A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Verified User
Director in Information Technology (201-500 employees employees)
Use Cases and Deployment Scope
SolarWinds Security Event Manager checks a few different boxes: 1. Consolidated events from a huge variety of log sources. 2. A good presentation layer for #1. 3. Applies to more than a few GRC obligations. 4. And does 1-3 at an incredibly reasonable price.
Pros
Integrations (around 800?) is great
Provides the single pane-of-glass
Is part of the SW ecosystem
Cons
CAPACITY - 2500 EPS needs to be higher
Allow resizing of charts (i.e. drag-and-drop)
Return on Investment
ROI is a no-brainer if the EPS issue is not an obstacle
GUI is easy to interpret & reports boil stuff down
The concept of SIEM that is part of a larger security ecosystem works
Usability
Alternatives Considered
IBM Security QRadar SIEM, Elastic Observability and Splunk Enterprise
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
System Engineer II in Information Technology at South Central Regional Medical Center (1001-5000 employees employees)
Use Cases and Deployment Scope
We use SEM on a daily basis in our environment as per our built-out rules. We are notified of certain security events as they happen. Aside from that, we access SEM to run queries on an as-needed basis. With this we have a monitor running in the background keeping an eye on the events we want to monitor.
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
A de minimis incentive was given to thank the reviewer for their time. The incentive was not used to bias or drive a particular response, nor was the incentive contingent on a positive endorsement. More Info
Technology Specialist II in Information Technology at Portland Community College (1001-5000 employees employees)
Pros
We use the client on register systems as event forwarders and log collection.
It enables us to verify the access security to high value workstations and register systems.
It provides a repository storage for log files so that they do not solely exist on workstations.
It helps us ensure PCI standards are being maintained and track security risk issues as well as system health.
Cons
Within the scope of my role I have noticed that the client can be problematic during system startup - some of the register systems we use are older and have lower resolution screens. When the client loads it pops up on screen but completely out of scale (to clarify, it may open a window that is 14x14 inches on a screen that only displays 10x10 inches. This is more frustration than a functional problem.
Automated rollout would be useful but it is outside of my scope in my job to even know if it already has automated install capability.
The GUI itself is a little clunky and there is somewhat of a learning curve - training is provided to clients however a friendlier interface would be helpful.
Return on Investment
This is a little outside of my level of involvement to answer adeptly. That being said I do know that it has been instrumental in allowing our organization to implement a central storage for log files and it's something we have wanted to implement for a long time.
Other Software Used
KACE Endpoint Systems Management Appliance
Related Products
Products similar to SolarWinds Security Event Manager (SEM) that may also meet your needs.