No more typing reviews! Try our Samantha, our new voice AI agent.

Logstash vs ManageEngine Log360 comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Logstash
Ranking in Log Management
31st
Average Rating
9.0
Reviews Sentiment
5.6
Number of Reviews
5
Ranking in other categories
No ranking in other categories
ManageEngine Log360
Ranking in Log Management
22nd
Average Rating
7.6
Reviews Sentiment
6.8
Number of Reviews
19
Ranking in other categories
Security Information and Event Management (SIEM) (24th), User Entity Behavior Analytics (UEBA) (13th)
 

Mindshare comparison

As of May 2026, in the Log Management category, the mindshare of Logstash is 0.9%, up from 0.5% compared to the previous year. The mindshare of ManageEngine Log360 is 1.4%, up from 1.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
ManageEngine Log3601.4%
Logstash0.9%
Other97.7%
Log Management
 

Featured Reviews

reviewer2727468 - PeerSpot reviewer
Senior Application Engineer at a comms service provider with 11-50 employees
Transforms logs for real-time insights and seamless reporting
Logstash is used for transforming logs, and you can use many plugins in Logstash. Logstash works with configuration files that contain three main parts: an input part, a filter part, and an output part. In the input part, we can take logs from many sources such as Beats, files, or Kafka. The filter part is used to filter the logs that are shipped from Beats. From my understanding and experience with Logstash, it is usually used for processing logic, meaning I can control what fields should be transferred to Elastic and what fields shouldn't be transferred. This is the main function I use Logstash for. Elastic is a famous open-source searching engine that helps operation teams speed up the investigation process and provides real-time insights for performance reporting.
Md Abdul Hakim - PeerSpot reviewer
System Engineer at Corporate Projukti Limited
Integration capabilities impress while room for improvement exists in cloud compatibility
1. Enhanced Cloud Integration Current Gap: Log360 lacks native integration with Microsoft Intune and cloud-based Active Directory (Azure AD), limiting visibility for organizations transitioning to hybrid or fully cloud environments. Requested Improvements: Direct Intune Log Collection: Ability to ingest and correlate logs from Intune-managed devices to monitor compliance, device health, and security policies. Azure AD Deep Integration: Support for Azure AD audit logs, conditional access events, and identity protection alerts to provide end-to-end visibility. Cloud Workload Monitoring: Extend coverage to SaaS applications (e.g., Microsoft 365, AWS, GCP) for unified threat detection. Why It Matters: Many clients have migrated from on-prem AD to cloud-first setups this year. Without cloud-native log collection, critical security events (e.g., rogue Intune policies or Azure AD breaches) go unmonitored. 2. Improved Automation and Response Current Gap: Limited automated remediation (e.g., auto-isolating compromised devices) forces manual intervention. Requested Features: Playbook Automation: Pre-built workflows to auto-resolve common issues (e.g., disabling users after brute-force attacks). SOAR Integration: APIs to connect with SIEM/SOAR platforms (e.g., Splunk, Palo Alto Cortex) for escalated threat response.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The transformation means we ship the logs in the way that we want them to be presented in Kibana, which is the main function we use Logstash for."
"The functionality of Logstash is quite easy to implement and the plugin ecosystem of Logstash is great, with plugins for shell script monitoring and SQL monitoring working well with the tool."
"We have three or four Logstash servers for high availability."
"Everything aligns well with improving our organization."
"Logstash has numerous plugins for inputs and outputs, allowing it to work well in environments that do not contain other Elastic components."
"I can collect logs from various data sources, including hardware."
"We haven't had any stability issues."
"It is nice to be able to monitor and to have notifications."
"The support provided is fantastic, and ManageEngine Log360 provides the same capabilities that were being enjoyed with AlienVault while suiting the budget and providing what is needed."
"The solution could be improved by including XDR, remediation and Sandbox."
"It is easier to deploy than are other SIEMs, which is great. You can also get an overview of your environment, which is very handy."
"The reporting is great; everything you need is in the report for you already."
"It is nice to be able to monitor and to have notifications."
"The most valuable feature is that this solution is more secure than others, and there are more applications and features as well."
 

Cons

"We still have a problem with importing the log system."
"An enhancement we could implement is the ability to cluster Logstash to exist in more than one node."
"Almost all the research can be very bad. We still have a problem with importing the log system."
"The product needs to improve its compatibility."
"Elastic does not provide proper support for Logstash worldwide, and I rate their technical support as one out of ten."
"There can be a UI to implement with Logstash. Currently, I have to work with config files and everything."
"On the logging system, there's a local on-client side that is encrypted, and there's one that is not encrypted. It is only for diagnostical purposes. However, both being encrypted would be very valuable for some audits."
"The matter of the data retention needs to be addressed."
"It's difficult to find which conditions have been applied to a report because they are provided by default by ManageEngine. However, with other SIEMs if you want to create a report, they provide details, like which conditions are triggering certain reports. This needs to be there in ManageEngine. It would be good to know which parameter has been applied to the report that is updating the system."
"There is room for improvement, especially in the reporting aspect. The reports are not as good as those in Splunk."
"Most times log sheets are not assigned well."
"ManageEngine Log360 is not a stable solution. It needs improvement."
"Log360 currently cannot gather information from Intune logs or cloud-integrated systems."
"The on-premises solution is very slow. When I move to another tab inside Log360 or in the SIEM, even if my system is running on 36 GB and with a high processor, it takes a lot of time to get into the alert page or the search page."
 

Pricing and Cost Advice

Information not available
"My client has a yearly license. I think the cost is not expensive compared to that of other SIEMs, given the service it is providing."
"There is a cost for each feature used."
"Affordable pricing is provided by the solution."
"Its pricing is definitely huge compared to some of the other SIEMs. Its price should be improved."
"ManageEngine Log360 is expensive compared to other products."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Comms Service Provider
8%
Manufacturing Company
7%
Computer Software Company
6%
Financial Services Firm
10%
Comms Service Provider
9%
Computer Software Company
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise2
Large Enterprise2
 

Questions from the Community

What needs improvement with Logstash?
Customization can be automated with Logstash, but it is at the developer's disposal. The developer has to do it, not the tool as such. There is scope for optimization, but that is all outside the t...
What is your primary use case for Logstash?
The purposes for which I am using Logstash largely include log aggregation and application monitoring.
What advice do you have for others considering Logstash?
I am using Logstash for log management and also implement it. Logstash can be deployed both on-cloud and on-premises. On a scale of 1-10, I rate Logstash an 8.
What is your experience regarding pricing and costs for ManageEngine Log360?
The price is suitable from a perspective of different pricing options. We already have an ongoing project where some features analytics can be escaped, and companies can manage their budgets carefu...
What needs improvement with ManageEngine Log360?
ManageEngine Log360 could provide more in-depth insights, particularly in reporting. Some other solutions provide deeper insights into issues, especially when generating reports. More detailed insi...
What is your primary use case for ManageEngine Log360?
ManageEngine Log360 is being used for database monitoring and as a SIEM solution.
 

Overview

 

Sample Customers

Information Not Available
First Mountain Bank, TRA, Citadel Group, OnPoint Financial Corp, Florida Dept. of Transportation
Find out what your peers are saying about Logstash vs. ManageEngine Log360 and other solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.