Best Security Information and Event Management (SIEM) Software Solutions - Page 9

How Many Security Information and Event Management (SIEM) Software Products Does G2 Track?

Total Products under this Category: 144

Category Stats (Sep 2026)

  • Average Rating: 4.46/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Singularity AI SIEM (+3.53%) - Among all products in this category, Singularity AI SIEM recorded the largest rating increase compared to last month

Last updated: September 15, 2026

How Does G2 Rank Security Information and Event Management (SIEM) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 6,200+ Authentic Reviews
  • 144+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Security Information and Event Management (SIEM) Software

G2 Grid® for Security Information and Event Management (SIEM) Software plotting products by satisfaction and market presence

Highlighted products: Google Security Operations, CrowdStrike Falcon Endpoint Protection Platform, Palo Alto Cortex XSIAM, ManageEngine ADAudit Plus, Todyl Security Platform, Sumo Logic, Microsoft Sentinel, and Check Point Infinity Platform.

Underlying data: [Grid® JSON](https://www.g2.com/categories/security-information-and-event-management-siem/grids.json?focus%5B%5D=google-security-operations&focus%5B%5D=crowdstrike-falcon-endpoint-protection-platform&focus%5B%5D=palo-alto-cortex-xsiam&focus%5B%5D=manageengine-adaudit-plus&focus%5B%5D=todyl-security-platform&focus%5B%5D=sumo-logic&focus%5B%5D=microsoft-sentinel&focus%5B%5D=check-point-infinity-platform)

[redacted]

Monitoring activity in a clients’ network and cross referencing it with clues from our real-world intelligence platform, our clients can take meaningful action

Who Is the Company Behind [redacted]?

  • Seller: redacted
  • Year Founded: 2015
  • HQ Location: Austin, US
  • LinkedIn® Page: www.linkedin.com
    952 employees on LinkedIn®

Reveelium

Who Is the Company Behind Reveelium?

  • Seller: ITrust.fr
  • Year Founded: 2007
  • HQ Location: Toulouse, FR
  • LinkedIn® Page: www.linkedin.com
    131 employees on LinkedIn®

SAP Enterprise Threat Detection

SAP Enterprise Threat Detection is a real-time Security Information and Event Management (SIEM solution designed to help organizations identify, analyze, and neutralize cyberattacks targeting their SAP applications as they occur, preventing significant damage. By continuously monitoring system activities, it provides immediate insights into potential threats, ensuring the security and integrity of critical business processes. Key Features and Functionality: - Log Correlation and Analysis: Aggregates and analyzes extensive log data to offer a comprehensive view of IT landscape activities, enabling forensic threat detection and the discovery of previously unknown attack variants. - Automated Threat Detection and Alerting: Utilizes predefined detection patterns to identify SAP-specific threats, allowing for the creation of custom attack detection patterns without additional coding. It also facilitates thorough attack investigations and integrates with external processes and solutions. - Straightforward Integration: Detects threats at both the application server and database levels, ensuring seamless integration across the entire IT landscape with SAP solutions. - Deployment Flexibility: Offers both on-premise and cloud deployment options, including availability as a 24/7 managed service, catering to diverse organizational needs. - Compliance Support: Assists in adhering to data protection and audit regulations by providing real-time intelligence to enforce data governance and detect both external and internal cybersecurity threats. Primary Value and Problem Solved: SAP Enterprise Threat Detection empowers organizations to proactively safeguard their SAP applications by delivering real-time insights into suspicious activities, thereby minimizing financial losses and mitigating legal and reputational risks. By enhancing transparency and simplifying the analysis of potential security incidents, it enables businesses to identify security gaps, understand the impact of threats, and ensure the continuity of operations. This comprehensive approach to threat detection and response addresses the critical need for robust cybersecurity measures in an increasingly complex digital landscape.

Who Is the Company Behind SAP Enterprise Threat Detection?

  • Seller: SAP
  • Year Founded: 1972
  • HQ Location: Walldorf
  • Twitter: @SAP
    297,052 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    149,349 employees on LinkedIn®
  • Ownership: NYSE:SAP

ScienceSoftSIEM

ScienceSoftSIEM is a SIEM platform enhanced with self-diagnostics and self-optimization features.

Who Is the Company Behind ScienceSoftSIEM?

  • Seller: ScienceSoft
  • Year Founded: 1989
  • HQ Location: McKinney, Texas
  • Twitter: @ScienceSoft
    947 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    852 employees on LinkedIn®

SearchInform SIEM

SearchInform SIEM is an out-of-the-box system for collecting and analyzing real-time security events, identifying information security incidents and responding to them. The solution accumulates information from various sources, analyzes it, records incidents and alerts the designated staff being deployed in a few hours. The SearchInform SIEM reveals: · Virus epidemics and separate infections · Attempts to gain unauthorized access to data · Account password guessing · Active accounts of dismissed employees that had to be deleted · Hardware configuration errors · Permissible operating temperature abuse · Data removal from critical resources · Use of corporate resources during off-duty time · Virtual machines and snapshots removal · Connecting new equipment to IT infrastructure · Group policy changes · TeamViewer usage, remote access to corporate resources · Critical events in protection systems · Errors and failures in information systems HOW THE SYSTEM WORKS 1.Collects events from various software and hardware sources: network equipment, third-party software, security tools, OS. 2.Analyses events and generates incidents in accordance with the rules, detects threats by identifying relationships (correlations, including cross-correlations) of events and/or incidents. 3.Automatically notifies employees in charge when incidents occur. 4.Normalises and details incidents for further investigation: determines the type and source of the incident, when integrated with AD – identifies the user. Advantages: · Out-of-the-box analytics: the system comes with a set of ready-made rules and incorporates the previous experience of working with companies from all sectors of the economy. · Incident management. It's possible to create an investigation based on one or more incidents. · Quick implementation without a need for a lengthy pre-configuration (software can be put into operation in just one day with instant results). · Easy to use: the program can be handled by an employee with no particular IT skills or knowledge of programming languages – none are required to create correlation and cross-correlation rules. · Low hardware requirements, transparent licensing, comfortable cost of ownership.

