

OpenText Enterprise Security Manager and LogRhythm SIEM compete in the security management category. LogRhythm appears to have the upper hand due to its advanced intelligence engine, ease of use, and machine learning capabilities.
Features: OpenText Enterprise Security Manager excels in flexibility, custom source integration, and multi-tier hierarchical deployment, offering powerful threat detection. LogRhythm SIEM stands out for its advanced intelligence engine, machine learning capabilities, and real-time monitoring, making threat identification efficient and user-friendly.
Room for Improvement: OpenText challenges include complexity and a steep learning curve, with necessary enhancements in API integration, documentation, scalability, and technical support. LogRhythm SIEM needs to improve File Integrity Monitoring, reporting capabilities, and integration with third-party solutions, with some users finding setup non-intuitive and support inconsistent.
Ease of Deployment and Customer Service: Both solutions offer versatile deployment options. However, OpenText users report more challenges during deployment due to complexity, whereas LogRhythm provides a smoother process. Customer service reviews are mixed for both, with complaints about delayed responses. OpenText support is criticized for low adaptability, while LogRhythm, despite its competitiveness, shows inconsistency.
Pricing and ROI: OpenText is positioned as a premium enterprise-level solution, yielding high ROI through threat detection and compliance but at a higher cost. LogRhythm offers competitive pricing with transparent licensing, appealing to large-scale enterprises, promising good ROI due to its cost-performance balance compared to other higher-priced SIEM solutions.
The technical support is good; we have a separate portal for partners, and since we are paying for the service, they provide a response timeframe based on severity—critical issues are addressed within four hours, medium issues within one day, and non-urgent issues may take a couple of days.
The automated responses and detections of LogRhythm SIEM are much better and faster compared to others.
Customer support is very helpful and effectively solves my problems.
If I raise a P1 or P0 ticket, the response time is often delayed by four to eight hours.
The scalability of LogRhythm SIEM is good enough, warranting an eight out of ten rating.
LogRhythm SIEM is highly scalable as it has modular components allowing me to expand storage, indexing, or other resources as needed.
LogRhythm SIEM is scalable; it can handle about 200 or 500 devices without much difference.
It lacks some capabilities compared to other tools available in the market.
LogRhythm SIEM still needs improvement regarding stability, particularly in environments with heavy data consumption.
The platform needs regular updates to fix problems encountered with each quarterly patch and version release.
The stability of ArcSight Enterprise Security Manager (ESM) is not very robust.
I have noticed some problems with parsing errors, event mismatches, and data mismatching, so ensuring accurate parsing and continuous improvement according to device updates are my basic expectations as a detection engineer.
If LogRhythm SIEM could make a lightweight version of their solution, that would be quite competitive because some of my customers have a very large need but refuse to go with LogRhythm SIEM due to its complexity and high resource intensity.
There is currently no way to determine how much data is being consumed in terms of gigabytes, terabytes, or petabytes from particular devices or environments.
The integration aspect of ArcSight Enterprise Security Manager (ESM) needs improvement.
The license cost is around $10 per MPS.
I find LogRhythm SIEM affordable, as it is a bit less costly than QRadar.
ArcSight Enterprise Security Manager (ESM) is very cheap compared to other tools.
This helps SOC analysts significantly as they can monitor all log sources through a dashboard, quickly identifying which sources haven't reported within their specified timeframes.
We have enough budget for cloud deployment, but we choose to keep it on-prem to ensure data privacy; cyberattacks are a concern, but data privacy is the foremost priority due to sensitive government information.
The seamless integration for case management, along with a user-friendly dashboard user interface, makes tasks like threat hunting more efficient.
The ability to interpret data is highly valued.
| Product | Mindshare (%) |
|---|---|
| LogRhythm SIEM | 2.5% |
| OpenText Enterprise Security Manager | 1.5% |
| Other | 96.0% |

| Company Size | Count |
|---|---|
| Small Business | 38 |
| Midsize Enterprise | 39 |
| Large Enterprise | 83 |
| Company Size | Count |
|---|---|
| Small Business | 37 |
| Midsize Enterprise | 14 |
| Large Enterprise | 57 |
LogRhythm SIEM offers advanced threat intelligence, scalable deployment, and streamlined log management. It enhances security posture with AI-driven threat detection and comprehensive monitoring.
LogRhythm SIEM stands out for its AI-driven threat correlation, ease of log aggregation, and robust reporting. Offering real-time visibility and analytics through consistent navigation and dashboards, it integrates with security components for enhanced monitoring and response. Advanced threat intelligence and customizable alerts streamline processes and bolster security. While it faces challenges with log parsing, reporting, and dashboard intuitiveness, plans to enhance cloud integration and transition to Linux are noted.
What are the standout features?In industries like banking and finance, organizations utilize LogRhythm SIEM for centralized log management, security monitoring, and compliance. It helps detect insider threats, analyze server logs, correlate events, and monitor user behaviors. Appreciated for log ingestion and anomaly identification, it ensures robust cybersecurity and incident response by integrating data from multiple sources.
OpenText Enterprise Security Manager enables real-time threat detection through scalable and adaptable solutions, integrating seamlessly with multiple platforms for complex security scenarios across different environments.
OpenText Enterprise Security Manager offers extensive security monitoring capabilities, combining log analysis and incident management to enhance cybersecurity and compliance. Its powerful event correlation engine provides real-time alerts for rapid incident response. Users benefit from customizable dashboards and comprehensive log collection, making it a significant tool in the SIEM market. Flexible deployment options cater to both on-premises and cloud environments, supporting enterprises in managing IT infrastructure and threat detection efficiently.
What are the key features of OpenText Enterprise Security Manager?In industries such as finance, healthcare, and energy, OpenText Enterprise Security Manager is implemented for monitoring critical systems and ensuring compliance with regulatory needs. Enterprises leverage its capabilities for forensic investigations and active threat management, serving as a central hub for cybersecurity operations across diverse IT infrastructures.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.