No more typing reviews! Try our Samantha, our new voice AI agent.

Falcon LogScale vs LogRhythm SIEM comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
4.9
Falcon LogScale boosts ROI by 20-40%, enhancing efficiency with faster queries and reduced manual log collection efforts.
Sentiment score
4.5
LogRhythm SIEM enhances security, efficiency, and compliance, offering rapid threat detection and cost-effectiveness, especially for medium-sized organizations.
You save man hours, and man hours convert to business time and money time as well.
Cyber Security Engineer at eprocessconsulting
Falcon LogScale helps ease this process and sends logs to XDR for further verification.
IT System Administrator at a tech vendor with 201-500 employees
I have definitely seen ROI with Falcon LogScale so far.
CTO at Trust-IT Solutions
 

Customer Service

Sentiment score
6.1
Customer opinions on Falcon LogScale vary, praising support and updates, but noting delays and inconsistent experiences.
Sentiment score
5.5
LogRhythm SIEM's support is praised for efficiency and expertise, though some users note occasional variability in service quality.
I would rate the customer support a 10 on a scale of one to 10.
Developer at a manufacturing company with 201-500 employees
I raised a customer support request, and in response, they released a new version with a fix for that problem.
IT System Administrator at a tech vendor with 201-500 employees
The information contained in Falcon LogScale's documentation is very clear.
CTO at Trust-IT Solutions
The technical support is good; we have a separate portal for partners, and since we are paying for the service, they provide a response timeframe based on severity—critical issues are addressed within four hours, medium issues within one day, and non-urgent issues may take a couple of days.
Cyber Security Engineer at Diyar United Company
LogRhythm SIEM is quite complex, but that complexity allows us to specifically tailor a solution to the customer while some others are not as flexible.
Engineer Information Security at N-Able (Pvt) Ltd
Customer support is very helpful and effectively solves my problems.
Product Development - Security Solutions Manager at Aplikanusa Lintasarta
 

Scalability Issues

Sentiment score
7.5
Falcon LogScale excels in scalability and performance, efficiently managing high data volumes with ease and adaptability.
Sentiment score
6.6
LogRhythm SIEM excels in scalability and adaptability for growth, despite hardware and licensing challenges in high-volume environments.
If there is a critical incident with an associated IP, associated user, endpoints, or whatever factor it is supposed to associate, it associates it by default and makes our life easier, making the SOC life easier.
Security Consultant at a tech vendor with 10,001+ employees
You could integrate as many endpoints as you want within a fraction of seconds, and it accommodates the number of resources that you integrate with it while maintaining the same response time.
Cyber Security Engineer at eprocessconsulting
Easily supports thousands of endpoints and servers across multiple locations without heavy infrastructure.
Soc Analyst at Softcell Technologies Limited
LogRhythm SIEM is highly scalable as it has modular components allowing me to expand storage, indexing, or other resources as needed.
Product Development - Security Solutions Manager at Aplikanusa Lintasarta
LogRhythm SIEM is scalable; it can handle about 200 or 500 devices without much difference.
Cyber Security Engineer at Diyar United Company
The scalability of LogRhythm SIEM is good enough, warranting an eight out of ten rating.
Security Engineer at Granicus Inc.
 

Stability Issues

Sentiment score
8.4
Falcon LogScale is praised for its stability, reliability, efficient data handling, and robust real-time log search capabilities.
Sentiment score
5.0
LogRhythm SIEM is stable and resilient, though some experience hardware issues and setup challenges under high data volumes.
It uses an index-free architecture, it does not suffer from index corruption or the complications that other legacy tools face.
Soc L1 Engineer at Softcell Technologies Limited
Falcon LogScale is very strong in real-time log search.
Soc Analyst at a tech consulting company with 11-50 employees
We did not have any problems with Falcon LogScale in terms of stability and reliability.
CTO at Trust-IT Solutions
The platform needs regular updates to fix problems encountered with each quarterly patch and version release.
Product Development - Security Solutions Manager at Aplikanusa Lintasarta
LogRhythm SIEM still needs improvement regarding stability, particularly in environments with heavy data consumption.
Security Engineer at Granicus Inc.
 

