will I continue to use USM, Yes I would
June 01, 2023

will I continue to use USM, Yes I would

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Software Version

USM Anywhere (SaaS)

Overall Satisfaction with AlienVault USM

USM is our primary SIEM solution. The solution is not a standard SIEM but rather a SOAR, where one can add orchestration rules as well as run investigations. All of our network devices, servers, IPS IDS FW and more then all send the logs to this solution. Then the SIEM creates events which derive alerts and alarms.
  • Investigations
  • Event collection and alerting
  • correlation rules
  • N/A
  • CBT training
  • training
  • Log collection
  • threat investigation
  • SOC response
Easy to deploy and ease of use, good training by ATT

Do you think AlienVault USM delivers good value for the price?

Yes

Are you happy with AlienVault USM's feature set?

Yes

Did AlienVault USM live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of AlienVault USM go as expected?

Yes

Would you buy AlienVault USM again?

Yes

Investigations, The investigation process is very well planned where, all items can be linked and any asset, time line, or threat can be linked to a single investigation. This assists in solving the purpose of the investigation and getting to the bottom of the cause of the threat. Either an action plan is derived or the investigation can be closed with comments for future.

AlienVault USM Feature Ratings

Centralized event and log data collection
10
Correlation
10
Event and log normalization/management
8
Deployment flexibility
10
Integration with Identity and Access Management Tools
Not Rated
Custom dashboards and workspaces
5
Host and network-based intrusion detection
Not Rated