

LogRhythm SIEM and Coralogix are both powerful tools in the SIEM market. Users tend to prefer Coralogix for its advanced features, while LogRhythm SIEM is appreciated for its pricing and customer support.
Features: LogRhythm SIEM users value its comprehensive log management, advanced correlation capabilities, and robust monitoring tools. Coralogix users appreciate its real-time data processing, machine learning integration, and innovative analytics for faster data insights.
Room for Improvement: Users indicate that LogRhythm SIEM can improve its scalability, user customization options, and adaptiveness. Coralogix could benefit from enhanced documentation, simplified integration processes, and better clarity in usage documentation.
Ease of Deployment and Customer Service: LogRhythm SIEM's deployment can be complex and time-consuming, but users acknowledge its helpful customer service. Coralogix offers a smoother and faster deployment experience, though users feel its customer support could be more responsive.
Pricing and ROI: LogRhythm SIEM users find its setup costs reasonable and appreciate its tangible ROI over time. Coralogix's setup costs are higher, but users feel the advanced features justify the investment with quicker analytical benefits.
I have seen a return on investment with Coralogix, particularly in terms of time saved.
I see a return on investment in time saving.
I have seen a return on investment as it is time-saving for debugging since this costs a lot over a period of time.
I am satisfied with their response time and overall competence.
They are helpful, especially when we created several custom dashboards.
They were very responsive and thoroughly communicative.
The technical support is good; we have a separate portal for partners, and since we are paying for the service, they provide a response timeframe based on severity—critical issues are addressed within four hours, medium issues within one day, and non-urgent issues may take a couple of days.
LogRhythm SIEM is quite complex, but that complexity allows us to specifically tailor a solution to the customer while some others are not as flexible.
Customer support is very helpful and effectively solves my problems.
We have never faced any scalability issues.
Handling scaling with Coralogix is good, as it is easy to scale up or down as my needs change.
I would rate the scalability of Coralogix as easy; it's easy and goes faster.
LogRhythm SIEM is highly scalable as it has modular components allowing me to expand storage, indexing, or other resources as needed.
LogRhythm SIEM is scalable; it can handle about 200 or 500 devices without much difference.
The scalability of LogRhythm SIEM is good enough, warranting an eight out of ten rating.
There are no downtimes, no crashes, or any performance issues that I've noticed since we started using it.
High CPU usage on one pod can be averaged out by others, concealing potential issues.
The platform needs regular updates to fix problems encountered with each quarterly patch and version release.
LogRhythm SIEM still needs improvement regarding stability, particularly in environments with heavy data consumption.
We require some form of grouping or categorization of logs to identify them better.
Coralogix should have some AI capabilities to auto-detect anomalies and provide suggestions.
If I could improve Coralogix in any way, I would suggest additional customization options for our dashboards.
I have noticed some problems with parsing errors, event mismatches, and data mismatching, so ensuring accurate parsing and continuous improvement according to device updates are my basic expectations as a detection engineer.
There is currently no way to determine how much data is being consumed in terms of gigabytes, terabytes, or petabytes from particular devices or environments.
If LogRhythm SIEM could make a lightweight version of their solution, that would be quite competitive because some of my customers have a very large need but refuse to go with LogRhythm SIEM due to its complexity and high resource intensity.
Despite the expense, I believe it is worth the money to have Coralogix as a tool.
Currently, we are at a very minimal cost, which is around $400 per month since we have reduced our usage.
It is charged based on what we store.
The license cost is around $10 per MPS.
I find LogRhythm SIEM affordable, as it is a bit less costly than QRadar.
I can monitor Kubernetes or Docker platforms as well, and I can integrate with the DevOps chain including Jenkins and all infrastructure code, Terraform, or Ansible.
Coralogix has positively impacted our organization by providing us with a clearer data flow, which allows us to analyze data better and find errors easier using the smart logs it offers.
Out of real-time analytics, cost-efficient storage, and AI-powered insights, the most valuable for my team has been the cost-efficient storage.
The seamless integration for case management, along with a user-friendly dashboard user interface, makes tasks like threat hunting more efficient.
We have enough budget for cloud deployment, but we choose to keep it on-prem to ensure data privacy; cyberattacks are a concern, but data privacy is the foremost priority due to sensitive government information.
This helps SOC analysts significantly as they can monitor all log sources through a dashboard, quickly identifying which sources haven't reported within their specified timeframes.
| Product | Mindshare (%) |
|---|---|
| LogRhythm SIEM | 2.5% |
| Coralogix | 1.1% |
| Other | 96.4% |

| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 7 |
| Large Enterprise | 10 |
| Company Size | Count |
|---|---|
| Small Business | 38 |
| Midsize Enterprise | 39 |
| Large Enterprise | 83 |
Coralogix provides a robust platform for real-time logging and analysis, offering seamless integration with cloud services and DevOps tools to enhance visibility and error detection.
Coralogix is recognized for facilitating efficient log management through intuitive drill-down capabilities and AI-powered anomaly detection. Its platform supports smooth integration with multiple cloud providers and DevOps tools, focusing on ease of use and effective data migration. Users benefit from rich visualization options like dashboards and alerts that accelerate error detection and root cause analysis. Despite its strengths, there is a call for improvements in cost management, user-friendliness, and the expansion of AI features. Users are also requesting better customization, integrated modules, and support for processing large data volumes.
What are Coralogix's standout features?Industries utilize Coralogix for log monitoring and metrics analysis, aiding in debugging, error detection, and performance monitoring with tools like Grafana. Organizations manage cloud application logs, identify system failures, and conduct real-time root cause analysis. Coralogix supports secure data handling, enhancing infrastructure, and transaction management for efficient developer access and log analysis.
LogRhythm SIEM offers advanced threat intelligence, scalable deployment, and streamlined log management. It enhances security posture with AI-driven threat detection and comprehensive monitoring.
LogRhythm SIEM stands out for its AI-driven threat correlation, ease of log aggregation, and robust reporting. Offering real-time visibility and analytics through consistent navigation and dashboards, it integrates with security components for enhanced monitoring and response. Advanced threat intelligence and customizable alerts streamline processes and bolster security. While it faces challenges with log parsing, reporting, and dashboard intuitiveness, plans to enhance cloud integration and transition to Linux are noted.
What are the standout features?In industries like banking and finance, organizations utilize LogRhythm SIEM for centralized log management, security monitoring, and compliance. It helps detect insider threats, analyze server logs, correlate events, and monitor user behaviors. Appreciated for log ingestion and anomaly identification, it ensures robust cybersecurity and incident response by integrating data from multiple sources.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.