Best Enterprise Security Information and Event Management (SIEM) Software

How Many Security Information and Event Management (SIEM) Software Products Does G2 Track?

Total Products under this Category: 144

Category Stats (Sep 2026)

  • Average Rating: 4.46/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Singularity AI SIEM (+3.53%) - Among all products in this category, Singularity AI SIEM recorded the largest rating increase compared to last month

Last updated: September 15, 2026

How Does G2 Rank Security Information and Event Management (SIEM) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 6,200+ Authentic Reviews
  • 144+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Security Information and Event Management (SIEM) Software

G2 Grid® for Security Information and Event Management (SIEM) Software plotting products by satisfaction and market presence

Highlighted products: Google Security Operations, CrowdStrike Falcon Endpoint Protection Platform, Palo Alto Cortex XSIAM, Sumo Logic, Microsoft Sentinel, Splunk Enterprise Security, Splunk Enterprise, and Datadog.

Underlying data: [Grid® JSON](https://www.g2.com/categories/security-information-and-event-management-siem/grids.json?focus%5B%5D=google-security-operations&focus%5B%5D=crowdstrike-falcon-endpoint-protection-platform&focus%5B%5D=palo-alto-cortex-xsiam&focus%5B%5D=sumo-logic&focus%5B%5D=microsoft-sentinel&focus%5B%5D=splunk-enterprise-security&focus%5B%5D=splunk-enterprise&focus%5B%5D=datadog&segment=enterprise)

Google Security Operations

Google Security Operations offers a unified experience across SIEM, SOAR, and threat intelligence to drive better detection, investigation, and response. Collect security telemetry data, apply threat intel to identify high priority threats, drive response with playbook automation, case management, and collaboration. It also provides Gemini-native agentic defense to help autonomously handle workflows like alert triage, threat hunting, and detection engineering. Google Security Operations also supports AI Threat Defense to monitor, detect, and respond to threats from code you do not own or cannot patch.

Average Rating: 4.4/5.0

Total Reviews: 137

How Do G2 Users Rate Google Security Operations?

  • Activity Monitoring: 9.7/10 (Category avg: 9.1/10)
  • Data Examination: 9.4/10 (Category avg: 8.6/10)
  • Ease of Use: 8.4/10 (Category avg: 8.7/10)
  • Log Management: 9.2/10 (Category avg: 9.1/10)

Who Is the Company Behind Google Security Operations?

  • Seller: Google
  • Year Founded: 1998
  • HQ Location: Mountain View, CA
  • Twitter: @google
    31,899,995 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    301,144 employees on LinkedIn®
  • Ownership: NASDAQ:GOOG

Who Uses This Product?

  • Who Uses This: Student, Developer
  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 39% Small, 34% Medium

What Do G2 Reviewers Say About Google Security Operations?

AI-generated summary from verified user reviews

Pros
  • Users value the centralized detection and investigation of Google Security Operations, enhancing efficiency in threat management.
  • Users value the high-level threat detection capabilities of Google Security Operations, enhancing their security response efficiency.
  • Users find Google Security Operations very easy to use, allowing for quick incident analysis and efficient responses.
  • Users value the comprehensive security of Google Security Operations for effectively detecting and responding to threats.
  • Users appreciate the seamless integrations of Google Security Operations, enhancing threat detection and providing a unified security view.
Cons
  • Users find the costly upkeep of Google Security Operations challenging, especially for large organizations.
  • Users often face a steep learning curve with Google Security Operations, especially if unfamiliar with Google Cloud services.
  • Users find the implementation and configuration complex, requiring more time and resources compared to other tools.
  • Users find the learning difficulty of Google Security Operations challenging due to its complex features and setup.
  • Users find limited customization in Google Security Operations hinders adaptability and user experience for specific security needs.

What Are Recent G2 Reviews of Google Security Operations?

CrowdStrike Falcon Endpoint Protection Platform

Organizations today face a serious challenge: managing numerous security vendors and tools while confronting an ever-evolving threat landscape. Sophisticated adversaries are becoming smarter, faster, and more evasive, launching complex attacks that can strike in minutes or even seconds. Traditional security approaches struggle to keep pace, leaving businesses vulnerable. The CrowdStrike Falcon Platform addresses this by offering a unified, cloud-native solution. It consolidates previously siloed security solutions and incorporates third-party data into a single platform with one efficient and resource-conscious agent, leveraging advanced AI and real-time threat intelligence. This approach simplifies security operations, speeds analyst decision making, and enhances protection to stop the breach, allowing organizations to reduce risk with less complexity and lower costs. CrowdStrike's Falcon Platform includes: - Endpoint Security: Secure the endpoint, stop the breach - Identify Protection: Identity is the front line, defend it - Next-Gen SIEM: The future of SIEM, today - Data Protection: Real-time data protection from endpoint to cloud - Exposure Management: Understand risk to stop breaches - Charlotte AI: Powering the next evolution of the SOC

Average Rating: 4.7/5.0

Total Reviews: 543

How Do G2 Users Rate CrowdStrike Falcon Endpoint Protection Platform?

