The LevelBlue USM Anywhere XDR platform (replacing the former AlienVault USM) delivers threat detection, incident response, and compliance management.
$1,075
per month
Malwarebytes
Score 8.8 out of 10
N/A
Malwarebytes is a antimalware application for home and small businesses, which blocks viruses, malware, hackers, viruses, and malicious websites.
$119.99
per year 3 devices
McAfee Total Protection (discontinued)
Score 5.1 out of 10
N/A
McAfee's Total Protection included antivirus and antimalware offerings for home and small businesses or home offices. This product line is not a focus for Trellix, the brand formed from the merger of McAfee and FireEye that offers business grade products. Trellix Endpoint Security is the company's product line for business endpoint security.
$24.99
per year (2 year subscription, 5 devices)
Pricing
LevelBlue USM Anywhere
Malwarebytes
McAfee Total Protection (discontinued)
Editions & Modules
Essentials
$1,075
per month
Standard
$1,695
per month
Premium
$2,595
per month
Teams - Sole proprietor
$119.99
per year 3 devices
Teams - Boutique business
$399.99
per year 10 devices
Teams - Small office
$799.99
per year 20 devices
Multi-Device
$24.99
per year (2 year subscription, 5 devices)
Individual
$29.99 ($79.99)
1st year price (subsequent years)
Family
$29.99
per year (2 year subscription, 10 devices)
Offerings
Pricing Offerings
LevelBlue USM Anywhere
Malwarebytes
McAfee Total Protection (discontinued)
Free Trial
Yes
No
No
Free/Freemium Version
Yes
No
No
Premium Consulting/Integration Services
Yes
No
No
Entry-level Setup Fee
Optional
No setup fee
No setup fee
Additional Details
—
All plans include a 60-day money back guarantee. 1st year discount available for the Small office plan.
—
More Pricing Information
Community Pulse
LevelBlue USM Anywhere
Malwarebytes
McAfee Total Protection (discontinued)
Considered Multiple Products
LevelBlue USM Anywhere
Verified User
Administrator
Chose LevelBlue USM Anywhere
I have not personally used McAfee SIEM but have heard of it at MPOWER Cybersecurity summit. They are not as broad and easy to make compatible with other systems, but looks like they have performance and EPS really well done.
AlienVault is cloud based and offers more functionality than OSSIM such as cloud service monitoring like Office 365 and AWS, deployment of sensors for efficient deployment, and event integrations with the MITRE ATT&CK framework. USM also has a much improved GUI and allows for …
AlienVault USM works well for any company size. LogRhythm might be too much if your company is not already big, and the same can be said of McAfee Enterprise Security Manager. If this is your first SIEM, it's a really good choice and has nothing to envy from the others I'm …
AlienVault is generally more affordable than its competitors. It also includes a built-in OpenVAS vulnerability scanner - which most competitors don't have. It is a decent option, but is not as mature of a product as some of the more expensive options like Splunk and LogRhythm.
The AlienVault Unified Security Management is much more affordable than the above mentioned products. Installation and configuration is simplistic and provides much of the same dashboards and raw log viewing. The AlienVault USM does not include extra parts such as specific …
I looked into Splunk, QRadar, but they were way too expensive and the reviews weren't always great. I used McAfee ESM extensively at my prior job and the product is probably the worst in the SIEM space. We moved to AlienVault from ELK which, while a cool product, didn't do any …
It was a pretty even fight between Logrythm and AlienVault. The other two ended up outside our price range. The thing that made the big difference was that AlienVault was supported here in Canberra by a local firm (steadfastinfosec.com). Price wise AlienVault was a bit cheaper.
We are a SMB security firm, so we have a focus on analyzing complex events/ attacks trends, possibily leveraging not-so-expensive security products: AlienVault USM has a perk on that, by delivering an essential but state-of-the-art analysis environment.
AlienVault is way cheaper than the other products for the five capabilities that it provides. However, the market is changing a lot and there are certain features that AlienVault has to think about on their roadmap if they want to stay ahead of competition. Live Response IR …
When comparing the differences between all these programs we noticed that AlienVault Unified Security Managementblew the competitors out of the water not only in pricing but in so much more. The features that they were offering were not only amazing selling points but some of …
AlienVault Unified Security Management solution is extremely flexible and customisable when compared to other SIEM tools such as Splunk, HP ArcSight, LogaRythm etc. The log collectors supported by most of the SIEM tools are mostly limited, and writing new collectors involves a …
For me, there are no other alternatives compared to the free version of Malwarebytes. I used McAfee Total Protection as an alternative, it's a full product with anti-malware, anti-virus, anti-spam.
