


Elastic Security and Swimlane are competing in cybersecurity, with Elastic Security being noted for affordability and customer support, while Swimlane offers a richer feature set prioritizing functionality.
Features: Elastic Security provides real-time threat detection, easy integration with data sources, and detailed data analysis. Swimlane is known for automation capabilities, customizable workflows, and extensive integration options. Elastic Security focuses on data precision, whereas Swimlane excels in automated responses.
Ease of Deployment and Customer Service: Elastic Security is known for its easy deployment process and strong customer support. Swimlane has a complex deployment but benefits from excellent customer service to implement its capabilities effectively.
Pricing and ROI: Elastic Security offers a lower initial cost with scalable solutions, ensuring a good ROI. Swimlane has a higher setup cost but justifies it with enhanced features and automation, providing significant ROI for those needing extensive functionality.
Since we started working with Torq, I am handling much fewer alerts. It is becoming really easy for me to handle an alert.
We have seen a return on investment, targeting a $600,000 ROI for the year.
I have seen a return on investment with Torq, as the automation reduces the number of employees needed and significantly saves both time and resources.
It does not require hefty security budgets and can be deployed for enterprise security effectively.
Swimlane saves us 80 to 90 percent of our time by quickly helping us design the journey and efficiently passing information to various components.
We have seen a return on investment; with the same number of engineers, we now handle double the number of customers, even with the new, larger customers requiring dedicated teams.
If everything is automated, we can filter out false positives or true positives, allowing for UI customization where the SOC analysts can trigger notifications and actions with buttons to create another playbook or automate using cron jobs, saving time for the SOC analyst team.
My impression of their technical support during the initial setup was that they were helpful, responded within a reasonable timeframe, and provided exactly what we needed.
The speed and quality of their answers have been pretty good, as I usually get a response within 24 hours, and they follow up well.
We can always get an answer, and the support team are experts in their own system.
Support is prompt and helpful.
Most of the time when my team encounters issues, they receive responses within 24 hours.
I have not faced any difficulties with Elastic Security, as we have a pretty good support service from them.
When I raise a ticket, they reply within half an hour with an initial response, signifying that an agent has been assigned and is working on the issue.
They are attentive, responsive, and work to resolve issues efficiently.
They provided assistance within the same hour.
Its scalability is good because it has a cloud-native architecture and it expands dynamically to handle thousands of alerts at the same time.
Our case management is super scalable.
In terms of scalability, you can do as long as you can build it, and they can support it.
It allows us to think about specific use cases, such as gathering malicious IPs in a single view and analyzing threats based on geolocation.
Elastic Security is quite scalable.
Swimlane should have the capability to be moved out of Appian and integrated with other platforms.
Standalone deployments are available for fewer users, ensuring Swimlane can handle multiple users without crashing.
We did not encounter issues even when managing thousands of alerts, as scalability is only limited by our instance's server capacity.
We have been using Torq for one and a half years, but we have experienced no downtime.
Most of the time, the system is stable as long as the components that they integrate with are stable.
I have never faced any downtime or issues.
In terms of stability, I would rate Elastic a solid eight out of ten.
I haven't seen any production issue or anything coming up because of Swimlane.
We encountered issues requiring restarts and losing alerts.
The version we had was kind of buggy, but support indicated we just needed to do updates to resolve the issues.
Torq should offer default templates that can directly scan firewall data and automate actions.
The AI value depends on maturity. Real value depends heavily on telemetry, integration depth, and workflow design, all of which rely on how mature customers are in their SOC department.
It was able to capture data but was unable to differentiate between the agent hostname we are using and the hostname that resides on the back end of the Internet.
CrowdStrike and Defender have more established threat intelligence integration due to having a larger client base.
My security testing team continuously reports vulnerabilities, and we have to fix and update the versions frequently.
Machine learning algorithms become better with time; as they ingest a huge volume of data, they become better.
Despite being advertised as a no-code tool, it remains code-reliant, demanding users to build solutions through coding.
In the orchestration tab, it would be helpful to have a list of playbooks where a particular asset or connector is used.
Colors can be used for the prioritization of risks and the significance of information.
When they bring more and more value into the platform, it makes more sense to pay that price, but still, it is expensive.