  • Activity Monitoring: 9.5/10 (Category avg: 9.1/10)
  • Data Examination: 8.8/10 (Category avg: 8.6/10)
  • Ease of Use: 9.0/10 (Category avg: 8.7/10)
  • Log Management: 8.6/10 (Category avg: 9.1/10)

Who Is the Company Behind CrowdStrike Falcon Endpoint Protection Platform?

  • Seller: CrowdStrike
  • Company Website:
  • Year Founded: 2011
  • HQ Location: Sunnyvale, CA
  • Twitter: @CrowdStrike
    110,809 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    21,058 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Security Analyst, Security Engineer
  • Top Industries: Information Technology and Services, Financial Services
  • Company Size: 46% Large, 40% Medium

What Do G2 Reviewers Say About CrowdStrike Falcon Endpoint Protection Platform?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the lightweight performance and powerful threat detection of CrowdStrike Falcon, enhancing security without slowing down systems.
  • Users commend the effective threat detection capabilities of CrowdStrike Falcon, ensuring robust security without system slowdowns.
  • Users appreciate the ease of use of CrowdStrike Falcon, benefiting from its lightweight impact and efficient incident management.
  • Users appreciate the advanced real-time threat protection of CrowdStrike Falcon, ensuring efficient security without system performance issues.
  • Users praise the exceptional threat detection of CrowdStrike Falcon, noting its effectiveness against both known and unknown threats.
Cons
  • Users find the cost prohibitive for smaller organizations, especially with additional modules increasing overall expenses.
  • Users find the complexity of the user interface and additional costs challenging, complicating their overall experience.
  • Users face a steep learning curve with CrowdStrike’s query language, making transitions from other platforms challenging.
  • Users find the limited features challenging, especially concerning cost and technical accessibility for smaller businesses.
  • Users find that pricing can be a barrier for smaller organizations, complicating access to advanced features.

What Are Recent G2 Reviews of CrowdStrike Falcon Endpoint Protection Platform?

What Are G2 Users Discussing About CrowdStrike Falcon Endpoint Protection Platform?

Palo Alto Cortex XSIAM

Product Description: Palo Alto Networks' Cortex XSIAM is an AI-driven security operations platform designed to transform traditional Security Operations Centers by integrating and automating key functions such as data centralization, threat detection, and incident response. By leveraging machine learning and automation, it enables organizations to detect and respond to threats more efficiently, reducing manual workloads and improving overall security posture. Key Features and Functionality: - Data Centralization: Aggregates data from various sources into a unified platform, providing comprehensive visibility across the enterprise. - AI-Powered Threat Detection: Utilizes machine learning algorithms to identify anomalies and potential threats in real-time. - Automated Incident Response: Streamlines response processes through automation, enabling rapid mitigation of security incidents. - Integrated SOC Capabilities: Combines functions such as Extended Detection and Response , Security Orchestration, Automation, and Response , Attack Surface Management , and Security Information and Event Management into a cohesive platform, eliminating the need for multiple disparate tools. - Scalability: Designed to handle large volumes of data and adapt to the evolving needs of modern enterprises. Primary Value and Problem Solved: Cortex XSIAM addresses the challenges of disjointed data, weak threat defense, and heavy reliance on manual work in traditional SOCs. By centralizing data and automating security operations, it simplifies processes, enhances threat detection accuracy, and accelerates incident response times. This transformation enables organizations to proactively outpace threats, reduce operational costs, and achieve a more robust security posture.

Average Rating: 4.5/5.0

Total Reviews: 96

How Do G2 Users Rate Palo Alto Cortex XSIAM?

  • Activity Monitoring: 9.4/10 (Category avg: 9.1/10)
  • Data Examination: 8.6/10 (Category avg: 8.6/10)
  • Ease of Use: 8.6/10 (Category avg: 8.7/10)
  • Log Management: 9.4/10 (Category avg: 9.1/10)

Who Is the Company Behind Palo Alto Cortex XSIAM?

  • Seller: Palo Alto Networks
  • Company Website:
  • Year Founded: 2005
  • HQ Location: Santa Clara, CA
  • Twitter: @PaloAltoNtwks
    128,951 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    23,492 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 41% Large, 36% Medium

What Do G2 Reviewers Say About Palo Alto Cortex XSIAM?

AI-generated summary from verified user reviews

Pros
  • Users value the best-in-class log management of Palo Alto Cortex XSIAM, benefiting from its effective alerting and integration features.
  • Users find the user-friendly dashboard of Palo Alto Cortex XSIAM essential for monitoring and understanding alerts effectively.
  • Users value the real-time monitoring capabilities of Palo Alto Cortex XSIAM, enhancing threat detection and response efficiency.
  • Users value the simple and user-friendly interface of Palo Alto Cortex XSIAM, making monitoring effortless.
  • Users value the good dashboard creation tools in Palo Alto Cortex XSIAM, enhancing ease of use and implementation.
Cons
  • Users note that Palo Alto Cortex XSIAM requires significant resources, impacting implementation time and increasing infrastructure costs.
  • Users find the complexity of implementation for Palo Alto Cortex XSIAM to be time-consuming and resource-intensive.
  • Users find the cost of Palo Alto Cortex XSIAM to be high, especially for smaller businesses.
  • Users face dashboard issues with XSIAM, finding it difficult to monitor assets and navigate the interface.
  • Users face difficult setup issues with Palo Alto Cortex XSIAM, requiring expertise and extensive time for initial implementation.