Room For Improvement

Falcon LogScale needs better query language, documentation, UX, integration, scalability, AI features, support speed, and affordability improvements.
LogRhythm SIEM needs improved integration, customization, performance, usability, better support, and enhanced documentation for optimal user experience.
For the ease of use for Falcon administrators, the same documentation on the Falcon LogScale portal should be on the CrowdStrike dashboard.
Cyber Security Engineer at eprocessconsulting
KQL is simpler when compared to SQL. However, SQL is faster and quite efficient, but the language is a bit tough.
Security Consultant at a tech vendor with 10,001+ employees
What they have done now is added what is called Charlotte AI, which is their new AI capabilities that can help with this.
CTO at Trust-IT Solutions
I have noticed some problems with parsing errors, event mismatches, and data mismatching, so ensuring accurate parsing and continuous improvement according to device updates are my basic expectations as a detection engineer.
Cyber Security Engineer at Diyar United Company
There is currently no way to determine how much data is being consumed in terms of gigabytes, terabytes, or petabytes from particular devices or environments.
Security Engineer at Granicus Inc.
If LogRhythm SIEM could make a lightweight version of their solution, that would be quite competitive because some of my customers have a very large need but refuse to go with LogRhythm SIEM due to its complexity and high resource intensity.
Engineer Information Security at N-Able (Pvt) Ltd
 

Setup Cost

Falcon LogScale offers cost-effective and flexible pricing, praised for ease of deployment and competitive with major competitors.
LogRhythm SIEM offers competitive, transparent pricing suitable for medium to large businesses, with high initial setup costs.
I believe when it comes to log ingestion, it is comparatively low compared to any other services like Microsoft, Trend Micro, or Splunk.
Security Consultant at a tech vendor with 10,001+ employees
For us, it is a very cost-effective solution.
CTO at Trust-IT Solutions
My experience with pricing, setup cost, and licensing is that it is straightforward, and the cost is quite low.
Developer at a manufacturing company with 201-500 employees
The license cost is around $10 per MPS.
Product Development - Security Solutions Manager at Aplikanusa Lintasarta
I find LogRhythm SIEM affordable, as it is a bit less costly than QRadar.
Cyber Security Engineer at Diyar United Company
 

Valuable Features

Falcon LogScale integrates easily, offering real-time log ingestion, fast search, scalability, and powerful AI-driven security insights.
LogRhythm SIEM offers AI-powered features, seamless integration, and user-friendly dashboards for enhanced security and operational efficiency.
You can describe what you want to do in English, and it converts it to a query language for you to use.
Cyber Security Engineer at eprocessconsulting
Traditional SIEM tools index logs, which is slow and expensive. Falcon LogScale stores logs without heavy indexing and searches directly, making it very fast.
Soc Analyst at a tech consulting company with 11-50 employees
The best features in Falcon LogScale include searches of billions of logs in seconds, near-real-time ingestion and alerting, and index-free architecture, which makes queries faster and cheaper.
Soc Analyst at Softcell Technologies Limited
The seamless integration for case management, along with a user-friendly dashboard user interface, makes tasks like threat hunting more efficient.
Product Development - Security Solutions Manager at Aplikanusa Lintasarta
We have enough budget for cloud deployment, but we choose to keep it on-prem to ensure data privacy; cyberattacks are a concern, but data privacy is the foremost priority due to sensitive government information.
Cyber Security Engineer at Diyar United Company
This helps SOC analysts significantly as they can monitor all log sources through a dashboard, quickly identifying which sources haven't reported within their specified timeframes.
Security Engineer at Granicus Inc.
 

