Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Securonix Unified Defense SIEM

Securonix, inc | 1

Reviews from AWS customer

3 AWS reviews

External reviews

21 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Balamurali Vellalath

A cloud solution for managed security services with a multi-tenant approach

  • August 30, 2023
  • Review from a verified AWS customer

What is our primary use case?

We use Securonix Next-Gen SIEM to provide managed security services. We have an MSSP delivery model using the Securonix asset platform tool that delivers the solution to multiple customers using their multi-tenant approach. It is a shared service delivery model, and we have close to five customers using the tool in our MSSP model.

How has it helped my organization?

We get very positive responses from the customer regarding their lock management and storage.

What is most valuable?

The two major features of this product we extensively use are the UEBA capability and the multi-tenant approach with the centralized data logs system. Customers are very happy with these features.

What needs improvement?

Regarding the analysis of security events on the SOC side, Securonix Next-Gen SIEM needs to improve its automation capabilities. Other products have machine learning and AI algorithms that can trigger alerts automatically. This is a key feature that Securonix Next-Gen SIEM needs to be improved.

For how long have I used the solution?

I have been using Securonix Next-Gen SIEM for three years now. We use the solution's latest version.

What do I think about the stability of the solution?

There are many integration issues. I rate the solution’s stability a seven out of ten.

What do I think about the scalability of the solution?

I rate the solution’s scalability a seven out of ten.

Which solution did I use previously and why did I switch?

We have worked with QRadar SIEM, Splunk, and Microsoft Sentinel. We use Securonix because we have a managed services model. 

What other advice do I have?

We rely entirely on Securonix's production services for maintenance. They handle this, so we do not need to be involved in maintenance. In that area, I recommend this product. Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Kannapiran G.

Un excellent outil d'analyse des événements de sécurité

  • August 07, 2023
  • Review provided by G2

Qu'aimez-vous le plus à propos de the product?
Facilité de mise en œuvre. évolutivité. Intégration, et divers connecteurs OOB et déploiement en un clic des politiques de sécurité.
Que n’aimez-vous pas à propos de the product?
Securonix support et temps de réponse. Support technique et performances RIN.
Quels sont les problèmes que the product résout, et en quoi cela vous est-il bénéfique?
Le Centre de Commandement de Sécurité est un centre d'information unique pour toutes les menaces, contenus et violations de politiques. Accumulation de violations de politiques basées sur des entités de violation et facilité d'analyse.


    NELSON COIMBRA DA SILVA

Efficient use of resources, allowing more work to be done with fewer personnel and highly scalable solution

  • July 24, 2023
  • Review provided by PeerSpot

What is our primary use case?

From my experience, clients have been enjoying the product because it enables faster threat detection. We use it daily for hunting and developing strategies, which are much more extensive compared to the results from a traditional SIEM.

How has it helped my organization?

With Next-Gen SIEM, we are achieving more with less effort. We can gather more information from the logs and organize it in a different product view, which reduces the need for a large workforce. So we can achieve more with fewer people, and this is particularly advantageous in my line of work, where we need to hire additional staff as we sell more products. However, with this kind of solution bringing in more information about threats and improvements for the organization, we can handle the workload with fewer personnel.

What is most valuable?

The most valuable aspect is the ability to automate tasks, particularly user behavior analytics. It streamlines processes and makes it very efficient to work with, both for me and the users in my company.

What needs improvement?

I work in Brazil, and the solution is not very well known here. The market for technology in Brazil, not related to the quality of the product, is not very favorable yet. I see this as a challenge. We need to invest more effort in raising awareness and educating people about the product's capabilities. 

Additionally, one aspect that could be improved is the pricing of the product in Brazil. It is reasonable, but when compared to similar tools or products that are more common in Brazil, it tends to be a bit higher.

For how long have I used the solution?

I started to use this solution about two years ago; my company started to work with Next-Gen SIEM.

What do I think about the stability of the solution?

To say the truth, neither I nor my colleagues who work with me have encountered any complaints about stability. As the leading company in Brazil for Securonix or the biggest seller of Securonix in Brazil, we have had no issues with stability up to this point. It has been very reliable, and there have been no instances of lagging, crashing, or any significant downtime reported.

What do I think about the scalability of the solution?

The solution is highly scalable since it operates in a public cloud environment. This allows us to store and process a large amount of information as needed. The scalability is one of the remarkable qualities of this product, which makes it very effective, especially when we are dealing with substantial data volumes in the cloud.

How are customer service and support?