What Are Recent G2 Reviews of Palo Alto Cortex XSIAM?

What Are G2 Users Discussing About Palo Alto Cortex XSIAM?

Sumo Logic

Sumo Logic, Inc. unifies and analyzes enterprise data, translating it into actionable insights through one AI-powered cloud-native log analytics platform. This single source of truth enables Dev, Sec and Ops teams to simplify complexity, collaborate efficiently and accelerate data-driven decisions that drive business value. Customers around the world rely on the Sumo Logic SaaS Log Analytics Platform for trusted insights to ensure application reliability, secure and protect against modern security threats, and gain insights into their cloud infrastructures. For more information, visit: SUMOLOGIC.COM

Average Rating: 4.3/5.0

Total Reviews: 401

How Do G2 Users Rate Sumo Logic?

  • Activity Monitoring: 9.1/10 (Category avg: 9.1/10)
  • Data Examination: 9.1/10 (Category avg: 8.6/10)
  • Ease of Use: 8.2/10 (Category avg: 8.7/10)
  • Log Management: 9.4/10 (Category avg: 9.1/10)

Who Is the Company Behind Sumo Logic?

  • Seller: Sumo Logic
  • Company Website:
  • Year Founded: 2010
  • HQ Location: Redwood City, CA
  • Twitter: @SumoLogic
    6,542 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    824 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Software Engineer, Senior Software Engineer
  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 48% Medium, 38% Large

What Do G2 Reviewers Say About Sumo Logic?

AI-generated summary from verified user reviews

Pros
  • Users highlight the ease of use in Sumo Logic, citing its simple query language and intuitive configurations.
  • Users value the ease of searching and configuring logs with Sumo Logic, enhancing their monitoring and tracing efficiency.
  • Users appreciate the Comprehensive Continuous Intelligence feature of Sumo Logic for transforming data into actionable insights quickly.
  • Users value the powerful visual insights and efficient log management capabilities of Sumo Logic for fast resolution.
  • Users value the real-time monitoring capabilities of Sumo Logic, enjoying swift insights and effective data management.
Cons
  • Users find Sumo Logic expensive, prompting concerns about whether its value justifies the high pricing.
  • Users find the difficult learning curve of Sumo Logic challenging, requiring significant time to become proficient.
  • Users face a steep learning curve with Sumo Logic, requiring significant time to master its features and query language.
  • Users face a steep learning curve with Sumo Logic, requiring significant time to master complex features and queries.
  • Users experience slow performance with Sumo Logic, facing delays in alerting and a cumbersome user interface.

What Are Recent G2 Reviews of Sumo Logic?

What Are G2 Users Discussing About Sumo Logic?

Microsoft Sentinel

Microsoft Sentinel lets you see and stop threats before they cause harm, with SIEM reinvented for a modern world. Microsoft Sentinel is your birds-eye view across the enterprise. Put the cloud and large-scale intelligence from decades of Microsoft security experience to work. Make your threat detection and response smarter and faster with artificial intelligence (AI). Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can: - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft -Respond to incidents rapidly with built-in orchestration and automation of common tasks

Average Rating: 4.4/5.0

Total Reviews: 275

How Do G2 Users Rate Microsoft Sentinel?

  • Activity Monitoring: 8.9/10 (Category avg: 9.1/10)
  • Data Examination: 8.5/10 (Category avg: 8.6/10)
  • Ease of Use: 8.5/10 (Category avg: 8.7/10)
  • Log Management: 8.8/10 (Category avg: 9.1/10)

Who Is the Company Behind Microsoft Sentinel?

  • Seller: Microsoft
  • Year Founded: 1975
  • HQ Location: Redmond, Washington
  • Twitter: @microsoft
    13,091,739 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    232,750 employees on LinkedIn®
  • Ownership: MSFT

Who Uses This Product?

  • Who Uses This: Security Analyst, Senior Software Engineer
  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 42% Large, 31% Medium

What Do G2 Reviewers Say About Microsoft Sentinel?

AI-generated summary from verified user reviews

Pros
  • Users value the advanced threat detection of Microsoft Sentinel, enhancing security and proactive threat management.
  • Users value the easy integrations of Microsoft Sentinel, facilitating quick setup and streamlined security processes.
  • Users value the seamless integration of Microsoft Sentinel with various third-party and Microsoft products, enhancing functionality and management.
  • Users commend the ease of use of Microsoft Sentinel, facilitating quick integration and a user-friendly experience.
Cons
  • Users express concern over the high costs of Microsoft Sentinel, especially as data ingestion increases.
  • Users face integration issues with Microsoft Sentinel, especially when connecting to legacy systems and third-party tools.
  • Users find the complexity of Microsoft Sentinel challenging, requiring extensive training and effort for effective use.

