17 ans à aider les entreprises françaises
à choisir le meilleur logiciel
En savoir plus sur USM Anywhere
Plateforme de gestion de la sécurité offrant des contrôles de sécurité entièrement intégrés pour la détection des menaces et la gestion de la conformité.
They selected the best breed of products to integrate in a single console and make it easy to the customer to become fully compliant, be it PCI DSS, DISA STIG, HIPAA, ISO 27002, etc.
The community is weak and there is rarely any input from the developers on the community to help out. So a lot of people try it out and then go somewhere else.
Filtrer les avis (14)
Utilisation
Classer par
Filtrer les avis (14)
More than just a SIEM
Commentaires : AlienVault USM is ready for making compliance easy, so the value we get as a company is that we make tangible, real progress towards compliance and security management. It also allows to save costs on other tools since it comes with many integrations for every aspect you should take care of as a security administrator.
Avantages :
AlienVault got it right with the integrations of their product, it makes compliance very handy. They selected the best breed of products to integrate in a single console and make it easy to the customer to become fully compliant, be it PCI DSS, DISA STIG, HIPAA, ISO 27002, etc.
Inconvénients :
If you don't keep it "clean," your console might get cluttered. Sometimes it takes too much RAM if the solution was not properly sized, and can cripple performance, especially if you implemented it as a VM, it can take down performance of other VMs at your hypervisor as well.
Alternatives envisagées précédemment :
Crucial role in Security Operations for mId-tier companys
Commentaires : Alienvault USM is better and the best SIEM solution interms of financial and also in terms cyber security risk complaince. Build SOC makes it very easy with Alienvault rather going for complicated stuff. A Sensor is installed and looksafter for logs collection and server takes over from there. During Forensics we do have logger which helps us to deep dive in searching the logs. It satisfys most of compaliances like ISO, PCI, SCADA, HIPAA etc...
Avantages :
Alienvault USM had best features in assets discovery, Vulnerability Assessment, IDS and Log monitoring etc.. OTX pulse which is a free service comes at no cost an external threat intelligence tool. Log correlations and retention is very easty in managing and administrations. A lot og inbuilt correlations which is really helpful.
Inconvénients :
As I said mid-tier comapanys are easy in managing but companys looking for more than ! TB storage and 10000EPS rate cannot be done and adminstration becomes very complecated as half of time require for maintainence of server.
I've used the Ossim version of this product for about 10 years now. Good for a community SEIM
Commentaires : The free version has been a great help in watching our networks. But it has grown old and needs some major updates to compete with other products.
Avantages :
It is free. The best free SIEM out there. Possibly the only one. There are a lot of moving parts that are very good at correlating network security events. The product has become very usable and is great for small companies looking for an entry level SIEM.
Inconvénients :
Every upgrade is a possible chance for re-building the system. About 80% of the time, the upgrade will break something so badly, you need to re-install and start from scratch. The system slows down considerably when a large number of events are fed in. Their Sales people say the Free version is lightyears behind the commercial version, but from what i can tell, the Free version can be upgraded to the commercial version, so i don't see there being that many differences. The community is weak and there is rarely any input from the developers on the community to help out. So a lot of people try it out and then go somewhere else. While I think it is a great product, it seems to me like it is falling behind in the last few years. There are some more usable and better products in recent years that would make me buy them instead of AV USM.
Alternatives envisagées précédemment :
A Good SIEM Solution with good feature sets, but costs should be a bit lower then .
Commentaires : we wanted to have visibility and insight into our I.T infrastructure.
Avantages :
Good user interface. A very good vulnerability scanner included.
Inconvénients :
costs a it higher with respect to features available. some time integrations can be a bit tricky. Very Limited trial period of only 15 days, Log Point SIEM offers 60 days trial period in comparison. also MacAfee, Solar Winds also provides 30 days trial period which could be extended.
Detect everything in your system!!
