ArcSight Logger offers scalability, flexible log collection options, real-time awareness, efficient query capabilities, and excellent device support with multi-tenancy. It provides detailed event visibility, robust log management, and advanced security analytics. Its user-friendly interface allows for complex queries and customization. Additionally, it offers strong data retention and compliance features, integration with SIEM tools, and efficient machine learning for threat detection. Users appreciate its performance, powerful searching tools, and comprehensive log aggregation capabilities.
- "As the name suggests, it's a brilliant log collection tool, and it can handle hundreds of thousands of servers in a single shot to ingest the data."
- "ArcSight provides the basic information that we want."
- "Some of the most valuable features I really appreciate are the performance, how quick the solution is, and how easy it is to create a query."
ArcSight Logger needs improvement in user interface simplicity, speed, and adaptability. Users find it challenging to navigate and suggest enhancing the dashboard and search functionality. They note the lack of advanced features like AI, analytics, and integration with other systems. The platform's complexity requires specialized expertise. Users also criticize its outdated nature, limited reporting abilities, and inadequate connector support. They express concerns about its high cost and reduced technical support quality after corporate changes.
- "Apart from that, it's a very complex tool and is not easy to implement and maintain."
- "Scaling this product is painful."
- "The solution could be improved in maintenance settings."