What Are Recent G2 Reviews of Microsoft Sentinel?

What Are G2 Users Discussing About Microsoft Sentinel?

Splunk Enterprise Security

Splunk Enterprise Security (ES) is a data-centric, modern security information and event management (SIEM) solution that delivers data-driven insights for full breadth visibility into your security posture so you can protect your business and mitigate risk at scale. With unparalleled search and reporting, advanced analytics, integrated intelligence, and prepackaged security content, Splunk ES accelerates threat detection and investigation, letting you determine the scope of high-priority threats to your environment so you can quickly take action. Built on an open and scalable data platform, you can stay agile in the face of evolving threats and business needs. Our extensive ecosystem of Splunk, partner, and community-built integrations as well as flexible deployment options ensure your technology investments are working in tandem with Splunk ES whilst meeting you wherever you are on your cloud, multi-cloud, or hybrid journey.

Average Rating: 4.3/5.0

Total Reviews: 224

How Do G2 Users Rate Splunk Enterprise Security?

  • Activity Monitoring: 8.8/10 (Category avg: 9.1/10)
  • Data Examination: 8.5/10 (Category avg: 8.6/10)
  • Ease of Use: 8.2/10 (Category avg: 8.7/10)
  • Log Management: 9.3/10 (Category avg: 9.1/10)

Who Is the Company Behind Splunk Enterprise Security?

  • Seller: Cisco
  • Year Founded: 1984
  • HQ Location: San Jose, CA
  • Twitter: @Cisco
    720,366 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    95,294 employees on LinkedIn®
  • Ownership: NASDAQ:CSCO

Who Uses This Product?

  • Who Uses This: Software Engineer, Senior Software Engineer
  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 59% Large, 30% Medium

What Do G2 Reviewers Say About Splunk Enterprise Security?

AI-generated summary from verified user reviews

Pros
  • Users value the ease of use of Splunk Enterprise Security, enhancing their monitoring and log management experience.
  • Users appreciate the easy integrations of Splunk Enterprise Security, enabling seamless connection with various platforms and systems.
  • Users highlight the impressive threat detection capabilities of Splunk Enterprise Security, enhancing security focus and reducing false alarms.
  • Users value the effective features of Splunk Enterprise Security, enhancing security analysis with comprehensive logs and insights.
  • Users appreciate the user-friendly interface of Splunk Enterprise Security, enabling efficient monitoring and attractive dashboards.
Cons
  • Users find the high costs associated with data ingestion to be a significant drawback of Splunk Enterprise Security.
  • Users find the initial implementation complex, needing expert resources and time to onboard Splunk Enterprise Security effectively.
  • Users find the complex implementation of Splunk Enterprise Security challenging, requiring extensive expertise and resources.
  • Users find the complex setup of Splunk Enterprise Security time-consuming and challenging, impacting initial deployment effectiveness.
  • Users find the difficult learning curve of Splunk Enterprise Security challenging, especially for those new to data analysis.

What Are Recent G2 Reviews of Splunk Enterprise Security?

What Are G2 Users Discussing About Splunk Enterprise Security?

Splunk Enterprise

Find out what is happening in your business and take meaningful action quickly with Splunk Enterprise. Automate the collection, indexing and alerting of machine data that's critical to your operations. Uncover the actionable insights from all your data — no matter the source or format. Leverage artificial intelligence and machine learning for predictive and proactive business decisions.

Average Rating: 4.3/5.0

Total Reviews: 414

How Do G2 Users Rate Splunk Enterprise?

  • Activity Monitoring: 9.1/10 (Category avg: 9.1/10)
  • Data Examination: 8.4/10 (Category avg: 8.6/10)
  • Ease of Use: 8.2/10 (Category avg: 8.7/10)
  • Log Management: 9.3/10 (Category avg: 9.1/10)

Who Is the Company Behind Splunk Enterprise?

  • Seller: Cisco
  • Year Founded: 1984
  • HQ Location: San Jose, CA
  • Twitter: @Cisco
    720,366 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    95,294 employees on LinkedIn®
  • Ownership: NASDAQ:CSCO

Who Uses This Product?

  • Who Uses This: Software Engineer, Senior Software Engineer
  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 64% Large, 27% Medium

What Do G2 Reviewers Say About Splunk Enterprise?

AI-generated summary from verified user reviews

Pros
  • Users find Splunk Enterprise's ease of use remarkable, enabling quick access and seamless integration of large datasets.
  • Users value the robust data ingestion capabilities of Splunk Enterprise, efficiently managing diverse data sources.
  • Users commend the great integration capabilities of Splunk Enterprise, facilitating seamless implementation across various networks and systems.
  • Users value the flexibility and visualization capabilities of Splunk Enterprise, enabling effective data analysis and troubleshooting.
  • Users praise the visualization capabilities of Splunk Enterprise dashboards for effective data analysis and decision-making.
Cons
  • Users find Splunk Enterprise to be expensive, with high renewal costs and limitations that affect large organizations.
  • Users find the learning curve steep, struggling to quickly grasp Splunk Enterprise's many features and functionalities.
  • Users experience slow performance with Splunk Enterprise, noting occasional crashes and delays in processing saved searches.
  • Users find the complex configuration of Splunk Enterprise challenging, impacting performance optimization and overall user experience.
  • Users find the pricing issues with Splunk Enterprise burdensome, especially regarding storage costs and data limits.

