# Best Security Information and Event Management (SIEM) Software Solutions

## How Many Security Information and Event Management (SIEM) Software Products Does G2 Track?

**Total Products under this Category:** 123

### Category Stats (Aug 2026)

- **Average Rating:** 4.46/5 (↑0.02 vs Jul 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Singularity AI SIEM (+23.8%) - Among all products in this category, Singularity AI SIEM recorded the largest rating increase compared to last month

_Last updated: August 01, 2026_

## How Does G2 Rank Security Information and Event Management (SIEM) Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 5,900+ Authentic Reviews
- 123+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Security Information and Event Management (SIEM) Software
 ![G2 Grid® for Security Information and Event Management (SIEM) Software plotting products by satisfaction and market presence](https://www.g2.com/categories/security-information-and-event-management-siem/grids.png?focus%5B%5D=68606&focus%5B%5D=1430041&focus%5B%5D=30500&focus%5B%5D=5691&focus%5B%5D=10436&focus%5B%5D=53174&focus%5B%5D=58203&focus%5B%5D=122123)

Highlighted products: CrowdStrike Falcon Endpoint Protection Platform, Palo Alto Cortex XSIAM, Google Security Operations, ManageEngine ADAudit Plus, Sumo Logic, Todyl Security Platform, Check Point Infinity Platform, and Microsoft Sentinel.

Underlying data: [Grid® JSON](https://www.g2.com/categories/security-information-and-event-management-siem/grids.json?focus%5B%5D=crowdstrike-falcon-endpoint-protection-platform&focus%5B%5D=palo-alto-cortex-xsiam&focus%5B%5D=google-security-operations&focus%5B%5D=manageengine-adaudit-plus&focus%5B%5D=sumo-logic&focus%5B%5D=todyl-security-platform&focus%5B%5D=check-point-infinity-platform&focus%5B%5D=microsoft-sentinel)

**Sponsored**

### JumpCloud

JumpCloud® is the AI-powered identity infrastructure that unifies lifecycle management for humans, devices, and autonomous agents. JumpCloud gives IT teams complete visibility and control over every identity and every access point. JumpCloud helps organizations cut complexity, automate secure workflows, and put AI to work safely. Secure every identity. Human or not. Intelligent, secure IT for the agentic era.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=1081&secure%5Bchosen_at%5D=2026-08-01T14%3A25%3A00Z&secure%5Bdisplayable_resource_id%5D=1387&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=retargeted_product&secure%5Bplacement_resource_ids%5D%5B%5D=36316&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=36316&secure%5Bresource_id%5D=1081&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fsecurity-information-and-event-management-siem&secure%5Btoken%5D=9c072a9757eaf14226ac38d7a5c81adcb42772c7e0dbdda33bc99e565efd4e75&secure%5Burl%5D=https%3A%2F%2Fjumpcloud.com%2Flp%2Funified-enpoint-management-g2%3Futm_source%3DG2-Paid%26utm_medium%3DPaid-Directory%26utm_content%3DSaaS_Management%26utm_campaign%3DG2Clicks&secure%5Burl_type%5D=custom_url)

### [CrowdStrike Falcon Endpoint Protection Platform](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews)

Organizations today face a serious challenge: managing numerous security vendors and tools while confronting an ever-evolving threat landscape. Sophisticated adversaries are becoming smarter, faster, and more evasive, launching complex attacks that can strike in minutes or even seconds. Traditional security approaches struggle to keep pace, leaving businesses vulnerable. The CrowdStrike Falcon Platform addresses this by offering a unified, cloud-native solution. It consolidates previously siloed security solutions and incorporates third-party data into a single platform with one efficient and resource-conscious agent, leveraging advanced AI and real-time threat intelligence. This approach simplifies security operations, speeds analyst decision making, and enhances protection to stop the breach, allowing organizations to reduce risk with less complexity and lower costs. CrowdStrike's Falcon Platform includes: - Endpoint Security: Secure the endpoint, stop the breach - Identify Protection: Identity is the front line, defend it - Next-Gen SIEM: The future of SIEM, today - Data Protection: Real-time data protection from endpoint to cloud - Exposure Management: Understand risk to stop breaches - Charlotte AI: Powering the next evolution of the SOC

**Average Rating:** 4.6/5.0

**Total Reviews:** 415

#### How Do G2 Users Rate CrowdStrike Falcon Endpoint Protection Platform?

- **Activity Monitoring:** 9.5/10 (Category avg: 9.1/10)
- **Data Examination:** 8.8/10 (Category avg: 8.6/10)
- **Ease of Use:** 9.0/10 (Category avg: 8.7/10)
- **Log Management:** 8.7/10 (Category avg: 9.1/10)

#### Who Is the Company Behind CrowdStrike Falcon Endpoint Protection Platform?

- **Seller:** [CrowdStrike](https://www.g2.com/sellers/crowdstrike)
- **Company Website:** www.crowdstrike.com
- **Year Founded:** 2011
- **HQ Location:** Sunnyvale, CA
- **Twitter:** @CrowdStrike  
110,809 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f13dce0bc1628ccb762ed9d5acb4e0f0998a717639b903c3d3a271ef1da6ad7b&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F2497653%2F&secure%5Burl_type%5D=linkedin_company_website)  
11,343 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Security Analyst, Cyber Security Analyst
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 43% Large, 42% Medium

#### What Do G2 Reviewers Say About CrowdStrike Falcon Endpoint Protection Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **lightweight performance and powerful threat detection** of CrowdStrike Falcon, enhancing operational efficiency and security.
- Users value the **effective threat detection** of CrowdStrike Falcon, ensuring robust security without compromising system performance.
- Users appreciate the **ease of use** of CrowdStrike Falcon, benefiting from a lightweight and efficient security solution.
- Users appreciate the **advanced real-time threat protection** of CrowdStrike Falcon, enhancing security with minimal system impact.
- Users appreciate the **strong threat detection** of CrowdStrike Falcon, effectively catching both known and unknown threats seamlessly.

##### Cons

- Users find the **cost of CrowdStrike Falcon** to be high, especially for smaller teams needing advanced features.
- Users face **initial complexity and a steep learning curve** with CrowdStrike Falcon, making it challenging for non-technical personnel.
- Users find the **initial learning curve** of CrowdStrike challenging, especially transitioning from other systems like Splunk.
- Users find the **high cost and limited features** frustrating, particularly for smaller teams needing advanced capabilities.
- Users express concern over **pricing issues** , especially for smaller organizations needing advanced features with additional licensing costs.

#### What Are Recent G2 Reviews of CrowdStrike Falcon Endpoint Protection Platform?

**["Crowdstrike Falcon: Proactive Security, Steep Learning Curve"](https://www.g2.com/survey_responses/crowdstrike-falcon-endpoint-protection-platform-review-12958852)**

**Rating:** 5.0/5.0 stars

_— Ansh B._

[Read full review](https://www.g2.com/survey_responses/crowdstrike-falcon-endpoint-protection-platform-review-12958852)

**["Lightweight Deployment, Powerful Incident Response Visibility"](https://www.g2.com/survey_responses/crowdstrike-falcon-endpoint-protection-platform-review-12952621)**

**Rating:** 5.0/5.0 stars

_— Anup A._

[Read full review](https://www.g2.com/survey_responses/crowdstrike-falcon-endpoint-protection-platform-review-12952621)

#### What Are G2 Users Discussing About CrowdStrike Falcon Endpoint Protection Platform?

- [How does Falcon prevent work?](https://www.g2.com/discussions/how-does-falcon-prevent-work) - 1 comment
- [Does CrowdStrike offer MFA?](https://www.g2.com/discussions/does-crowdstrike-offer-mfa) - 1 comment
- [What is OverWatch in CrowdStrike?](https://www.g2.com/discussions/what-is-overwatch-in-crowdstrike) - 1 comment
- [How much does CrowdStrike Falcon X cost?](https://www.g2.com/discussions/how-much-does-crowdstrike-falcon-x-cost)
- [What is MDR detection?](https://www.g2.com/discussions/what-is-mdr-detection)

### [Google Security Operations](https://www.g2.com/es/products/google-security-operations/reviews)

Las Operaciones de Seguridad de Google ofrecen una experiencia unificada a través de SIEM, SOAR e inteligencia de amenazas para mejorar la detección, investigación y respuesta. Recoge datos de telemetría de seguridad, aplica inteligencia de amenazas para identificar amenazas de alta prioridad, impulsa la respuesta con automatización de libros de jugadas, gestión de casos y colaboración. También proporciona defensa agéntica nativa de Gemini para ayudar a manejar de manera autónoma flujos de trabajo como la clasificación de alertas, la caza de amenazas y la ingeniería de detección. Las Operaciones de Seguridad de Google también apoyan la Defensa de Amenazas con IA para monitorear, detectar y responder a amenazas de código que no posees o no puedes parchear.

**Average Rating:** 4.4/5.0

**Total Reviews:** 64

#### How Do G2 Users Rate Google Security Operations?

- **Monitoreo de actividad:** 9.8/10 (Category avg: 9.1/10)
- **Examen de datos:** 9.5/10 (Category avg: 8.6/10)
- **Facilidad de uso:** 8.3/10 (Category avg: 8.7/10)
- **Administración de registros:** 9.5/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Google Security Operations?

- **Vendedor:** [Google](https://www.g2.com/es/sellers/google)
- **Año de fundación:** 1998
- **Ubicación de la sede:** Mountain View, CA
- **Twitter:** @google  
31,899,995 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=fe4a5936665c9702418dd53c477fef5a7baea08078bb117ed67e966fc581b9ec&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1441%2F&secure%5Burl_type%5D=linkedin_company_website)  
341,888 empleados en LinkedIn®
- **Propiedad:** NASDAQ:GOOG

#### Who Uses This Product?

- **Top Industries:** Tecnología de la información y servicios, Telecomunicaciones
- **Company Size:** 42% Medium, 38% Large

#### What Do G2 Reviewers Say About Google Security Operations?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios valoran las **excelentes características de ciberseguridad** de Google Security Operations, apreciando su facilidad de uso y escalabilidad.
- Los usuarios encuentran que las Operaciones de Seguridad de Google son **muy fáciles de usar** , detectando amenazas de manera efectiva con una integración perfecta.
- Los usuarios aprecian las capacidades de **detección de amenazas eficiente** de Google Security Operations, mejorando la seguridad y los tiempos de respuesta.
- Los usuarios valoran las **características de seguridad integrales** de las Operaciones de Seguridad de Google para una detección y respuesta efectiva a amenazas.
- Los usuarios valoran las **fáciles integraciones** de las Operaciones de Seguridad de Google, mejorando su experiencia general de gestión de seguridad.

##### Cons

- Los usuarios encuentran que las Operaciones de Seguridad de Google son **costosas y complejas** , lo que plantea desafíos tanto para la configuración como para el mantenimiento continuo.
- Los usuarios informan de una **curva de aprendizaje pronunciada** con Google Security Operations, lo que hace que la utilización efectiva sea un desafío para algunas organizaciones.
- Los usuarios encuentran la **complejidad de implementación** de las Operaciones de Seguridad de Google desafiante, requiriendo tiempo y recursos para un uso efectivo.
- Los usuarios encuentran que la **dificultad de aprendizaje** de las Operaciones de Seguridad de Google es una barrera debido a las características complejas y la configuración.
- Los usuarios encuentran que la **personalización limitada** en las Operaciones de Seguridad de Google dificulta la adaptabilidad y afecta la experiencia general del usuario.

