Mark S.
MS
Mark S.
Infrastructure Engineer
Mid-Market (51-1000 emp.)
"LogRhythm is a worthwhile investment to get detailed analytics of your network"
4.5/5
What do you like best about LogRhythm SIEM?

LogRhythm is very flexible, you can either run it virtually, on your own hardware or using an Appliance. It is straightforward to set up exactly how you want it, whether you are an IT department or a stand-alone SOC. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

Its power and flexibility can be overwhelming at times, but this is the nature of a mature SIEM solution, and therer is always LogRhythm Support or 3rd party implementation services available to assist with any query. Review collected by and hosted on G2.com.

Jiban Jyoti R.
JR
Jiban Jyoti R.
Information Security Analyst
Enterprise (> 1000 emp.)
"User friendly & one of the good SIEM product"
4/5
What do you like best about LogRhythm SIEM?

As an Analyst, I liked the WEB-UI of LogRhythm. Dashboards are very useful in investigating an alert. You can also create custom dashboard with some awesome widgets. Quick drill-down log search. Case management is also an advanced feature to track-down incidents & escalation. The AIE alarm rule is very useful in defining the complex use-cases to detect various attack methods. The product architecture & components are very well designed to adapt all varieties of business needs. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

The product was not stable, I have seen several component failure randomly, due to the capacity & log processing. I have seen frequent upgrades to fix issues. May be it was the capacity limitation in my organisation. Review collected by and hosted on G2.com.

Chetan G.
CG
Chetan G.
Team Lead - Security Architect
Mid-Market (51-1000 emp.)
"Just another SIEM with fancy Dashboards"
3/5
What do you like best about LogRhythm SIEM?

- Logrhythm is very easy to deploy

- Log source monitoring and administration is very flexible and easy to configure.

- Huge Library of OOB connectors

- Endpoint Forensic collection is very easy through its System Monitor Agents

- Log visualization and threat hunting is very easy and flexible.

- Logrhythm community is very good resource for customers, partners and administrators Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

- frequent SIEM breakdowns, Stability issues.

- Rule based correlation heavily dependent on Analyst skills.

- Performance impact if large set of data is visualized on WebUI. Review collected by and hosted on G2.com.

TR
Thivaharan R.
Mid-Market (51-1000 emp.)
"LogRythm is a good addition to an organizations security infrastructure"
5/5
What do you like best about LogRhythm SIEM?

LogRythm NextGen SIEM is a very useful addition to the security infrastructure. Through LogRythm it is possible to monitor all the devices within the network and get real-time alerts regarding security incidents. Investigating a security incident through LogRythm is very easy because the tool grabs the necessary information and provides it to the user. The suggested response increases the speed of the response. LogRythm also has very interactive interfaces which make it easy to use. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

There is nothing bad to say about this product. Review collected by and hosted on G2.com.

Girish V.
GV
Girish V.
Architect - Cloud Services
Mid-Market (51-1000 emp.)
"In the world of AI, helping customer provide security and correlation."
5/5
What do you like best about LogRhythm SIEM?

Their simple to us interface and AI building blocks are something that we helps companies focus on their security threat vector. The other thing is they keep on innovating themselves. I love their work from TAC. They provide a good support from their team with expert but it’s for US TAC only. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

The challenge on keeping their products updated along with complex design architecture is some thing that is challenging. However, this is not a blocker as this makes their design scalable. But i also don’t like the approach of documentation as it is clear on how to get things done easily. Review collected by and hosted on G2.com.

Valon J.
VJ
Valon J.
Mid-Market (51-1000 emp.)
"Spinning Its Own Wheels"
3.5/5
What do you like best about LogRhythm SIEM?

The UI is sleek and program runs smoothly. It's a great program when it comes to providing actionable events to respond to. It helps demystify logs and makes them easier to digest. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

Too many false positives paired with not as many needed options to reduce spamming alarms. As a user, without the input of an administrator, there is nothing you can do if you enviornment is going crazy and you still want to effectively meet SLAs. Mass closing and mass commenting are not sufficent when alarms generate in large number in short, timed intervals. IE: 50 alarms every thirty seconds.

This is not something manageable when a security analyst is likely managing several environments at once. More suppression methods need to be available to users. Review collected by and hosted on G2.com.

Chirantha A.
CA
Chirantha A.
Information Security Analyst
Mid-Market (51-1000 emp.)
"2+ years experience with 4 different Siems, LogR get my number 01"
4/5
What do you like best about LogRhythm SIEM?

I worked with LogR SIEM for 2+ years and same time I used another two SIEMs and now I’m using open source version of SIEM. When go to the case creating , filtering , LogR backend it’s superb and it’s easy to use and when we updating user cases it’s simple than others for me. And reporting also good. Alarms and eps count also in good. I guess for large and medium organizations LogR is the best product as SIEM. Oh correlation I love this part Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

Actually the cost , it’s too high ane others all good. Review collected by and hosted on G2.com.

Verified User in Commercial Real Estate
AC
Verified User in Commercial Real Estate
Enterprise (> 1000 emp.)
"Its been a decent experience."
4.5/5
What do you like best about LogRhythm SIEM?

The professional service guys are great. They always seem to be up for a challenge. We've had some interesting items pop-up where those guys will dig right in to attempt to get what we need via an alarm, dashboard, or report. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

The support desk really stinks. Getting someone to address issues is a task, and cumbersome. Typically you will not get first call resolution with these folks. They will log your request, and you might hear back from someone that day, you might not. Once you have agreed upon a time to meet to discuss your issue, you could be 2 or 3 days into an outage. I went for over a week a few times with issues.

You are better off contacting the professional service guys or you sales account rep to get any kind of traction on an issue. Review collected by and hosted on G2.com.

Joe L.
JL
Joe L.
Cyber Security Deputy Manager / Cyber Engineer
Enterprise (> 1000 emp.)
"The most configurable SIEM"
5/5
What do you like best about LogRhythm SIEM?

In comparison to other SIEM products Logrhythm provides enhanced configuration options, allowing for easier tailoring of information you which to see.

The ability to create correlation rules, allows full TTP's to be protected against in comparison to other SIEMs allowing focus on only a single aspect.

From an administrator point of view, the separation between the FAT console and Web view allows for both a 'customer friendly' type view in the form of the web console and a more serious view in the form of the console, to allow tasks to be completed efficiently. Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

The costing of Log rhythm is the primary downside moving from a large single client to an MSP offering SOC to many smaller companies, they simply cannot afford the product Review collected by and hosted on G2.com.

Verified User in Leisure, Travel & Tourism
AL
Verified User in Leisure, Travel & Tourism
Enterprise (> 1000 emp.)
"If you need a SiEM real bad, there are worse options"
2.5/5
What do you like best about LogRhythm SIEM?

The "Logrhythm method" is fairly consistent, once you get the hang of that, it is easier to work with. The browser front end is fairly intuative for use Review collected by and hosted on G2.com.

What do you dislike about LogRhythm SIEM?

The Web UI likes to "grow" screens from the sides, which will happen more often than you want it to. The Thick client should be going away soon, but not soon enough. The more any given server does, the more logs it makes, the more memory the LR agent needs.. on a server that already needs those resources. Get comfortable with real expressions, you will need them. Case management is primitive, manage tickets elsewhere. Reporting is both large, robust, and unhelpful. Review collected by and hosted on G2.com.