What Are Recent G2 Reviews of Splunk Enterprise?

What Are G2 Users Discussing About Splunk Enterprise?

Datadog

Datadog is the monitoring, security and analytics platform for developers, IT operations teams, security engineers and business users in the cloud age. The SaaS platform integrates and automates infrastructure monitoring, application performance monitoring and log management to provide unified, real-time observability of our customers' entire technology stack. Datadog is used by organizations of all sizes and across a wide range of industries to enable digital transformation and cloud migration, drive collaboration among development, operations, security and business teams, accelerate time to market for applications, reduce time to problem resolution, secure applications and infrastructure, understand user behavior and track key business metrics.

Average Rating: 4.4/5.0

Total Reviews: 715

How Do G2 Users Rate Datadog?

  • Activity Monitoring: 8.9/10 (Category avg: 9.1/10)
  • Data Examination: 8.6/10 (Category avg: 8.6/10)
  • Ease of Use: 8.2/10 (Category avg: 8.7/10)
  • Log Management: 9.5/10 (Category avg: 9.1/10)

Who Is the Company Behind Datadog?

  • Seller: Datadog
  • Company Website:
  • Year Founded: 2010
  • HQ Location: New York
  • Twitter: @datadoghq
    51,207 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    10,780 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Software Engineer, DevOps Engineer
  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 47% Medium, 34% Large

What Do G2 Reviewers Say About Datadog?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of Datadog, enjoying intuitive dashboard creation and straightforward implementation.
  • Users appreciate the intuitive monitoring features of Datadog, enabling easy integration and insightful data analysis.
  • Users value the real-time monitoring capabilities of Datadog, enhancing oversight across various applications and infrastructures.
  • Users appreciate the user-friendly interface and robust integration capabilities of Datadog for effective monitoring.
  • Users value the intuitive dashboard creation in Datadog, which enhances monitoring and analysis efficiency.
Cons
  • Users find Datadog's pricing to be expensive, suggesting it should be more affordable given its features.
  • Users find pricing issues with Datadog, citing rapidly escalating costs and high subscription fees as concerns.
  • Users find the steep learning curve challenging, especially with rapidly evolving features and required knowledge.
  • Users find the costs to be unpredictable and excessively high, especially with data storage and additional features.
  • Users find learning difficulty in Datadog, noting that new users may require training to understand its complexities.

What Are Recent G2 Reviews of Datadog?

What Are G2 Users Discussing About Datadog?

Check Point Infinity Platform

Check Point Infinity is the only fully consolidated cyber security architecture that provides unprecedented protection against Gen V mega-cyber attacks as well as future cyber threats across all networks, endpoint, cloud and mobile. The architecture is designed to resolve the complexities of growing connectivity and inefficient security.

Average Rating: 4.6/5.0

Total Reviews: 109

How Do G2 Users Rate Check Point Infinity Platform?

  • Ease of Use: 9.1/10 (Category avg: 8.7/10)

Who Is the Company Behind Check Point Infinity Platform?

Who Uses This Product?

  • Top Industries: Computer & Network Security, Information Technology and Services
  • Company Size: 44% Large, 37% Medium

What Do G2 Reviewers Say About Check Point Infinity Platform?

AI-generated summary from verified user reviews

Pros
  • Users commend the advanced security features of Check Point Infinity Platform, effectively preventing future attacks on cloud infrastructures.
  • Users value the cloud security features of Check Point Infinity Platform for efficient audits and infrastructure evaluations.
  • Users commend the proactive threat detection of Check Point Infinity Platform, enhancing security for cloud applications.
  • Users highlight the comprehensive security features of Check Point Infinity Platform, effectively shielding against future attacks.
  • Users value the advanced security features of Check Point Infinity for effectively safeguarding their cloud infrastructure.
Cons
  • Users find the steep learning curve of Check Point Infinity Platform challenging due to its complexity and extensive features.
  • Users find the complex setup process for Check Point Infinity Platform can be time-consuming and confusing at times.
  • Users feel that improvement is needed in real-time support and custom ruleset creation for better functionality.
  • Users express concerns about poor support services, indicating a need for improvement in customer assistance and log visibility.
  • Users find the limited customization options challenging, affecting their ability to tailor the platform to their needs.

What Are Recent G2 Reviews of Check Point Infinity Platform?

What Are G2 Users Discussing About Check Point Infinity Platform?