McAfee usually takes a long time to scan each system as we usually have scheduled systems scan every weekend. But if we want to scan a particular system in minimal time we usually go with Malwarebytes to get the job done.
To be blunt, MB leaves them in the dust from an operative and functional perspective. We use them because we get great support for all functions and find they do an excellent job at what they are designed to do. Competitive costs and no extraneous fees. Software that tries to …
Malwarebytes stacks up against all of the big guys and in my experience, does it better with no heavy resources, no slow down and no interference with other programs. My very first experience over 9 years ago, Malwarebytes caught a virus that none of the other big guys could …
Malwarebytes is so much less intrusive than other antivirus softwares. in addition, I've found that almost all other anti virus softwares have so many popups and slow down your computers so much because of all the computing power they suck up. Malwarebytes doesn't do this which …
McAfee Total Protection (discontinued)
Verified User
Analyst
Chose McAfee Total Protection (discontinued)
I haven't used Norton for a while, but when I did use it I felt that it slowed down my computer and had constant pop-ups, which were both equally frustrating and annoying. It was also very difficult to remove from my computer.
Malwarebytes is a great, straightforward program …
At this point I'm saying a 4. While the marketing material make it appear to be easy to use and it was relatively easy to set up, as previously mentioned, each event description is based upon the individual asset making it nearly impossible for the administrator to be a SME for each asset. For example, if one of the assets reporting is a router, the administrator monitoring alerts would need to know what the various events are that can be triggered as an event for the particular router; however, if the asset is a workstation, the administrator would need to know the various events that are triggered for workstations.
Now, I gave it that rating because it's a handy tool for diagnosing issues. Quarantining them, and most of the time, it does fix the problem. Though with rootkits, it's been hit or miss, and sometimes perfectly valid software gets flagged erroneously. However, once you've run it, it tends to run continuously, consuming far too many resources and being a real pain to uninstall, sometimes even causing issues.
I think McAfee is great to have whether it's for work or for personal use. While it has some drawbacks, I like the peace of mind of feeling safe when I'm browsing the web/email, especially when my computer has sensitive/confidential information, knowing that McAfee will immediately detect any threats. The UI is extremely easy to navigate, which makes it easy for users regardless of how tech-savvy they are.
AlienVault USM is simple and easy to deploy. Sensors can be deployed in as little as 15 minutes through the setup wizard.
The USM UI is easy to understand. I've trained multiple analysts who are able to perform their duties on their first day, in part because of USM Anywhere's ease of use.
Top-notch built-in compliance templates and reporting features.
Low system resources, it does not slow down the whole computer when scanning or when real-time protection is enabled
Quick and frequent updates, usually people hate updating, but for malware/viruses, you want to be updated as possible. It takes less than 15 seconds and usually does it automatically. They usually send a few updates a day as they find more.
Protection features actually work when visiting known bad websites. The page will be blocked and nothing will be downloaded. It may not be what the user wants, but it's what the user needs (as the user can't know every bad website)
Personally, I've wished I could purchase a service that would configure AV for my environment. I get a lot of traffic on a daily basis and I almost need to hire an analyst that just works on AV.
Some of the filters when looking for a specific alert aren't that easy to use.
One of the main things that malwarebytes is missing as a company, is phone support for its clients. All support questions has to go thru email only. This is not acceptable for issues that needs to be resolved quickly.
There is an issue when installing the client on a machine, it has a set amount of time where the software can register with the management server. The issue with this is, with machines that are over a wide area network, slow connection speeds can cause the software not to register. When that happens, it never re attempts to register in the future.
The centralized logging and retention for PCI compliance was our main driver, and it is meeting that need. Otherwise there has been enough frustration with the lack of documentation and the need to customize through the CLI that I would be open to alternatives.
The last time we renewed Malwarebytes, we renewed for a 3 year renewal. That should describe the confidence we have in the product. Plus the cost savings impact year after year.
McAfee has consistently delivered on its stated goals of providing comprehensive protection for our networks and systems. Due to their excellent work and follow through I have been, and will continue to be a loyal customer.
Once you are able to navigate the different panels, finding what you need is quite easily. Before getting used it it can be a bit of challenge . Each panel is quite well laid out and the filtering search capabilities are quite strong.
Usability-wise, it's pretty good, and it gets the job done. But once that's finished, the nags, the pop-ups, and the fact that it slows older systems down recklessly really cost it rating points. It becomes a clutter, and one of the first things we check when we receive reports that a PC is slow is whether it's running malware. Once we uninstall it, the PC is usually easily 40-50% faster. That's too much in the way of resources for something that wants to always run in the background.
We do have issues with maintenance on the AlienVault USM as the disk fills up from time to time with other data sources. Sources for scanning logs and net flow data isn't calculated in regular disk maintenance and can easily fill up our disk if we do not keep an eye on it with some custom Nagios plugins. The system does properly trim logging data from logging sources properly.
With the latest release of AlienVault USM overall performance has not been an issue. We have noticed single source events per second does not scale well with the overall system. 2,000eps on a vmware system with a single source produces delays of up to an hour for us. Pages, reporting and even raw log searches are rather quick though.
The support we received from alienvault was excellent. They went above and beyond in making sure everything was working as it needed to be. They REALLY want their product implementation to be a success and our security goals be achieved. They are like a member of our security team.
The Malwarebytes customer support team is awesome! They really go above and beyond to help you with whatever issue you may experience. It is not that we need to contact their support team often, but the few times we did, we would speak to someone who knew what they were talking about and able to solve our problem. It is a comfort knowing that aside from a great product, you are getting a reliable support structure.
I did not have any experience with "in person" training directly. The free online classes offered for a half a day are based on the actual training offered. These little teasers are very good and well worth your time to learn a few quick and dirty ways of getting more information from your SIEM
It was very well organized and helpful in using the product to the fullest extent. The instructor allowed time for folks who were involved with managed services to receive tuning tips in order to better support their customers. In addition, the course materials were automatically updated when the new version came out.
AlienVault USM was a very simple to implement and get up and running. We started with a trial version and had that up and going within an hour of receiving email instructions from the sales engineer. We never had to contact support to get the system up and going. It was extremely easy to convert over to a full license once we started with a paid version.
Splunk's ES is a paid add-on on top of an already pricey product. Finding a MSSP that supports Splunk and isn't a 6 figure annual commitment seems unlikely. LogRhythm did not have a cloud-based solution when we were considering SIEMs. Fantastic product though and have a good MSSP base. Devo did not have a MSSP partner base when we looked. Their product is fantastic too. AlienVault USM has good partners to choose from as well as an affordable cloud model, that's why we chose it.
Avast and Norton's products were part of the testing for us but the cost was very high for them and the products were not light on the machine. They took up a lot of memory and slowed the computers down. Malwarebytes although may lack some feature, is a very light software.
I haven't used Norton for a while, but when I did use it I felt that it slowed down my computer and had constant pop-ups, which were both equally frustrating and annoying. It was also very difficult to remove from my computer. Malwarebytes is a great, straightforward program I've used for virus scanning. It's pretty bare bones but I think if you just want something to scan for viruses it gets the job done quickly and reliably. In my opinion McAfee offers similar benefits as Norton but its more intuitive and doesn't impact system performance.
The AlienVault USM is not very scalable. Some scalability can be achieved by installing additional sensors, but this only offers 500eps per sensor and is still overall limited by the installation type of VM or physical. We have also noticed the EPS (events per second) is rated overall and not towards a single source. A single source on a very healthy VMware partition tops out at 2,000eps for us, no matter how we configure it. Maybe this is a problem of the 5.2 release?
Once you hit the 150 asset mark, you have to jump to their unlimited license. There is no middle ground. We were only 10 or so assets above the 150 so we had to chose to either not monitor those assets or pay the price of the upgrade.
AlienVault brings all the information to one place which makes it much quicker to track down problems.
Positive Impact: Have not had to remediate malware/virus infections since installed.
Positive impact: As far as browsing goes, we can boldly go where no man has gone before. No, really, I am confident when I am clicking on search engine results that if something get past my trained eye, Malwarebytes will pick of the slack.