2013 SIEM tools

AlienVault Unified Security Management (AV-USM) v4.1

AlienVault Unified Security Management (AV-USM) v4.1

Strengths: Flexibility, quality and ease of use. Weaknesses: Appliance setup can be a little challenging and the documentation could be better.
BlackStratus LOG Storm v4.2.0.45

BlackStratus LOG Storm v4.2.0.45

Strenghts: Simple to use as well as a large list of agent modules. Weaknesses: There is a need for more prepared policies and reports to help non-expert users.
CorreLog Enterprise Server v5.2.0

CorreLog Enterprise Server v5.2.0

Strengths: Easy to install and full of features. Weaknesses: Macro writing requires specialization often unavailable in small organizations.
eIQnetworks SecureVue v3.6.3

eIQnetworks SecureVue v3.6.3

Strengths: A well designed and vetted product. Weaknesses: Minor improvements in the documentation of features not commonly known.
EventTracker Enterprise v7.3

EventTracker Enterprise v7.3

Strengths: This product is a well-designed enterprise-class tool. Weaknesses: Hard to find a substantial weakness.
GFI EventsManager 2013

GFI EventsManager 2013

Strengths: Integration of mature features and functions into the product. Weaknesses: Absence of a ticketing feature.
HP ArcSight Express

HP ArcSight Express

Strengths: Highly configurable with many reporting functions. Weaknesses: Very expensive.
LogRhythm

LogRhythm

Strengths: Easy to deploy and manage with many reporting and alerting functions built in. Weaknesses: None that we found.
McAfee Enterprise Security Manager

McAfee Enterprise Security Manager

Strengths: Feature-rich and highly customizable, this tool is loaded with templates and prebuilt reports. Weaknesses: None that we found.
NetIQ Sentinel

NetIQ Sentinel

Strengths: Highly intelligent SIEM analysis capabilities. Weaknesses: High cost for a software only product.
SolarWinds Log & Event Manager

SolarWinds Log & Event Manager

Strengths: Reasonably priced, full-feature SIEM virtual appliance. Weaknesses: None that we found.
Zoho ManageEngine EventLog Analyzer

Zoho ManageEngine EventLog Analyzer

Strengths: Easy to deploy for smaller environments. Weaknesses: Device and log support is limited.

The SC Labs team took a look at some of the latest SIEM products on the market and reported the pros and cons. Here's a look.

More Slideshows

Topics:

You must be a registered member of SC Media US to post a comment.