Panther

Panther is the AI SOC Platform that scales security expertise by embedding AI agents across your security operations with native access to your data lake, detection logic, and organizational knowledge. Unlike bolt-on tools, Panther's closed-loop architecture turns every alert into compounding intelligence that makes the system smarter over time. Request a demo today at: https://panther.com/product/request-a-demo/

Average Rating: 4.7/5.0

Total Reviews: 49

How Do G2 Users Rate Panther?

  • Activity Monitoring: 9.3/10 (Category avg: 9.1/10)
  • Data Examination: 9.4/10 (Category avg: 8.6/10)
  • Ease of Use: 8.9/10 (Category avg: 8.7/10)
  • Log Management: 9.7/10 (Category avg: 9.1/10)

Who Is the Company Behind Panther?

  • Seller: Panther Labs
  • Year Founded: 2018
  • HQ Location: San Francisco, CA
  • Twitter: @runpanther
    4,437 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    269 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Senior Security Engineer
  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 53% Medium, 29% Large

What Do G2 Reviewers Say About Panther?

AI-generated summary from verified user reviews

Pros
  • Users praise Panther's responsive customer support, which delivers expert assistance and resolves issues quickly and efficiently.
  • Users laud Panther's detection efficiency, appreciating its swift JSON parsing and robust, adaptable detection capabilities.
  • Users value Panther's ease of use, noting its intuitive interface and efficient operation for small teams.
  • Users praise Panther's intuitive interface and responsive support, enhancing ease of use and effectiveness for security teams.
  • Users praise the easy log source integration in Panther, simplifying onboarding and enhancing their security monitoring efforts.
Cons
  • Users find the raw log view limited due to lack of summaries, customization options, and cumbersome configuration for alerts.
  • Users face complex configuration challenges with Panther's setup, needing significant custom workflow adjustments and improvements.
  • Users find the dashboard issues overwhelming, highlighting limitations in customization and functionality that hinder effective use.
  • Users find Panther's limited access cumbersome, with challenges in integration, dashboards, and customizable alert features.
  • Users note a difficult learning curve for Panther, especially for those not familiar with programming languages.

What Are Recent G2 Reviews of Panther?

What Are G2 Users Discussing About Panther?

ManageEngine ADAudit Plus

ADAudit Plus is a UBA-driven auditor that helps keep your AD, Azure AD, file systems (including Windows, NetApp, EMC, Synology, Hitachi, and Huawei), Windows servers, and workstations secure and compliant. ADAudit Plus transforms raw and noisy event log data into real-time reports and alerts, enabling you to get full visibility into activities happening across your Windows Server ecosystem in just a few clicks. More than 10,000 organizations across the world trust ADAudit Plus to: 1. Instantly notify them about changes in their Windows Server environments. 2. Continuously track Windows user logon activity. 3. Monitor the active and idle time spent by employees at their workstations. 4. Detect and troubleshoot AD account lockouts. 5. Provide a consolidated audit trail of privileged user activities across their domains. 6. Track changes and sign-ins in Azure AD. 7. Audit file accesses across Windows, NetApp, EMC, Synology, Hitachi, and Huawei file systems. 8. Monitor file integrity across local files residing on Windows systems. 9. Mitigate insider threats by leveraging UBA and response automation. 10. Generate audit-ready compliance reports for SOX, the GDPR, and other IT mandates.

Average Rating: 4.6/5.0

Total Reviews: 62

How Do G2 Users Rate ManageEngine ADAudit Plus?

  • Activity Monitoring: 9.4/10 (Category avg: 9.1/10)
  • Data Examination: 8.5/10 (Category avg: 8.6/10)
  • Ease of Use: 8.8/10 (Category avg: 8.7/10)
  • Log Management: 8.8/10 (Category avg: 9.1/10)

Who Is the Company Behind ManageEngine ADAudit Plus?

  • Seller: Zoho
  • Year Founded: 1996
  • HQ Location: Austin, TX
  • Twitter: @Zoho
    137,880 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    30,913 employees on LinkedIn®
  • Phone: +1 (888) 900-9646

Who Uses This Product?

  • Top Industries: Information Technology and Services, Hospital & Health Care
  • Company Size: 60% Medium, 31% Large

What Do G2 Reviewers Say About ManageEngine ADAudit Plus?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the depth of visibility and reporting options provided by ManageEngine ADAudit Plus for Active Directory.
  • Users appreciate the user-friendly dashboard of ManageEngine ADAudit Plus, enhancing navigation and providing valuable insights.
  • Users appreciate the easy setup and extensive reporting options of ManageEngine ADAudit Plus for efficient Active Directory management.
  • Users appreciate the intuitive overview provided by ADAudit Plus's dashboard, enhancing their Active Directory management experience.
  • Users value the insightful dashboard of ADAudit Plus, which offers extensive reporting options and useful auditing features.
Cons
  • Users find the limited alert levels in ADAudit Plus restricting, wishing for more options to fine-tune notifications.
  • Users find the data overload challenge due to many reporting options, though a search feature helps alleviate this issue.
  • Users note the high cost of ManageEngine ADAudit Plus, which some feel isn't justified by its support quality.
  • Users find that false positives can be overwhelming, but a search feature helps manage report navigation.
  • Users are concerned about the high resource usage of ManageEngine ADAudit Plus, impacting overall system performance.

