

Find out what your peers are saying about Splunk, IBM, Wazuh and others in Security Information and Event Management (SIEM).
| Product | Mindshare (%) |
|---|---|
| Elastic Security | 3.5% |
| ArcSight Security Orchestration Automation Response | 0.2% |
| Other | 96.3% |


| Company Size | Count |
|---|---|
| Small Business | 40 |
| Midsize Enterprise | 12 |
| Large Enterprise | 15 |
ArcSight Security Orchestration Automation Response automates security actions, efficiently manages and responds to security incidents, and integrates with other tools to investigate and mitigate threats.
ArcSight Security Orchestration Automation Response centralizes management of security tasks and enhances incident response workflows. It offers streamlined threat investigation and mitigation through flexible integration capabilities. Users benefit from reduced manual intervention and improved coordination among security teams, leading to quicker incident response. However, it faces challenges such as complexity, steep learning curves, and performance issues such as slow system responses. Enhancements in integration capabilities, documentation thoroughness, and customer support are also needed.
What are the key features of ArcSight Security Orchestration Automation Response?ArcSight Security Orchestration Automation Response is implemented across industries like finance, healthcare, and retail to enhance their security operations. Financial institutions use its threat detection capabilities to secure transactions, while healthcare organizations rely on its incident response workflows to protect patient data. Retail companies use its powerful automation and integration capabilities to safeguard customer information and streamline their security processes.
Elastic Security stands out for its speed, scalability, and intuitive interface. It integrates seamlessly with Elasticsearch and Kibana, providing efficient data indexing, centralized log management, and intelligent threat identification, all while being open-source.
Elastic Security offers robust capabilities in security monitoring, threat identification, and SIEM functionalities. Its open-source nature enhances scalability, facilitating log aggregation and infrastructure monitoring. Users appreciate the intuitive dashboards and machine learning integration, which aid in proactive security measures and anomaly detection. Despite its strengths, improvements are needed in documentation, scalability, and configuration complexity. High data volume pricing and limited machine learning support are concerns, while dashboard enhancement and seamless integration with existing systems are desirable. The platform is widely used for alerting suspicious activities, analyzing logs from firewalls and Active Directory, and providing endpoint protection. It serves as a key tool for security awareness and auditing, integrating effectively with technologies like Kibana and OpenShift.
What are the most notable features of Elastic Security?Organizations deploy Elastic Security across industries for log aggregation and security monitoring, detecting unauthorized access, and analyzing system logs. It is essential for infrastructure monitoring and integrates effectively with systems such as Fluentd and OpenShift, supporting comprehensive security views across enterprise environments.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.