JS
Senior Cybersecurity Engineer
Small-Business (50 or fewer emp.)
"Powerful, Customisable Security Platform for Complex Environments"
4.5/5
What do you like best about Elastic Security?

What I like best about Elastic Security is the flexibility and depth it gives across SIEM, endpoint, and observability in a single platform. I can ingest almost any data source, normalize it to ECS, and build detections that actually reflect how our environment works—rather than forcing our workflows to fit a rigid tool. The visibility, correlation, and customisation make it especially powerful for real-world SOC operations and complex environments. Review collected by and hosted on G2.com.

What do you dislike about Elastic Security?

What I dislike about Elastic Security is the learning curve and operational overhead, especially for teams new to the Elastic Stack. Getting the most value requires strong knowledge of ECS, ingest pipelines, and cluster tuning, and some advanced use cases still involve a fair amount of manual configuration. The flexibility is powerful, but it can be overwhelming without experienced resources or good upfront design. Review collected by and hosted on G2.com.

See what 23 reviewers think of Elastic Security

4.5 out of 5 · Verified reviews from real users

Read all reviews