What Are Recent G2 Reviews of ManageEngine ADAudit Plus?

What Are G2 Users Discussing About ManageEngine ADAudit Plus?

IBM QRadar SIEM

Outsmart threats with an end-to-end award-winning security suite; proven to prevent, endure and recover from both known & unknown IT hazards faced by SoCs in the modern-day.

Average Rating: 4.4/5.0

Total Reviews: 284

How Do G2 Users Rate IBM QRadar SIEM?

  • Activity Monitoring: 8.7/10 (Category avg: 9.1/10)
  • Data Examination: 8.3/10 (Category avg: 8.6/10)
  • Ease of Use: 8.3/10 (Category avg: 8.7/10)
  • Log Management: 8.7/10 (Category avg: 9.1/10)

Who Is the Company Behind IBM QRadar SIEM?

  • Seller: IBM
  • Year Founded: 1911
  • HQ Location: Armonk, New York, United States
  • Twitter: @IBMSecurity
    74,660 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    344,328 employees on LinkedIn®
  • Ownership: SWX:IBM

Who Uses This Product?

  • Who Uses This: SOC Analyst, Security Engineer
  • Top Industries: Computer & Network Security, Information Technology and Services
  • Company Size: 53% Large, 29% Medium

What Do G2 Reviewers Say About IBM QRadar SIEM?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of IBM QRadar SIEM, facilitating effective threat management and investigation.
  • Users appreciate the flexible integration capabilities of IBM QRadar SIEM, enhancing log management across diverse sources.
  • Users value the advanced threat detection and centralized log management features of IBM QRadar SIEM for enhanced security.
  • Users appreciate the easy integrations of IBM QRadar SIEM, enhancing its functionality with various platforms seamlessly.
  • Users appreciate the user-friendly interface of IBM QRadar SIEM, making it accessible for both tech and non-tech users.
Cons
  • Users find the UX improvements lacking, struggling with limited features and an unfriendly interface in QRadar SIEM.
  • Users find IBM QRadar SIEM expensive, particularly small and mid-sized companies struggling with the overall cost.
  • Users find the high cost of IBM QRadar SIEM challenging, particularly for smaller organizations needing comprehensive support.
  • Users face dashboard issues with IBM QRadar SIEM, lacking customization, usability, and integration for optimal performance.
  • Users find the time-consuming nature of QRadar SIEM frustrating, especially with complicated queries and log fetching delays.

What Are Recent G2 Reviews of IBM QRadar SIEM?

Rapid7 Next-Gen SIEM

Rapid7 InsightIDR is a SaaS SIEM for modern threat detection and response. InsightIDR enables security analysts to work more efficiently and effectively, by unifying diverse data sources, providing early and reliable out of the box detections, and delivering rich visual investigations and automation to expedite response. With a lightweight cloud deployment and intuitive UI and onboarding experience, InsightIDR customers recognize an accelerated return on their investment and start seeing valuable insights from Day 1. With InsightIDR, teams can advance their threat detection and response program without adding headcount.

Average Rating: 4.4/5.0

Total Reviews: 68

How Do G2 Users Rate Rapid7 Next-Gen SIEM?

  • Activity Monitoring: 9.2/10 (Category avg: 9.1/10)
  • Data Examination: 8.6/10 (Category avg: 8.6/10)
  • Ease of Use: 8.9/10 (Category avg: 8.7/10)
  • Log Management: 9.2/10 (Category avg: 9.1/10)

Who Is the Company Behind Rapid7 Next-Gen SIEM?

  • Seller: Rapid7
  • Year Founded: 2000
  • HQ Location: Boston, MA
  • Twitter: @rapid7
    124,405 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    8,746 employees on LinkedIn®
  • Ownership: NASDAQ:RPD

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 68% Medium, 31% Large

What Do G2 Reviewers Say About Rapid7 Next-Gen SIEM?

AI-generated summary from verified user reviews

Pros
  • Users find the ease of use of Rapid7 Next-Gen SIEM unparalleled, with simple implementation and clear alerts.
  • Users appreciate the easy integrations of Rapid7 Next-Gen SIEM, benefiting from pre-built connections with numerous third-party tools.
  • Users appreciate the pre-built integrations of Rapid7 Next-Gen SIEM, making it easy to connect with various third-party tools.
  • Users appreciate the seamless integration of UEBA and deception tools for efficient threat detection across the network.
  • Users value the excellent visibility provided by Rapid7 Next-Gen SIEM, enabling easy log searches and clear alerts.
Cons
  • Users find the limited features of Rapid7 Next-Gen SIEM restrict overall functionality and alert setup capabilities.
  • Users find the alerting issues cumbersome, particularly when trying to create and set up pattern-based alerts.
  • Users find the limited alert management capabilities frustrating, complicating the creation of effective and timely alerts.
  • Users find the difficult customization in Rapid7 Next-Gen SIEM limits their ability to create effective alerts.
  • Users find the difficult setup of Rapid7 Next-Gen SIEM hinders effective alert creation and pattern configurations.

