AlienVault USM Anywhere - A One-Man-SOC
June 24, 2019
AlienVault USM Anywhere - A One-Man-SOC

Score 7 out of 10
Vetted Review
Verified User
Software Version
USM Anywhere (SaaS)
Overall Satisfaction with AlienVault USM
AlienVault is used by the cybersecurity unit of the organization to monitor and correlate security logs from other systems within the organization. Also, AlienVault acts as a log management system or repository of logs for the organization. We chose AlienVault as it is one of the few SaaS-based SIEM in the market and it was in line with our organization’s direction of going with a cloud-based solution.
- Cloud based solution which minimises the need to maintain additional on premise servers.
- Among the cheapest SIEM solution on the market with features comparable to the other bigger players.
- Great dashboard and UI which makes it super easy to use.
- Packed with many features and integrates with many major off the shelf brands.
- The SaaS based model makes the pricing very dependent on the storage capacity subscribed to. Compared to other on premise solutions, it can be really hard to deal with once the log storage has reached or maxed out the monthly storage capacity.
- After AT&T took over Alienvault, their customer service has deteriorated and they don’t give as much care as they did earlier with their customers.
- After AT&T took over, the product pricing has been increasing steadily and soon this solution may not be as affordable as it used to be.
AlienVault was the cheapest solution compared with the competition and had similar or better features. Also, the SaaS based solution made it easy to deploy the solution without the need to maintain additional servers on premise. It was very easy to use and had a great UI which made it very easy to manage a SIEM in a one-man-SOC fashion.
Using AlienVault USM
Pros | Cons |
---|---|
Like to use Relatively simple Easy to use Technical support not required Well integrated Consistent Quick to learn Convenient Feel confident using Familiar | None |
- Adding assets into the system
- Creating rules and filters
- Easily integrates with a number of other well known vendors