No more typing reviews! Try our Samantha, our new voice AI agent.
Manager at WASHI
Real User
Jan 10, 2021
A stable, user-friendly security solution with a reasonable price tag and easy deployment
Pros and Cons
  • "The solution is stable."
  • "The price of this solution is reasonable, which is one of the reasons why we selected it over other solutions."
  • "The solution is very user-friendly, but the dashboard could be improved as well as the level of customization."

What is our primary use case?

The primary use case of this solution is for security.

What needs improvement?

The solution is very user-friendly, but the dashboard could be improved as well as the level of customization.

For how long have I used the solution?

I have been using the solution for one year.

What do I think about the stability of the solution?

The solution is stable.

Buyer's Guide
USM Anywhere
May 2026
Learn what your peers think about USM Anywhere. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
900,838 professionals have used our research since 2012.

How was the initial setup?

The deployment of this solution is easy, but you need some level of understanding.

What's my experience with pricing, setup cost, and licensing?

The price of this solution is reasonable, which is one of the reasons why we selected it over other solutions.

What other advice do I have?

I would recommend this solution to other users.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Stephen Hui - PeerSpot reviewer
Cybersecurity Architect at DataAssure
Reseller
Oct 27, 2020
Easy setup with great security information management and very stable
Pros and Cons
  • "The setup is very easy and straightforward."
  • "Technical support is extremely reliable."
  • "The solution is a bit complicated. It could be simplified quite a bit."
  • "The solution doesn't scale well if you are talking about enterprises using it."

What is our primary use case?

We primarily use the solution for cybersecurity events and management.

What is most valuable?

The SIEM, security information management is very, very good. Basically, it's great at analyzing the logs of our servers.

The setup is very easy and straightforward.

What needs improvement?

The solution is a bit complicated. It could be simplified quite a bit.

The correlation engine could be improved. Much improvement could be made there, as it is an important open-source solution. 

The solution could benefit from including security orchestration. It's still not available yet. It would be really nice to have in a future release.

It could use something like a pen test. Tools like that would make it more comprehensive from a cybersecurity aspect. 

For how long have I used the solution?

I've been using the solution since about 2015. It's been approximately six years or so.

What do I think about the stability of the solution?

The solution is extremely stable. We don't have any issues with its reliability. It doesn't crash or freeze and it's not buggy at all.

What do I think about the scalability of the solution?

The solution doesn't scale well if you are talking about enterprises using it. However, for our purposes, we've never had an issue with this. Larger companies might. We do intend to continue to use the solution and potentially increase usage.

How are customer service and technical support?

Technical support is extremely reliable. We've very satisfied with the level of service we receive. They are always knowledgeable, helpful, and responsive.

How was the initial setup?

The initials setup is not complex. It's a very straightforward implementation.

The overall deployment is quite quick. It might take about 30 minutes or so. That's all.

What's my experience with pricing, setup cost, and licensing?

The solution has a subscription-based annual payment option. It's not a perpetual license.

What other advice do I have?

We use both on-premises and cloud deployment models.

We both use the solution and sell the solution as well.

Overall, on a scale from one to ten, I would rate the solution at an eight.

We're more focused on servicing medium to small businesses. This solution may not be suitable for a large enterprise-level organization.

That said, we highly recommend it. I'd recommend that new users decide to first go for the trial. Take the trial and then make sure that you like it before investing in the subscription. The company offers a free trial - you might as well use it.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
PeerSpot user
Buyer's Guide
USM Anywhere
May 2026
Learn what your peers think about USM Anywhere. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
900,838 professionals have used our research since 2012.
Chief Operating Officer / SR. Project Manager at SCS
Real User
Jul 12, 2020
Helpful threat intelligence capability, but the reporting is mediocre
Pros and Cons
  • "The most valuable feature is threat intelligence."
  • "The reporting is mediocre and is something that needs to be improved."

What is our primary use case?