#### What Are Recent G2 Reviews of Google Security Operations?

**["Una plataforma confiable para detectar y responder a amenazas cibernéticas"](https://www.g2.com/es/survey_responses/google-security-operations-review-13186617)**

**Rating:** 4.0/5.0 stars

_— Jeni J._

[Read full review](https://www.g2.com/es/survey_responses/google-security-operations-review-13186617)

**["Visibilidad de Seguridad Centralizada y Escalable con Fuerte Detección e Inteligencia de Amenazas"](https://www.g2.com/es/survey_responses/google-security-operations-review-13184859)**

**Rating:** 4.5/5.0 stars

_— Muhammed A._

[Read full review](https://www.g2.com/es/survey_responses/google-security-operations-review-13184859)

### [Palo Alto Cortex XSIAM](https://www.g2.com/products/palo-alto-cortex-xsiam/reviews)

Product Description: Palo Alto Networks' Cortex XSIAM is an AI-driven security operations platform designed to transform traditional Security Operations Centers by integrating and automating key functions such as data centralization, threat detection, and incident response. By leveraging machine learning and automation, it enables organizations to detect and respond to threats more efficiently, reducing manual workloads and improving overall security posture. Key Features and Functionality: - Data Centralization: Aggregates data from various sources into a unified platform, providing comprehensive visibility across the enterprise. - AI-Powered Threat Detection: Utilizes machine learning algorithms to identify anomalies and potential threats in real-time. - Automated Incident Response: Streamlines response processes through automation, enabling rapid mitigation of security incidents. - Integrated SOC Capabilities: Combines functions such as Extended Detection and Response , Security Orchestration, Automation, and Response , Attack Surface Management , and Security Information and Event Management into a cohesive platform, eliminating the need for multiple disparate tools. - Scalability: Designed to handle large volumes of data and adapt to the evolving needs of modern enterprises. Primary Value and Problem Solved: Cortex XSIAM addresses the challenges of disjointed data, weak threat defense, and heavy reliance on manual work in traditional SOCs. By centralizing data and automating security operations, it simplifies processes, enhances threat detection accuracy, and accelerates incident response times. This transformation enables organizations to proactively outpace threats, reduce operational costs, and achieve a more robust security posture.

**Average Rating:** 4.5/5.0

**Total Reviews:** 84

#### How Do G2 Users Rate Palo Alto Cortex XSIAM?

- **Activity Monitoring:** 9.4/10 (Category avg: 9.1/10)
- **Data Examination:** 8.5/10 (Category avg: 8.6/10)
- **Ease of Use:** 8.6/10 (Category avg: 8.7/10)
- **Log Management:** 9.4/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Palo Alto Cortex XSIAM?

- **Seller:** [Palo Alto Networks](https://www.g2.com/sellers/palo-alto-networks)
- **Company Website:** www.paloaltonetworks.com
- **Year Founded:** 2005
- **HQ Location:** Santa Clara, CA
- **Twitter:** @PaloAltoNtwks  
128,951 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=283fa006a7b7db5565e608e4d1bc1dafae45bdf4b312f2cd5bb208ac9271f81d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F30086%2F&secure%5Burl_type%5D=linkedin_company_website)  
22,313 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 44% Large, 36% Medium

#### What Do G2 Reviewers Say About Palo Alto Cortex XSIAM?

_AI-generated summary from verified user reviews_

##### Pros

- Users highlight **best-in-class log management** and effective alerting features, enhancing the overall usability and integration.
- Users appreciate the **user-friendly dashboards** of Palo Alto Cortex XSIAM, highlighting ease of understanding alerts and metrics.
- Users value the **real-time monitoring** capabilities of Palo Alto Cortex XSIAM, enhancing threat detection and response efficiency.
- Users appreciate the **user-friendly interface** of Palo Alto Cortex XSIAM, making monitoring and deployment seamless and efficient.
- Users appreciate the **good dashboard customization** in Palo Alto Cortex XSIAM, citing ease of use and integration.

##### Cons

- Users find the solution **resource intensive** , increasing costs and complicating implementation due to high hardware requirements.
- Users find the **complex implementation** of Palo Alto Cortex XSIAM time-consuming and resource-intensive, requiring significant technical expertise.
- Users find the **cost** of Palo Alto Cortex XSIAM to be higher than competitors, impacting affordability for smaller companies.
- Users report **dashboard issues** that hinder monitoring and create a messy interface, impacting usability and visibility.
- Users struggle with the **difficult setup** of Palo Alto Cortex XSIAM, finding it complex and time-consuming for implementation.

#### What Are Recent G2 Reviews of Palo Alto Cortex XSIAM?

**["Palo Alto Cortex XSIAM: Centralized Security with Powerful AI Automation"](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13174734)**

**Rating:** 4.5/5.0 stars

_— Tim H._

[Read full review](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13174734)

**["One phishing incident could have buried our team but cortex XSIAM connected the whole story."](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13174681)**

**Rating:** 5.0/5.0 stars

_— Audrey W._

[Read full review](https://www.g2.com/survey_responses/palo-alto-cortex-xsiam-review-13174681)

#### What Are G2 Users Discussing About Palo Alto Cortex XSIAM?

- [What is IBM Security ReaQta used for?](https://www.g2.com/discussions/what-is-ibm-security-reaqta-used-for) - 1 comment
- [What does QRadar stand for?](https://www.g2.com/discussions/what-does-qradar-stand-for) - 1 comment, 1 upvote
- [How do I use IBM QRadar?](https://www.g2.com/discussions/how-do-i-use-ibm-qradar) - 1 comment
- [What are the key component of IBM QRadar?](https://www.g2.com/discussions/what-are-the-key-component-of-ibm-qradar) - 1 comment
- [What is IBM QRadar Siem?](https://www.g2.com/discussions/what-is-ibm-qradar-siem) - 1 comment

### [ManageEngine ADAudit Plus](https://www.g2.com/es/products/manageengine-adaudit-plus/reviews)

ADAudit Plus es un auditor impulsado por UBA que ayuda a mantener su AD, Azure AD, sistemas de archivos (incluyendo Windows, NetApp, EMC, Synology, Hitachi y Huawei), servidores Windows y estaciones de trabajo seguros y en cumplimiento. ADAudit Plus transforma datos de registros de eventos crudos y ruidosos en informes y alertas en tiempo real, permitiéndole obtener visibilidad completa de las actividades que ocurren en su ecosistema de servidores Windows con solo unos pocos clics. Más de 10,000 organizaciones en todo el mundo confían en ADAudit Plus para: 1. Notificarles instantáneamente sobre cambios en sus entornos de servidores Windows. 2. Rastrear continuamente la actividad de inicio de sesión de usuarios de Windows. 3. Monitorear el tiempo activo e inactivo que los empleados pasan en sus estaciones de trabajo. 4. Detectar y solucionar bloqueos de cuentas de AD. 5. Proporcionar un rastro de auditoría consolidado de actividades de usuarios privilegiados a través de sus dominios. 6. Rastrear cambios e inicios de sesión en Azure AD. 7. Auditar accesos a archivos en sistemas de archivos de Windows, NetApp, EMC, Synology, Hitachi y Huawei. 8. Monitorear la integridad de archivos en archivos locales que residen en sistemas Windows. 9. Mitigar amenazas internas aprovechando UBA y la automatización de respuestas. 10. Generar informes de cumplimiento listos para auditoría para SOX, el GDPR y otros mandatos de TI.

**Average Rating:** 4.6/5.0

**Total Reviews:** 59

#### How Do G2 Users Rate ManageEngine ADAudit Plus?

- **Monitoreo de actividad:** 9.4/10 (Category avg: 9.1/10)
- **Examen de datos:** 8.5/10 (Category avg: 8.6/10)
- **Facilidad de uso:** 8.8/10 (Category avg: 8.7/10)
- **Administración de registros:** 8.8/10 (Category avg: 9.1/10)

#### Who Is the Company Behind ManageEngine ADAudit Plus?

- **Vendedor:** [Zoho](https://www.g2.com/es/sellers/zoho-b00ca9d5-bca8-41b5-a8ad-275480841704)
- **Año de fundación:** 1996
- **Ubicación de la sede:** Austin, TX
- **Twitter:** @Zoho  
137,880 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9c8e45ddb296c32c6c5597ef9ba945c94562c57624f7bd1dcf1a9e9931f71578&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F38373%2F&secure%5Burl_type%5D=linkedin_company_website)  
30,766 empleados en LinkedIn®
- **Teléfono:** +1 (888) 900-9646 

#### Who Uses This Product?

- **Top Industries:** Atención hospitalaria y sanitaria, Tecnología de la información y servicios
- **Company Size:** 59% Medium, 32% Large

#### What Do G2 Reviewers Say About ManageEngine ADAudit Plus?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios aprecian la **profundidad de los informes** en ADAudit Plus, mejorando la visibilidad en los entornos de AD con opciones predefinidas.
- Los usuarios valoran la **usabilidad intuitiva del panel de control** de ADAudit Plus, que ofrece una navegación fácil y opciones de informes completas.
- Los usuarios aprecian la **fácil configuración y las amplias opciones de informes** en ManageEngine ADAudit Plus para un monitoreo efectivo.
- Los usuarios valoran el **diseño del panel** de ADAudit Plus por su visión general integral y sus opciones de informes detallados.
- Los usuarios valoran el **panel intuitivo y las amplias opciones de informes** en ADAudit Plus para una gestión efectiva de Active Directory.

##### Cons

- Los usuarios encuentran los **niveles de alerta limitados** insuficientes para ajustar finamente las notificaciones, a pesar de las opciones de informes útiles y las funciones de búsqueda.
- Los usuarios encuentran la **sobrecarga de datos** de numerosas opciones de informes abrumadora, lo que dificulta localizar informes específicos.
- Los usuarios encuentran el producto **caro** , lo que afecta su satisfacción general a pesar de sus características y capacidades.
- Los usuarios experimentan **falsos positivos** con las alertas, lo cual podría mejorarse con más granularidad en los niveles de severidad.
- Los usuarios están frustrados con el **alto uso de recursos** de ManageEngine ADAudit Plus, lo que afecta significativamente el rendimiento del sistema.

