Cybereason Defense Platform vs. Arcsight by OpenText

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cybereason Defense Platform
Score 9.3 out of 10
N/A
Cybereason EDR consolidates intelligence about each attack into a Malop (malicious operation), a contextualized view of the full narrative of an attack. Each Malop organizes the relevant attack data into an easy-to-read, interactive graphical interface, providing a complete timeline, the flow of the attack in the network, and any malicious communications. Remediation actions can be automated or accomplished remotely with a click. The Cybereason Defense Platform empowers analysts of all…N/A
Arcsight by OpenText
Score 6.7 out of 10
N/A
A combined SIEM and SOAR, used to accelerate threat detection and response with holistic security analytics, native SOAR, and intelligent automation.N/A
Pricing
Cybereason Defense PlatformArcsight by OpenText
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cybereason Defense PlatformArcsight by OpenText
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cybereason Defense PlatformArcsight by OpenText
Features
Cybereason Defense PlatformArcsight by OpenText
Endpoint Security
Comparison of Endpoint Security features of Product A and Product B
Cybereason Defense Platform
9.1
2 Ratings
7% above category average
Arcsight by OpenText
-
Ratings
Anti-Exploit Technology8.32 Ratings00 Ratings
Endpoint Detection and Response (EDR)9.62 Ratings00 Ratings
Centralized Management9.62 Ratings00 Ratings
Hybrid Deployment Support6.01 Ratings00 Ratings
Infection Remediation10.02 Ratings00 Ratings
Vulnerability Management10.01 Ratings00 Ratings
Malware Detection10.02 Ratings00 Ratings
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Cybereason Defense Platform
-
Ratings
Arcsight by OpenText
5.5
4 Ratings
36% below category average
Centralized event and log data collection00 Ratings8.04 Ratings
Correlation00 Ratings9.04 Ratings
Event and log normalization/management00 Ratings8.04 Ratings
Deployment flexibility00 Ratings6.04 Ratings
Integration with Identity and Access Management Tools00 Ratings6.03 Ratings
Custom dashboards and workspaces00 Ratings5.04 Ratings
Host and network-based intrusion detection00 Ratings8.02 Ratings
Data integration/API management00 Ratings5.01 Ratings
Behavioral analytics and baselining00 Ratings2.01 Ratings
Rules-based and algorithmic detection thresholds00 Ratings8.01 Ratings
Response orchestration and automation00 Ratings2.01 Ratings
Reporting and compliance management00 Ratings4.01 Ratings
Incident indexing/searching00 Ratings1.01 Ratings
Best Alternatives
Cybereason Defense PlatformArcsight by OpenText
Small Businesses
ThreatLocker
ThreatLocker
Score 9.4 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.5 out of 10
Medium-sized Companies
BlackBerry Protect (CylancePROTECT)
BlackBerry Protect (CylancePROTECT)
Score 9.1 out of 10
Sumo Logic
Sumo Logic
Score 8.8 out of 10
Enterprises
BeyondTrust Endpoint Privilege Management
BeyondTrust Endpoint Privilege Management
Score 10.0 out of 10
Sumo Logic
Sumo Logic
Score 8.8 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cybereason Defense PlatformArcsight by OpenText
Likelihood to Recommend
8.7
(2 ratings)
9.0
(6 ratings)
Usability
-
(0 ratings)
7.0
(1 ratings)
Support Rating
-
(0 ratings)
8.0
(4 ratings)
User Testimonials
Cybereason Defense PlatformArcsight by OpenText
Likelihood to Recommend
LevelBlue
I'd recommend Cybereason due to it's efficacy, low TCO, low false/positive rate. The product was easy to implement and maintain. One of the major advantages of using Cybereason is that it requires minimal training for level 1 users to use the tool.
Read full review
OpenText
In the current lot of hundreds of SIEM solutions out there in the market, ArcSight ESM is fairly less expensive with strong fundamentals in place. The log ingestion, correlation are very well performing and totally worth ROI. However, the tool has lost its way when it comes to staying abreast with current feature curve of SIEM technology and the evolution has not been done by MicroFocus. Search times are high and there is no major plug-in that has been introduced as part of the product life cycle.
Read full review
Pros
LevelBlue
  • EDR
  • Forensics
  • Mitigation
  • Response
Read full review
OpenText
  • Integration with smart logger and ESM to create rules and easy management of the same.
  • Easy integration with all end point security management tool(IPS/IDS, Firewall, Anti-Virus) and their consolidated output at a single place to effectively rectifying true and false positives.
Read full review
Cons
LevelBlue
  • Slow support
  • Bugs on their interface
  • Log extraction
Read full review
OpenText
  • It is slow comparing to any other SIEM Tool.
  • We have to create filter for each alerts need some custom filter .
  • Here we dont have any single tab for see all the alerts .also need some attractive features for dashboard.
Read full review
Usability
LevelBlue
No answers on this topic
OpenText
Overall, it is a good investment in order for an organization to stay compliant and stay secure from all the wild things happening. It is definitely a cost effective tool with some good features including correlation, log storage, reporting and dashboards. If a customer is looking for advanced set of features, then I would highly not recommend this.
Read full review
Support Rating
LevelBlue
No answers on this topic
OpenText
I personally haven't reached the support team, however, the engineers never complained about the Arcsight support team. We had some issues with the tool in the past but every time we reached the support, all issues were resolved in a timely manner.
Read full review
Alternatives Considered
LevelBlue
Cybereason provides superior protection than either Microsoft or CrowdStrike and a better TCO. We receive less false positives than with Microsoft Defender and Cybereason is easier for level 1 users to use.
Read full review
OpenText
Multiple platforms are already supported by Arcsight. Support is good. Scripts can be used to get data from multiple threat intel sources & the same can be used in correlation rules to detect any suspicious activity. Reporting features are good & you can check any backdated information within new clicks.
Read full review
Return on Investment
LevelBlue
  • Helps on threat hunting
  • MalOps is very good
  • When we face a bug, it takes too much time for them to respond
Read full review
OpenText
  • Logger helps us to decrease incident response times.
  • It also decreased our project times with the man/day calculations. Before this solution, it may take up to 10 men/days to do something. After this, it becomes nearly half of the time.
Read full review
ScreenShots