Categories and Ranking

Falcon LogScale
Ranking in Log Management
12th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
13
Ranking in other categories
No ranking in other categories
LogRhythm SIEM
Ranking in Log Management
14th
Average Rating
8.2
Reviews Sentiment
6.4
Number of Reviews
176
Ranking in other categories
Security Information and Event Management (SIEM) (11th)
 

Mindshare comparison

As of June 2026, in the Log Management category, the mindshare of Falcon LogScale is 0.9%, up from 0.6% compared to the previous year. The mindshare of LogRhythm SIEM is 2.8%, up from 2.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Falcon LogScale0.9%
LogRhythm SIEM2.8%
Other96.3%
Log Management
 

Featured Reviews

Oluwajuwon Olorunlona - PeerSpot reviewer
Cyber Security Engineer at eprocessconsulting
Advanced threat hunting has improved visibility and has simplified custom query automation
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforward. It is not easy to quickly find the documentation, especially if you are using CrowdStrike. Most customers use Falcon LogScale because of CrowdStrike. The documentation of Falcon LogScale is not on the CrowdStrike portal just like the rest of Falcon documentation. I usually find that the main Falcon LogScale documentation is found on the Falcon LogScale website itself. I think there should be a link or direct documentation within the CrowdStrike pages. It is not necessarily a fault. If you find where the documentation resides, you can trace it to what they are doing. However, for the ease of use for Falcon administrators, the same documentation on the Falcon LogScale portal should be on the CrowdStrike dashboard.
SumitKumar20 - PeerSpot reviewer
Security Engineer at Granicus Inc.
Tool consistently aids in effective threat detection and monitoring but could benefit from improved log source management and resource optimization
One major area for improvement in LogRhythm SIEM is the lack of volume measurement capability in terms of storage. There is currently no way to determine how much data is being consumed in terms of gigabytes, terabytes, or petabytes from particular devices or environments. This information is crucial for planning future storage needs and scalability. The system monitor (collector) agent has issues with resource consumption. Even when not actively collecting data, the agent continues to consume significant CPU and memory resources, which can be particularly problematic for small business environments with limited resources. LogRhythm SIEM could improve by adding more default device support. While they have good default settings for devices such as Palo Alto firewalls, custom log sources often require extensive work. Increasing the number of supported devices with built-in policies and functionality would reduce the need for custom work. Competitive SIEM tools often provide more comprehensive coverage for various devices and vendors.
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Manufacturing Company
10%
Media Company
8%
Comms Service Provider
8%
Construction Company
12%
Financial Services Firm
10%
Manufacturing Company
7%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise9
Large Enterprise3
By reviewers
Company SizeCount
Small Business38
Midsize Enterprise39
Large Enterprise83
 

Questions from the Community

What needs improvement with Falcon LogScale?
One area that needs improvement is performance during heavy log ingestion workloads. In our environment, there are situations where Falcon LogScale experiences delays while forwarding large amounts...
What is your primary use case for Falcon LogScale?
Falcon LogScale has significantly improved our security monitoring and investigation workflow. Before implementing Falcon LogScale and XDR integration, manual log analysis was time-consuming and di...
What advice do you have for others considering Falcon LogScale?
I would rate Falcon LogScale 9 out of 10. I recommend it for organizations looking for centralized log ingestion, integration with CrowdStrike XDR, and automated security analysis workflows.
What is the difference between log management and SIEM?
Rony, Daniel's answer is right on the money. There are many solutions for each in the market, a lot depends upon your ability to manage such tools and your budget. A small operation may be best s...
What needs improvement with LogRhythm NextGen SIEM?
LogRhythm SIEM could learn from Wazuh, as Wazuh has a built-in mechanism that allows you to write custom scripting and scripts through languages that Wazuh can then trigger, which is somewhat bette...
What is your experience regarding pricing and costs for LogRhythm SIEM?
I find LogRhythm SIEM affordable, as it is a bit less costly than QRadar, although I have not been involved in negotiation charges; however, from the manager's approval, I see it as affordable.
 

Also Known As

No data available
LogRhythm NextGen SIEM, LogRhythm, LogRhythm Threat Lifecycle Management, LogRhythm TLM
 

Overview

 

Sample Customers

Information Not Available
Macy's, NASA, Fujitsu, US Air Force, EY, Abbott, HD Supply, SAB Miller, UCLA, Raytheon, Amtrak, Cargill
Find out what your peers are saying about Falcon LogScale vs. LogRhythm SIEM and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.