Best siem platform to use. Threat hunting Review collected by and hosted on G2.com.
None, beacause most of the services are great to use. Review collected by and hosted on G2.com.
Best siem platform to use. Threat hunting Review collected by and hosted on G2.com.
None, beacause most of the services are great to use. Review collected by and hosted on G2.com.
The features are good and perform well as expected Review collected by and hosted on G2.com.
Setup is quite rigid and complex, Need training and materials for users Review collected by and hosted on G2.com.

LogRhythm, like any other SIEM, can be a complicated platform. Having used two other SIEM platforms, LogRhythm has one of the most streamlined configurations and overall usability. The SIEM comes with both a thick-client and web interface. The thick-client is comprehensive, while the web interface features the most common features such as dashboards, and SOAR. Review collected by and hosted on G2.com.
LogRhythm relies heavily on the thick-client for most of the configuration, which has traditionally been the case with most SIEM platforms. The web interface is not as comprehensive as I would like. Some of the flat-file ingestion of logs, such as for an email gateway (Mimecast) integration is less than stellar as their is no direct integration with the Mimecast platform. Review collected by and hosted on G2.com.
Have experience with logrythem tool
Easy to configure and administrate.
specific use cases and helps to Handel faster Review collected by and hosted on G2.com.
Haven't face any issue so far .. going on smooth Review collected by and hosted on G2.com.
LogRhythm provides powerful Rule Creation & Integration APIs that can collect logs from various devices at once. It can process millions of logs every second - very powerful. Review collected by and hosted on G2.com.
Drill down on Multiple Alarms through LR Console is not possible. they really need to add this feature. ArcSight has this feature. Review collected by and hosted on G2.com.

This particular solution is primarily used by our staff also as by firewall administrators. We put it to use to aggregate logs, correlate functions and automate firewall protection policies. The main purpose of its is actually updating the security policy depending on the changing threat vectors of the Internet of ours. Review collected by and hosted on G2.com.
The administrator management panel is quite unintuitive and some functions are hard to find Review collected by and hosted on G2.com.

How logrhythm offers appliance, cloud and software install. This helps when you depend on a data center to provide infrastructure to spin up VM's. Also how we can customize dashboards for different teams. Restrict what other teams can see. How can we remove unwanted logs from being captured thus making appliance faster. Integration with Microsoft, such Azure and O365, specially the security components. Review collected by and hosted on G2.com.
Integration with not well known devices, such mikrotik. I could leverage API, but there are not much information on how to use API. This is not Logrhythm fault, but I would like to see more local groups that are using Logrhythm to collaborate so we can discuss issues or features that can benefit each other. Review collected by and hosted on G2.com.
Great product. Handles enterprise software.
Can add on an artificial intelligence engine if necessary.
Network monitoring functionality added on. Review collected by and hosted on G2.com.
Does not function in the cloud as seamlessly. Review collected by and hosted on G2.com.

LogRhythm AI engine rules and alarm system is very helpful to detects malicious activities quickly. Use-Cases can create with various functionalities that is very helpful while creating effective use cases.Another super feature is LR search option. we could run a log search with different type of filters for given time period. LR event search feature always helps to catch AI engine rules and also logs that became events.This feature very helpful while incident investigating. Review collected by and hosted on G2.com.
Time zone for logs messages different on downloaded CSV. No option to change it.it is always GMT +0. functionality for log massage time zone change still seems to be not available with LR. need to check and provide soon, since lot of customers facing trouble to identify what is the exact time for the event.some time we have to manually change the log times times on CSV. Review collected by and hosted on G2.com.

LogRhythm is one of the best SIEM solutions i have used so far. it provide security analysts ability to perform quick drill down investigations and do deep analysis of the security incidents. It has a easy to use UI design and performing investigations on the LogRhythm is very easy. Quick filters in the investigations are also very helpful in investigations.
Ability to integrate all the major product and services logs, as well as support for all the one offs.
It has a user-friendly dashboard. Therefore, even a beginner can easily understand and monitor the dashboard. Also, I like to dark theme of the LogRhythm.
It was competitively priced compared to other SIEM solutions and they helped with the entire deployment so that was greatly appreciated.
The best part of the SIEM is the quick review of logs. Customer service responses quickly, and continues until the problem is resolved. Installation was not difficult, but configuration is the biggest challenge. Linux systems are simple to configure for log forwarding but the Windows side required some research and trial and error. There are some components in my network that had to be upgraded to integrate with the SIEM. Review collected by and hosted on G2.com.
Actually, the correlation is a little bit difficult thing. So, you should have a good knowledge of that. Also, somewhat expensive when compared with other similar products.
Product implementation is somewhat difficult and we faced some log parsing issues when the logs were forwarded from Arcsight SIEM log forwarder to the LogRhythm log Collectors.
I don’t like the login screen. I just think it doesn’t fit well with a security management tool. Also, LogRhytm needs to improve with its documentation. There are too many tutorials written, but maybe adding video content with the most common issues could work better. Also, the information showed when an alarm rings should be configurable, in order to show only the priority data. Review collected by and hosted on G2.com.