Aorato (discontinued) vs. SolarWinds Security Event Manager (SEM) vs. Splunk User Behavior Analytics

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Aorato (discontinued)
Score 8.0 out of 10
N/A
Originally based on Aorato (acquired by Microsoft in November 2014), Microsoft Advanced Threat Analytics (ATA) was an advanced security analytics tool used to learn, analyze, and identify normal and suspicious behavior. The product has been discontinued.N/A
SolarWinds Security Event Manager (SEM)
Score 7.8 out of 10
N/A
SolarWinds LEM is security information and event management (SIEM) software.N/A
Splunk User Behavior Analytics
Score 10.0 out of 10
N/A
Splunk supplies security analytics as a standalone solution or priced as an add-on for users of its popular SIEM products, to protect enterprises against unknown threats and malicious behavior, via the Splunk User Behavior Analytics application.N/A
Pricing
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Editions & Modules
No answers on this topic
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Free Trial
NoYesNo
Free/Freemium Version
NoNoNo
Premium Consulting/Integration Services
NoNoNo
Entry-level Setup FeeNo setup feeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Considered Multiple Products
Aorato (discontinued)

No answer on this topic

SolarWinds Security Event Manager (SEM)
Chose SolarWinds Security Event Manager (SEM)
The first reason is the ease of installation. Unlike competitor, SEM was running and partially deployed within a day. With the defaults already in the SEM, it's super easy to get result quickly, without a consultant. Also, it's not too resource-intensive, and does not …
Splunk User Behavior Analytics

No answer on this topic

Features
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Aorato (discontinued)
-
Ratings
SolarWinds Security Event Manager (SEM)
8.9
18 Ratings
13% above category average
Splunk User Behavior Analytics
-
Ratings
Centralized event and log data collection00 Ratings9.018 Ratings00 Ratings
Correlation00 Ratings8.015 Ratings00 Ratings
Event and log normalization/management00 Ratings8.018 Ratings00 Ratings
Deployment flexibility00 Ratings10.018 Ratings00 Ratings
Integration with Identity and Access Management Tools00 Ratings8.013 Ratings00 Ratings
Custom dashboards and workspaces00 Ratings9.017 Ratings00 Ratings
Host and network-based intrusion detection00 Ratings10.03 Ratings00 Ratings
Best Alternatives
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Small Businesses

No answers on this topic

LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.7 out of 10
ActivTrak
ActivTrak
Score 8.5 out of 10
Medium-sized Companies
Sumo Logic
Sumo Logic
Score 8.8 out of 10
Sumo Logic
Sumo Logic
Score 8.8 out of 10
ManageEngine ADAudit Plus
ManageEngine ADAudit Plus
Score 9.0 out of 10
Enterprises
Sumo Logic
Sumo Logic
Score 8.8 out of 10
Sumo Logic
Sumo Logic
Score 8.8 out of 10
ManageEngine ADAudit Plus
ManageEngine ADAudit Plus
Score 9.0 out of 10
All AlternativesView all alternativesView all alternativesView all alternatives
User Ratings
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Likelihood to Recommend
-
(0 ratings)
8.0
(46 ratings)
10.0
(2 ratings)
Likelihood to Renew
-
(0 ratings)
7.3
(2 ratings)
-
(0 ratings)
Usability
-
(0 ratings)
8.0
(6 ratings)
-
(0 ratings)
Support Rating
-
(0 ratings)
7.5
(17 ratings)
9.0
(1 ratings)
User Testimonials
Aorato (discontinued)SolarWinds Security Event Manager (SEM)Splunk User Behavior Analytics
Likelihood to Recommend
Discontinued Products
No answers on this topic
SolarWinds
Optimal for SolarWinds Security Event Manager needs for smaller companies - it is a very cool product but has some limitations around EPS (which gets chewed up quickly if you're doing it the right way & adding servers/storage/FW & other network devices)... Also pricing model is GREAT (not consumption-based, which is the greatest grift the SIEM industry has created).
Read full review
Cisco
Splunk User Behavior Analytics application is necessary when any company wants to capture the threat based on user behavior instead of just counting the number of occurrences of particular event. With Splunk UBA, we can analyse number of anomalies captured and which in turn creating threats which are nearly true positive.
Read full review
Pros
Discontinued Products
No answers on this topic
SolarWinds
  • It does a great job of notifying us when accounts have been locked out. We can then find out the device on the network where the login attempt occurred.
  • Searching for incidents is now a lot faster with the implementation of the HTML 5 interface.
Read full review
Cisco
  • Monitor and troubleshoot for any system errors.
  • Get the insights on application data sets and do some predictive analysis.
Read full review
Cons
Discontinued Products
No answers on this topic
SolarWinds
  • All SolarWinds product suffer from slow response times in management portals. SolarWinds SEM is no exception. While it is much preferred over a "thick client" there is much room for improvement in speed.
  • If you use the email alert features with SolarWinds make sure to prepare you staff and team for the large amount of emails they could receive. Make sure to reduce the number of alerts so your team does not ignore the alerts.
Read full review
Cisco
  • Performance-wise, it can be improved. Queries take a long time.
  • Dataset exploration - More data visualization charts can be added.
Read full review
Likelihood to Renew
Discontinued Products
No answers on this topic
SolarWinds
It is pretty likely that we will renew SEM when the time comes up. It is easy to use and maintain so there isn't much of a need to replace this product. It is also a pretty fair price for the capabilities provided by the SEM
Read full review
Cisco
No answers on this topic
Usability
Discontinued Products
No answers on this topic
SolarWinds
If you are familiar with SolarWinds then you can use this product it's as easy as that. If you have never used a SolarWinds product then it will take a minute to get how they do reports and make dashboards but that being said the tool is great and can make things very easy once you get a feel for how it works and get everything setup how you like it.
Read full review
Cisco
No answers on this topic
Support Rating
Discontinued Products
No answers on this topic
SolarWinds
The quality of support can vary depending on whom you end up speaking with. I was fortunate enough to work with a support representative who was very familiar with the product. He had even authored some of the support documentation on the website. On the flip side, I had two other experiences where I was simply directed to online training material.
Read full review
Cisco
No answers on this topic
Alternatives Considered
Discontinued Products
No answers on this topic
SolarWinds
Fortianalzyer can only do logs from FortiGate so usefulness is limited. Elasticsearch was a lot slower than Solarwinds and the filters were a lot harder to set up and use. The connectors for SEM were far more stable.
Read full review
Cisco
Easier we were using Splunk Enterprise on heavy forwarder on which all the add-on were installed and were using Splunk Cloud with respect to search head and indexers stack. And with Splunk Enterprise Security premium app, we were relying on correlation rules which were throwing more number of false positive but after implementing Splunk UBA, we are now getting real-time true positive threat or incidents.
Read full review
Return on Investment
Discontinued Products
No answers on this topic
SolarWinds
  • For the price, it produced a decent value. It did a lot of the easy stuff well. I can't give any specific data given the objective of the product was to monitor very basic events in the environment.
  • There are free options that can do a better job.
Read full review
Cisco
  • Fewer team members to work on real threats.
  • Less time required to deal with real incidents.
  • Easy to implement across the network.
Read full review
ScreenShots

SolarWinds Security Event Manager (SEM) Screenshots

Screenshot of Screenshot of Screenshot of Screenshot of