We are a managed security service provider and we offer AlienVault USM to our clients. We use it to monitoring their environments and to maintain their logs.

What is most valuable?

The most valuable feature is threat intelligence. Their community is a very helpful tool and I think it's one of the values of AlienVault.

What needs improvement?

They set aside a lot of the functionality from the on-premises version that we found very helpful in managing tickets. As it is now, the cloud-based deployment is lacking these useful features.

The reporting is mediocre and is something that needs to be improved.

For how long have I used the solution?

I have been using the cloud-based deployment of this solution for about two years.

What do I think about the stability of the solution?

The stability is fine.

What do I think about the scalability of the solution?

Scalability in a cloud solution is tied to costs. With any cloud solution, the more data you have and the larger your company, the higher the price point. I wouldn't say that scaling is easy, but it is standard.

How are customer service and technical support?

Technical support is slow to respond when we put in a ticket. We're a number. 

Which solution did I use previously and why did I switch?

We use both the on-premises version and USM Anywhere. The latter is a SaaS solution.

How was the initial setup?

The initial setup is okay. At an additional cost, they offer services to assist with deployment.

What's my experience with pricing, setup cost, and licensing?

Our take on it is that we are paying more for this product because of the AT&T name. We don't necessarily find that we are getting more functionality or quality, given the price point.

The licensing fees are dependent on usage.

Which other solutions did I evaluate?

We are currently evaluating different SIEM solutions. I have found that all of them have issues, whether it is related to functionality or price point. Even the ones that have a high price don't provide everything that you need.

What other advice do I have?

My advice for anybody who is considering this product is to evaluate all of the options that are out there. There is no one, great answer, so you have to figure out what best fits your needs.

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
‎SOC Manager at a tech services company with 11-50 employees
Real User
Aug 21, 2019
Good security management capabilities but the interface needs to be more user-friendly
Pros and Cons
  • "The most valuable feature of this solution is security management for PCI DSS."
  • "This solution could be easier to use."
  • "This solution could be easier to use. It is hard for some people to understand, and they need to get training and certification just to understand what it's showing them."

What is our primary use case?

This is a SIEM solution that our customers use in an on-premises deployment.

What is most valuable?

The most valuable feature of this solution is security management for PCI DSS.

What needs improvement?

This solution could be easier to use. It is hard for some people to understand, and they need to get training and certification just to understand what it's showing them.

For how long have I used the solution?

I have been using this solution for three years.

What do I think about the stability of the solution?

In terms of stability, I would give it fifty percent.

What do I think about the scalability of the solution?

The scalability of this solution is good.

We have a large number of customers who use this product on a daily basis.

How are customer service and technical support?

Technical support is very good from their side.

How was the initial setup?

The initial setup of this solution is a bit complex. Specifically, it is the way that it integrates with other products.

What about the implementation team?

We deployed this solution in-house.

What other advice do I have?

This is a good product but it can be made more user-friendly.

I would rate this solution a seven out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner.
PeerSpot user
Sales Solutions Engineer at a tech services company with 201-500 employees
Reseller
Apr 29, 2019
Easy to deploy and flexible enough to create your own plugins
Pros and Cons
  • "This solution can identify many threats inside the organization (compromised endpoints, configuration issues), as well as "outside" threats (botnets, network scanners, web-attacks, etc)."
  • "It would be nice to see some machine learning and monitoring of the configuration in network devices."

What is our primary use case?

The primary use cases for this solution are log management, security events correlation, and any other enterprise use cases for SIEM (new plugins development, correlation rules development, risk assessment, and asset management).

How has it helped my organization?

This solution can identify many threats inside the organization, like compromised endpoints, configuration issues, as well as "outside" threats (botnets, network scanners, web-attacks, etc). During the first two weeks post-deployment, our client's cybersecurity certainly improves by using AT&T AlienVault USM.

What is most valuable?

