


Exabeam and Tines compete in the security information and event management (SIEM) solutions category. Data comparisons show Tines has the upper hand due to its advanced features and flexibility.
Features: Exabeam offers comprehensive security analytics, extensive threat detection technology, and an intuitive interface for simplifying security processes. Tines provides sophisticated automation capabilities, seamless integration with various tools, and handles complex security workflows, appealing to those desiring high automation and integration flexibility.
Ease of Deployment and Customer Service: Exabeam provides straightforward deployment with excellent customer support for guidance and troubleshooting. Tines offers a highly flexible deployment model, benefiting those looking to optimize automation quickly, with tailored support aiding in swift adaptation, appealing for immediate integration.
Pricing and ROI: Exabeam involves higher upfront setup costs, offering robust ROI through advanced analytics and security insights over time. Tines presents a lower initial investment with potent automation and integration features ensuring rapid returns. The attractive pricing model of Tines delivers significant ROI in shorter time frames, popular for immediate gains.
Since we started working with Torq, I am handling much fewer alerts. It is becoming really easy for me to handle an alert.
We have seen a return on investment, targeting a $600,000 ROI for the year.
By the time we officially bought Torq, we already had two workflows that were very helpful to us.
Exabeam offers more machine learning models that detect anomalies.
I have seen a return on investment with Exabeam Fusion SIEM, and it is worth the money.
I can speak for fewer employees needed because we used to require many analysts to deal with all the alerts that we were generating, but now we have about 90 to 95% of the alerts already automated through Tines, which requires tremendous time saved and a ton of reduction in the number of analysts required.
In some domains, we were in a position to actually let go of people, meaning at least two people have been reduced from one team, which saves a lot of cost for the organization.
We did not see proper value in it, whereas other platforms would have given much higher value for us.
My impression of their technical support during the initial setup was that they were helpful, responded within a reasonable timeframe, and provided exactly what we needed.
The speed and quality of their answers have been pretty good, as I usually get a response within 24 hours, and they follow up well.
We can always get an answer, and the support team are experts in their own system.
Even with TAM support from Exabeam, many issues go unresolved.
I would rate Exabeam Fusion SIEM support team a nine out of ten; I do not give anyone a perfect score.
I also had the chance to look at the documentation, and the documentation is good.
Whenever we hit roadblocks or issues with the platform or story, even if it was our mistake, the people from the most senior engineering team of Tines immediately were willing to get on call with us.
I would rate the customer support a ten on a scale of one to ten.
The support and engineering team is quick to resolve bugs and respond promptly.
Our case management is super scalable.
In terms of scalability, you can do as long as you can build it, and they can support it.
Regarding the ability of the solution to grow in your work environment, if it is scalable, if it fits your business requirements, and if there is room to scale up, the answer is yes, for sure.
I believe Exabeam Fusion SIEM is excellent regarding scalability, and I would rate it at approximately an eight out of ten.
Regarding Exabeam's scalability and how well it adapts to its customers' needs, I would rate it an eight.
It is built for growing teams and has more complex automation capacity.
Whenever this became insufficient, we could easily reach out to the Tines team where they immediately gave us a remedy or fixed the issue.
From the workloads we have, it can scale for different workflows and add more workflows.
We have been using Torq for one and a half years, but we have experienced no downtime.
Most of the time, the system is stable as long as the components that they integrate with are stable.
I have never faced any downtime or issues.
These problems were not frequent, and the last six to eight months have been stable.
Regarding stability, I would rate Exabeam Fusion SIEM at approximately eight to eight and a half out of ten because it is very stable.
Overall, I think Exabeam's stability level is good.
The tool is stable up to ninety-nine point nine percent.
Tines is very stable.
Torq should offer default templates that can directly scan firewall data and automate actions.
The AI value depends on maturity. Real value depends heavily on telemetry, integration depth, and workflow design, all of which rely on how mature customers are in their SOC department.
It was able to capture data but was unable to differentiate between the agent hostname we are using and the hostname that resides on the back end of the Internet.
Exabeam needs to improve its documentation and provide more customization for dashboards and case management.
I have explored the SaaS version; it offers many new features.
Exabeam's integration capabilities are not good, as Exabeam has a very limited number of integrations and no out-of-box integration.
Reporting and dashboards could be more advanced for deeper analysis.
