No more typing reviews! Try our Samantha, our new voice AI agent.

ArcSight Analytics vs ArcSight Logger comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Analytics
Average Rating
6.8
Reviews Sentiment
6.7
Number of Reviews
15
Ranking in other categories
User Entity Behavior Analytics (UEBA) (18th)
ArcSight Logger
Average Rating
7.6
Reviews Sentiment
5.8
Number of Reviews
32
Ranking in other categories
Log Management (33rd)
 

Mindshare comparison

ArcSight Analytics and ArcSight Logger aren’t in the same category and serve different purposes. ArcSight Analytics is designed for User Entity Behavior Analytics (UEBA) and holds a mindshare of 1.8%, up 1.0% compared to last year.
ArcSight Logger, on the other hand, focuses on Log Management, holds 0.9% mindshare, up 0.8% since last year.
User Entity Behavior Analytics (UEBA) Mindshare Distribution
ProductMindshare (%)
ArcSight Analytics1.8%
Exabeam8.8%
IBM Security QRadar7.4%
Other82.0%
User Entity Behavior Analytics (UEBA)
Log Management Mindshare Distribution
ProductMindshare (%)
ArcSight Logger0.9%
Splunk Enterprise Security6.8%
Wazuh4.8%
Other87.5%
Log Management
 

Featured Reviews

reviewer1311453 - PeerSpot reviewer
Consultant at a tech vendor with 10,001+ employees
Good filtering and reporting tools but can be difficult to use
It can scale as needed. It's not a problem. There are different teams using it. We have CSOC, which is internal, which is onshore, then we have a security operations center that is offshore, which would be in India. The onshore team might be a group of three, and the offshore might be a group of five. Likely, we have eight to ten people in total using the product directly.
MA
Sr. Cybersecurity Consultant IT/OT at EJADA
Compliance and cost-effectiveness have improved while critical infrastructure security adapts to evolving needs
ArcSight Logger fulfills compliance requirements and passes audit requirements. It is one of the Aramco standards requirements and is recommended by Aramco for any implementation. Aramco, SABIC, water companies, and electricity companies are critical infrastructure with air-gapped networks. In an air-gapped network, there is no communication going out from that network area to the outside world, even to the corporate network. ArcSight Logger is installed on minimal resources with minimal requirements. There are not many upgrades or new features that come up frequently, though they do occur occasionally.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Our organization has improved because ArcSight allows multiple integrations with multiple systems which we did not do before using the product."
"Investigating an incident has become super easy and helpful."
"I like their filtering and their reporting tools, I like their integration with many other different tool sets, which is similar to other products as well, the solution is easy to implement, and I have found the product to be quite stable and scalable."
"One of the most valuable features is the alerts."
"The most valuable feature is the log monitoring."
"This solution makes it easy to create use cases, and it is easy to move queries from use cases to the report to the dashboard."
"This product improves visibility, whereas prior to implementing this solution there is no visibility."
"Allows multiple integrations with multiple systems in a stable and flexible fashion."
"It's an efficient solution."
"Our return on investment for implementing ArcSight Logger over the past 12 months has been positive."
"The technical support team is good...It is a scalable solution."
"ArcSight's robustness is its most valuable feature."
"The most valuable feature is the level of detail that you can see about certain events, even when they do not come up in the console."
"The functionalities of this particular server is absolutely phenomenal."
"ArcSight Logger is very stable and useful for customers."
"We haven't had any crashes or bugs. It is stable."
 

Cons

"ArcSight's features that can be improved include anything related to its visualization capabilities and user friendliness."
"Inactive connections from servers, which are upgraded or downgraded within a VM, should be automatically revoked."
"ArcSight is not a user-friendly solution and the interface needs to be improved."
"Currently, there are no compatible connectors for this solution, which means we have to depend on FlexConnectors."
"Their support team could be better."
"The reporting and the way it is worded needs to be improved in future releases. The dashboards are quite poorly designed."
"The GUI interface is not always intuitive and easy for non-technical users to work with."
"I faced stability issues with Windows Operating System. The installed connectors hang if they remain idle for a long period of time."
"The original Connector Appliance peaked its events-per-second limit much sooner than anticipated and required us to purchase another, and significantly larger, appliance."
"The product's connectors should work better and the user manuals need an update."
"Apart from that, it's a very complex tool and is not easy to implement and maintain."
"The integration with other systems could be improved."
"The graphics and dashboard could be improved."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"Scaling this product is painful."
"Using the ArcSight Logger dashboard is not particularly intuitive or efficient, so it is important to be trained in its use."
 

Pricing and Cost Advice

"The monthly licensing fee is around $20,000. There aren't any costs in addition to the standard licensing fee."
"ArcSight Analytics is a bit expensive compared with other tools in terms of licensing costs, training, hardware implementation, and support."
"My customers pay a yearly licensing fee for ArcSight Analytics."
"In addition to the costs of standard licensing fees, there is the cost of labor for maintenance."
"It can range between $30,000 and $40,000 USD, and can go up to $500,000 and $600,000 USD."
"This solution is expensive."
"The pricing is quite harsh."
"We have a lifetime license, so we don't pay a monthly fee."
"ArcSight is an expensive solution."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"I would rate the product a seven out of ten since it's an enterprise product."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
report
Use our free recommendation engine to learn which User Entity Behavior Analytics (UEBA) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
20%
Marketing Services Firm
12%
Financial Services Firm
12%
Manufacturing Company
10%
Construction Company
11%
Financial Services Firm
9%
Manufacturing Company
9%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise7
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise9
Large Enterprise17
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What needs improvement with ArcSight Logger?
This decision is made by higher management as they don't want to have multiple solutions for one solution. ArcSight Logger themselves don't provide good support, but companies such as ours provide ...
What is your primary use case for ArcSight Logger?
We do work for multiple SIEM solutions such as Splunk, QRadar, LogRhythm. My team and I mostly work on ArcSight Logger and Splunk because we are dealing with projects related to these solutions. We...
What advice do you have for others considering ArcSight Logger?
As a department head, my staff uses my credentials and contacts everywhere. Only ArcSight Logger with Splunk was implemented in Aramco, not in other organizations. I rate ArcSight Logger 8 out of 10.
 

Also Known As

ArcSight User Behavior Analytics, ArcSight UBA
Micro Focus Arcsight Logger, HPE Arcsight Logger
 

Overview

 

Sample Customers

Information Not Available
China Merchants Bank, Bank AlJazira, Banca Intesa
Find out what your peers are saying about Exabeam, One Identity, IBM and others in User Entity Behavior Analytics (UEBA). Updated: June 2026.
900,644 professionals have used our research since 2012.