IBM Guardium vs. Arcsight by OpenText

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
IBM Guardium
Score 9.1 out of 10
N/A
IBM Guardium is IBM's data security posture management solution, that aims to offer organizations comprehensive visibility, actionable insights and real-time controls to help users comply with regulations, preserve privacy and secure sensitive data no matter where it is stored.N/A
Arcsight by OpenText
Score 6.7 out of 10
N/A
A combined SIEM and SOAR, used to accelerate threat detection and response with holistic security analytics, native SOAR, and intelligent automation.N/A
Pricing
IBM GuardiumArcsight by OpenText
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
IBM GuardiumArcsight by OpenText
Free Trial
YesNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
YesNo
Entry-level Setup FeeOptionalNo setup fee
Additional DetailsPricing is dependent based on data source environment.
More Pricing Information
Community Pulse
IBM GuardiumArcsight by OpenText
Features
IBM GuardiumArcsight by OpenText
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
IBM Guardium
-
Ratings
Arcsight by OpenText
5.5
4 Ratings
36% below category average
Centralized event and log data collection00 Ratings8.04 Ratings
Correlation00 Ratings9.04 Ratings
Event and log normalization/management00 Ratings8.04 Ratings
Deployment flexibility00 Ratings6.04 Ratings
Integration with Identity and Access Management Tools00 Ratings6.03 Ratings
Custom dashboards and workspaces00 Ratings5.04 Ratings
Host and network-based intrusion detection00 Ratings8.02 Ratings
Data integration/API management00 Ratings5.01 Ratings
Behavioral analytics and baselining00 Ratings2.01 Ratings
Rules-based and algorithmic detection thresholds00 Ratings8.01 Ratings
Response orchestration and automation00 Ratings2.01 Ratings
Reporting and compliance management00 Ratings4.01 Ratings
Incident indexing/searching00 Ratings1.01 Ratings
Best Alternatives
IBM GuardiumArcsight by OpenText
Small Businesses
Oracle Audit Vault and Database Firewall
Oracle Audit Vault and Database Firewall
Score 7.0 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.6 out of 10
Medium-sized Companies
ManageEngine ADAudit Plus
ManageEngine ADAudit Plus
Score 9.0 out of 10
Sumo Logic
Sumo Logic
Score 8.8 out of 10
Enterprises
ManageEngine ADAudit Plus
ManageEngine ADAudit Plus
Score 9.0 out of 10
Sumo Logic
Sumo Logic
Score 8.8 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
IBM GuardiumArcsight by OpenText
Likelihood to Recommend
9.5
(66 ratings)
9.0
(6 ratings)
Likelihood to Renew
7.7
(5 ratings)
-
(0 ratings)
Usability
5.4
(34 ratings)
7.0
(1 ratings)
Support Rating
4.5
(5 ratings)
8.0
(4 ratings)
Ease of integration
4.5
(1 ratings)
-
(0 ratings)
Product Scalability
6.4
(1 ratings)
-
(0 ratings)
User Testimonials
IBM GuardiumArcsight by OpenText
Likelihood to Recommend
IBM
IBM Guardium DP is suitable for monitoring, auditing, data discovery, vulnerability analysis, and risk detection and investigation in relational and non-relational databases, cloud database services, indexed databases, and non-relational databases as well. IBM Guardium DPR is appropriate for supporting the process of detecting anomalous behavior in accessing sensitive data, helping to optimize the work of cybersecurity analysts or data team analysts by providing the data officer within our organization with insight into compromised users, compromised databases, or file servers containing sensitive data.
Read full review
OpenText
In the current lot of hundreds of SIEM solutions out there in the market, ArcSight ESM is fairly less expensive with strong fundamentals in place. The log ingestion, correlation are very well performing and totally worth ROI. However, the tool has lost its way when it comes to staying abreast with current feature curve of SIEM technology and the evolution has not been done by MicroFocus. Search times are high and there is no major plug-in that has been introduced as part of the product life cycle.
Read full review
Pros
IBM
  • Provides complete monitoring of data access and usage activities.
  • Provides customizable security controls and policies that help us meet compliance and regulatory requirements.
  • Uses advanced algorithms and machine learning to detect abnormal behavior patterns.
  • Helps us protect sensitive and confidential data by controlling access.
  • Integrates easily with other security systems and tools.
Read full review
OpenText
  • Integration with smart logger and ESM to create rules and easy management of the same.
  • Easy integration with all end point security management tool(IPS/IDS, Firewall, Anti-Virus) and their consolidated output at a single place to effectively rectifying true and false positives.
Read full review
Cons
IBM
  • Cleanup the menu bar- way too many items.
  • Ktap support for newer O/S. Recently, I have had to open support tickets to get the most recent support for the RHEL Kernel.
  • Also, upgrading agents to V12 doesnt not have the same Flex or exact match for KTAP as 11.5. You would think V12 would have the same Kernel support as 11.5. Clients are moving to V12.
Read full review
OpenText
  • It is slow comparing to any other SIEM Tool.
  • We have to create filter for each alerts need some custom filter .
  • Here we dont have any single tab for see all the alerts .also need some attractive features for dashboard.
Read full review
Likelihood to Renew
IBM
It is a perfect system to detect problems that we do not see manually, it is light, with a very simple learning curve and with great protection of our data, we will use it forever.
Read full review
OpenText
No answers on this topic
Usability
IBM
This software is not the easiest to use in all work environments, each department has some difficulties accessing and managing some functions, it can be considered a complex softy, but I consider it necessary to have it in the company due to its security qualities of warm cans, it offers exactly what it promises but with a little difficulty in its configuration.
Read full review
OpenText
Overall, it is a good investment in order for an organization to stay compliant and stay secure from all the wild things happening. It is definitely a cost effective tool with some good features including correlation, log storage, reporting and dashboards. If a customer is looking for advanced set of features, then I would highly not recommend this.
Read full review
Support Rating
IBM
There has been great support coming from IBM. It is easy to use and a great way to keep our data secure. I would recommend this to other possible users and if I were to move companies, I would recommend we use this there too. Thank you
Read full review
OpenText
I personally haven't reached the support team, however, the engineers never complained about the Arcsight support team. We had some issues with the tool in the past but every time we reached the support, all issues were resolved in a timely manner.
Read full review
Alternatives Considered
IBM
IBM Security Guardium has extended capabilities of automatically locating databases and assessing the vulnerabilities and configuration flaws in them. IBM Security Guardium stacks up against other products due to the additional features that can be easily added to your IT systems after installation. Additionally, Guardium has the ability to monitor a mainframe database environment which makes it the best choice!
Read full review
OpenText
Multiple platforms are already supported by Arcsight. Support is good. Scripts can be used to get data from multiple threat intel sources & the same can be used in correlation rules to detect any suspicious activity. Reporting features are good & you can check any backdated information within new clicks.
Read full review
Scalability
IBM
Only a few users in our shop for now
Read full review
OpenText
No answers on this topic
Return on Investment
IBM
  • Security and monitoring are important in a financial institution
  • Constant visibility and auditing of companies is easy with IBM Guardium.
  • la seguridad y monitored es important en una entidad financiera
  • la visibilidad y auditoria constante de empresas es facil con IBM Guardium
Read full review
OpenText
  • Logger helps us to decrease incident response times.
  • It also decreased our project times with the man/day calculations. Before this solution, it may take up to 10 men/days to do something. After this, it becomes nearly half of the time.
Read full review
ScreenShots

