We performed a comparison between ArcSight Logger and Wazuh based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It provides in-depth information on business activities once we log into the system."
"It's a robust, mature product and you can do some really complex operations and analytics."
"Our return on investment for implementing ArcSight Logger over the past 12 months has been positive."
"The ESM use cases are the most valuable. It enables us to use the big data collection inside our company. We are able to create use cases for whatever it suits and I find that the most interesting part of any SIEM solution."
"In terms of ArcSight Logger's most valuable feature, it is their scalability. ArcSight's real advantage is its scalability because they have two layers, including the logger layer."
"The log digestion features from threat intelligence platforms like Recorded Future or Talos are valuable."
"It's a brilliant log collection tool, and it can handle hundreds of thousands of servers in a single shot to ingest the data."
"The machine learning is a good feature."
"The log monitoring and analysis tools are great in addition to SIEM file activity monitoring."
"I find the PCI DSS feature the most valuable, along with the feature that monitors the compliance of Windows and the CIS benchmarks on other devices like Unix or Linux systems."
"Wazuh's logging features integrate seamlessly with AWS cloud-native services. There are also Wazuh agent configurations for different use cases, like vulnerability scanning, host-based intrusion detection, and file integrity monitoring."
"Wazuh offers numerous features, such as the ability to define custom rules for detecting malicious activities and remembering behaviors."
"It is excellent in terms of visualization and indexing services, making it a powerful tool for malware detection."
"I like Wazuh because it is a lot like ELK, which I was already comfortable with, so I didn't have to learn from scratch."
"I like that the solution is on top of the Kubernetes stack."
"Wazuh has very flexible and robust features."
"We find that the search and access functionality is quite slow."
"The solution could be improved in maintenance settings."
"We have had problems with archiving."
"I would rate the technical support only 5 out of 10. The technical support is not satisfactory."
"I had some latency issues for two months. I had to increase our storage capacity significantly to reduce the latency."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"The solution must provide readymade connectors for different applications."
"The platform is quite expensive. They should reduce its cost."
"Some features, like alerting, are complex with Wazuh."
"There could be a hardware monitoring tool for the solution."
"They need to go towards integrating with more cloud applications and not just OS like Windows and Linux."
"The only challenge we faced with Wazuh was the lack of direct support."
"Wazuh could improve the detection, it is not detecting all of the attacks. Additionally, it is lacking features compared to other solutions."
"Wazuh doesn't cover sources of events as well as Splunk. You can integrate Splunk with many sources of events, but it's a painful process to take care of some sources of events with Wazuh."
"Adding the flexibility to integrate various plug-ins or modules into its core system would enhance functionality."
"It would be great if there could be customization for the decoder portion."
ArcSight Logger is ranked 28th in Log Management with 31 reviews while Wazuh is ranked 2nd in Log Management with 38 reviews. ArcSight Logger is rated 7.8, while Wazuh is rated 7.4. The top reviewer of ArcSight Logger writes "A scalable and stable solution that enables users to see all the event logs in one place". On the other hand, the top reviewer of Wazuh writes "It integrates seamlessly with AWS cloud-native services". ArcSight Logger is most compared with Splunk Enterprise Security, IBM Security QRadar, Elastic Security, LogRhythm SIEM and syslog-ng, whereas Wazuh is most compared with Elastic Security, Security Onion, AlienVault OSSIM, Splunk Enterprise Security and Graylog. See our ArcSight Logger vs. Wazuh report.
See our list of best Log Management vendors.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.