Before deciding to implement Torq, I considered that compared to our old case management platform, Torq was a much better price and had a lot better value for what you get out of the platform, which was a key consideration for the company.
It is an expensive solution, not an inexpensive solution, but we get through the flexibility.
The pricing is reasonable, especially for Small Medium Enterprises (SMEs), making it a viable option for businesses building their security infrastructure.
This is beneficial for SMEs as they do not need extensive budgets for security solutions.
Elastic Security is considered cost-effective, especially at lower EPS levels.
Swimlane is cheaper than other SOAR platforms.
In terms of pricing, Swimlane is on the slightly expensive side.
the pricing was very nice with a great discount.
Torq's unified platform approach to AI SOC automation and case management has significantly benefited us by integrating the case management platform with the automation, which saves time compared to managing multiple point solutions across our security stack.
The fact that I can build whatever I want within my own imagination and skills without relying on code is the best thing about Torq.
You can copy and paste a cURL command. If you have documentation or APIs, you usually have an example on the side. You basically have all the information on how the API call should be. You can just copy that and paste it into a step, and it will just build the step for you.
Elastic Security offers good insight regarding alerts, reports, and cases.
Elastic Security offers advanced features such as machine learning and integration with ChatGPT.
We require rapid processing speed for alerts and event data, and Elastic Security is very efficient at handling this level of data.
Its integration capabilities allow connections to various platforms, enhancing its usability.
It helps in clearly identifying the roles, timeline, and actions involved in the workflow, offering a comprehensive depiction of the entire process.
As a solution architect, I use various software, and the most important thing is that Swimlane is an easily designed and learnable software.
| Product | Mindshare (%) |
|---|---|
| Torq | 3.6% |
| Swimlane | 2.6% |
| Elastic Security | 5.1% |
| Other | 88.7% |

| Company Size | Count |
|---|---|
| Small Business | 4 |
| Midsize Enterprise | 5 |
| Large Enterprise | 9 |
| Company Size | Count |
|---|---|
| Small Business | 40 |
| Midsize Enterprise | 12 |
| Large Enterprise | 15 |
| Company Size | Count |
|---|---|
| Small Business | 3 |
| Midsize Enterprise | 2 |
| Large Enterprise | 8 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
Elastic Security stands out for its speed, scalability, and intuitive interface. It integrates seamlessly with Elasticsearch and Kibana, providing efficient data indexing, centralized log management, and intelligent threat identification, all while being open-source.
Elastic Security offers robust capabilities in security monitoring, threat identification, and SIEM functionalities. Its open-source nature enhances scalability, facilitating log aggregation and infrastructure monitoring. Users appreciate the intuitive dashboards and machine learning integration, which aid in proactive security measures and anomaly detection. Despite its strengths, improvements are needed in documentation, scalability, and configuration complexity. High data volume pricing and limited machine learning support are concerns, while dashboard enhancement and seamless integration with existing systems are desirable. The platform is widely used for alerting suspicious activities, analyzing logs from firewalls and Active Directory, and providing endpoint protection. It serves as a key tool for security awareness and auditing, integrating effectively with technologies like Kibana and OpenShift.
What are the most notable features of Elastic Security?Organizations deploy Elastic Security across industries for log aggregation and security monitoring, detecting unauthorized access, and analyzing system logs. It is essential for infrastructure monitoring and integrates effectively with systems such as Fluentd and OpenShift, supporting comprehensive security views across enterprise environments.
Swimlane provides a centralized platform for security orchestration, automation, and response. It enhances operational efficiency and reduces workloads through drag-and-drop task automation and integration capabilities.
Swimlane empowers IT teams by streamlining tasks with minimal coding, offering extensive customization, and enabling efficient incident response. Its features include centralized logging, visual workflow representation, and integration with third-party tools. Swimlane's task persistence and case management improve operational control but face issues with stability and latency. While marketed as a no-code platform, setup complexity requires skilled developers. Enhancing search, AI, and scalability is vital for improved usage in multinational environments.
What are Swimlane's essential features?In industries like IT and security, Swimlane serves as a SOAR platform for incident management and enriched alert integration. It's used for designing customer journey architectures and task assignments in multinational environments, despite requiring improvements in its initial setup and orchestration.
We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.