IBM Guardium Screenshots

Screenshot of the IBM Guardium Data Protection dashboard showing all the features. One click can take you to databases or to data analytics.Screenshot of IBM Guardium Data Protection: The S-TAP and GIM Dashboard gives real-time visibility into the health and performance of S-TAPs. It is used to track the status of different S-TAP versions, see database activity across inspection engines, and view detailed insights by operating system.Screenshot of IBM Guardium DSPM: Discovery, Classification & Threat Monitoring - Automate cloud data security with discovery, classification, and continuous threat monitoring. This offers a unified view of sensitive data across cloud workloads (AWS, Azure, GCP) and SaaS (SharePoint, OneDrive, Slack, Google Drive, Jira, Confluence and more), understand its risk level, and ensure ongoing protection and compliance.Screenshot of IBM Guardium DSPM: Discovery, Classification & Threat Monitoring - Automate cloud data security with discovery, classification, and continuous threat monitoring. This offers a unified view of sensitive data across cloud workloads (AWS, Azure, GCP) and SaaS (SharePoint, OneDrive, Slack, Google Drive, Jira, Confluence and more), understand its risk level, and ensure ongoing protection and compliance.Screenshot of IBM Guardium DSPM: Discovery, Classification & Threat Monitoring - Automate cloud data security with discovery, classification, and continuous threat monitoring. This offers a unified view of sensitive data across cloud workloads (AWS, Azure, GCP) and SaaS (SharePoint, OneDrive, Slack, Google Drive, Jira, Confluence and more), understand its risk level, and ensure ongoing protection and compliance.