TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Exabeam Fusion

    Score4.1 out of 10
    N/AExabeam headquartered in San Mateo, Exabeam Fusion, a SIEM + XDR. The vendor states the modular Exabeam platform allows analysts to collect unlimited log data, use behavioral analytics to detect attacks, and automate incident response. The Exabeam platform can be deployed on-premise or from the cloud. Exabeam can also integrate information from the Exabeam Threat Intelligence Service, or into a third-party SIEM.N/A

    Graylog

    Score8.8 out of 10
    N/AGraylog, headquartered in Houston, offers their eponymous platform for centralized log management that helps users find meaning in data faster so as to take action immediately. Graylog is available via Enterprise and Cloud plans, but also has a Small Business Plan, and an Open (free) plan with limited features.N/A
    Pricing
    Exabeam FusionGraylog
    Editions & Modules
    No answers on this topic
    No answers on this topic
    Offerings
    Pricing Offerings
    Exabeam FusionGraylog
    Free Trial
    NoNo
    Free/Freemium Version
    NoYes
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details——
    More Pricing Information
    Community Pulse
    Exabeam FusionGraylog
    Considered Both Products
    Exabeam
    No answer on this topic
    Graylog
    No answer on this topic
    Key User Insights
    Would buy again
    No answers on this topic
    86%
    Would buy again
    6 Answers
    Delivers good value for the price
    No answers on this topic
    86%
    Delivers good value for the price
    6 Answers
    Happy with the feature set
    No answers on this topic
    100%
    Happy with the feature set
    7 Answers
    Lived up to sales and marketing promises
    No answers on this topic
    83%
    Lived up to sales and marketing promises
    5 Answers
    Implementation went as expected
    No answers on this topic
    83%
    Implementation went as expected
    5 Answers
    Features
    Exabeam FusionGraylog
    Security Information and Event Management (SIEM)
    Comparison of Security Information and Event Management (SIEM) features of Exabeam Fusion and Graylog
    Feature
    Exabeam Fusion
    8.3
    2 Ratings
    5% above category average
    Graylog
    -
    Ratings
    Centralized event and log data collection8.52 Ratings00 Ratings
    Correlation8.02 Ratings00 Ratings
    Event and log normalization/management9.02 Ratings00 Ratings
    Deployment flexibility8.02 Ratings00 Ratings
    Integration with Identity and Access Management Tools8.52 Ratings00 Ratings
    Custom dashboards and workspaces7.02 Ratings00 Ratings
    Host and network-based intrusion detection8.02 Ratings00 Ratings
    Data integration/API management8.02 Ratings00 Ratings
    Behavioral analytics and baselining9.52 Ratings00 Ratings
    Rules-based and algorithmic detection thresholds6.52 Ratings00 Ratings
    Response orchestration and automation8.52 Ratings00 Ratings
    Reporting and compliance management9.02 Ratings00 Ratings
    Incident indexing/searching9.02 Ratings00 Ratings
    Best Alternatives
    Exabeam FusionGraylog
    Small Businesses
    No answers on this topic
    SolarWinds Papertrail
    Score8.9 out of 10
    Medium-sized Companies
    IBM Security QRadar SIEM
    Score8.9 out of 10
    SolarWinds Kiwi Syslog Server
    Score8.1 out of 10
    Enterprises
    SolarWinds Security Event Manager (SEM)
    Score8 out of 10
    SolarWinds Loggly
    Score7.7 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    Exabeam FusionGraylog
    Likelihood to Recommend
    8.5
    (2 ratings)
    9.0
    (8 ratings)
    Usability
    9.0
    (2 ratings)
    9.0
    (1 ratings)
    Support Rating
    9.0
    (2 ratings)
    3.6
    (3 ratings)
    User Testimonials
    Exabeam FusionGraylog
    Likelihood to Recommend
    Exabeam
    As a SIEM tool for investigations, Exabeam is the best in class. The AI assigns numeric values to observed logs them presents high scores to the analyst in a simple dashboard. We can see what is a real threat and ignore so many false positives. Exabeam is the best SIEM was used from an alert fatigue perspective. The simple interface allows other teams not just InfoSec to utilize the tool; helpdesk for asset diagnoses, HR for staffing questions, etc.
    Incentivized
    Read full review
    Graylog
    For small companies, Graylog is the best solution possible. It's easy to configure and "just works." Above everything else, it's free. The only thing I hold against it is the fact that it's Linux-based. [This] makes sense because Elasticsearch is Linux-based. But Linux adds a layer of complexity that we don't need for something basic as a logging server. I'm pretty sure that we would have had a logging server years earlier if I had to convince quite a few decision-making people to go ahead with it anyway.