The features that we have found most valuable are the out-of-box vulnerability scanner, Network IDS, Host IDS, Netflow Monitoring, and more than four thousand pre-installed correlation rules.

What needs improvement?

Having automatic agent deployment would be a great feature. It would be nice to see some machine learning and monitoring of the configuration in network devices.

For how long have I used the solution?

One to three years.

How was the initial setup?

This solution is very easy to deploy and integrates comfortably with data sources. AT&T AlienVault USM has a user-friendly engine for custom plugins development, so you can develop your own plugin for your own application without any problems.

Disclosure: My company has a business relationship with this vendor other than being a customer. Aurhorized distributor
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at a tech vendor with 201-500 employees
Real User

Denys - I appreciate your time & feedback!

PeerSpot user
DevOps Engineer at Two Hat Security
Consultant
Apr 8, 2019
The vulnerability scanner keeps our environment always updated about security threats
Pros and Cons
  • "Beyond provided us with an IDS as was our initial need, but AlienVault gave us more useful resources, as SIEM, and as a vulnerability scanner (the last, one of my favourite resources)."
  • "Taking into account that server access credentials are controlled by the tool, some more management-focused actions could be performed from AlienVault."

What is our primary use case?

Our initial need which brought us to acquire this solution was to be in compliance with GDPR requirements. Our environment is cloud-based (specifically AWS).

How has it helped my organization?

Beyond provided us with an IDS as was our initial need, but AlienVault gave us more useful resources, as SIEM, and as a vulnerability scanner (the last, one of my favourite resources).

What is most valuable?

My favourite one is the vulnerability scanner because while using it, our environment is always updated about security threats.

What needs improvement?

Taking into account that server access credentials are controlled by the tool, some more management-focused actions could be performed from AlienVault.

For how long have I used the solution?

Less than one year.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Tami Andrews - PeerSpot reviewer
Tami AndrewsSr. Customer Programs Manager at a tech vendor with 201-500 employees
Real User

Erlon - thank you for your feedback & comments!

reviewer980886 - PeerSpot reviewer
I.T. Manager at a non-profit with 51-200 employees
Real User
Dec 30, 2018
We can collect logs, and also actively scan our network for vulnerabilities all from one tool
Pros and Cons
  • "AlienVault provides us with a very easy to use, central spot to view log files, and take appropriate action."

    What is our primary use case?

    We use AlienVault to collect all mission-critical logs and to pull data directly from G Suite. It provides our small IT operation with an easy-to-use tool to assess our security operations.

    How has it helped my organization?

    Before AlienVault, we had no central log collection tool of any kind, let alone security monitoring. AlienVault provides us with a very easy to use, central spot to view log files, and take appropriate action. It allows our small team the ability to take cybersecurity seriously.

    What is most valuable?

    The fact that AlienVault is several tools in one is most valuable to our small team. We can collect logs, and also actively scan our network for vulnerabilities all from one tool.

    What needs improvement?

    Long-term I'm genuinely concerned about AT&T's ownership of AlienVault. I have never had a good relationship with AT&T in +15 years, and fear they will destroy this good product.

    What do I think about the stability of the solution?

    Concerned long-term, due to AT&T.

    What do I think about the scalability of the solution?

    It is very scalable, just ask them to increase the amount of storage.

    How are customer service and technical support?

    Tech support has been a bit slow lately, and the level-1 techs do not have all the power they should have.

    Which solution did I use previously and why did I switch?

    Before AlienVault we had nothing. We learned about AlienVault through a company we contracted to do a full vulnerability assessment. They used AlienVault, so I felt like if it was good enough for them, then we should be using it.

    How was the initial setup?

    Very simple, just follow their directions step-by-step and you will be fine.

    What about the implementation team?

    I did the implementation myself. Their documentation made it easy.

    What's my experience with pricing, setup cost, and licensing?

    I'd push them for pricing. I sense the best time to negotiate with them is in June as the fiscal year ends.