#### What Are Recent G2 Reviews of ManageEngine ADAudit Plus?

**["Gran herramienta para auditorías e investigaciones de Active Directory"](https://www.g2.com/es/survey_responses/manageengine-adaudit-plus-review-13001820)**

**Rating:** 5.0/5.0 stars

_— Jose R._

[Read full review](https://www.g2.com/es/survey_responses/manageengine-adaudit-plus-review-13001820)

**["Fácil configuración, informes potentes y gran valor"](https://www.g2.com/es/survey_responses/manageengine-adaudit-plus-review-12999020)**

**Rating:** 4.5/5.0 stars

_— Ryan A._

[Read full review](https://www.g2.com/es/survey_responses/manageengine-adaudit-plus-review-12999020)

#### What Are G2 Users Discussing About ManageEngine ADAudit Plus?

- [What does AD audit do?](https://www.g2.com/es/discussions/what-does-ad-audit-do)
- [Is Ad audit plus a SIEM?](https://www.g2.com/es/discussions/is-ad-audit-plus-a-siem)
- [What is ManageEngine Audit Plus?](https://www.g2.com/es/discussions/what-is-manageengine-audit-plus)
- [What does ADAudit plus do?](https://www.g2.com/es/discussions/what-does-adaudit-plus-do)

### [Sumo Logic](https://www.g2.com/products/sumo-logic/reviews)

Sumo Logic, Inc. unifies and analyzes enterprise data, translating it into actionable insights through one AI-powered cloud-native log analytics platform. This single source of truth enables Dev, Sec and Ops teams to simplify complexity, collaborate efficiently and accelerate data-driven decisions that drive business value. Customers around the world rely on the Sumo Logic SaaS Log Analytics Platform for trusted insights to ensure application reliability, secure and protect against modern security threats, and gain insights into their cloud infrastructures. For more information, visit: SUMOLOGIC.COM

**Average Rating:** 4.3/5.0

**Total Reviews:** 392

#### How Do G2 Users Rate Sumo Logic?

- **Activity Monitoring:** 9.1/10 (Category avg: 9.1/10)
- **Data Examination:** 9.0/10 (Category avg: 8.6/10)
- **Ease of Use:** 8.2/10 (Category avg: 8.7/10)
- **Log Management:** 9.4/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Sumo Logic?

- **Seller:** [Sumo Logic](https://www.g2.com/sellers/sumo-logic)
- **Company Website:** www.sumologic.com
- **Year Founded:** 2010
- **HQ Location:** Redwood City, CA
- **Twitter:** @SumoLogic  
6,542 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=405f2514b57035d31a9696f673d9692138c137173787398caeba6974c512d779&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1037816%2F&secure%5Burl_type%5D=linkedin_company_website)  
838 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Software Engineer, Senior Software Engineer
- **Top Industries:** Information Technology and Services, Computer Software
- **Company Size:** 48% Medium, 37% Large

#### What Do G2 Reviewers Say About Sumo Logic?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **ease of use** of Sumo Logic, finding it simple to learn and configure effectively.
- Users appreciate the **ease of searching and configuring logs** , enhancing their monitoring and tracing capabilities effortlessly.
- Users value the **Continuous Intelligence feature** of Sumo Logic for its quick and actionable insights from diverse data.
- Users commend **Sumo Logic's visual power and flexibility** , enhancing KPI display and minimizing log-related workload.
- Users value the **real-time insights** offered by Sumo Logic, enhancing monitoring and analytics for better decision-making.

##### Cons

- Users find Sumo Logic to be **expensive** , often questioning if its value justifies the high pricing.
- Users find the **difficult learning** curve of Sumo Logic hampers quick proficiency in using its features effectively.
- Users find Sumo Logic's **steep learning curve** challenging, especially when mastering complex queries and setup processes.
- Users find the **steep learning curve** of Sumo Logic challenging, requiring significant time to gain proficiency.
- Users experience **slow performance** due to a clunky UI and delayed alerting, impacting efficiency and response times.

#### What Are Recent G2 Reviews of Sumo Logic?

**["Secure, Privacy-First AI Logging That Helps Reduce Data Breach Risk"](https://www.g2.com/survey_responses/sumo-logic-review-13156334)**

**Rating:** 5.0/5.0 stars

_— Aiyappa Baleyada B._

[Read full review](https://www.g2.com/survey_responses/sumo-logic-review-13156334)

**["Centralized Logging with Intuitive Dashboards"](https://www.g2.com/survey_responses/sumo-logic-review-12948839)**

**Rating:** 4.5/5.0 stars

_— Sudarshan B._

[Read full review](https://www.g2.com/survey_responses/sumo-logic-review-12948839)

#### What Are G2 Users Discussing About Sumo Logic?

- [What is Cloud SOAR used for?](https://www.g2.com/discussions/what-is-cloud-soar-used-for) - 1 comment, 1 upvote
- [Is Sumo Logic a SIEM?](https://www.g2.com/discussions/is-sumo-logic-a-siem)
- [What is Sumo Logic used for?](https://www.g2.com/discussions/what-is-sumo-logic-used-for)
- [Who are Sumo Logic competitors?](https://www.g2.com/discussions/who-are-sumo-logic-competitors) - 1 comment
- [How much does Sumo Logic cost?](https://www.g2.com/discussions/how-much-does-sumo-logic-cost)

### [Todyl Security Platform](https://www.g2.com/products/todyl-security-platform/reviews)

Todyl is an AI-powered Cybersecurity and Assurance Platform for threat, risk, and compliance management delivered through a single agent and a single portal. Our platform defends against modern, advanced threats spanning identity, endpoint, network, cloud, SaaS, and more. We also simplify meeting and demonstrating extensive compliance and insurance requirements with centralized data collection and reporting, easy-to-use assessment tools, a built-in risk register, and dashboards to cut back on manual reporting and spreadsheet sprawl. Our platform delivers a layered approach to cybersecurity, spanning SASE, Micro-Segmentation (LZT), Endpoint Security, SIEM, MXDR, and GRC all delivered through the same agent, in a cloud native platform. It’s easy to implement as a cost effective, fully integrated single solution that can consolidate and simplify your security and compliance programs. You can also deploy individual modules to meet your current needs, with a simple toggle within the UI to add or trial new modules when you need them. And an integrated Assurance Marketplace helps you complete your security program with additional services like incident response and penetration testing, and streamlined access to cyber insurance providers.

**Average Rating:** 4.7/5.0

**Total Reviews:** 106

#### How Do G2 Users Rate Todyl Security Platform?

- **Activity Monitoring:** 9.4/10 (Category avg: 9.1/10)
- **Data Examination:** 8.9/10 (Category avg: 8.6/10)
- **Ease of Use:** 8.7/10 (Category avg: 8.7/10)
- **Log Management:** 9.4/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Todyl Security Platform?

- **Seller:** [Todyl](https://www.g2.com/sellers/todyl)
- **Company Website:** www.todyl.com
- **Year Founded:** 2015
- **HQ Location:** Denver, CO
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=05d7ce90e9975077322588a582ff9aca56286ea0270706e601aa212b6ec71ed8&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Ftodylprotection&secure%5Burl_type%5D=linkedin_company_website)  
122 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** President, Owner
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 75% Small, 8% Medium

#### What Do G2 Reviewers Say About Todyl Security Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **ease of use** of Todyl Security Platform, finding it intuitive and effortlessly manageable.
- Users commend the **responsive and accessible customer support** of Todyl, ensuring quick solutions and seamless integration.
- Users value the **comprehensive and user-friendly features** of Todyl Security Platform, enhancing security with ease and integration.
- Users value the **comprehensive security features** of Todyl, enhancing protection for devices away from the office.
- Users highlight the **deployment ease** of Todyl Security Platform, appreciating its intuitive setup and seamless integration.

##### Cons

- Users feel that **improvements are needed** in customization, integration, and easing the learning curve for Todyl's platform.
- Users note **integration issues** with Todyl, citing limited API and a need for improved third-party interoperability.
- Users find the **reporting inadequate** and seek improvements for better strategic review capabilities.
- Users note **limited features** in Todyl, particularly wishing for enhanced customization and reporting capabilities.
- Users find **reporting difficult** to navigate, hindering their ability to extract valuable insights effectively.

#### What Are Recent G2 Reviews of Todyl Security Platform?

**["Todyl Simplified Our Stack with Enterprise-Level Security at a Great Price"](https://www.g2.com/survey_responses/todyl-security-platform-review-12841444)**

**Rating:** 5.0/5.0 stars

_— Nahjee M._

[Read full review](https://www.g2.com/survey_responses/todyl-security-platform-review-12841444)

**["Valuable Visibility with Room for Improvement"](https://www.g2.com/survey_responses/todyl-security-platform-review-9155307)**

**Rating:** 4.0/5.0 stars

_— Ethan D._

[Read full review](https://www.g2.com/survey_responses/todyl-security-platform-review-9155307)

### [Check Point Infinity Platform](https://www.g2.com/products/check-point-infinity-platform/reviews)

Check Point Infinity is the only fully consolidated cyber security architecture that provides unprecedented protection against Gen V mega-cyber attacks as well as future cyber threats across all networks, endpoint, cloud and mobile. The architecture is designed to resolve the complexities of growing connectivity and inefficient security.

**Average Rating:** 4.6/5.0

**Total Reviews:** 109

#### How Do G2 Users Rate Check Point Infinity Platform?

- **Ease of Use:** 9.1/10 (Category avg: 8.7/10)

#### Who Is the Company Behind Check Point Infinity Platform?

- **Seller:** [Check Point Software Technologies](https://www.g2.com/sellers/check-point-software-technologies)
- **Year Founded:** 1993
- **HQ Location:** Redwood City, CA
- **Twitter:** @CheckPointSW  
70,955 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=d885813f6605ba84238ae4a21d169e0c9ade054cf0c99ff53e72483b54a8b521&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcheck-point-software-technologies%2F&secure%5Burl_type%5D=linkedin_company_website)  
8,554 employees on LinkedIn®
- **Ownership:** NASDAQ:CHKP

#### Who Uses This Product?

- **Top Industries:** Computer & Network Security, Information Technology and Services
- **Company Size:** 44% Large, 37% Medium

#### What Do G2 Reviewers Say About Check Point Infinity Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **advanced security features** of Check Point Infinity Platform, ensuring robust protection against future attacks.
- Users appreciate the **cloud security features** of Check Point Infinity Platform, ensuring efficient security audits and infrastructure assessment.
- Users value the **proactive threat detection** features of Check Point Infinity Platform, enhancing security for cloud applications.
- Users value the **comprehensive security** features of Check Point Infinity Platform, ensuring robust protection against cloud threats.
- Users appreciate the **advanced cloud security features** of Check Point Infinity Platform, ensuring robust protection against future attacks.

##### Cons

- Users find the **steep learning curve** challenging due to complex setup and lack of comprehensive documentation.
- Users find the **complexity** of the Check Point Infinity Platform's settings and documentation can hinder usability and efficiency.
- Users find that **improvement is needed** in support and visibility of native servers in Check Point logs.
- Users find **poor support services** detrimental, highlighting the need for improved customer assistance and log visibility.
- Users face **limited customization** options for rulesets and metrics, making detailed assessments challenging.

