No more typing reviews! Try our Samantha, our new voice AI agent.

ArcSight Analytics vs ArcSight Logger comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Analytics
Average Rating
6.8
Reviews Sentiment
6.7
Number of Reviews
15
Ranking in other categories
User Entity Behavior Analytics (UEBA) (18th)
ArcSight Logger
Average Rating
7.6
Reviews Sentiment
5.8
Number of Reviews
32
Ranking in other categories
Log Management (33rd)
 

Mindshare comparison

ArcSight Analytics and ArcSight Logger aren’t in the same category and serve different purposes. ArcSight Analytics is designed for User Entity Behavior Analytics (UEBA) and holds a mindshare of 1.8%, up 1.0% compared to last year.
ArcSight Logger, on the other hand, focuses on Log Management, holds 0.9% mindshare, up 0.8% since last year.
User Entity Behavior Analytics (UEBA) Mindshare Distribution
ProductMindshare (%)
ArcSight Analytics1.8%
Exabeam8.8%
IBM Security QRadar7.4%
Other82.0%
User Entity Behavior Analytics (UEBA)
Log Management Mindshare Distribution
ProductMindshare (%)
ArcSight Logger0.9%
Splunk Enterprise Security6.8%
Wazuh4.8%
Other87.5%
Log Management
 

Featured Reviews

reviewer1311453 - PeerSpot reviewer
Consultant at a tech vendor with 10,001+ employees
Good filtering and reporting tools but can be difficult to use
It can scale as needed. It's not a problem. There are different teams using it. We have CSOC, which is internal, which is onshore, then we have a security operations center that is offshore, which would be in India. The onshore team might be a group of three, and the offshore might be a group of five. Likely, we have eight to ten people in total using the product directly.
MA
Sr. Cybersecurity Consultant IT/OT at EJADA
Compliance and cost-effectiveness have improved while critical infrastructure security adapts to evolving needs
ArcSight Logger fulfills compliance requirements and passes audit requirements. It is one of the Aramco standards requirements and is recommended by Aramco for any implementation. Aramco, SABIC, water companies, and electricity companies are critical infrastructure with air-gapped networks. In an air-gapped network, there is no communication going out from that network area to the outside world, even to the corporate network. ArcSight Logger is installed on minimal resources with minimal requirements. There are not many upgrades or new features that come up frequently, though they do occur occasionally.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The two most valuable features of this solution are its stability and scalability."
"This product improves visibility, whereas prior to implementing this solution there is no visibility."
"Allows multiple integrations with multiple systems in a stable and flexible fashion."
"The correlation engine is good."
"Our organization has improved because ArcSight allows multiple integrations with multiple systems which we did not do before using the product."
"The solution is easy to implement."
"ArcSight Analytics has improved our system and network policy monitoring."
"The ability to correlate different logs is the solution's most valuable feature."
"It's a robust, mature product and you can do some really complex operations and analytics."
"This product was used to help us get PCI compliant, and its automated functions made it easier so we could concentrate more on real issues instead of standard log collecting and alerting issues."
"The log digestion features from threat intelligence platforms like Recorded Future or Talos are valuable."
"The technical support team is good...It is a scalable solution."
"It's an efficient solution."
"I would definitely say to go with this product as it's the best in the market, but before opting for this product your perform solution-sizing because otherwise you might end up digging your own grave in fixing it."
"The solution offers very good performance and is efficient."
"ArcSight provides the basic information that we want."
 

Cons

"The GUI interface is not always intuitive and easy for non-technical users to work with."
"Their support team could be better."
"I would like to see orchestration."
"Customer service has not been up to the mark. They take longer than they should to resolve issues."
"I would like to see integration with automation products, such as Phantom Automation."
"Currently, there are no compatible connectors for this solution, which means we have to depend on FlexConnectors."
"I faced stability issues with Windows Operating System. The installed connectors hang if they remain idle for a long period of time."
"It's a difficult product to navigate, it's complex."
"ArcSight has been sold two or three times, and the quality has decreased."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"It would be better if the product is cheaper."
"We have had problems with archiving."
"I would like to see better scheduling in the next release of this solution."
"The product's connectors should work better and the user manuals need an update."
"The graphics and dashboard could be improved."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
 

Pricing and Cost Advice

"In addition to the costs of standard licensing fees, there is the cost of labor for maintenance."
"ArcSight Analytics is a bit expensive compared with other tools in terms of licensing costs, training, hardware implementation, and support."
"My customers pay a yearly licensing fee for ArcSight Analytics."
"This solution is expensive."
"It can range between $30,000 and $40,000 USD, and can go up to $500,000 and $600,000 USD."
"The monthly licensing fee is around $20,000. There aren't any costs in addition to the standard licensing fee."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"ArcSight is an expensive solution."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"The pricing is quite harsh."
"We have a lifetime license, so we don't pay a monthly fee."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"I would rate the product a seven out of ten since it's an enterprise product."
report
Use our free recommendation engine to learn which User Entity Behavior Analytics (UEBA) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
20%
Marketing Services Firm
12%
Financial Services Firm
12%
Manufacturing Company
10%
Construction Company
11%
Financial Services Firm
9%
Manufacturing Company
9%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise7
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise9
Large Enterprise17
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What needs improvement with ArcSight Logger?
This decision is made by higher management as they don't want to have multiple solutions for one solution. ArcSight Logger themselves don't provide good support, but companies such as ours provide ...
What is your primary use case for ArcSight Logger?
We do work for multiple SIEM solutions such as Splunk, QRadar, LogRhythm. My team and I mostly work on ArcSight Logger and Splunk because we are dealing with projects related to these solutions. We...
What advice do you have for others considering ArcSight Logger?
As a department head, my staff uses my credentials and contacts everywhere. Only ArcSight Logger with Splunk was implemented in Aramco, not in other organizations. I rate ArcSight Logger 8 out of 10.
 

Also Known As

ArcSight User Behavior Analytics, ArcSight UBA
Micro Focus Arcsight Logger, HPE Arcsight Logger
 

Overview

 

Sample Customers

Information Not Available
China Merchants Bank, Bank AlJazira, Banca Intesa
Find out what your peers are saying about Exabeam, One Identity, IBM and others in User Entity Behavior Analytics (UEBA). Updated: June 2026.
900,644 professionals have used our research since 2012.