No more typing reviews! Try our Samantha, our new voice AI agent.

Devo vs ExtremeAnalytics comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 1, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Devo
Ranking in IT Operations Analytics
7th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
23
Ranking in other categories
Log Management (27th), Security Information and Event Management (SIEM) (26th), AIOps (19th)
ExtremeAnalytics
Ranking in IT Operations Analytics
15th
Average Rating
0.0
Reviews Sentiment
7.5
Number of Reviews
3
Ranking in other categories
Network Management Applications (25th)
 

Mindshare comparison

As of May 2026, in the IT Operations Analytics category, the mindshare of Devo is 4.5%, down from 5.6% compared to the previous year. The mindshare of ExtremeAnalytics is 2.3%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IT Operations Analytics Mindshare Distribution
ProductMindshare (%)
Devo4.5%
ExtremeAnalytics2.3%
Other93.2%
IT Operations Analytics
 

Featured Reviews

FR
Strategic Account Executive at a computer software company with 51-200 employees
Has improved investigative workflows with interactive dashboards and simplified data correlation
The data analytics cloud component focuses on real-time analytics, which is very impressive. The SIEM collects and correlates logs data from different sources and can integrate with ServiceNow, hardware asset management, and software asset management. The security orchestration, automation, and response (SOAR) is another valuable feature. The security data platform serves as the foundation of Devo. Regarding advanced query capabilities, Devo offers several models including query logs, visual query builder, language integrated query, and SQL, with SQL being the most frequently used querying data capability. The single pane of glass that Devo offers is the SOC. The tools in Devo's active ports are for investigating, not just viewing data. They are more interactive than other market solutions. The drill-down reports capabilities allow analysts to click on any element in a widget. When they see a spike in a line chart for a failed login, which could be a true or false attempt, they can click that spike, and a table widget on the same active board instantly populates with raw logs of data for those specific failed logins. This is particularly important for enterprise companies with numerous endpoints and users. The dynamic filtering of inputs significantly reduces the time cybersecurity analysts spend trying to figure out failed logins and identifying false positives.
WA
Management Board Member and Network Engineer at NewLogics
Great solution to collect analytics on customer usage with valuable response latency
We use ExtremeAnalytics for public venues and to collect information about customer usage. We also use this solution to monitor the application performance and troubleshoot network or latency issues. We use it to collect analytics about the visitors for public opinion The application response…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's very, very versatile."
"In traditional BI solutions, you need to wait a lot of time to have the ability to create visualizations with the data and to do searches. With this kind of platform, you have that information in real-time."
"We can ingest virtually any log source, which is much better than our previous solution."
"Being able to build and modify dashboards on the fly with Activeboards streamlines my analyst time because my analysts aren't doing it across spreadsheets or five different tools to try to build a timeline out themselves. They can just ingest it all, build a timeline out across all the logging, and all the different information sources in one dashboard. So, it's a huge time saver. It also has the accuracy of being able to look at all those data sources in one view. The log analysis, which would take 40 hours, we can probably get through it in about five to eight hours using Devo."
"Those 400 days of hot data mean that people can look for trends and at what happened in the past. And they can not only do so from a security point of view, but even for operational use cases. In the past, our operational norm was to keep live data for only 30 days. Our users were constantly asking us for at least 90 days, and we really couldn't even do that. That's one reason that having 400 days of live data is pretty huge. As our users start to use it and adopt this system, we expect people to be able to do those long-term analytics."
"Devo's speed and performance allows us to query in real-time and keep up with what is actually happening on the network, then respond effectively to events."
"I'm so happy with the platform."
"The most valuable feature is that it has native MSSP capabilities and maintains perfect data separation. It does all of that in a very easy-to-manage cloud-based solution."
"The most valuable feature of ExtremeAnalytics is wireless intrusion prevention."
"The application response latency is valuable and suitable for troubleshooting."
"The solution's scalability is a ten out of ten."
"The initial setup of ExtremeAnalytics is straightforward and user-friendly."
 