What Are Recent G2 Reviews of Rapid7 Next-Gen SIEM?

What Are G2 Users Discussing About Rapid7 Next-Gen SIEM?

FortiSIEM

The complexity of managing network and security operations is resulting in increases in breaches worldwide. Discovery, isolation, and remediation of these incidents are measured in hundreds of days. And with a dwindling pool of skilled cyber security personnel able to manage the wide array of devices and data sources to protect their network assets, success requires a new approach. FortiSIEM provides organizations of all sizes with a comprehensive, holistic, and scalable solution for security, performance, and compliance management, from IoT to the cloud. FortiSIEM expands network visibility through the Fortinet Security Fabric's integrations with the leading security products present in most networks today.

Average Rating: 4.3/5.0

Total Reviews: 40

How Do G2 Users Rate FortiSIEM?

  • Activity Monitoring: 8.7/10 (Category avg: 9.1/10)
  • Data Examination: 7.9/10 (Category avg: 8.6/10)
  • Ease of Use: 8.6/10 (Category avg: 8.7/10)
  • Log Management: 8.7/10 (Category avg: 9.1/10)

Who Is the Company Behind FortiSIEM?

  • Seller: Fortinet
  • Year Founded: 2000
  • HQ Location: Sunnyvale, CA
  • Twitter: @Fortinet
    151,422 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    16,564 employees on LinkedIn®
  • Ownership: NASDAQ: FTNT

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 46% Medium, 29% Large

What Do G2 Reviewers Say About FortiSIEM?

AI-generated summary from verified user reviews

Pros
  • Users value the real-time visibility of FortiSIEM, enhancing threat detection and troubleshooting across their infrastructure.
  • Users value the single-pane-of-glass visibility in FortiSIEM, which enhances real-time threat detection and troubleshooting.
  • Users appreciate the real-time threat detection and visibility offered by FortiSIEM for effective security management.
  • Users appreciate the real-time log correlation of FortiSIEM, enhancing their ability to troubleshoot and detect threats quickly.
  • Users value the real-time visibility of FortiSIEM, enhancing threat detection and troubleshooting across the infrastructure.
Cons
  • Users find the complex configuration of FortiSIEM challenging for initial setup and advanced reporting usability.
  • Users find the initial setup and customization complex, making it challenging to navigate advanced use cases effectively.
  • Users find the difficult customization of FortiSIEM challenging, particularly during setup and when trying to navigate the interface.
  • Users find the learning curve for setup and customization of FortiSIEM to be challenging and time-consuming.
  • Users find the poor interface design of FortiSIEM challenging, especially during setup and advanced reporting tasks.

What Are Recent G2 Reviews of FortiSIEM?

What Are G2 Users Discussing About FortiSIEM?

NetWitness Platform

NetWitness is a comprehensive threat detection, investigation and response platform that combines visibility, analytics, insight, and automation into a single solution. It collects and analyzes data across all capture points (logs, packets, netflow, endpoint and IoT) and computing platforms (physical, virtual and cloud), enriching data with threat intelligence and business context.

Average Rating: 3.9/5.0

Total Reviews: 23

How Do G2 Users Rate NetWitness Platform?

  • Activity Monitoring: 8.3/10 (Category avg: 9.1/10)
  • Data Examination: 8.3/10 (Category avg: 8.6/10)
  • Ease of Use: 7.7/10 (Category avg: 8.7/10)
  • Log Management: 8.6/10 (Category avg: 9.1/10)

Who Is the Company Behind NetWitness Platform?

  • Seller: NetWitness
  • Year Founded: 1997
  • HQ Location: Bedford, MA
  • Twitter: @Netwitness
    1,621 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    204 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 54% Large, 33% Medium

What Do G2 Reviewers Say About NetWitness Platform?

AI-generated summary from verified user reviews

Pros
  • Users value the centralized management of NetWitness Platform, which simplifies threat hunting across various data sources.
  • Users appreciate the centralized threat hunting capabilities of the NetWitness Platform, reducing tool sprawl and enhancing security efficiency.
  • Users value the packet capture and replay capabilities of NetWitness Platform for in-depth forensic investigations.
  • Users value the ability to capture full network packets for deep forensic investigation, enhancing their analytic capabilities.
  • Users appreciate the centralized view of the Management Console, simplifying threat hunting across diverse data sources.
Cons
  • Users find the complex implementation of NetWitness Platform challenging, needing expert skills for initial setup and upgrades.
  • Users face complexity in initial setup and upgrades with NetWitness Platform, requiring significant technical expertise and stability concerns.
  • Users face a complex setup for the NetWitness Platform, often needing extensive technical expertise for deployment and upgrades.
  • Users face deployment difficulties with the NetWitness Platform, often requiring advanced technical skills and experiencing upgrade instability.
  • Users find the expertise required for initial setup and upgrades complex, leading to deployment challenges.

What Are Recent G2 Reviews of NetWitness Platform?

What Are G2 Users Discussing About NetWitness Platform?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated