No more typing reviews! Try our Samantha, our new voice AI agent.
Elastic Stack Logo

Elastic Stack pros and cons

Vendor: Elastic
4.0 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Elastic Stack is highly scalable and trusted for monitoring servers and APIs effectively, offering real-time monitoring and anomaly detection.
It provides excellent value for money with its comprehensive features, including effective archiving and a powerful search engine that delivers promising results.
Its machine learning and detection rules capabilities are valuable for processing logs and detecting suspicious activities efficiently.
Elastic Stack allows seamless integration with other devices and vendors, aided by open-source support and community contributions.
Security features like X-Pack offer a robust SIEM capability, enhancing security checks and providing substantial benefits.

CONS

Implementing dashboards and integrations with various systems and configurations, such as Docker, poses challenges and needs simplification.
The lack of a clear NDR feature and AI-enabled functionalities limits Elastic Stack's effectiveness in certain areas.
Licensing costs, including training and certification, are high and deter broader usage of Elastic Stack.
Elastic Stack's search capabilities, especially for large data volumes over several years, require improvement for more efficient retrieval.
Technical support service needs enhancements in response times and first-level support to improve overall user experience.
 

Elastic Stack Pros review quotes

LB
Senior Consultant at Skillfield
Jun 3, 2025
The centralized logging capabilities of Elastic Stack have helped me streamline my logging processes significantly because there are many open-source tools available, such as Filebeat and Logstash, to collect the logs.
SY
Consultant at SMRJ
Jan 7, 2026
I have benefited from the security features provided by X-Pack in Elastic Stack, particularly the SIEM capability, which is very good for checking security issues.
Balamurali P - PeerSpot reviewer
Solution Architect at a tech consulting company with 501-1,000 employees
Feb 18, 2025
The scripting model in Elastic Stack allows me to query logs and then put the data into Grafana.
Learn what your peers think about Elastic Stack. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,221 professionals have used our research since 2012.
reviewer2591688 - PeerSpot reviewer
Security Engineer at a manufacturing company with 11-50 employees
Nov 8, 2024
The only beneficial aspect of Elastic Stack is that it's open source.
Charan Teja Sana - PeerSpot reviewer
Senior Consultant at HGS - Hinduja Global Solutions
Aug 9, 2024
It supports various integrations. It's open source and has excellent community support.
reviewer2320038 - PeerSpot reviewer
Engineering at a security firm with 10,001+ employees
May 28, 2024
The detection rules in Elastic Stack are the most valuable feature. The search capabilities are excellent and fast. As we collect logs from workstations and devices, the detection rules run on top of the logs and detect any suspicious activity, raising alerts accordingly. Integration with Elastic Stack depends on the specific integration. Elastic provides some bridging integrations that make it easy, but require custom integration. Most integrations are simple, but customization can be challenging because we need to do some parsing. There's something called Elastic Common Schema, and we need to parse the source logs to match this schema, which can be a bit challenging.
IB
Network Enginner at Moroccan Academic Network
Aug 3, 2023
It is a very scalable solution...I didn't face any problem with this scalability part of the solution since we only have a few pieces of equipment in our company.
GA
Business Development Manager at a tech services company with 51-200 employees
Jun 6, 2024
We can group a lot of alarms into one automation alarm supervision. The alarm supervision allows us to put the alarm under the same. It's quite helpful for us. We used that to suppress our alarms. Elastic already provides the agent. It is easy to integrate Elastic Stack with other devices and vendors.
SRIDHAR KARRA - PeerSpot reviewer
Chief Operating Officer at Integra Micro Software Services, Bangalore
Mar 27, 2024
Elastic Stack is mainly used to monitor servers and APIs. It helps ensure the software's availability and sends notifications at the right time so the system is not down for a long time. The tool's stability and advanced features, such as anomaly detection, are the most valuable features. The benefit of using it is real-time monitoring.
HamadaElewa - PeerSpot reviewer
Technical Sales Manager at Spire Solutions
Jan 22, 2024
The biggest strength of Elastic Stack is its brilliant archiving capabilities.
 

Elastic Stack Cons review quotes

LB
Senior Consultant at Skillfield
Jun 3, 2025
While Elastic Stack can manage vast amounts of data, if the mapping is not specified correctly, the indexing time can be slow, especially with many events per second.
SY
Consultant at SMRJ
Jan 7, 2026
I would rate the technical support by Elastic as five or six out of ten. They should improve their response time and first-level support, particularly knowledge, which is very important for using Elasticsearch.
Balamurali P - PeerSpot reviewer
Solution Architect at a tech consulting company with 501-1,000 employees
Feb 18, 2025
Elastic Stack should be more simplified with ready-to-use widgets.
Learn what your peers think about Elastic Stack. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,221 professionals have used our research since 2012.
reviewer2591688 - PeerSpot reviewer
Security Engineer at a manufacturing company with 11-50 employees
Nov 8, 2024
It should facilitate easier manual integration.
Charan Teja Sana - PeerSpot reviewer
Senior Consultant at HGS - Hinduja Global Solutions
Aug 9, 2024
There could be better documentation.
reviewer2320038 - PeerSpot reviewer
Engineering at a security firm with 10,001+ employees
May 28, 2024
Improving integration capabilities, especially with authentication systems, firewalls, and security controls, is a crucial area for improvement in Elastic Stack. Additionally, enhancing functionality to handle large Yara queries more efficiently would be beneficial, as many EDR solutions can run such queries faster than Elastic Stack's current limitations.
IB
Network Enginner at Moroccan Academic Network
Aug 3, 2023
The implementation of dashboards in the solution needs to be made easier...I had some issues with the ports and configuration since it was kind of complex to implement with Docker.
GA
Business Development Manager at a tech services company with 51-200 employees
Jun 6, 2024
Support could be improved. The error code is not helpful. We have to ask for it or pass it on to community forums.
SRIDHAR KARRA - PeerSpot reviewer
Chief Operating Officer at Integra Micro Software Services, Bangalore
Mar 27, 2024
The solution is expensive, particularly the training and certification. If customers want to increase their use of Elastic Stack, they should consider reducing the cost of certification and training.
HamadaElewa - PeerSpot reviewer
Technical Sales Manager at Spire Solutions
Jan 22, 2024
Improvements are needed in the solution in areas like SOAR and TIP, where there are certain shortcomings.