    Incentivized
    Read full review
    Pros
    Exabeam
    • Fast search times, unlike other competing solutions.
    • The ability for engineers to obtain access to the command line interface for troubleshooting, at least for on-premise deployments.
    • License is suitable for organisations with lots of logs to ingest.
    • Hardware required for on premise deployments is well supported.
    Incentivized
    Read full review
    Graylog
    • Graylog does a great job of its core function: log aggregation, retention, and searching.
    • Graylog has a very flexible configuration. The backend for storage is Elasticsearch and MongoDB is used to store the configuration. You have to option to make your configuration as simple as possible by storing everything on one box, or you can scale everything out horizontally by using a cluster of Elasticsearch nodes and MongoDB servers with several Graylog servers pointed to all the necessary nodes.
    • Graylog does a good job of abstracting away a fair portion of Elasticsearch index management (sharding, creation, deletion, rotation, etc).
    Incentivized
    Read full review
    Cons
    Exabeam
    • More and better drop-down menus, some items in threat hunter require you know subsets.
    • Less dashboards, combine AA and DL without having separate logins.
    • More complete playbooks are already built out. You have the structure set up for templates like malware and phishing, go further and completely build them out from start to finish, most companies would just use them and not personalize their configurations.
    • Quarterly health checkup diagnostics of systems sent out to users.
    Incentivized
    Read full review
    Graylog
    • Configuration can be hard to understand
    • More quickly and easy ways to search for data
    • Auto-categorization of log entries would be excellent
    Incentivized
    Read full review
    Usability
    Exabeam
    Exabeam is very good at processing lots of logs without excessive licensing costs. It has a professional support team that's very quick to resolve any issues and provides custom parsers quickly and enables our analysts to search vast data sets without having to wait long for results to be returned. The product is getting more mature with new features every major release.
    Incentivized
    Read full review
    Graylog
    Graylog is easy to deploy. The tricky part is to configure all hosts that are going to send their log data to Graylog, considering the retention period of this data, it will need a lot of disk space to store it. Its rotation works fine. It is very simple to navigate and explore the data you send to it, and very easy to filter and export them too.
    Incentivized
    Read full review
    Support Rating
    Exabeam
    Exabeam Fusion has so many diffferent out reach meetings, webinars, community virtual coffees, and events that you can always stay abreast of what if happening and get new ideas for use cases. Their support actually answers their phones and can respond in chat instantly. With our cloud deployment Exabeam support teams can instantly see our systems and help us.
    Incentivized
    Read full review
    Graylog
    Community support does not give simple straightforward answers; simply search up Graylog Issues and look at some of the responses on the forums. The documentation is your only hope if you are on the free version, as you can NOT purchase only support. The few times I have worked with Graylog Enterprise support they were great though.
    Incentivized
    Read full review
    Alternatives Considered
    Exabeam
    No answers on this topic
    Graylog
    In terms of log aggregation, the free product fully stacks up with the competitors listed. Full control over the data ingests for flexible configuration. Graylog even better on that front than AlienVault USM because you cannot configure the variable mapping. We haven't used the threat exchange stuff or correlation. But with regex searches, we have created function dashboards that show threat theater pictures of our network based on logs from our firewall.
    Incentivized
    Read full review
    Return on Investment
    Exabeam
    • Reduced time to triage alerts.
    • Reduced number of alerts which need escalation to senior tiers.
    • The ability for analysts to quickly run playbooks for additional information and enrichment.
    • Ability to retain data for longer periods for forensics purposes.
    • Improved search performance compared with other SIEM solutions.
    Incentivized
    Read full review
    Graylog
    • Able to offer monitoring services to new and existing clients to increase revenue
    • Staff have increased billing percentage
    • Potential to expand security services
    Incentivized
    Read full review
    ScreenShots