#### What Are Recent G2 Reviews of Check Point Infinity Platform?

**["Excellent option Harmony Platform for security central"](https://www.g2.com/survey_responses/check-point-infinity-platform-review-11868343)**

**Rating:** 4.5/5.0 stars

_— Tania V._

[Read full review](https://www.g2.com/survey_responses/check-point-infinity-platform-review-11868343)

**["Seamless Hybrid Security Integration Across All Environments"](https://www.g2.com/survey_responses/check-point-infinity-platform-review-11954684)**

**Rating:** 4.5/5.0 stars

_— Sonu S._

[Read full review](https://www.g2.com/survey_responses/check-point-infinity-platform-review-11954684)

#### What Are G2 Users Discussing About Check Point Infinity Platform?

- [How does Check Point Infinity help customers?](https://www.g2.com/discussions/how-does-check-point-infinity-help-customers)
- [What are the benefits of Check Point unified security architecture?](https://www.g2.com/discussions/what-are-the-benefits-of-check-point-unified-security-architecture)
- [What are the 4 components of the Infinity architecture?](https://www.g2.com/discussions/what-are-the-4-components-of-the-infinity-architecture)
- [What is Infinity Total protection?](https://www.g2.com/discussions/what-is-infinity-total-protection)

### [Microsoft Sentinel](https://www.g2.com/es/products/microsoft-sentinel/reviews)

Microsoft Sentinel te permite ver y detener amenazas antes de que causen daño, con SIEM reinventado para un mundo moderno. Microsoft Sentinel es tu vista panorámica a través de la empresa. Aprovecha la nube y la inteligencia a gran escala de décadas de experiencia en seguridad de Microsoft. Haz que la detección y respuesta a amenazas sea más inteligente y rápida con inteligencia artificial (IA). Elimina la configuración y el mantenimiento de la infraestructura de seguridad, y escala elásticamente para satisfacer tus necesidades de seguridad, mientras reduces los costos de TI. Con Microsoft Sentinel, puedes: - Recopilar datos a escala de la nube, a través de todos los usuarios, dispositivos, aplicaciones e infraestructura, tanto en las instalaciones como en múltiples nubes - Detectar amenazas previamente no descubiertas y minimizar falsos positivos utilizando análisis e inteligencia de amenazas sin igual de Microsoft - Investigar amenazas con IA y buscar actividades sospechosas a gran escala, aprovechando décadas de trabajo en ciberseguridad en Microsoft

**Average Rating:** 4.4/5.0

**Total Reviews:** 273

#### How Do G2 Users Rate Microsoft Sentinel?

- **Monitoreo de actividad:** 8.9/10 (Category avg: 9.1/10)
- **Examen de datos:** 8.5/10 (Category avg: 8.6/10)
- **Facilidad de uso:** 8.5/10 (Category avg: 8.7/10)
- **Administración de registros:** 8.8/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Microsoft Sentinel?

- **Vendedor:** [Microsoft](https://www.g2.com/es/sellers/microsoft)
- **Año de fundación:** 1975
- **Ubicación de la sede:** Redmond, Washington
- **Twitter:** @microsoft  
13,091,739 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9458f51bd6ded48ad432a804f19ad736469f007787569b63827154231c315630&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fmicrosoft%2F&secure%5Burl_type%5D=linkedin_company_website)  
231,632 empleados en LinkedIn®
- **Propiedad:** MSFT

#### Who Uses This Product?

- **Who Uses This:** Analista de Seguridad, Ingeniero de Software Senior
- **Top Industries:** Tecnología de la información y servicios, Seguridad de Redes y Computadoras
- **Company Size:** 42% Large, 31% Medium

#### What Do G2 Reviewers Say About Microsoft Sentinel?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios valoran el **monitoreo en tiempo real** de Microsoft Sentinel, mejorando su capacidad para responder rápidamente a las amenazas de seguridad.
- Los usuarios valoran la **respuesta automatizada de alertas** de Microsoft Sentinel, proporcionando tranquilidad con la monitorización de seguridad centralizada.
- Los usuarios valoran la **usabilidad fluida del panel** de Microsoft Sentinel, facilitando la gestión de seguridad intuitiva y el monitoreo integral.
- Los usuarios valoran la **respuesta rápida y segura a amenazas** de Microsoft Sentinel, mejorando la seguridad general y la gestión de riesgos.
- Los usuarios se benefician de la **gestión de datos sin interrupciones** de Microsoft Sentinel, mejorando el flujo de trabajo y asegurando análisis de seguridad completos.

##### Cons

- Los usuarios expresan preocupaciones sobre la **dependencia de la nube** , particularmente en lo que respecta a problemas de conectividad con internet de baja velocidad y la dependencia comercial.
- Los usuarios encuentran la **configuración compleja** de Microsoft Sentinel desafiante, requiriendo habilidades técnicas avanzadas para una configuración y uso efectivos.
- Los usuarios enfrentan **problemas de configuración** con Microsoft Sentinel, lo que requiere experiencia técnica y tiempo para una configuración efectiva.
- Los usuarios encuentran la **configuración difícil** de Microsoft Sentinel desafiante sin expertos en seguridad dedicados y la capacitación adecuada.
- Los usuarios tienen dificultades con el **diseño deficiente de la interfaz** de Microsoft Sentinel, lo que hace que la navegación y la comprensión de las funciones sean difíciles.

#### What Are Recent G2 Reviews of Microsoft Sentinel?

**["Ingestión de registros fácil en todos los formatos con integraciones sin problemas con Sentinel"](https://www.g2.com/es/survey_responses/microsoft-sentinel-review-13073395)**

**Rating:** 4.5/5.0 stars

_— Sandip K._

[Read full review](https://www.g2.com/es/survey_responses/microsoft-sentinel-review-13073395)

**["Visibilidad Centralizada Fuerte y Detección Escalable para una Respuesta más Rápida del SOC"](https://www.g2.com/es/survey_responses/microsoft-sentinel-review-12823175)**

**Rating:** 4.5/5.0 stars

_— Usuario verificado en Tecnología de la información y servicios_

[Read full review](https://www.g2.com/es/survey_responses/microsoft-sentinel-review-12823175)

#### What Are G2 Users Discussing About Microsoft Sentinel?

- [¿Para qué se utiliza Microsoft Sentinel?](https://www.g2.com/es/discussions/what-is-microsoft-sentinel-used-for) - 3 comments, 2 upvotes
- [¿Por qué debería usar Azure Sentinel?](https://www.g2.com/es/discussions/why-should-i-use-azure-sentinel) - 1 comment
- [Which feature provides the extended detection and response capabilities of Azure Sentinel?](https://www.g2.com/es/discussions/which-feature-provides-the-extended-detection-and-response-capabilities-of-azure-sentinel)
- [What is the difference between Azure security Center and Azure Sentinel?](https://www.g2.com/es/discussions/what-is-the-difference-between-azure-security-center-and-azure-sentinel)
- [What does Azure Sentinel provide?](https://www.g2.com/es/discussions/what-does-azure-sentinel-provide)

### [Huntress Managed SIEM](https://www.g2.com/es/products/huntress-managed-siem/reviews)

Huntress es una solución integral de ciberseguridad diseñada específicamente para las empresas del Fortune 5,000 y los proveedores de servicios gestionados (MSP) que las apoyan. Esta plataforma combina tecnología avanzada con un Centro de Operaciones de Seguridad (SOC) completamente dotado de personal las 24 horas del día, los 7 días de la semana, para ofrecer una defensa robusta contra un panorama de amenazas cibernéticas en constante evolución. Al integrar herramientas de vanguardia, servicios y conocimiento experto, Huntress capacita a las empresas para abordar eficazmente sus desafíos de ciberseguridad y proteger sus activos empresariales críticos. El público objetivo de Huntress incluye equipos de TI internos que pueden carecer de los recursos o la experiencia para gestionar la ciberseguridad de manera independiente, así como MSP que buscan soluciones confiables para mejorar sus ofertas de servicios. Estas empresas a menudo enfrentan desafíos únicos, como restricciones presupuestarias y personal de TI limitado, lo que hace esencial para ellas adoptar una estrategia de ciberseguridad que sea tanto efectiva como asequible. Huntress aborda estas necesidades proporcionando un conjunto de soluciones diseñadas específicamente para estos requisitos, asegurando que puedan defenderse contra las amenazas cibernéticas sin comprometer su eficiencia operativa. Las características clave de Huntress incluyen su Plataforma de Seguridad Gestionada, que ofrece capacidades de detección y respuesta a amenazas en tiempo real. La plataforma monitorea continuamente la actividad maliciosa, permitiendo la identificación y remediación rápida de amenazas potenciales. Además, el SOC 24/7 dotado de expertos en ciberseguridad garantiza que cualquier incidente sea abordado de inmediato, proporcionando tranquilidad a las empresas que pueden no tener equipos de seguridad internos. Huntress también enfatiza la educación, ofreciendo recursos y capacitación para ayudar a los usuarios a comprender las mejores prácticas de ciberseguridad y mantenerse informados sobre las últimas amenazas. Al ofrecer una combinación de tecnología, servicios y experiencia, Huntress se destaca en el panorama de la ciberseguridad. El enfoque proactivo de Huntress no solo ayuda a las empresas a defenderse contra las amenazas actuales, sino que también las prepara para futuros desafíos, convirtiéndola en un socio valioso en la lucha continua contra el cibercrimen.

**Average Rating:** 4.7/5.0

**Total Reviews:** 49

#### Who Is the Company Behind Huntress Managed SIEM?

- **Vendedor:** [Huntress Labs](https://www.g2.com/es/sellers/huntress-labs)
- **Sitio web de la empresa:** huntress.com
- **Año de fundación:** 2015
- **Ubicación de la sede:** Ellicott City, US
- **Twitter:** @HuntressLabs  
40,338 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=570d57c2d792bb0f1dd9c97cb05ee13cfd2e93a1546d6d3c5c11e8ce22e14a55&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F10172550%2F&secure%5Burl_type%5D=linkedin_company_website)  
916 empleados en LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Tecnología de la información y servicios, Seguridad de Redes y Computadoras
- **Company Size:** 64% Small, 24% Medium

#### What Are Recent G2 Reviews of Huntress Managed SIEM?

**["Servicio SIEM ejemplar con soporte inigualable"](https://www.g2.com/es/survey_responses/huntress-managed-siem-review-12676229)**

**Rating:** 5.0/5.0 stars

_— Skylar P._

[Read full review](https://www.g2.com/es/survey_responses/huntress-managed-siem-review-12676229)

**["Centralización de registros y centro de investigación"](https://www.g2.com/es/survey_responses/huntress-managed-siem-review-12729137)**

**Rating:** 4.5/5.0 stars

_— Paul A._

[Read full review](https://www.g2.com/es/survey_responses/huntress-managed-siem-review-12729137)

### [Panther](https://www.g2.com/es/products/panther/reviews)

Panther es la plataforma de SOC de IA que escala la experiencia en seguridad al integrar agentes de IA en sus operaciones de seguridad con acceso nativo a su lago de datos, lógica de detección y conocimiento organizacional. A diferencia de las herramientas añadidas, la arquitectura de bucle cerrado de Panther convierte cada alerta en inteligencia acumulativa que hace que el sistema sea más inteligente con el tiempo. Solicite una demostración hoy en: https://panther.com/product/request-a-demo/

**Average Rating:** 4.7/5.0

**Total Reviews:** 49

#### How Do G2 Users Rate Panther?

- **Monitoreo de actividad:** 9.3/10 (Category avg: 9.1/10)
- **Examen de datos:** 9.4/10 (Category avg: 8.6/10)
- **Facilidad de uso:** 8.9/10 (Category avg: 8.7/10)
- **Administración de registros:** 9.7/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Panther?

- **Vendedor:** [Panther Labs](https://www.g2.com/es/sellers/panther-labs)
- **Año de fundación:** 2018
- **Ubicación de la sede:** San Francisco, CA
- **Twitter:** @runpanther  
4,437 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=5e833e3ee9905da8ffc2168b1d7db4af5d6a4643d77358f095ebefb033c5103a&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Frunpanther%2F&secure%5Burl_type%5D=linkedin_company_website)  
300 empleados en LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Ingeniero de Seguridad Senior
- **Top Industries:** Software de Computadora, Tecnología de la información y servicios
- **Company Size:** 53% Medium, 29% Large

#### What Do G2 Reviewers Say About Panther?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios elogian el **sobresaliente servicio de atención al cliente** de Panther, destacando su capacidad de respuesta y compromiso para resolver problemas de manera eficiente.
- Los usuarios elogian a Panther por su **eficiencia excepcional en la detección** , lo que permite respuestas efectivas y con propósito en las operaciones de seguridad.
- Los usuarios encuentran que la **interfaz intuitiva** de Panther y la documentación completa facilitan su navegación y uso efectivo.
- Los usuarios elogian las **fáciles integraciones** con varias fuentes de registro, simplificando la gestión de seguridad y aumentando la eficiencia del equipo.
- Los usuarios elogian a Panther por sus **características intencionadas y mejoras continuas** , mejorando la usabilidad y alineándose con las necesidades del mercado.

##### Cons

- Los usuarios encuentran que Panther tiene **características faltantes** como el control de versiones y flujos de trabajo de respuesta poco desarrollados, lo que complica el uso general.
- Los usuarios encuentran la **complejidad de Panther desafiante** , especialmente para los equipos no técnicos y en la gestión de controles de versiones.
- Los usuarios encuentran la **gestión de alertas limitada** debido a la falta de personalización y los desafíos de configuración que afectan la eficiencia.
- Los usuarios encuentran la **configuración compleja** de Panther onerosa, complicando la integración con los flujos de despliegue y los sistemas de automatización.
- Los usuarios encuentran que los **problemas del panel** en Panther limitan las perspectivas integrales de liderazgo en seguridad y las opciones avanzadas de personalización.

#### What Are Recent G2 Reviews of Panther?

**["El SIEM + IA de Panther hace que la clasificación y la búsqueda de amenazas sean rápidas y fluidas."](https://www.g2.com/es/survey_responses/panther-review-12919421)**

**Rating:** 5.0/5.0 stars

_— Richard E._

[Read full review](https://www.g2.com/es/survey_responses/panther-review-12919421)

**["Panther hace que las operaciones de seguridad sean más simples y rápidas"](https://www.g2.com/es/survey_responses/panther-review-12890548)**

**Rating:** 5.0/5.0 stars

_— Busra K._

[Read full review](https://www.g2.com/es/survey_responses/panther-review-12890548)

#### What Are G2 Users Discussing About Panther?

- [¿Para qué se utiliza Panther?](https://www.g2.com/es/discussions/what-is-panther-used-for) - 1 comment

### [Splunk Enterprise](https://www.g2.com/es/products/splunk-enterprise/reviews)

Descubre lo que está sucediendo en tu negocio y toma medidas significativas rápidamente con Splunk Enterprise. Automatiza la recopilación, indexación y alerta de datos de máquinas que son críticos para tus operaciones. Descubre las ideas accionables de todos tus datos, sin importar la fuente o el formato. Aprovecha la inteligencia artificial y el aprendizaje automático para decisiones empresariales predictivas y proactivas.

**Average Rating:** 4.3/5.0

**Total Reviews:** 415

#### How Do G2 Users Rate Splunk Enterprise?

- **Monitoreo de actividad:** 9.1/10 (Category avg: 9.1/10)
- **Examen de datos:** 8.4/10 (Category avg: 8.6/10)
- **Facilidad de uso:** 8.1/10 (Category avg: 8.7/10)
- **Administración de registros:** 9.3/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Splunk Enterprise?

- **Vendedor:** [Cisco](https://www.g2.com/es/sellers/cisco)
- **Año de fundación:** 1984
- **Ubicación de la sede:** San Jose, CA
- **Twitter:** @Cisco  
720,366 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=476aeabc5a712d049453edd5c54ea0318890d9e60d93782e37fe028224df1cbd&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcisco%2F&secure%5Burl_type%5D=linkedin_company_website)  
95,545 empleados en LinkedIn®
- **Propiedad:** NASDAQ:CSCO

#### Who Uses This Product?

- **Who Uses This:** Ingeniero de software, Ingeniero de Software Senior
- **Top Industries:** Tecnología de la información y servicios, Software de Computadora
- **Company Size:** 64% Large, 27% Medium

#### What Do G2 Reviewers Say About Splunk Enterprise?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios valoran la **innovación** de Splunk Enterprise, apreciando sus características fáciles de usar y sus potentes capacidades analíticas.
- Los usuarios valoran las **funciones de personalización** de Splunk Enterprise, lo que permite obtener información personalizada y paneles dinámicos para un monitoreo efectivo.
- Los usuarios elogian la **facilidad de uso** de Splunk Enterprise, mejorando el monitoreo efectivo y la rápida resolución de problemas.
- Los usuarios valoran las capacidades de **gestión eficiente de registros** de Splunk Enterprise para un análisis e información precisos.
- Los usuarios valoran las **potentes funciones de informes** de Splunk Enterprise, mejorando significativamente las capacidades de análisis y visualización de datos.

##### Cons

- Los usuarios encuentran que Splunk Enterprise es **caro** , especialmente a medida que los volúmenes de datos crecen, afectando las operaciones de los equipos más pequeños.
- Los usuarios enfrentan una **curva de aprendizaje pronunciada** con Splunk Enterprise, lo que puede obstaculizar el rápido dominio de sus características.
- Los usuarios destacan el **costoso licenciamiento** de Splunk Enterprise, lo que dificulta su adopción por parte de algunas empresas.
- Los usuarios enfrentan **problemas de integración** con Splunk Enterprise, requiriendo mejores complementos y una arquitectura más simple para facilitar la implementación.
- Los usuarios sienten que Splunk Enterprise tiene **características faltantes** , carece de complementos importantes y opciones más flexibles para la incorporación de datos.

#### What Are Recent G2 Reviews of Splunk Enterprise?

**["Excelente solución de observabilidad empresarial y gestión de registros para infraestructura de nube híbrida"](https://www.g2.com/es/survey_responses/splunk-enterprise-review-12045230)**

**Rating:** 4.5/5.0 stars

_— RaviShankar S._

[Read full review](https://www.g2.com/es/survey_responses/splunk-enterprise-review-12045230)

**["Las búsquedas y paneles de control de SPL son realmente útiles."](https://www.g2.com/es/survey_responses/splunk-enterprise-review-12547655)**

**Rating:** 4.0/5.0 stars

_— Nishith J._

[Read full review](https://www.g2.com/es/survey_responses/splunk-enterprise-review-12547655)

#### What Are G2 Users Discussing About Splunk Enterprise?

- [What is Splunk Enterprise used for?](https://www.g2.com/es/discussions/what-is-splunk-enterprise-used-for) - 1 comment
- [¿Cuál es la diferencia entre Splunk Enterprise y Splunk Enterprise Security?](https://www.g2.com/es/discussions/splunk-enterprise-what-is-the-difference-between-splunk-enterprise-and-splunk-enterprise-security) - 1 comment
- [¿Cuáles son los componentes de Splunk Enterprise?](https://www.g2.com/es/discussions/what-are-splunk-enterprise-components) - 1 comment
- [¿Qué aplicaciones se incluyen con Splunk Enterprise?](https://www.g2.com/es/discussions/which-apps-ship-with-splunk-enterprise) - 1 comment
- [¿Qué hace Splunk Enterprise?](https://www.g2.com/es/discussions/what-does-splunk-enterprise-do) - 1 comment

### [IBM QRadar SIEM](https://www.g2.com/products/ibm-ibm-qradar-siem/reviews)

Outsmart threats with an end-to-end award-winning security suite; proven to prevent, endure and recover from both known & unknown IT hazards faced by SoCs in the modern-day.

**Average Rating:** 4.4/5.0

**Total Reviews:** 283

#### How Do G2 Users Rate IBM QRadar SIEM?

- **Activity Monitoring:** 8.7/10 (Category avg: 9.1/10)
- **Data Examination:** 8.3/10 (Category avg: 8.6/10)
- **Ease of Use:** 8.4/10 (Category avg: 8.7/10)
- **Log Management:** 8.8/10 (Category avg: 9.1/10)

#### Who Is the Company Behind IBM QRadar SIEM?

- **Seller:** [IBM](https://www.g2.com/sellers/ibm)
- **Year Founded:** 1911
- **HQ Location:** Armonk, New York, United States
- **Twitter:** @IBMSecurity  
74,660 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=14b544adaece4fdbc987f1d7f7028048c22259946811200cc751263825586af9&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1009%2F&secure%5Burl_type%5D=linkedin_company_website)  
328,202 employees on LinkedIn®
- **Ownership:** SWX:IBM

#### Who Uses This Product?

- **Who Uses This:** Security Engineer, SOC Analyst
- **Top Industries:** Computer & Network Security, Information Technology and Services
- **Company Size:** 52% Large, 29% Medium

#### What Do G2 Reviewers Say About IBM QRadar SIEM?

_AI-generated summary from verified user reviews_

##### Pros

- Users find IBM QRadar SIEM highly **user-friendly** , appreciating its ease of implementation and integration with other platforms.
- Users appreciate the **seamless integration capabilities** of IBM QRadar SIEM, enhancing overall log management and analytics functionality.
- Users value the **advanced threat detection and centralized log management** features of IBM QRadar SIEM for enhanced security.
- Users value the **easy integrations** of IBM QRadar SIEM, simplifying collaboration with various platforms and tools.
- Users find the **user-friendly interface** of IBM QRadar SIEM makes it easy for non-tech users to navigate.

##### Cons

- Users find the **UI improvements lacking** , with search limitations and poor report building hindering their experience.
- Users find IBM QRadar SIEM to be **expensive** , especially for small or mid-size companies due to high costs.
- Users note the **high costs** associated with IBM QRadar SIEM, which may burden smaller organizations significantly.
- Users are frustrated by **dashboard issues** , including limited editing rights and difficulties in offense management and reporting.
- Users find the **time-consuming search queries** to be frustrating and inefficient for log retrieval in QRadar SIEM.

#### What Are Recent G2 Reviews of IBM QRadar SIEM?

**["QRADAR Integrates Easily and Makes Logs & Alerts Report-Ready"](https://www.g2.com/survey_responses/ibm-qradar-siem-review-13061810)**

**Rating:** 4.5/5.0 stars

_— Zahid A._

[Read full review](https://www.g2.com/survey_responses/ibm-qradar-siem-review-13061810)

**["Strong Correlation, Mature Security Monitoring, and Compliance Reporting"](https://www.g2.com/survey_responses/ibm-qradar-siem-review-12986703)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/ibm-qradar-siem-review-12986703)

### [Cynet](https://www.g2.com/products/cynet/reviews)

Cynet is the unified, AI-powered cybersecurity platform that delivers robust and comprehensive protection for security teams while maximizing operational efficiency for managed service providers (MSPs). This platform consolidates a wide array of security capabilities into a single, user-friendly interface, ensuring that organizations can effectively safeguard their digital assets without the complexity often associated with multi-solution environments. Cynet’s platform simplifies security management by integrating various functionalities, such as endpoint protection, threat detection, and incident response, into one cohesive system. This integration not only streamlines operations but also allows organizations to allocate their resources more effectively, ultimately enhancing their overall security posture. One of the standout features of Cynet’s platform is its remarkable performance in the MITRE ATT&CK Evaluations. Cynet delivered 100% visibility and 100% analytic coverage without requiring any configuration changes three years in a row. This capability ensures that organizations can monitor their environments comprehensively and respond to threats with precision. The platform’s built-in analytics and reporting tools provide actionable insights, enabling users to make informed decisions about their cybersecurity strategies. Additionally, Cynet offers 24/7 expert support, which is crucial for organizations that may not have in-house cybersecurity expertise. This round-the-clock assistance ensures that users can quickly address any security incidents or concerns, minimizing potential downtime and damage. The combination of advanced technology and dedicated support positions Cynet as a valuable partner for SMEs and service providers looking to enhance their cybersecurity measures. In summary, Cynet’s unified, AI-powered cybersecurity platform stands out in the crowded cybersecurity market by offering a unified solution tailored to the needs of MSPs. Its comprehensive features, exceptional performance in industry evaluations, and continuous expert support make it a compelling choice for organizations seeking to bolster their cybersecurity defenses while maintaining operational efficiency.

**Average Rating:** 4.7/5.0

**Total Reviews:** 218

#### How Do G2 Users Rate Cynet?

- **Activity Monitoring:** 9.4/10 (Category avg: 9.1/10)
- **Data Examination:** 8.8/10 (Category avg: 8.6/10)
- **Ease of Use:** 9.1/10 (Category avg: 8.7/10)
- **Log Management:** 8.9/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Cynet?

- **Seller:** [Cynet](https://www.g2.com/sellers/cynet)
- **Company Website:** www.cynet.com
- **Year Founded:** 2014
- **HQ Location:** Boston, MA
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=5a5ebaacd6a1a812a193b2886c91aa7e64aeee7fb30bb25e658549d729d68178&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcynet-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
332 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** SOC Analyst, Technical Engineer
- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 58% Medium, 30% Small

#### What Do G2 Reviewers Say About Cynet?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **ease of use** of Cynet, enjoying its simplicity and comprehensive features in one dashboard.
- Users value the **unified platform** of Cynet for its ease of use and comprehensive security features.
- Users value Cynet for its **effective threat detection** and seamless integration, ensuring robust cybersecurity for their business.
- Users appreciate the **exceptional customer support** of Cynet, facilitating smooth deployment and effective threat management.
- Users commend Cynet for its **flawless threat monitoring and response** , enhancing overall security with effective detection capabilities.

##### Cons

- Users express concern over **limited customization** options in reports and third-party integrations, impacting their experience.
- Users note the **feature limitations** of Cynet, especially in report customization and external tool integrations.
- Users express concern over the **lack of customization** , particularly in reporting and dashboard options for better usability.
- Users find Cynet has **limited features** like integrations and customization, which may restrict advanced functionality.
- Users note the **missing features** in Cynet, particularly the lack of web filtering and a firewall option.

#### What Are Recent G2 Reviews of Cynet?

**["Great MDR/XDR Platform"](https://www.g2.com/survey_responses/cynet-review-9481539)**

**Rating:** 4.5/5.0 stars

_— JEROME J._

[Read full review](https://www.g2.com/survey_responses/cynet-review-9481539)

**["Effective Built-In Protection with Straightforward Management"](https://www.g2.com/survey_responses/cynet-review-13148656)**

**Rating:** 5.0/5.0 stars

_— Buse ._

[Read full review](https://www.g2.com/survey_responses/cynet-review-13148656)

#### What Are G2 Users Discussing About Cynet?

- [What is Cynet 360 AutoXDR™ used for?](https://www.g2.com/discussions/what-is-cynet-360-autoxdr-used-for)
- [What is cynet XDR?](https://www.g2.com/discussions/what-is-cynet-xdr) - 1 comment
- [What is cynet used for?](https://www.g2.com/discussions/what-is-cynet-used-for) - 1 comment
- [Is cynet 360 good?](https://www.g2.com/discussions/is-cynet-360-good) - 3 comments
- [How much does cynet cost?](https://www.g2.com/discussions/how-much-does-cynet-cost) - 1 comment

### [Elastic Security](https://www.g2.com/products/elastic-elastic-security/reviews)

Modernize your SOC with AI Security is a data problem. Your team needs to detect, investigate, and respond to threats quickly. Elastic Security unifies next-gen SIEM and XDR with native automation, with AI built into every step. Built on Elasticsearch, the open-source search platform trusted by millions, Elastic provides complete visibility across your environment. Our data mesh architecture streamlines analysis to raise team productivity and reduce attacker dwell time. Bolster your defenses - Detect threats faster by analyzing data from across your attack surface - Stop attacks with the industry's best-rated XDR protection - Close the loop faster with Elastic Workflows, blending scripted automation with agentic AI reasoning - Get more accurate AI assistance, grounded in your data using Elasticsearch's leading relevance capabilities With Elastic Security, your SOC team can use generative AI to distill alerts, automate repetitive tasks, and get tailored guidance, all with your choice of LLM and full transparency into reasoning and sources. SOC leaders choose Elastic Security when they need a unified, open platform ready to run on any cloud, on-prem, or air-gapped.

**Average Rating:** 4.5/5.0

**Total Reviews:** 23

#### How Do G2 Users Rate Elastic Security?

- **Activity Monitoring:** 9.7/10 (Category avg: 9.1/10)
- **Data Examination:** 8.3/10 (Category avg: 8.6/10)
- **Ease of Use:** 8.8/10 (Category avg: 8.7/10)
- **Log Management:** 9.8/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Elastic Security?

- **Seller:** [Elastic](https://www.g2.com/sellers/elastic)
- **Company Website:** www.elastic.co
- **Year Founded:** 2012
- **HQ Location:** San Francisco, CA
- **Twitter:** @elastic  
65,200 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=bc8e533876f16af617380aaa3922cb6a39a1d6233f0b32a0fa987a5fdffd799e&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F814025%2F&secure%5Burl_type%5D=linkedin_company_website)  
5,079 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services
- **Company Size:** 61% Medium, 52% Small

#### What Do G2 Reviewers Say About Elastic Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **seamless integrations** of Elastic Security, enhancing data visualization and incident management efficiency.
- Users value the **ease of use** of Elastic Security, appreciating its straightforward setup and seamless integrations.
- Users admire the **flexibility and pre-built security use-cases** of Elastic Security for seamless integration and adaptability.
- Users appreciate the **easy integrations** of Elastic Security, facilitating seamless workflows and efficient investigations across tools.
- Users value the **efficiency improvement** in investigations, enabling quick, actionable insights with Elastic Security's robust features.

##### Cons

- Users face challenges with **steep learning curves and operational overhead** , impacting efficiency and resource management in Elastic Security.
- Users find the **complex implementation** of Elastic Security challenging, especially due to the steep learning curve and maintenance overhead.
- Users find the **complexity** of maintaining Elastic Security's infrastructure and learning new query languages challenging and burdensome.
- Users point out the **complex setup** of Elastic Security, citing a steep learning curve and significant administrative overhead.
- Users frequently experience **integration issues** with Elastic Security, complicating log correlation and overall functionality.

#### What Are Recent G2 Reviews of Elastic Security?

**["Powerful, Customisable Security Platform for Complex Environments"](https://www.g2.com/survey_responses/elastic-security-review-12341245)**

**Rating:** 4.5/5.0 stars

_— Jennifer S._

[Read full review](https://www.g2.com/survey_responses/elastic-security-review-12341245)

**["Seamless SIEM Solution with AI and Outstanding Support"](https://www.g2.com/survey_responses/elastic-security-review-12438374)**

**Rating:** 5.0/5.0 stars

_— Jordan J._

[Read full review](https://www.g2.com/survey_responses/elastic-security-review-12438374)

### [Datadog](https://www.g2.com/es/products/datadog/reviews)

Datadog es la plataforma de monitoreo, seguridad y análisis para desarrolladores, equipos de operaciones de TI, ingenieros de seguridad y usuarios empresariales en la era de la nube. La plataforma SaaS integra y automatiza el monitoreo de infraestructura, el monitoreo del rendimiento de aplicaciones y la gestión de registros para proporcionar una observabilidad unificada y en tiempo real de toda la pila tecnológica de nuestros clientes. Datadog es utilizado por organizaciones de todos los tamaños y en una amplia gama de industrias para habilitar la transformación digital y la migración a la nube, impulsar la colaboración entre los equipos de desarrollo, operaciones, seguridad y negocios, acelerar el tiempo de lanzamiento al mercado de aplicaciones, reducir el tiempo de resolución de problemas, asegurar aplicaciones e infraestructura, comprender el comportamiento del usuario y rastrear métricas clave del negocio.

**Average Rating:** 4.4/5.0

**Total Reviews:** 715

#### How Do G2 Users Rate Datadog?

- **Monitoreo de actividad:** 8.9/10 (Category avg: 9.1/10)
- **Examen de datos:** 8.6/10 (Category avg: 8.6/10)
- **Facilidad de uso:** 8.2/10 (Category avg: 8.7/10)
- **Administración de registros:** 9.5/10 (Category avg: 9.1/10)

#### Who Is the Company Behind Datadog?

- **Vendedor:** [Datadog](https://www.g2.com/es/sellers/datadog)
- **Sitio web de la empresa:** www.datadoghq.com
- **Año de fundación:** 2010
- **Ubicación de la sede:** New York
- **Twitter:** @datadoghq  
51,207 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=1b0942496e12618acadaab3a1601417c9f0d1941be094e2cefb0d89c606e73b5&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1066442%2F&secure%5Burl_type%5D=linkedin_company_website)  
9,386 empleados en LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Ingeniero de software, Ingeniero de DevOps
- **Top Industries:** Tecnología de la información y servicios, Software de Computadora
- **Company Size:** 47% Medium, 34% Large

#### What Do G2 Reviewers Say About Datadog?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios valoran la **facilidad de uso** de Datadog, apreciando los paneles intuitivos y las integraciones sin problemas para el monitoreo.
- Los usuarios valoran las **funciones de monitoreo fáciles de usar** de Datadog, apreciando sus paneles intuitivos y rápidas integraciones.
- Los usuarios valoran las capacidades de **monitoreo en tiempo real** de Datadog, mejorando su conciencia operativa y tiempos de respuesta.
- Los usuarios aprecian la **interfaz fácil de usar** y las **características robustas** de Datadog para una monitorización e integración sin problemas.
- Los usuarios valoran la **creación de paneles intuitivos** en Datadog, haciendo que el monitoreo sea fácil y efectivo en diversos entornos.

