No more typing reviews! Try our Samantha, our new voice AI agent.

Datadog vs Security Onion comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Datadog
Ranking in Log Management
4th
Average Rating
8.6
Reviews Sentiment
6.9
Number of Reviews
211
Ranking in other categories
Application Performance Monitoring (APM) and Observability (1st), Network Monitoring Software (4th), IT Infrastructure Monitoring (2nd), Container Monitoring (3rd), Cloud Monitoring Software (1st), AIOps (1st), Cloud Security Posture Management (CSPM) (5th), AI Observability (1st)
Security Onion
Ranking in Log Management
29th
Average Rating
7.2
Reviews Sentiment
7.1
Number of Reviews
4
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the Log Management category, the mindshare of Datadog is 4.0%, down from 5.9% compared to the previous year. The mindshare of Security Onion is 2.0%, down from 5.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Datadog4.0%
Security Onion2.0%
Other94.0%
Log Management
 

Featured Reviews

Dhroov Patel - PeerSpot reviewer
Site Reliability Engineer at Grainger
Has improved incident response with better root cause visibility and supports flexible on-call scheduling
Datadog needs to introduce more hard limits to cost. If we see a huge log spike, administrators should have more control over what happens to save costs. If a service starts logging extensively, I want the ability to automatically direct that log into the cheapest log bucket. This should be the case with many offerings. If we're seeing too much APM, we need to be aware of it and able to stop it rather than having administrators reach out to specific teams. Datadog has become significantly slower over the last year. They could improve performance at the risk of slowing down feature work. More resources need to go into Fleet Automation because we face many problems with things such as the Ansible role to install Datadog in non-containerized hosts. We mainly want to see performance improvements, less time spent looking at costs, the ability to trust that costs will stay reasonable, and an easier way to manage our agents. It is such a powerful tool with much potential on the horizon, but cost control, performance, and agent management need improvement. The main issues are with the administrative side rather than the actual application.
HJ
Manager at teshama
Centralized threat monitoring has improved visibility but demands complex setup and configuration
The best features Security Onion offers include acting as the intrusion detection system in my organization and helping me to address traffic, logs, and events happening within the organization. Since Security Onion is an open-source system that integrates with tools like Suricata and Zeek with the ELK stack, it enables threat detection and response capabilities, delivering high-level security measures at a cost, making it suitable for businesses of varying skill levels. These integrations with Suricata and Zeek have greatly impacted our workflow and our team's effectiveness by helping us address issues such as identifying intrusions, evaluating threats, and overseeing log files. This tool is very cost-effective, making it suitable for any size of organization wanting to use it.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Datadog has improved our visibility into infrastructure topology and performance."
"Since adopting Datadog, it has reduced the manual effort by around seven to eight hours per week, making the process completely automated."
"We've been able to glean from the monitors what servers are down, and can alert the team in Slack."
"Datadog has clear dashboards and good documentation."
"The solution's SaaS model is easy to manage and works well in single- or multi-cloud environments."
"It helps us better manage our logs."
"By moving to Datadog, we did not need to manage our own monitoring infrastructure anymore."
"The solution has helped our organization with custom events to track specific cases."
"Security Onion has positively impacted my organization by greatly improving our security posture, making alert triage easier to handle, simplifying the analysis of threats, and decreasing the cost of threat analysis and detection."
"We use Security Onion for internal vulnerability assessment."
"The most valuable feature of Security Onion for security monitoring is its ability to find infected ports."
"Security Onion is the most mature solution in the market."
 

Cons

"It can be overwhelming for new people as it has a lot of features."
"We primarily use the log management functionality, and the only feedback I have there is better fuzzy text searching in logs (the kind that Kibana has)."
"The product could do better with its notifications. I want more technical support than conferences because technical support helps with setting up the product much easier."
"We would really like to see more from the Service Catalog."
"Technical support is slow. It takes forever to get responses from the support team."
"The PagerDuty integration could be a little bit better."
"I've only been using Datadog for a few months, and at first, it was frankly overwhelming in terms of both the UI and the available capabilities."
"In terms of UI, everything is very small, which makes it quite difficult to navigate at times."
"The initial setup of the solution is a little bit difficult."
"For Security Onion, setting up and configuring the system can be quite challenging for newcomers due to the need for a grasp of networking and security concepts."
"Security Onion's user interface could be improved."
"The product is not easy to learn."
 

Pricing and Cost Advice

"Pricing and licensing are reasonable for what they give you. You get the first five hosts free, which is fun to play around with. Then it's about four dollars a month per host, which is very affordable for what you get out of it. We have a lot of hosts that we put a lot of custom metrics into, and every host gives you an allowance for the number of custom metrics."
"This solution is budget friendly."
"It has a module-based pricing model."
"It didn't scale well from the cost perspective. We had a custom package deal."
"The pricing and licensing through AWS Marketplace has been good. It would be nice if it was cheaper, but their pricing is reasonable for what it is. Sometimes, for their newer features, they charge as if it's fully fleshed out, even though it is a newer feature and it may have less stuff than their other items."
"The price is better than some competing products."
"If you do your homework, you'll find that if you're really concerned with cost, it's good."
"At my last company, we did see ROI, specifically around response time. We could get to mission critical things that were down and losing revenue on immediately. So, the product paid itself back."
"It is an open-source solution."
"Security Onion is a free solution."
"Security Onion is an open-source solution."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Manufacturing Company
9%
Computer Software Company
9%
Outsourcing Company
6%
University
12%
Comms Service Provider
11%
Government
10%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business82
Midsize Enterprise49
Large Enterprise100
No data available
 

Questions from the Community

Any advice about APM solutions?
There are many factors and we know little about your requirements (size of org, technology stack, management systems, the scope of implementation). Our goal was to consolidate APM and infra monitor...
Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
With Datadog, we have near-live visibility across our entire platform. We have seen APM metrics impacted several times lately using the dashboards we have created with Datadog; they are very good c...
Which would you choose - Datadog or Dynatrace?
Our organization ran comparison tests to determine whether the Datadog or Dynatrace network monitoring software was the better fit for us. We decided to go with Dynatrace. Dynatrace offers network ...
Ask a question
Earn 20 points
 

Comparisons

 

Overview

 

Sample Customers

Adobe, Samsung, facebook, HP Cloud Services, Electronic Arts, salesforce, Stanford University, CiTRIX, Chef, zendesk, Hearst Magazines, Spotify, mercardo libre, Slashdot, Ziff Davis, PBS, MLS, The Motley Fool, Politico, Barneby's
Information Not Available
Find out what your peers are saying about Datadog vs. Security Onion and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.