Since I work in the sales team, I didn't need technical support. My role is mainly focused on discussing and selling the product to customers, highlighting its advantages.

So, if any technical assistance is required, it would be handled by the partner or someone else in the client-facing team. I have mostly been involved in the sales process, and I haven't had the need to engage with the technical support team.

What's my experience with pricing, setup cost, and licensing?

I work with two options for Securonix. I use the Legacy and the Advantage versions. The Advantage option is beneficial because it includes the features of the Legacy version at the price of the Legacy package. However, it gets complicated when dealing with User and Entity Behavior Analytics (UBA) and other additional features. The EPS (Events Per Second) quantity grows significantly, leading to the need for more resources to handle the workload when using UBA and other advanced features. 

If Securonix aims to grow more and improve its position in the Brazilian market, it might need to consider adjusting its pricing to be more competitive. Currently, as we work with AI solutions, the price might need to go down to better grow its presence in the Brazilian market.

I believe in the quality of the product, so I would rate the pricing as a seven out of ten, where one is low pricing, and ten is high pricing.

When we talk about SIEM, it's important to understand how it brings the necessary information to the company and how we can apply the right intelligence to extract insights about threats and other relevant aspects. I suggest investing time to clearly define what you want to achieve with the SIEM solution. If you don't have a clear understanding of your objectives, the results may not meet your expectations. Take the time to thoroughly understand your requirements to make the most out of the system.

Which other solutions did I evaluate?

In my market and environment, I compete with Splunk, QRadar, and IBM. I've also heard about Hexabeam, but it's not a major competitor here in Brazil. Another one we're considering, which has posed some challenges, is Google Chronicle. However, the two biggest competitors for me are Splunk and QRadar.

When comparing Securonix to Splunk, one issue is the pricing; I believe even Securonix is on the higher side. However, in terms of working with cloud environments, Securonix has an advantage as it performs exceptionally well in the cloud. Unlike Splunk, which struggles in cloud setups, Securonix handles it perfectly. Additionally, in terms of crunching work in the database (DB), Securonix performs better and more efficiently than Splunk, making it a better choice for such tasks.

Other products seem to have a more established market presence, and people are familiar with them, but they might not be as acquainted with Securonix. However, I am confident about the quality of Securonix, and when I get the chance to demonstrate how it works, people tend to like it.

Furthermore, in comparison to IBM, I don't encounter any technical problems with Securonix. The quality of Securonix is solid, and I have no issues discussing its capabilities. When it comes to pricing, Securonix offers a more competitive solution. Even if it's only ten percent better than Splunk in some aspects, the overall value makes it a better option in the end. If the price difference is not as significant, it's more likely that customers will choose Securonix over other options.

What other advice do I have?

Overall, I would rate the solution an eight out of ten. 


    Mohamad Ammar

A stable solution in the SIEM and SOC space that can be deployed with ease

  • July 17, 2023
  • Review provided by PeerSpot

What is our primary use case?

Our company does manage a stock of solutions for our customers. We use some tools like Splunk SIEM and some other technologies as well.

What is most valuable?

The reason why a customer chooses the solution for its features depends on the customer. Customers may choose it based on budget or the features they're looking for, and it varies, honestly.

I am from the sales team and the technical team, because of which I can't speak much about its features.

What needs improvement?

Customers may plan their next year's budget. If customers find that they haven't derived value from the solution, they might think about the prices, and then they would reevaluate the solution, after which they choose another solution.

The technical support of the solution is an area with shortcomings and needs improvement. My customers didn't face any issues regarding support from the solution's vendor, but it could be from the partner or from those providing support for the solution. Support could be more flexible, and they can delegate the support part of their operations to partners.

For how long have I used the solution?

I have been using Securonix Next-Gen SIEM for three or four years. My company acts as a system integrator and reseller while also having a partnership with Securonix.

What do I think about the stability of the solution?

The solution has proven to be stable so far.

What do I think about the scalability of the solution?

The solution is easy to scale up.

My customers who use the solution are enterprise-sized businesses.

How are customer service and support?

Technical support for Securonix is good. I rate the technical support an eight out of ten. I don't give a ten out of ten rating because all the solutions need a marginal score to improve. None of the solutions would have a hundred percent satisfaction from customers.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I work with Splunk. The pros and cons of a solution depend on its features, customers, and the scale of the customer.

How was the initial setup?

As per our technical team, the initial setup was fine. It wasn't really difficult.

I am from the sales department, so I don't get involved in the implementation.

