32 Reviews and Ratings
35 Reviews and Ratings
In the current lot of hundreds of SIEM solutions out there in the market, ArcSight ESM is fairly less expensive with strong fundamentals in place. The log ingestion, correlation are very well performing and totally worth ROI. However, the tool has lost its way when it comes to staying abreast with current feature curve of SIEM technology and the evolution has not been done by MicroFocus. Search times are high and there is no major plug-in that has been introduced as part of the product life cycle.Incentivized
It has been brilliant for us in terms of understanding the behaviour affecting our endpoints and assets. We have full visibility of our alerts, which menas we can act on them immediately. We use a single pain of glass with dashboards that can be easily drilled down into to get further information. It has laso helped us eo create bespoke reports for senios Managmeent, while at the same time supports other teams like Network Mnagement and Operations.Incentivized
Integration with smart logger and ESM to create rules and easy management of the same.Easy integration with all end point security management tool(IPS/IDS, Firewall, Anti-Virus) and their consolidated output at a single place to effectively rectifying true and false positives.Incentivized
Rapid7 InsightIDR does a very good job at keeping virus definitions up to date so that our threat intelligence is very up to date when knowing what to protect against.It helps us by scanning all of our infrastructure components and highlights where improvements need to be made in security so we can be proactive with our security initiatives.It has automated response mechanisms to triage and resolve any potentials risks allowing us to save time in the long run.Incentivized
Even though integration is good but not complete yet as there are a lot of new popular apps which Arcsight can't integrate with natively.UI can be improved.Incentivized
Sometimes Rapid7 InsightIDR will be too locked down and without knowing will block applications and processes needed for day to day operation.System scans with Rapid7 InsightIDR can be very bandwidth-heavy on the network and system resources.From a recent incident, we have seen more and more false positives from Rapid7 InsightIDR on areas that we know are secure.Incentivized
Overall, it is a good investment in order for an organization to stay compliant and stay secure from all the wild things happening. It is definitely a cost effective tool with some good features including correlation, log storage, reporting and dashboards. If a customer is looking for advanced set of features, then I would highly not recommend this.Incentivized
I personally haven't reached the support team, however, the engineers never complained about the Arcsight support team. We had some issues with the tool in the past but every time we reached the support, all issues were resolved in a timely manner.Incentivized
ArcSight Intelligence easily provides visibility to understand the logs and monitor the different devices .have features to manage multiple client with asingle console.searching is little bit hectic but we can mange these thing while using its filter creation process. It costs low comparing to any other SIEM tool and nearly scan satisfied any clients requirements.Incentivized
The biggest advantage it has the lightweight agent and smooth and less traffic chaos in network during log collection. Cloud Security always require extra efforts but InsightIDR reduce that burden as it has highly anticipated agents to which knows what they need to do when they captured malicious traffic.log collection and threat intelligence is major part in and xdr and here it stand out along others in the market, I started my career as qualys administration but I like InsightIDR much now.Incentivized
It's a good SIEM solution. Doesn't have much negative impact.Customization is the best part.Good reporting features.Does require good hardware configuration.Incentivized
Rapid7 InsightIDR has allowed us to be proactive in securing our systems as the vulnerability scans give us a lens at what we need to fortify when it comes to security.In recent incidents its allowed us to save time and money as it mostly detects issues accurately and we are able to bring systems back quickly without too much downtime for the business.With recent updates, we are confident that Rapid7 InsightIDR is a good solution for the long run as they are always making adjustments to their platform and improving it with every release.Incentivized