    Which other solutions did I evaluate?

    We found other tools to be out of reach for our small department, so we did not seriously look at others.

    What other advice do I have?

    Be careful with AT&T, make sure you are confident the tool will be what you expect throughout the life of your contract. Make sure AT&T isn't going to change anything on you suddenly.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Tami Andrews - PeerSpot reviewer
    Tami AndrewsSr. Customer Programs Manager at a tech vendor with 201-500 employees
    Real User

    thank you for your feedback!

    PeerSpot user
    Senior Buyer & Operations Specialist at Nth Generation Computing
    Real User
    Dec 20, 2018
    I've found the vulnerability assessment very valuable because it identifies vulnerabilities and AWS configuration issues
    Pros and Cons
    • "AlienVault is an amazing product that I would highly recommend."
    • "The only recommended changes I can think of is to have the ability to filter logs."

    What is our primary use case?

    We have used AlienVault for our security monitoring for threat protection and compliance management. We've seen an improvement against malware and viruses. It has definitely eased our concerns so we can focus on other things.

    How has it helped my organization?

    AlienVault is very user-friendly. We've had a great experience with asset discovery, compliance reporting, endpoint detection and response. Our team uses the network infrastructure monitoring as well.

    What is most valuable?

    • In my experience, I've found the vulnerability assessment very valuable because it identifies vulnerabilities and AWS configuration issues, so we are less likely to have potential risks. 
    • The compliance reporting is also valuable for reporting purposes.

    What needs improvement?

    The only recommended changes I can think of is to have the ability to filter logs. Also, being able to navigate the dashboard. That seems to have been quite a challenge.

    For how long have I used the solution?

    One to three years.

    What do I think about the stability of the solution?

    There are multiple functions of this product, the stability and availability are awesome.

    What do I think about the scalability of the solution?

    The scalability of this solution is exceptional. I believe it's very reliable and dependable.

    Which solution did I use previously and why did I switch?

    I'm not familiar with what was used prior to AlienVault nor the reason the switch was made.  I'm just very pleased.

    How was the initial setup?

    Yes, our team did not have any issues with the initial setup of AlienValut and its functions.

    What about the implementation team?

    In-house.

    What was our ROI?

    The return on investment is great. I feel this product is well worth the price for all the functions and performance it can provide.

    What's my experience with pricing, setup cost, and licensing?

    I advise others on the pricing and licensing. I research to find the best pricing for the value of the products as well as register all licensing.

    Which other solutions did I evaluate?

    No, our tech department did the evaluating of all the options and chose AlienVault.

    What other advice do I have?

    AlienVault is an amazing product that I would highly recommend.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Tami Andrews - PeerSpot reviewer
    Tami AndrewsSr. Customer Programs Manager at a tech vendor with 201-500 employees
    Real User

    Thank you for taking time to provide your experience & feedback!

    kr1spy84 - PeerSpot reviewer
    Security Systems Administrator at VERTICAL SCREEN, INC
    User
    Dec 13, 2018
    We develop additional rules and scripts to make it more usable. It provides a checklist answer when using SIEM. I believe we are on the verge of outgrowing this platform.
    Pros and Cons
    • "AlienVault provides a checklist answer when using SIEM."
    • "IDS is a nice capability to have."
    • "We develop additional rules and scripts to make it more usable."
    • "The vulnerability management solution is worse than buying a Nessus Professional license."

    What is our primary use case?

    This is a jack of all trades (master of none) SIEM/IDS/vulnerability management/OSSEC/NetFlow solution. We use it primarily as a SIEM and IDS solution.

    How has it helped my organization?

    AlienVault provides a checklist answer when using SIEM. We currently develop additional rules and scripts to make it more usable, but the overall solution is lackluster.

    What is most valuable?

    IDS is a nice capability to have. In the past, I have implemented standalone Suricata sensors and having this bundled in is very helpful. OTX is good when implemented correctly.

    What needs improvement?