##### Cons

- Los usuarios sienten que el precio de Datadog es **caro** , sugiriendo que debería ser más asequible para un mejor acceso.
- Los usuarios encuentran la **curva de aprendizaje empinada** , con muchas características abrumadoras y que requieren un nivel de experiencia más alto.
- Los usuarios encuentran los **problemas de precios** de Datadog preocupantes, citando costos altos que aumentan de manera impredecible con las características adicionales.
- Los usuarios sienten que el **costo es demasiado alto** , especialmente porque los gastos pueden escalar de manera impredecible con características adicionales y registros.
- Los usuarios informan de una **curva de aprendizaje pronunciada** con Datadog, encontrando la configuración y el uso desafiantes para los recién llegados.

#### What Are Recent G2 Reviews of Datadog?

**["Datadog: Registros, Métricas y Trazas Unificados para Visibilidad en Tiempo Real y Depuración Más Rápida"](https://www.g2.com/es/survey_responses/datadog-review-13049319)**

**Rating:** 4.5/5.0 stars

_— Anshul S._

[Read full review](https://www.g2.com/es/survey_responses/datadog-review-13049319)

**["Detección de incidentes más rápida y análisis de la causa raíz, lo que lleva a una mejor experiencia del cliente."](https://www.g2.com/es/survey_responses/datadog-review-12850013)**

**Rating:** 4.5/5.0 stars

_— Bertrand P._

[Read full review](https://www.g2.com/es/survey_responses/datadog-review-12850013)

#### What Are G2 Users Discussing About Datadog?

- [How good is Datadog?](https://www.g2.com/es/discussions/how-good-is-datadog)
- [¿Datadog utiliza AWS?](https://www.g2.com/es/discussions/does-datadog-use-aws) - 2 comments
- [What can Datadog monitor?](https://www.g2.com/es/discussions/what-can-datadog-monitor)
- [¿Cuál es el uso de Datadog?](https://www.g2.com/es/discussions/what-is-the-use-of-datadog) - 3 comments

- &lsaquo; Prev‹ Prev
- 1
- [2](/categories/security-information-and-event-management-siem?order=g2_score&page=2#product-list)
- [3](/categories/security-information-and-event-management-siem?order=g2_score&page=3#product-list)
- [4](/categories/security-information-and-event-management-siem?order=g2_score&page=4#product-list)
- [5](/categories/security-information-and-event-management-siem?order=g2_score&page=5#product-list)
- …
- [8](/categories/security-information-and-event-management-siem?order=g2_score&page=8#product-list)
- [9](/categories/security-information-and-event-management-siem?order=g2_score&page=9#product-list)
- [Next &rsaquo;Next ›](/categories/security-information-and-event-management-siem?order=g2_score&page=2#product-list)

Spotlight Categories

[Payroll Software](https://www.g2.com/categories/payroll)

[Relational Databases](https://www.g2.com/categories/relational-databases)

[Marketing Analytics Tools](https://www.g2.com/categories/marketing-analytics)

[Background Check Software](https://www.g2.com/categories/background-check)

[CMMS Software](https://www.g2.com/categories/cmms)

Similar Categories

- [Incident Response](/categories/incident-response)
- [Threat Intelligence](/categories/threat-intelligence)
- [AI SOC Agents](/categories/ai-soc-agents)
- [Breach and Attack Simulation (BAS)](/categories/breach-and-attack-simulation-bas)
- [Deception Technology](/categories/deception-technology)

- [Digital Forensics](/categories/digital-forensics)
- [Digital Risk Protection (DRP) Platforms](/categories/digital-risk-protection-drp-platforms)
- [IoT Security Solutions](/categories/iot-security-solutions)
- [Malware Analysis Tools](/categories/malware-analysis-tools)
- [Managed Detection and Response (MDR)](/categories/managed-detection-and-response-mdr)

- [OT Secure Remote Access](/categories/ot-secure-remote-access)
- [OT Security Tools](/categories/ot-security-tools)
- [Red Teaming Tools](/categories/red-teaming-tools)
- [Security Orchestration, Automation, and Response (SOAR)](/categories/security-orchestration-automation-and-response-soar)

[Browse Security Information and Event Management (SIEM) Themes](/categories/security-information-and-event-management-siem/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated October 31, 2024

Security information and event management (SIEM) software combines a variety of security software components into one platform. Companies use SIEM solutions to centralize security operations into a single location. IT and security operations teams can gain access to the same information and alerts for more effective communication and planning. These products provide capabilities to identify and alert IT operations teams of anomalies detected in their systems. The anomalies may be new malware, unapproved access, or newly discovered vulnerabilities. SIEM tools provide live analysis of functionality and security, storing logs and records for retrospective reporting. They also have products for identity and access management to ensure only approved parties have access to sensitive systems. Forensic analysis tools help teams navigate historical logs, identify trends, and better fortify their networks.

SIEM systems may be confused with [incident response](https://www.g2.com/categories/incident-response) software, but SIEM products provide a larger scope of security and IT management features. Most also do not have the ability to automate security remediation practices.

To qualify for inclusion in the SIEM category, a product must:

- Aggregate and store IT security data
- Assist in user provisioning and governance 
- Identify vulnerabilities in systems and endpoints
- Monitor for anomalies within an IT system

Top Tools at a Glance

| 

 | 

Behavioral threat detection with real-time endpoint response

 | 

User Review

"Crowdstrike Falcon: Proactive Security, Steep Learning Curve"

 |
| 

 | 

Cloud-native SIEM with unified observability

 | 

User Review

"Secure, Privacy-First AI Logging That Helps Reduce Data Breach Risk"

 |
| 

 | 

Unified SIEM with embedded MXDR for MSPs

 | 

User Review

"Valuable Visibility with Room for Improvement"

 |
| 

 | 

Unified threat prevention across hybrid security infrastructure

 | 

User Review

"Excellent option Harmony Platform for security central"

 |
| 

 | 

Cloud-native SIEM with Microsoft ecosystem integration

 | 

User Review

"Easy Log Ingestion Across Formats with Seamless Sentinel Integrations"

 |
| 

 | 

Detection-as-code SIEM with Python-based alerting

 | 

User Review

"Panther’s SIEM + AI Makes Triage and Threat Hunting Fast and Seamless"

 |

* * *

Show More

* * *

## How Do You Choose the Right Security Information and Event Management (SIEM) Software?

### What You Should Know About SIEM Software

### What is security information and event management (SIEM) software?

Security Information and Event Management (SIEM) is a centralized system for threat detection that aggregates security alerts from multiple sources, simplifying threat response and compliance reporting. SIEM software is one of the most commonly used tools for security administrators and security incident response professionals. They provide a single platform capable of facilitating event and threat protection, log analysis and investigation, and threat remediation. Some cutting-edge tools provide additional functionality for creating response workflows, data normalization, and advanced threat protection.

SIEM platforms help security programs operate by collecting security data for future analysis, storing these data points, correlating them to security events, and facilitating analysis of those events.

Security teams can define rules for typical and suspicious activities with SIEM tools. Advanced Next-Gen SIEM solutions leverage [machine learning](https://www.g2.com/articles/what-is-machine-learning) and [AI](https://www.g2.com/articles/what-is-artificial-intelligence) to refine behavior models continuously, enhancing [User and Entity Behavior Analytics (UEBA)](https://www.g2.com/categories/user-and-entity-behavior-analytics-ueba) and reducing false positives. These systems analyze data against set rules and behavioral patterns, flagging notable events when anomalies are detected.

Companies using SIEM solutions deploy sensors across digital assets to automate data collection. Sensors relay information back to the SIEM’s log and event database. When additional security incidents arise, the SIEM platform detects anomalies. It correlates similar logs to provide context and threat information for security teams as they attempt to remediate any existing threats or vulnerabilities.

#### **What does SIEM stand for?**

SIEM stands for security information and event management (SIEM), which is a combination of two different acronyms for security technology: security information monitoring (SIM) and security event management (SEM).

SIM is the practice of collecting, aggregating, and analyzing security data, typically in the form of logs. SIM tools automate this process and document security information for other sources, such as [intrusion detection systems](https://www.g2.com/categories/intrusion-detection-and-prevention-systems-idps), [firewalls](https://www.g2.com/categories/firewall-software), or [routers](https://www.g2.com/categories/routers). Event logs and their associated informational components are recorded and stored for long periods for either retrospective analysis or compliance requirements.

SEM is a family of security software for discovering, analyzing, visualizing, and responding to threats as they arise. SEM is a core component of a security operations system. While SIM tools are designed for log collection and storage, SEM tools typically rely on SQL databases to store specific logs and other event data as they are generated in real time by security devices and IT systems. They usually also provide the functionality to correlate and analyze event data, monitor systems in real time, and alert security teams of abnormal activity.

SIEM combines the functionality of SIM and SEM to centralize control over log storage, event management, and real-time analysis. SIM and SEM have become defunct technologies, as SIEM’s rise has provided dual-purpose functionality. SIEM vendors offer a single tool capable of performing data aggregation, information correlation, and event management.

### Types of SIEM solutions

#### **Traditional SIEM**

Traditional SIEM tools are deployed on-premises with sensors placed on IT assets to analyze events and collect system logs. The data is used to develop baseline references and identify indicators of compromise. The SIEM product alerts security teams for intervention when a system becomes compromised.&nbsp;

#### **Cloud or virtual SIEM**

Cloud-based and virtualized SIEM software are tools typically used to secure cloud infrastructure and services a cloud provider delivers. These tools are often less expensive than on-premises solutions and more accessible to implement, as no physical labor is required. They are ideal for companies without local IT infrastructure.

#### [**Managed SIEM services**](https://www.g2.com/categories/managed-siem-services)

Companies that do not have a full-fledged security program may choose managed SIEM services to aid in management and reduce work for internal employees. These SIEM services are delivered by managed service providers who provide the customer data and dashboards with security information and activity, but the provider handles implementation and remediation.&nbsp;

### What are the common features of SIEM systems?

The following are some core features within SIEM software that can help users collect security data, analyze logs, and detect threats:

**Activity monitoring:** SIEM systems document the actions from endpoints within a network. The system alerts users of incidents and abnormal activities and documents the access point. Real-time tracking will document these for analysis as an event takes place.

**Asset management:** These SIEM features keep records of each network asset and its activity. The feature may also refer to the discovery of new assets accessing the network.

**Log management:** This functionality documents and stores event logs in a secure repository for reference, analysis, or compliance reasons.

**Event management:** As events occur in real time, the SIEM software alerts users of incidents. This allows security teams to intervene manually or trigger an automated response to resolve the issue.

[**Automated response**](https://www.g2.com/categories/security-information-and-event-management-siem/f/automated-response) **:** Response automation reduces the time spent diagnosing and resolving issues manually. The features are typically capable of quickly resolving common network security incidents.

**Incident reporting:** Incident reports document cases of abnormal activity and compromised systems. These can be used for forensic analysis or as a reference point for future incidents.

**Threat intelligence:** Threat intelligence feeds integrate information to train SIEM systems to detect emerging and existing threats. These threat feeds store information related to potential threats and vulnerabilities to ensure issues are discovered and teams are provided with the information necessary to resolve the problems as they occur.

[**Vulnerability assessment**](https://www.g2.com/categories/security-information-and-event-management-siem/f/vulnerability-assessment) **:** Vulnerability assessment tools may scan networks for potential vulnerabilities or audit data to discover non-compliant practices. Mainly, they’re used to analyze an existing network and IT infrastructure to outline access points that can be easily compromised.

