Proofpoint Advanced Threat Detection is a suite of threat detection products including Attack Protection for Email, SaaS applications, Mobile Defense, Threat Response, and Threat Intelligence.
N/A
SolarWinds Security Event Manager (SEM)
Score 7.8 out of 10
N/A
SolarWinds LEM is security information and event management (SIEM) software.
N/A
Pricing
Proofpoint Advanced Threat Protection
SolarWinds Security Event Manager (SEM)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Proofpoint Advanced Threat Protection
SolarWinds Security Event Manager (SEM)
Free Trial
No
Yes
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Proofpoint Advanced Threat Protection
SolarWinds Security Event Manager (SEM)
Features
Proofpoint Advanced Threat Protection
SolarWinds Security Event Manager (SEM)
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Proofpoint Advanced Threat Protection
-
Ratings
SolarWinds Security Event Manager (SEM)
8.9
18 Ratings
12% above category average
Centralized event and log data collection
00 Ratings
9.018 Ratings
Correlation
00 Ratings
8.015 Ratings
Event and log normalization/management
00 Ratings
8.018 Ratings
Deployment flexibility
00 Ratings
10.018 Ratings
Integration with Identity and Access Management Tools
It is great out of the box and uses AI and machine learning to identify threats with minimal input. It does need to be configured and tuned to meet the needs of the organisation. Industry specific software that sends or receives emails may be affected by this product.
Optimal for SolarWinds Security Event Manager needs for smaller companies - it is a very cool product but has some limitations around EPS (which gets chewed up quickly if you're doing it the right way & adding servers/storage/FW & other network devices)... Also pricing model is GREAT (not consumption-based, which is the greatest grift the SIEM industry has created).
Automatic retrieval of malicious emails that have gotten through the filter but were later detected using sample data across all the organizations Proofpoint has as customers.
It does a great job of notifying us when accounts have been locked out. We can then find out the device on the network where the login attempt occurred.
Searching for incidents is now a lot faster with the implementation of the HTML 5 interface.
All SolarWinds product suffer from slow response times in management portals. SolarWinds SEM is no exception. While it is much preferred over a "thick client" there is much room for improvement in speed.
If you use the email alert features with SolarWinds make sure to prepare you staff and team for the large amount of emails they could receive. Make sure to reduce the number of alerts so your team does not ignore the alerts.
It is pretty likely that we will renew SEM when the time comes up. It is easy to use and maintain so there isn't much of a need to replace this product. It is also a pretty fair price for the capabilities provided by the SEM
Proofpoint offers a lot of products, but they are not particularly well integrated. They all look different, and there is no central location to access them all from, which is disappointing. However, I do know they have a big push for upgrading the UI and usability, so this should improve in the coming months I hope.
If you are familiar with SolarWinds then you can use this product it's as easy as that. If you have never used a SolarWinds product then it will take a minute to get how they do reports and make dashboards but that being said the tool is great and can make things very easy once you get a feel for how it works and get everything setup how you like it.
Even though the product is good, the support can be lacking at times. The support needs to know their product inside and out, but there are times in which we figure out things before their support does. I feel as if we should not be able to fix issues that their support cant fix, hence the main reason for support.
The quality of support can vary depending on whom you end up speaking with. I was fortunate enough to work with a support representative who was very familiar with the product. He had even authored some of the support documentation on the website. On the flip side, I had two other experiences where I was simply directed to online training material.
Fortianalzyer can only do logs from FortiGate so usefulness is limited. Elasticsearch was a lot slower than Solarwinds and the filters were a lot harder to set up and use. The connectors for SEM were far more stable.
For the price, it produced a decent value. It did a lot of the easy stuff well. I can't give any specific data given the objective of the product was to monitor very basic events in the environment.