Cons

"Some of the documentation could be improved a little bit. A lot of times it doesn't go as deep into some of the critical issues you might run into."
"From our experience, the Devo agent needs some work. They built it on top of OS Query's open-source framework, and it seems like it wasn't tuned properly to handle a large volume of Windows event logs."
"The overall performance of extraction could be a lot faster, but that's a common problem in this space in general."
"However, the incident and threat detection is not what we had hoped for."
"There's always room to reduce the learning curve over how to deal with events and machine data."
"Technical support needs to be more direct. For example, when we submit a ticket, the support team will delegate a task to the operations team, for example, or various other teams."
"There is room for improvement in the ability to parse different log types. I would go as far as to say the product is deficient in its ability to parse multiple, different log types, including logs from major vendors that are supported by competitors."
"The tools in Devo's active ports need enhancement in their investigative capabilities."
"There are issues with cloud distribution of the servers, and it could be faster."
"ExtremeAnalytics could improve application control. The URL filtering is not working properly."
"ExtremeAnalytics could improve application control. The URL filtering is not working properly. We have had issues with the reports and heat maps not working as expected. We have been receiving download errors when attempting to retrieve the heat maps and reports."
"The solution's stability needs to be improved."
 

Pricing and Cost Advice

"Pricing is based on the number of gigabytes of ingestion by volume, and it's on a 30-day average. If you go over one day, that's not a big deal as long as the average is what you expected it to be."
"Devo is a hosted or subscription-based solution, whereas before, we purchased QRadar, so we owned it and just had to pay a maintenance fee. We've encountered this with some other products, too, where we went over to subscription-based. Our thought process is that with subscription based, the provider hosts and maintains the tool, and it's offsite. That comes with some additional fees, but we were able to convince our upper management it was worth the price. We used to pay under 10k a year for maintenance, and now we're paying ten times that. It was a relatively tough sell to our management, but I wonder if we have a choice anymore; this is where the market is."
"Be cautious of metadata inclusion for log types in pricing, as there are some "gotchas" with that."
"The way Devo prices things is based on the amount of data, and I wish the tiers had more granularity. Maybe at this point they do, but when we first negotiated with them, there were only three or four tiers."
"I rate the pricing a four on a scale of one to ten, where one is cheap, and ten is expensive."
"[Devo was] in the ballpark with at least a couple of the other front-runners that we were looking at. Devo is a good value and, given the quality of the product, I would expect to pay more."
"It's a per gigabyte cost for ingestion of data. For every gigabyte that you ingest, it's whatever you negotiated your price for. Compared to other contracts that we've had for cloud providers, it's significantly less."
"Devo is definitely cheaper than Splunk. There's no doubt about that. The value from Devo is good. It's definitely more valuable to me than QRadar or LogRhythm or any of the old, traditional SIEMs."
"The price of the solution is approximately $100 to $120 and is paid annually."
"The pricing is an eight out of ten."
report
Use our free recommendation engine to learn which IT Operations Analytics solutions are best for your needs.
893,164 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Construction Company
8%
Computer Software Company
8%
Outsourcing Company
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise11
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Devo?
Compared to Splunk or SentinelOne, it is really expensive. I rate the product’s pricing a nine out of ten, where one is cheap and ten is expensive.
What needs improvement with Devo?
The single pane of glass that Devo offers could be improved. The tools in Devo's active ports need enhancement in their investigative capabilities. The drill-down reports capabilities, while useful...
What is your primary use case for Devo?
During my time at MetaBase Q and as a partner integrator of ServiceNow, I had the chance to understand and be part of projects integrating SOCs, NOCs, and Security Operation Centers with Devo. Most...
What needs improvement with ExtremeAnalytics?
The solution's stability needs to be improved.
What is your primary use case for ExtremeAnalytics?
It gives us insight into the network health. This helps us understand what is wrong with the limit of the wireless solution or device.
 

Also Known As

No data available
Extreme Application Analytics, Purview
 

Overview

 

Sample Customers

United States Air Force, Rubrik, SentinelOne, Critical Start, NHL, Panda Security, Telefonica, CaixaBank, OpenText, IGT, OneMain Financial, SurveyMonkey, FanDuel, H&R Block, Ulta Beauty, Manulife, Moneylion, Chime Bank, Magna International, American Express Global Business Travel
Information Not Available
Find out what your peers are saying about Devo vs. ExtremeAnalytics and other solutions. Updated: April 2026.
893,164 professionals have used our research since 2012.