The issue with the Implode action is that once we get a certain number of events into the Implode action, we lose context of all the events except the last one that came in, so it is a bit difficult to send data back once it goes through the Implode action.
I think they need to add more intelligence to the workflow layer because, depending upon what they have right now, it could be possible for Claude or Copilot or ChatGPT to have that feature quickly.
When they bring more and more value into the platform, it makes more sense to pay that price, but still, it is expensive.
Before deciding to implement Torq, I considered that compared to our old case management platform, Torq was a much better price and had a lot better value for what you get out of the platform, which was a key consideration for the company.
It is an expensive solution, not an inexpensive solution, but we get through the flexibility.
The pricing for Exabeam Fusion SIEM is not cost prohibitive, but it was a little more than I initially thought.
Tines required no setup cost since we just used their cloud tier and built everything with internal engineering resources.
My experience with pricing, setup cost, and licensing is very good.
I did not handle the purchasing side, so I did not actually know the exact pricing or the licensing details.
Torq's unified platform approach to AI SOC automation and case management has significantly benefited us by integrating the case management platform with the automation, which saves time compared to managing multiple point solutions across our security stack.
The fact that I can build whatever I want within my own imagination and skills without relying on code is the best thing about Torq.
You can copy and paste a cURL command. If you have documentation or APIs, you usually have an example on the side. You basically have all the information on how the API call should be. You can just copy that and paste it into a step, and it will just build the step for you.
Exabeam's AI capabilities, like the natural language mode, convert natural language into Exabeam queries, enhancing ease of use.
The product offers useful features like the dashboard, timeline, and session views, which enhance our security tools.
Exabeam's UEBA is the most valuable feature that I have found so far.
It helps in streamlining our security operations effectively and efficiently without requiring coding knowledge.
What stands out mostly about Tines's features is the integrations. It connects easily with tools such as Slack, emails, and spreadsheets, and it makes data moves automatically without much work.
Tines caught the failure and queued them automatically. We did not lose a single student log.
| Product | Mindshare (%) |
|---|---|
| Torq | 3.8% |
| Tines | 4.5% |
| Exabeam | 3.1% |
| Other | 88.6% |

| Company Size | Count |
|---|---|
| Small Business | 2 |
| Midsize Enterprise | 5 |
| Large Enterprise | 5 |
| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 5 |
| Large Enterprise | 7 |
| Company Size | Count |
|---|---|
| Small Business | 2 |
| Midsize Enterprise | 1 |
| Large Enterprise | 4 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
Exabeam offers intuitive interfaces, detailed dashboards, and powerful analytics to enhance security investigations. Its machine learning detects complex threats with automation streamlining tasks for efficiency and integration with AWS.
Exabeam stands out with its robust cybersecurity management capabilities, offering advanced user behavior analytics and incident detection tools. Security teams can use its systems to monitor events, create investigative timelines, and analyze log data. While praised for easy use, it benefits from initial training for optimal utilization. Challenges include the need for better flexibility, cost-management, and enhanced AI integration. However, it facilitates seamless AWS integration, real-time updates, and vulnerability prioritization within business contexts. Improvements in dashboard customization and overall performance, especially in UI and log ingestion, could enhance usability.
What are Exabeam's key features?Exabeam is widely used across industries such as finance and government for cybersecurity management. Organizations leverage its capabilities for integrating logs, protecting sensitive environments, and supporting compliance efforts. Its tools aid in detecting anomalies and managing security operations within infrastructures effectively.
Tines offers no-code and low-code automation for users to automate tasks without coding expertise, integrating seamlessly with APIs to enhance incident management and security operations.
Known for a vendor-neutral approach, Tines provides detailed documentation and live chat support, allowing for effective integration with other tools, scheduling capabilities, and streamlined processes that save time and effort. Users find it intuitive for efficient task handling, making manual intervention unnecessary. Challenges include the need for more comprehensive documentation and instructional videos, as well as improvements in AI integration and reporting aesthetics. Pricing is also noted as higher compared to alternatives.
What are the most important features of Tines?Tines primarily serves organizations in the security sector, automating security operations such as alert detection and managed detection and response. It's utilized extensively in security operation centers for tasks like phishing email processing, ticket creation, IOC investigations, and ticket assignments within enterprise security frameworks, with multiple teams delivering Tines services to enhance task handling efficiency.
We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.