[**Advanced analytics**](https://www.g2.com/categories/security-information-and-event-management-siem/f/advanced-analytics) **:** Advanced analytics features allow users to customize analysis with granular or individually specific metrics pertinent to the business’ resources.

[**Data examination**](https://www.g2.com/categories/security-information-and-event-management-siem/f/data-examination) **:** Data examination features typically facilitate the forensic analysis of incident data and event logs. These features allow users to search databases and incident logs to gain insights into vulnerabilities and incidents.

### What are the benefits of using SIEM products?

Below are a few of the main reasons SIEM software is commonly used to protect businesses of all sizes:

**Data aggregation and correlation:** SIEM systems and companies collect vast amounts of information from an entire network environment. This information is gathered from virtually anything interacting with a network, from endpoints and servers to firewalls and antivirus tools. It is either given directly to the SIEM or using agents (decision-making programs designed to identify irregular information). The platform is set up to deploy agents and collect and store similar information together according to security policies set in place by administrators.

**Incident alerting:** As information comes in from a network’s various connected components, the SIEM system correlates it using rule-based policies. These policies inform agents of normal behavior and threats. If any action violates these policies or malware or intrusion is discovered. At the same time, the SIEM platform monitors network activity; it is labeled as suspicious, security controls restrict access, and administrators are alerted.

**Security analysis:** Retrospective analysis may be performed by searching log data during specific periods or based on specific criteria. Security teams may suspect a certain misconfiguration or kind of malware caused an event. They may also suspect an unapproved party went undetected at a specific time. Teams will analyze the logs and look for specific characteristics in the data to determine whether their suspicion was right. They may also discover vulnerabilities or misconfigurations that leave them susceptible to attack and remediate them.

### Software related to SIEM tools

Many network and system security solutions involve collecting and analyzing event logs and security information. SIEM systems are typically the most all-encompassing solutions available, but many other security solutions may integrate with them for added functionality or complementary use. These are a few different technology categories related to SIEM software.

[Threat intelligence software](https://www.g2.com/categories/threat-intelligence) **:** Threat intelligence software is an informational service that provides SIEM tools and other information security systems with up-to-date information on web-based threats. They can inform the system of zero-day threats, new forms of malware, potential exploits, and different kinds of vulnerabilities.

[Incident response software](https://www.g2.com/categories/incident-response) **:** SIEM systems may facilitate incident response, but these tools are specifically designed to streamline the remediation process or add investigative capabilities during security workflow processes. Incident response solutions will not provide the same compliance maintenance or log storage capabilities. Still, they can be used to increase a team’s ability to tackle threats as they emerge.

[Network security policy management (NSPM) software](https://www.g2.com/categories/network-security-policy-management-nspm) **:** NSPM software has some overlapping functionality to ensure security hardware and IT systems are correctly configured but cannot detect and resolve threats. They are typically used to ensure devices like firewalls or DNS filters are functioning correctly and in alignment with the security rules put in place by security teams.

[Intrusion detection and prevention systems (IDPS)](https://www.g2.com/categories/intrusion-detection-and-prevention-systems-idps) **:** While SIEM systems specialize in log management, alerting, and correlation, IDPS provide additional detection and protection features to prevent unapproved parties from accessing sensitive systems and network breaches. However, they will not facilitate the analysis and forensic investigation of logs with the same level of detail as an SIEM system.

[Managed security services providers](https://www.g2.com/categories/managed-security-services) **:** Various managed security services are available for businesses without the resources or staff necessary to operate a full-fledged security administration and operations team. Managed services are a viable option and will provide companies with skilled staff to protect their customers’ systems and keep their sensitive information protected.

### Challenges with SIEM software

**Staffing:** There is an existing shortage of skilled security professionals. Managing SIEM products and maintaining a well-rounded security posture requires dedicated personnel with highly specialized skills. Some smaller or growing companies may not have the means to recruit, hire, and retain qualified security pros. In such cases, businesses can consider managed services to outsource the labor.&nbsp;

**Compliance:** Some industries have specific compliance requirements determined by various governing bodies, but SIEM software can be used across several industries to maintain compliance standards. Many industry-specific compliance requirements exist, but most require security teams to protect sensitive data, restrict access to unapproved parties, and monitor changes made to identities, information, or privileges. For example, SIEM systems can maintain GDPR compliance by verifying security controls and data access, facilitating long-term storage of log data, and notifying security staff of security incidents, as GDPR requires.

### Which companies should buy SIEM solutions?

**Vertical industries:** Vertical industries, such as healthcare and financial services, often have additional compliance requirements related to data protection and privacy. SIEM is an ideal solution for outlining requirements, mapping threats, and remediating vulnerabilities.&nbsp;

**SaaS business:** SaaS businesses utilizing resources from a cloud service provider are still responsible for a significant portion of the security efforts required to protect a cloud-native business. These companies may jump for cloud-native SIEM tools but will benefit from any SIEM to prevent, detect, and respond to threats.&nbsp;

### How to choose the best SIEM software

#### Requirements Gathering (RFI/RFP) for Security Information and Event Management (SIEM) Software

The first step to purchasing a SIEM solution is to outline the options. Companies should be sure whether they need a cloud-based or on-premises solution. They should also outline the number of interconnected devices they need and whether they want physical or virtual sensors to secure them. Additional and possibly obvious requirements should include budgetary considerations, staffing limitations, and required integrations_.&nbsp;_

#### **Compare Security Information and Event Management (SIEM) Software Products**

##### **Create a long list**

Once the requirements are outlined, buyers should prioritize the tools and identify the ones with as many features as possible that fit the budget window. It is recommended to restrict the list to products with desired features, pricing, and deployment methods to identify a dozen or so options. For example, if the business needs a cloud-native SIEM for less than $10k a year, half of the SIEM options will be eliminated.&nbsp;

When choosing a SIEM provider, focus on the vendor’s experience, reputation, and specific functionality relevant to your security needs. Core capabilities ensure essential threat detection, while next-gen features add advanced intelligence and automation, allowing for a more proactive security posture. Here’s a breakdown to guide your selection:

**Core SIEM capabilities**

- Threat detection: Look for SIEMs with robust threat detection, which uses rules and behavioral analytics, along with threat feed integration, to accurately identify potential threats.
- Threat intelligence and security alerting: Leading SIEMs incorporate threat intelligence feeds, aggregate security data, and alert you when suspicious activities are detected, ensuring real-time updates on evolving threats.
- Compliance reporting: Compliance support is crucial, especially for meeting standards like HIPAA, PCI, and FFIEC. SIEMs streamline compliance assessment and reporting, helping prevent costly non-compliance.
- Real-time notifications: Swift alerts are vital; SIEMs that notify you of breaches immediately enable faster responses to potential threats.
- Data aggregation: A centralized view of all network activities ensures no area is left unmonitored, which is crucial for comprehensive threat visibility as your organization scales.
- Data normalization: SIEMs that normalize incoming data make it easier to analyze security events and extract actionable insights from disparate sources.

**Next-gen SIEM capabilities**

- Data collection and management: Next-gen SIEMs pull data from the cloud, on-premises, and external devices, consolidating insights across the entire IT environment.
- Cloud delivery: Cloud-based SIEMs use scalable storage, accommodating large data volumes without the limitations of on-premises hardware.
- User and entity behavior analytics (UEBA): By establishing normal user behavior and identifying deviations, UEBA helps detect insider threats and new, unknown threats.
- Security orchestration and automation response (SOAR): SOAR automates incident response, integrates with IT infrastructure, and enables coordinated responses across firewalls, email servers, and access controls.
- Automated attack timelines: Next-gen SIEMs automatically create visual attack timelines, simplifying investigation and triage, even for less experienced analysts.

Selecting an SIEM vendor with both core and next-gen capabilities offers your organization a comprehensive and agile approach to security, meeting both current and future requirements.

##### **Create a short list**

Narrowing down a short list can be tricky, especially for the indecisive, but these decisions must be made. Once the long list is limited to affordable products with the desired features, it’s time to search for third-party validation. For each tool, the buyer must analyze end-user reviews, analyst reports, and empirical security evaluations. Combining these specified factors should help rank options and eliminate poorly performing products. _&nbsp;_

##### **Conduct demos**

With the list narrowed down to three to five possible products, businesses can contact vendors and schedule demos. This will help them get first-hand experience with the product, ask targeted questions, and gauge the vendors' quality of service.&nbsp;

Here are some essential questions to guide your decision:

- Will the tool enhance log collection and management?: 

Effective log collection is foundational. Look for compatible software across systems and devices, offering a user-friendly dashboard for streamlined monitoring.

- Does the tool support compliance efforts?

Even if compliance isn't a priority, choosing an SIEM that facilitates auditing and reporting can future-proof your operations. Look for tools that simplify compliance processes and reporting.

- Can the tool leverage past security events in threat response?

One of SIEM’s strengths is using historical data to inform future threat detection. Ensure the tool offers in-depth analytics and drill-down capabilities to analyze and act on past incidents.

- Is the incident response fast and automated?

Timely, effective responses are critical. The tool should provide customizable alerts that notify your team immediately when needed so you can confidently leave the dashboard.&nbsp;

#### Selection of Security Information and Event Management (SIEM) Software

##### **Choose a selection team**

Decision-makers need to involve subject matter experts from all teams that will use the system in choosing a selection team. For backup software, this primarily involves product managers, developers, IT, and security staff. Any manager or department-level leader should also include individuals managing any solution the backup product will be integrating with.&nbsp;

##### **Negotiation**

The seniority of the negotiation team may vary depending on the maturity of the business. It is advisable to include relevant directors or managers from the security and IT departments as well as from any other cross-functional departments that may be impacted.

##### **Final decision**

If the company has a chief information security officer (CISO), that individual will likely decide.&nbsp;If not, companies must trust their security professionals’ ability to use and understand the product.&nbsp;

### How much does SIEM software cost?

Potential growth should be considered if the buyer chooses a cloud-based SIEM tool that offers pricing on the SaaS pay-as-you-use model. Some solutions are inexpensive at the start and offer affordable, low-tier pricing. Alternatively, some may rapidly increase pricing and fees as the company and storage need to scale. Some vendors provide permanently free backup products for individuals or small teams.

**Cloud SIEM_:_** SIEM as a service pricing may vary, but it traditionally scales as storage increases. Additional costs may come from increased features such as automated remediation, security orchestration, and integrated threat intelligence.&nbsp;

**On-premises SIEM:** On-premises solutions are typically more expensive and require more effort and resources. They will also be more costly to maintain and require dedicated staff. Still, companies with high compliance requirements should adopt on-premises security regardless.&nbsp;

#### Return on Investment (ROI)

Cloud-based SIEM solutions will provide a quicker ROI, similar to their lower average cost. The situation is pretty cut and dry since there is much lower initial investment and lower demand for dedicated staffing.&nbsp;

However, for on-premises systems, the ROI will depend on the scale and scope of business IT systems. Hundreds of servers will require hundreds of sensors, potentially more, as time wears on computing equipment. Once implemented, they must be operated and maintained by (expensive) security professionals.