The solution is deployed on-premises.

What's my experience with pricing, setup cost, and licensing?

Pricing of the solution is an aspect that depends on a customer's budget. Sometimes the price fits a customer's budget. At times, the solution's price becomes a huge burden on the customer.

A yearly payment has to be made toward the solution's licensing costs.

Additional costs other than the solution's licensing costs are for the installation and support.

I rate the pricing an eight on a scale of one to ten, where one is cheap, and ten is very expensive. It is a pretty expensive tool.

What other advice do I have?

The solution requires maintenance, and the people required for maintenance depend on the applied or rolled-out solution's size. If the solution is applied at a larger scale, more team members are needed for maintenance. It is not difficult to maintain the solution.

I recommend the solution to those planning to use it since it is a good solution in the SIEM and SOC space. Some different providers or vendors also work in the SIEM and SOC space. The customers or potential users should evaluate a product before buying it, and everything would be fine.

The solution can fit all sizes. It's not only for enterprises since you'll find some SMBs looking for solutions like Securonix Next-Gen SIEM, but it will be a bit expensive out of their budget. Usually, SMBs don't place a budget for SOC since they can go for a managed SOC. Securonix Next-Gen SIEM could fit the requirements of SMBs as well.

It is a good product that needs to improve.

Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises


    RajivSingh

A scalable and easy-to-deploy solution that can be used for user behavior analytics in large enterprises

  • July 11, 2023
  • Review provided by PeerSpot

What is our primary use case?

We use it for user behavior analytics in a hospital. Consider patient health information. We use the product to understand where the information is, who's using it, who's accessing it, whether the access is authorized or unauthorized, and whether there is a possible risk of someone stealing that data. There are many such use cases.

Additionally, we can find who's accessing the data at a particular time in the hospital network. It is flagged as a potential risk if it is an unlikely behavior. When unauthorized access is made, an investigation is launched. There are similar use cases of Securonix that we built in hospitals in the US over the last six or seven years.

What is most valuable?

The big data security analytics platform, structured and unstructured data analytics, and user and entity behavior analytics provided by the product are probably the best in the industry.

What needs improvement?

The solution could provide more automation. There should be proactive creation of use cases specific to particular hospitals. What we get out of the box is not necessarily good enough. We have to build the use cases as a service provider. There's room to improve the use cases provided by Securonix.

For how long have I used the solution?

We are partners and managed service providers of the solution in multiple markets across different regions.

What do I think about the stability of the solution?

The product is stable. I would rate the stability an eight out of ten.

What do I think about the scalability of the solution?

The solution is scalable. It is the size of the organization that determines the number of users. It could be 10,000 or 20,000 users if it's a large organization. Sometimes, we see up to 30,000 users in a large corporation across multiple geographies. It all depends on the size of the company. Anything above 10,000 users is the standard size that we get with Securonix. I rate the scalability an eight out of ten.

How was the initial setup?

The initial setup is easy. I don't see that as a challenge. All the features are user-friendly, and anyone with basic training should be able to install and get it started.

Generally, government clients or large enterprises prefer the product on-premises. Around 20 to 30% of our clients prefer to have it on the cloud. Most of our clients have installed it on-premises because they are very large companies. Fortune 500 companies would prefer to have it in their own environment and not on the cloud. However, Fortune 2000 or Fortune 5000 companies would be more interested in a cloud environment.

What's my experience with pricing, setup cost, and licensing?

Compared to other known brands in the industry, the overall cost of the licenses is a bit higher than what customers expect. We have segmented Securonix as a platform for high-end customers, large banks and hospitals. The product is not suitable for mid-tier customers.

There are no hidden costs. The product has a transparent policy. The cost of the platform could depend on the number of users. There could be one price for one user per month. It is typically how all such platforms are priced. The pricing can also be done based on data usage. It would depend on how much data we are processing and managing.

What other advice do I have?

We have clients in Europe and US. The tool is pretty good in the market. We must keep our eyes and ears open and look for different products. Nothing in the world of cybersecurity is going to stay for long. We see dynamic changes happening in the environment. As we see new threats emerging, the tools that are scalable and responsive are the only tools that will matter. We must keep benchmarking and checking out the best in the market.

Overall, I rate the solution a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud


    Technologie de l'information et services

Plateforme hautement personnalisable, cependant la documentation et les équipes de support font cruellement défaut.