Who Is the Company Behind SearchInform SIEM?

  • Seller: SearchInform
  • Year Founded: 2005
  • HQ Location: Dubai, AE
  • Twitter: @SearchinformI
    108 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    126 employees on LinkedIn®

SecBox

SecBox is an all-in-one security solution combining SIEM, SOAR, and Threat Intelligence, designed for small and medium-sized businesses. It enables continuous threat monitoring, automated incident response, and centralized log analysis to enhance cybersecurity with minimal operational overhead.

Who Is the Company Behind SecBox?

security operation center

Leo TechnoSoft's Intelligence Driven SOC is an integrated stack of security solutions and offers security incident and event management (SIEM), identity and access management (IDM), privilege identity management (PIM) and cloud access security broker (CASB), which is built on security Big Data.

Who Is the Company Behind security operation center?

  • Seller: RinTchen
  • Year Founded: 2004
  • HQ Location: Sherman Oaks, US
  • LinkedIn® Page: www.linkedin.com
    165 employees on LinkedIn®

SentinelOne Singularity Data Lake

SentinelOne Singularity Data Lake is an AI-powered, unified data lake designed to seamlessly ingest data from on-premises, cloud, or hybrid environments. It offers organizations a centralized platform for comprehensive data analysis and security insights. Key Features and Functionality: - Unified Data Ingestion: Collects and consolidates data from diverse sources, including on-premises, cloud, and hybrid infrastructures. - AI-Powered Analytics: Utilizes artificial intelligence to analyze vast datasets, identifying patterns and potential security threats. - Scalability: Designed to handle large volumes of data, ensuring performance remains optimal as data grows. - Real-Time Insights: Provides immediate visibility into security events, enabling swift response to incidents. Primary Value and Problem Solved: Singularity Data Lake addresses the challenge of managing and analyzing extensive and diverse data sources within modern IT environments. By offering a centralized, AI-driven platform, it empowers organizations to detect and respond to security threats more effectively, enhancing overall cybersecurity posture and operational efficiency.

Who Is the Company Behind SentinelOne Singularity Data Lake?

  • Seller: SentinelOne
  • Year Founded: 2013
  • HQ Location: Mountain View, CA
  • Twitter: @SentinelOne
    57,863 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    6,571 employees on LinkedIn®
  • Ownership: NASDAQ: S

SGBox

Who Is the Company Behind SGBox?

  • Seller: SGBox
  • Year Founded: 2009
  • HQ Location: Milan, IT
  • LinkedIn® Page: www.linkedin.com
    7 employees on LinkedIn®

SGBox

Who Is the Company Behind SGBox?

  • Seller: SGBox
  • Year Founded: 2009
  • HQ Location: Milan, IT
  • LinkedIn® Page: www.linkedin.com
    7 employees on LinkedIn®

ShieldVision

ShieldVision is security software that provides threat detection, investigation, response capabilities, and managed SOC services.

Who Is the Company Behind ShieldVision?

SIEMOC

SIEMOC is an integrated Security Information and Event Management (SIEM) solution developed by RISE, designed to provide real-time detection of security threats within minutes. It offers a unified command center that delivers comprehensive visibility into IT infrastructures, enabling organizations to demonstrate compliance, reduce operational costs, and streamline audits, fraud detection, and forensic investigations. Leveraging automation and advanced machine learning algorithms, SIEMOC ensures a high detection rate, making it a robust, scalable, flexible, and cost-effective alternative for high-security sectors such as finance and healthcare. Key Features and Functionality: - Unified Command Center: Provides real-time insights into IT environments, facilitating compliance verification and operational efficiency. - High Detection Rate: Utilizes automation and state-of-the-art machine learning algorithms to identify security threats promptly. - Out-of-the-Box Security Enhancement: Comes with expert-defined correlation rules that trigger automatic alerts for potential security breaches from the outset. - Threat Intelligence Integration: Enhances correlation rules through automatic updates via integrated threat intelligence feeds. - Unlimited Logging: Collects and indexes system and application logs from any source, ensuring comprehensive data coverage. - Real-Time Correlation: Performs real-time log and event correlations through upstream normalization of log data, enabling swift threat detection. Primary Value and User Solutions: SIEMOC addresses the critical need for organizations to detect and respond to security threats in real time, thereby safeguarding sensitive data and maintaining regulatory compliance. By offering a centralized platform for monitoring and analyzing security events, it reduces the complexity and effort associated with audits and forensic investigations. The integration of advanced machine learning algorithms and automation enhances the accuracy and speed of threat detection, providing a reliable solution for industries that require stringent security measures, such as finance and healthcare.

Who Is the Company Behind SIEMOC?

  • Seller: COMPRISE
  • Year Founded: 2019
  • HQ Location: Vienna, AT
  • LinkedIn® Page: www.linkedin.com
    2 employees on LinkedIn®

SIMBUS

SIMBUS is a complete privacy and security management software that is designed to help any size facility get and maintain compliance.

Who Is the Company Behind SIMBUS?

  • Seller: Simbus
  • Year Founded: 2014
  • HQ Location: Lake Forest, US
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®
Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 31, 2024