AlienVault - CyberDefense
Updated June 03, 2017

AlienVault - CyberDefense

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with AlienVault USM

AlienVault Unified Security Management is being used by some of our departments in our organization. It is used to address most of our Compliance issues and Information security related issues. Also we would like to see its capabilities when integrated with other tools to expand the visibility and flexibility.
  • Scalability
  • Threat Intelligence
  • OTX
  • UI improvements to aid plugin building
  • Correlation on correlations
  • Compatibility with more DBs
  • SolarWinds Log & Event Manager
AlienVault’s strength is that it is highly capable SIEM with a nice feature set. Unified Security Management Platform comes with more advanced features in performance, administration, reporting, and technical support. It offers greater coverage against attack with more than 600 correlation directives. OSSIM is already integrated with other open source security tools including, but not limited to, Snort, Ntop, OpenVAS, P0f, Pads, Arpwatch, OSSEC, Osiris, Nagios, OCS, and Kismet.
USM can be used by small organizations, but it’s most effective when used by large organizations where there are multiple network devices such as firewall, IDS/IPS and Anti-Virus and web servers etc. USM is already integrated with other open source security tools including, but not limited to, Snort, Ntop, OpenVAS, P0f, Pads, Arpwatch, OSSEC, Osiris, Nagios, OCS, and Kismet. Having well-known open source tools as part of the platform makes it easier for security professionals to work with it.

AlienVault USM Implementation

Implementation of AlienVault was very smooth and easy . Though the initial custom plugin configuration was a bit confusing, once learned building them it was most interesting part and was going on very well now for me. Really love it.