  • January 16, 2023
  • Review provided by G2

Qu'aimez-vous le plus à propos de the product?
La plateforme est hautement personnalisable. Les tableaux de bord personnalisés pour les SLA et la gestion des tickets sont bons.
Que n’aimez-vous pas à propos de the product?
Bien qu'ils soient hautement personnalisables, ils manquent de soutien pour guider les équipes à travers cela. Le temps de réponse aux tickets est épouvantable et la plupart du temps, le membre du support est inutile, ne comprend pas la demande ou prend beaucoup de temps pour agir sur les tickets.
Quels sont les problèmes que the product résout, et en quoi cela vous est-il bénéfique?
Nous avions besoin d'une solution pour suivre les métriques de SLA et de gestion des tickets, ainsi que pour la consolidation des tickets.


    Hassam U.

Plateforme d'analytique de sécurité avancée basée sur le Big Data

  • January 14, 2023
  • Review provided by G2

Qu'aimez-vous le plus à propos de the product?
Le plus grand avantage est qu'il peut ingérer de grandes quantités de données en construisant un lac de données, contrairement à d'autres SIEM traditionnels. Il aide les clients à ne pas limiter les données qu'ils doivent analyser.
Que n’aimez-vous pas à propos de the product?
La plateforme est généralement adaptée aux grands clients, pour les plus petits clients, elle peut ne pas être le bon choix pour exploiter tout son potentiel et ses capacités d'apprentissage automatique. Probablement s'ils peuvent offrir quelque chose pour les PME également.
Quels sont les problèmes que the product résout, et en quoi cela vous est-il bénéfique?
Il nous aide à ingérer des journaux et des données en temps réel provenant de toutes les sources réseau et à effectuer des tâches complexes d'UEBA et d'apprentissage automatique.

Les capacités de recherche et de criminalistique sont également assez supérieures.


    Patrick B.

Trouver des préoccupations de sécurité facilement sans le bruit.

  • November 21, 2022
  • Review provided by G2

Qu'aimez-vous le plus à propos de the product?
Securonix vous permet de passer en revue rapidement les événements potentiellement malveillants tout en suivant mais en filtrant les éléments n'ayant pas besoin d'être examinés. La configuration est simple et l'interface est intuitive.
Que n’aimez-vous pas à propos de the product?
Jusqu'à présent, rien n'est un problème, et nous continuons à trouver de nouvelles façons de tirer parti du produit.
Quels sont les problèmes que the product résout, et en quoi cela vous est-il bénéfique?
Nous pouvons utiliser des rapports et des alertes pour répondre aux audits de conformité et confirmer que les SOP sont suivies et complétées. Tout événement douteux est signalé pour examen.


    Internet

A besoin de beaucoup d'améliorations

  • June 22, 2022
  • Review provided by G2

Qu'aimez-vous le plus à propos de the product?
Le produit fonctionne pour le très basique dans ce qu'il annonce. En dehors de cela, nous aimons qu'il soit basé sur le cloud et plus ou moins sans intervention du point de vue opérationnel.
Que n’aimez-vous pas à propos de the product?
Le support est terrible et les escalades nécessitent généralement l'intervention d'un avocat ou d'un cadre au sein de Securonix.
Quels sont les problèmes que the product résout, et en quoi cela vous est-il bénéfique?
Il est mieux adapté aux entreprises basées sur le cloud comme la nôtre qui utilisent GCP, Google Workplace, AWS et d'autres produits SaaS. Cela permet la consommation directe des journaux dans le SIEM sans de nombreuses étapes intermédiaires. C'est le cas lorsque cela fonctionne.


    Manzar A.

Plateforme d'opérations de sécurité et d'analytique Securonix

  • May 21, 2022
  • Review provided by G2

Qu'aimez-vous le plus à propos de the product?
C'est une solution SIEM de nouvelle génération incluant également les capacités de SOAR. Securonix propose une tarification simple, facile et prévisible basée sur le nombre d'utilisateurs surveillés, ce qui signifie qu'une empreinte de Data Lake peut évoluer sans augmenter le prix.
Que n’aimez-vous pas à propos de the product?
déploiement complexe et connecteurs de données limités.
Verrouillage du fournisseur
Seuls les PME pour construire et affiner les règles de détection des menaces pour détecter les attaques ciblées, les menaces avancées ou les attaques lentes et discrètes.
Quels sont les problèmes que the product résout, et en quoi cela vous est-il bénéfique?
Analyse et enquête sur les incidents de cybersécurité.
Gestion des journaux.
Orchestration et automatisation pour une réponse automatisée.
Détection avancée des menaces, corrélation et priorisation.