incoming connection to AWS resources from known malicious hosts.
  • Integrates with other centralized logging solutions.
Read full review
Security Onion Solutions, LLC
  • GUI
  • Support
  • Easy of use
Read full review
Cons
Amazon AWS
  • Does not have the ability to add any custom monitors.
Read full review
Security Onion Solutions, LLC
  • Requires Linux
  • Training
Read full review
Alternatives Considered
Amazon AWS
No answers on this topic
Security Onion Solutions, LLC
Other vendors may have a more robust solution but for our needs, Security Onion was the one to move forward with. We have tested some of the others but the cost of those platforms makes the ROI not as desirable. There is a learning curve with Security Onion but it is worth it for the value provided.
Read full review
Return on Investment
Amazon AWS
  • GuardDuty has helped us prevent possible security incidents multiple times which could have caused substantial damage.
Read full review
Security Onion Solutions, LLC
  • Makes Alert Triage easier to handle
  • Analysis of threats simple
Read full review
ScreenShots