AlienVault: could this SIEM vendor become the next big thing?
June 30, 2019

AlienVault: could this SIEM vendor become the next big thing?

Anonymous | TrustRadius Reviewer
Score 6 out of 10
Vetted Review
Verified User

Software Version

USM Anywhere (SaaS)

Overall Satisfaction with AlienVault USM

AlienVault is our corporate SIEM. It is used to collect and analyze logs for security events.
  • Collects AWS CloudTrail logs
  • Collects OS logs
  • Has many integrations with other security products
  • The technical support is not good.
  • It is a closed system and it is not easy to search raw logs like in Splunk.
  • If it is missing a particular integration one needs to have a backup solution (e.g. Splunk or similar).
AlienVault has some canned integrations which make it easier to jumpstart. Splunk requires more manual config effort.
AlienVault is well suited for cloud infrastructures such as AWS. AlienVault will struggle with collecting logs from in-house developed apps.