No more typing reviews! Try our Samantha, our new voice AI agent.

ArcSight Analytics vs ArcSight Logger comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Analytics
Average Rating
6.8
Reviews Sentiment
6.7
Number of Reviews
15
Ranking in other categories
User Entity Behavior Analytics (UEBA) (18th)
ArcSight Logger
Average Rating
7.6
Reviews Sentiment
5.8
Number of Reviews
32
Ranking in other categories
Log Management (39th)
 

Mindshare comparison

ArcSight Analytics and ArcSight Logger aren’t in the same category and serve different purposes. ArcSight Analytics is designed for User Entity Behavior Analytics (UEBA) and holds a mindshare of 1.9%, up 1.0% compared to last year.
ArcSight Logger, on the other hand, focuses on Log Management, holds 0.9% mindshare, up 0.8% since last year.
User Entity Behavior Analytics (UEBA) Mindshare Distribution
ProductMindshare (%)
ArcSight Analytics1.9%
Exabeam8.7%
IBM Security QRadar7.0%
Other82.4%
User Entity Behavior Analytics (UEBA)
Log Management Mindshare Distribution
ProductMindshare (%)
ArcSight Logger0.9%
Splunk Enterprise Security6.8%
Wazuh5.4%
Other86.9%
Log Management
 

Featured Reviews

reviewer1311453 - PeerSpot reviewer
Consultant at a tech vendor with 10,001+ employees
Good filtering and reporting tools but can be difficult to use
It can scale as needed. It's not a problem. There are different teams using it. We have CSOC, which is internal, which is onshore, then we have a security operations center that is offshore, which would be in India. The onshore team might be a group of three, and the offshore might be a group of five. Likely, we have eight to ten people in total using the product directly.
MA
Sr. Cybersecurity Consultant IT/OT at EJADA
Compliance and cost-effectiveness have improved while critical infrastructure security adapts to evolving needs
ArcSight Logger fulfills compliance requirements and passes audit requirements. It is one of the Aramco standards requirements and is recommended by Aramco for any implementation. Aramco, SABIC, water companies, and electricity companies are critical infrastructure with air-gapped networks. In an air-gapped network, there is no communication going out from that network area to the outside world, even to the corporate network. ArcSight Logger is installed on minimal resources with minimal requirements. There are not many upgrades or new features that come up frequently, though they do occur occasionally.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features are that you get lots of connectors, which make it easy to log in to my ASM, and lots of prebuilt roles from the company."
"This solution allows us to identify connections for all users."
"The data collection and the integration with different products are valuable features."
"We have seen a measurable decrease, by about 20 percent, in the mean time to detect and respond to risks."
"Less resource consumption in terms of memory and processing."
"The solution is easy to implement."
"Our organization has improved because ArcSight allows multiple integrations with multiple systems which we did not do before using the product."
"The correlation engine is good."
"This product was used to help us get PCI compliant, and its automated functions made it easier so we could concentrate more on real issues instead of standard log collecting and alerting issues."
"I would definitely say to go with this product as it's the best in the market, but before opting for this product your perform solution-sizing because otherwise you might end up digging your own grave in fixing it."
"The technical support team is good...It is a scalable solution."
"The solution offers very good performance and is efficient."
"As the name suggests, it's a brilliant log collection tool, and it can handle hundreds of thousands of servers in a single shot to ingest the data."
"The functionalities of this particular server is absolutely phenomenal."
"Data correlation, which unfortunately only comes with an ESM module, is the most valuable feature for us."
"It is one of the best products available in the market."
 

Cons

"I faced stability issues with Windows Operating System. The installed connectors hang if they remain idle for a long period of time."
"Their support team could be better."
"The ArcSight Analytic is not so easy."
"ArcSight's features that can be improved include anything related to its visualization capabilities and user friendliness."
"Currently, there are no compatible connectors for this solution, which means we have to depend on FlexConnectors."
"Inactive connections from servers, which are upgraded or downgraded within a VM, should be automatically revoked."
"There is a GUI, but it is not complete and lacks functionality that needs to be performed using the console."
"The GUI and dashboards are very basic and need to be improved."
"It would be better if the product is cheaper."
"Apart from that, it's a very complex tool and is not easy to implement and maintain."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved."
"They are migrating to Splunk because ArcSight Logger doesn't have those features for user or customer behavior analysis."
"Clicking on a log source on the main page should not pull all stored logs as this is too slow and way excessive."
"The next release should have AI capabilities."
"The solution could be improved in maintenance settings."
"The graphics and dashboard could be improved."
 

Pricing and Cost Advice

"ArcSight Analytics is a bit expensive compared with other tools in terms of licensing costs, training, hardware implementation, and support."
"In addition to the costs of standard licensing fees, there is the cost of labor for maintenance."
"My customers pay a yearly licensing fee for ArcSight Analytics."
"It can range between $30,000 and $40,000 USD, and can go up to $500,000 and $600,000 USD."
"The monthly licensing fee is around $20,000. There aren't any costs in addition to the standard licensing fee."
"This solution is expensive."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"I would rate the product a seven out of ten since it's an enterprise product."
"We have a lifetime license, so we don't pay a monthly fee."
"ArcSight is an expensive solution."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"The pricing is quite harsh."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
report
Use our free recommendation engine to learn which User Entity Behavior Analytics (UEBA) solutions are best for your needs.
893,164 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Marketing Services Firm
15%
Construction Company
13%
Financial Services Firm
11%
Manufacturing Company
9%
Financial Services Firm
10%
Comms Service Provider
8%
Marketing Services Firm
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise7
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise10
Large Enterprise16
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about ArcSight Logger?
We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.
What is your experience regarding pricing and costs for ArcSight Logger?
The pricing isn't the problem. We have a lifetime license, so we don't pay a monthly fee.
What needs improvement with ArcSight Logger?
This decision is made by higher management as they don't want to have multiple solutions for one solution. ArcSight Logger themselves don't provide good support, but companies such as ours provide ...
 

Also Known As

ArcSight User Behavior Analytics, ArcSight UBA
Micro Focus Arcsight Logger, HPE Arcsight Logger
 

Overview

 

Sample Customers

Information Not Available
China Merchants Bank, Bank AlJazira, Banca Intesa
Find out what your peers are saying about Exabeam, IBM, One Identity and others in User Entity Behavior Analytics (UEBA). Updated: May 2026.
893,164 professionals have used our research since 2012.