    Many of the tasks on features are useless in our situation. NetFlow is worthless.  Many of the built-in correlation engine solutions are just okay.

    For how long have I used the solution?

    One to three years.

    What's my experience with pricing, setup cost, and licensing?

    The vulnerability management solution is worse than buying a Nessus Professional license.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Tami Andrews - PeerSpot reviewer
    Tami AndrewsSr. Customer Programs Manager at a tech vendor with 201-500 employees
    Real User

    Hi I'm the Customer Programs Manager here at AlienVault and would like to first say "thank you" for taking time to provide your candid feedback in the product review. I'd like to get a conversation going between you and our team here to see if we can resolve some of the issues you've raised in your review. If you're open to it, please reach out to me at tandrews@alienvault.com and I"ll be happy to set up a call with the appropriate team(s) to discuss. Thank you in advance for your time and consideration.

    ISO (Information Security Officer) with 10,001+ employees
    Real User
    Dec 12, 2018
    Enables managing everything from one place, including vulnerability assessments and asset management
    Pros and Cons
    • "It provides a single pane of glass view, coupled with a whole security ecosystem. The ability to manage everything from a central point, including vulnerability assessments, asset management - including the services provided by the various hosts, NIDS, HIDS, etc. - provides a very efficient way of dealing with things."
    • "Undoubtedly having all security core technology under one roof, as provided by the all-in-one USM solution from AlienVault, is a big advantage for day-to-day business security operations."
    • "The reporting module could be a little easier to handle, as it requires quite some trial and error until you get the reports you want. Also, it would be great to have a graphical interface for the Network Intrusion Detection System's rule management."

    What is our primary use case?

    Our primary use case is Security Information and Event Management, as well as forensic analysis.

    How has it helped my organization?

    Undoubtedly having all security core technology under one roof, as provided by the all-in-one USM solution from AlienVault, is a big advantage for day-to-day business security operations. From real experience, it has enabled total transparency in terms of security information and events, from day one.

    What is most valuable?

    It provides a single pane of glass view, coupled with a whole security ecosystem. The ability to manage everything from a central point, including vulnerability assessments, asset management - including the services provided by the various hosts - NIDS, HIDS, etc., provides a very efficient way of dealing with things.

    Their OTX intel is also great, as one needs to know who is running around threatening the IT infrastructure with a "crowbar."

    What needs improvement?

    The reporting module could be a little easier to handle, as it requires quite some trial and error until you get the reports you want. Also, it would be great to have a graphical interface for the Network Intrusion Detection System's rule management.

    For how long have I used the solution?

    One to three years.

    What do I think about the stability of the solution?

    The solution is rock solid; never any issues.

    What do I think about the scalability of the solution?

    We have not experienced any scalability issues, but we also know that you can easily add more sensors, which helps to spread the load.

    How are customer service and technical support?

    Technical support is always helpful and responsive. They do care about their customers.

    Which solution did I use previously and why did I switch?

    Our previous solution consisted of building a SIEM based on individual components/modules from the open-source space.

    How was the initial setup?

    The initial setup is absolutely straightforward. It is up and running in no time. This is definitely one of the unique selling propositions of the solution.

    What's my experience with pricing, setup cost, and licensing?

    So far, it has been a good solution for a tight budget.

    What other advice do I have?

    AlienVault is a great fit, especially for smaller organizations, as it will enable you to produce quick results with no need to worry about too many details.

    Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
    PeerSpot user
    Tami Andrews - PeerSpot reviewer
    Tami AndrewsSr. Customer Programs Manager at a tech vendor with 201-500 employees
    Real User

    Thanks so much for your time and feedback Christian!

    Buyer's Guide
    Download our free USM Anywhere Report and get advice and tips from experienced pros sharing their opinions.
    Updated: May 2026
    Buyer's Guide
    Download our free USM Anywhere Report and get advice and tips from experienced pros sharing their opinions.