No more typing reviews! Try our Samantha, our new voice AI agent.

Elastic Observability vs Security Onion comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Elastic Observability
Ranking in Log Management
14th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
29
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th), IT Infrastructure Monitoring (13th), Container Monitoring (6th), Cloud Monitoring Software (11th)
Security Onion
Ranking in Log Management
22nd
Average Rating
7.8
Reviews Sentiment
7.2
Number of Reviews
4
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Log Management category, the mindshare of Elastic Observability is 1.3%, down from 1.3% compared to the previous year. The mindshare of Security Onion is 1.7%, down from 4.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Elastic Observability1.3%
Security Onion1.7%
Other97.0%
Log Management
 

Featured Reviews

Stefan Decuypere - PeerSpot reviewer
Technology Consultant at Hybrid software
Real-time dashboards and visual insights have streamlined issue analysis and monitoring
After careful consideration about areas for improvement in Elastic Observability, aspects such as pricing, customization, implementation, and scalability could be improved. As a user of the system, I know what it costs but am not directly involved in cost-benefit evaluations or maintenance, which is handled by another team. I develop the visual representation of the data and frankly, I don't see major gaps in my application or anything I would really miss; I appreciate the fast pace of the developments that have occurred in the last couple of years. Regarding room for improvement in Elastic Observability, I would have preferred built-in tools to manage the indexes on deployment for better visual representation, as the initial feedback regarding system performance and data storage was fairly primitive and lacking.
Hiten Nandasana - PeerSpot reviewer
Angular developer at Flourish software
Centralized monitoring has strengthened threat detection and supports faster incident investigations
Security Onion is a completely open-source and free platform, making it a cost-effective solution that works smoothly and effectively for our organization. Security Onion integrates well with our existing tools, primarily using Linux systems in our organization, allowing us to monitor logs and manage threat detection and operations in the public cloud effectively. Security Onion is very helpful in meeting compliance requirements and supports regular standards for our environment. I advise organizations that use Linux or have network security knowledge to consider Security Onion, as it satisfies requirements such as threat detection and log management systems. I would rate this review eight out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's easy to deploy, and it's very flexible."
"The solution is open-source and helps with back-end logging. It is also easy to handle."
"Good design and easy to use once implemented."
"I have built a mini business intelligence system based on Elastic Observability."
"For full stack observability, Elastic is the best tool compared with any other tool like New Relic or AppDynamics or Dynatrace."
"The architecture and system's stability are simple."
"Elastic Observability significantly improves incident response time by providing quick access to logs and data across various sources. For instance, searching for specific keywords in logs spanning over a month from multiple data sources can be completed within seconds."
"In addition to the fact that we are more proactive in the detection of incident before they occur, we can on one click see the request path from the customer to the backend."
"Security Onion is the most mature solution in the market."
"We use Security Onion for internal vulnerability assessment."
"Security Onion is a completely open-source and free platform, making it a cost-effective solution that works smoothly and effectively for our organization."
"The most valuable feature of Security Onion for security monitoring is its ability to find infected ports."
 

Cons

"Elastic Observability could improve asset discovery as the current requirement to push the agent is not ideal."
"If we had some pre-defined templates for observability that we could start using right away after deploying it – instead of having to build or to change some of the dashboards – that would be helpful."
"Elastic support really struggles in complex situations to resolve issues."
"The price is the only issue in the solution. It can be made better and cheaper."
"Simplifying the parsing of logs and manual efforts would also be beneficial."
"The solution needs to use more AI. Once the product onboards AI, users would more effectively be able to track endpoints for specific messages."
"Elastic Observability is reactive rather than proactive. It should act as an ITSM tool and be able to create tickets and alerts on Jira."
"There is room for improvement regarding its APM capabilities."
"Security Onion's user interface could be improved."
"Security Onion can be made easier to set up initially, as it is somewhat difficult at the start, but once configured, it becomes a great tool to use."
"The product is not easy to learn."
"The initial setup of the solution is a little bit difficult."
 

Pricing and Cost Advice

"The product is not that cheap."
"Elastic Observability's pricing could be better for small-scale users."
"Users have to pay for some features, like the alerts on different channels, because they are unavailable in different source versions."
"Since we are a huge company, Elastic Observability is an affordable solution for us."
"The price of Elastic Observability is expensive."
"Elastic Observability is cheaper than other similar solutions, such as Dynatrace. Its license calculation is based on various factors like data volume and physical infrastructure, particularly related to RAM capacity."
"Pricing is one of those situations where the more you use it, the more you pay."
"We have been using the open-source version."
"It is an open-source solution."
"Security Onion is a free solution."
"Security Onion is an open-source solution."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
913,806 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
9%
Comms Service Provider
7%
Manufacturing Company
7%
Comms Service Provider
12%
University
12%
Government
10%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise16
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Elastic Observability?
The problem is their licensing model, which is a bit confusing. Many customers struggle to understand their total cost of ownership because Elastic licensing is not dependent on easy, quantifiable ...
What needs improvement with Elastic Observability?
After careful consideration about areas for improvement in Elastic Observability, aspects such as pricing, customization, implementation, and scalability could be improved. As a user of the system,...
What is your primary use case for Elastic Observability?
My use case for Elastic Observability is observability, as we upload our customers' data, including logs, and when there is an issue, we can analyze what went wrong.
What is your experience regarding pricing and costs for Security Onion?
Security Onion does not require any cost, as it is open-source and free.
What needs improvement with Security Onion?
Security Onion can be made easier to set up initially, as it is somewhat difficult at the start, but once configured, it becomes a great tool to use. I assigned a rating of eight out of ten because...
What advice do you have for others considering Security Onion?
Security Onion is a completely open-source and free platform, making it a cost-effective solution that works smoothly and effectively for our organization. Security Onion integrates well with our e...
 

Overview

 

Sample Customers

PSCU, Entel, VITAS, Mimecast, Barrett Steel, Butterfield Bank
Information Not Available
Find out what your peers are saying about Elastic Observability vs. Security Onion and other solutions. Updated: September 2026.
913,806 professionals have used our research since 2012.