A useful product, but needs work to compete with Splunk
July 27, 2019
A useful product, but needs work to compete with Splunk

Score 5 out of 10
Vetted Review
Verified User
Software Version
USM Anywhere (SaaS)
Overall Satisfaction with AlienVault USM
Security uses it as an SIEM and an investigations tool.
Pros
- SaaS Log Management: it is easy to ingest logs from SaaS providers like G-Suite, Okta, and more.
- Ease of use: I don't need a lot of engineering work to get AlienVault to a usable place.
Cons
- Log Management: it's hard to ingest and organize logs in AlienVault.
- Searching and Querying: the query language is difficult to use and impossible to copy between screens.
- Threat Intelligence: there's no way to get external threat intel into AlienVault to make automatic detections.
I’ve found AlienVault to be the cheaper, simpler winner in the space, but their platform leaves a lot to be desired (though I still haven’t found anything better).
Comments
Please log in to join the conversation