Avantages :
-THE PRICE FOR UTILITY IS RIDICULOUS. -THE CUSTOMER SUPPORT, IS QUICKLY AND EFFECTIVE. -Detect back doors, exploit, attacks in real time, is perfect for detect every problem on a server. -Is very easy to use! -Alienvault Is a great tool for detect any threat on your system, is a effective and fast software.
Inconvénients :
-These software is only for a big enterprises, the price is good, but it is not for normal people, is expensive, yes, but is a great tool for detect any threat on any system.
Integrated Security Platform + Affordable
Commentaires : complete visibility across infrastructure, great help to demonstrate compliance, unauthorized access on network or environment. notifications and reports on security posture of the company
Avantages :
complete set of security capabilities out of the box Vulnerability Management IDS/HIDS File Integrity Monitoring Behavior Analysis Continuous Monitoring And appart of all that is a SIEM OTX is great for new threats and updates Dynamic and interactive dashboards single pane of glass visibility according to requirements alarms can be set according to the type of incident and priority great compatibility across software and devices vendors to collect logs from Great integration capabilities via APIs Great reporting capabilities predefined schemes to validate and ensure compliance
Inconvénients :
Vulnerability management based on Openvas ticketing system can be limited in order to track or escalate it sensors for remote locations or new offices-branches will require a new purchase, so better define future expansions during the subscription before buy so you can consider the right amount of sensors and avoid delays because of that customer support tends to delay things
Out of this world!
Avantages :
The price to feature ratio is epic. We use this product regularly and absolutely love it. It's so easy my mom could use it.
Inconvénients :
It doesn't come in blaze orange. I can't take it hunting. Won't make me coffee or a sandwich (yes, I tried sudo)
Effectiveness at Detecting Security Threats
Avantages :
The like most of this software Shows all issues, vulnerabilities, and attack servers, Vulnerability scanning Up to date security definitions.
Inconvénients :
some pos are the menu structure could be broken down into categories that make it easier to locate sub-menus and there are a couple of things that can only be done through the CLI and unless you're familiar with the CLI, there may be a large learning curve for some.
Purchased AlienVault two years ago and have been very happy with the purchase thus far.
Avantages :
The software is easy to use and the learning curve is pretty fast. After looking at other more expensive siems AlienVault was by far the best value.
Inconvénients :
The support for AlienVault is not as easily accessible as some and the documentation needs improvement.
Great security product for internal monitoring of systems.
Commentaires : Easy tracking of logs and internal vulnerability management of systems.
Avantages :
Takes a lot of manual work out of auditing systems. Able to filter and suppress specific events so your only looking at the ones you need to look at.
Inconvénients :
There are some integrations like azure AD where there are issues tracking azure AD logins. It eventually works but takes a while to gather the data.
An open source powered SIEM
Avantages :
Integrates easily with other open source tools like Nagios and OSSEC Open source version (OSSIM) is free and simple to deploy OTX is useful, even for non USM users
Inconvénients :
Log searching is not available in the open source version Advanced setup and tuning has sometimes to be done at the CLI (outside of the web interface)
Security information and event management (SIEM) system that offers the Best bang for your buck
Commentaires : Benefits include security. Interfacing with multiple security platforms its even management and reporting are assisting companies be more secure.
Avantages :
Simplicity can never be underestimated. The product offers an array of tools for security management where you get a huge value compared to other SIEM in the market. If you look at the Gartner's 2016 vs 2017 magic quadrant it says alot of where they are to where they are going.
Inconvénients :
You need to be trained in the system. Although its simple to use, a foundational knowledge needs to be obtain for a reasonable price. They offer multiple webex trainings.
Best sim in the world
Commentaires : Using as internal sim for our organization.
Avantages :
It dets and identify threats better than others.
Inconvénients :
There are no least in this software to say.
Alien vault is souring!!
Avantages :
They offer wonderful products. Can't wait to see what they release for GDPR compliance. They also offer great webinars!
Inconvénients :
Pricing. It's hard to have an ala cart product when the features go hand in hand. It's upsells a lot.