Support
 
Support Get Quote
 
 
 
 

Home > ManageEngine EventLog Analyzer vs Micro Focus Arcsight ESM

Looking for an alternative to
Micro Focus Arcsight ESM

100000+ Technicians trust ManageEngine EventLog Analyzer to manage their Windows environment

Try ManageEngine EventLog Analyzer

Thank you for downloading!

Your download should begin automatically in 15 seconds. If not, click here to download manually.

    Download fully functional
    30-days FREE trial!

  • By clicking 'Start a free trial', you agree to processing of personal data according to the Privacy Policy.

Thanks!

One of our solution experts will get in touch with you shortly

ManageEngine EventLog Analyzer vs Micro Focus Arcsight ESM

  • This document provides a feature-wise comparison report between ManageEngine EventLog Analyzer and Micro Focus ArcSight Enterprise Security Manager (ESM). The comparison done here is based upon information available on the competitor’s website and the details might vary with the actual product
  • ManageEngine EventLog Analyzer is a comprehensive security information and event management (SIEM) solution that enables automation of log management, log collection, analysis, event correlation, file integrity monitoring, log search, and archival, to meet compliance and SIEM needs from a single console.
  • Micro Focus ArcSight ESM is a security information and event management (SIEM) solution that analyses and correlates events that occurs across the organization including login, logoff, file access, database query, etc

ManageEngine EventLog Analyzer

Feature Description ManageEngine EventLog Analyzer
Try now
Micro Focus ArcSight Enterprise Security Manager (ESM)
Log collection
Agent-less    
Agent-based    
Cross platform log collection    

ArcSight ESM must be used in conjunction with ArcSight Data Platform or any collection system that uses Common Event Format (CEF).

Heterogeneous server/ device support    
Import logs    
Periodical import of logs    
Log filter    
Custom log parsing and indexing    
Log collection and processing rate 20,000 logs/second with peak event handling capacity up to 25,000 logs/second. For Windows event logs the EPS is 2000 logs/second. Depends on the server-based software model.
The highest capacity is 12,500 events per second.
Log formats supported
Windows event log    
Syslog    
Any format – with custom log Parsing and indexing technology    
Amazon Web Services (AWS) EC2 Instance    
Application logs supported
Proprietary applications [Microsoft IIS Web Server, FTP Server (W3C logs), Apache Web Server, DHCP Windows, DHCP Linux]    
Database applications [Oracle Audit, Microsoft SQL Server]    
Any application – with custom log parsing and indexing technology    
Other devices supported
Custom devices [IBM AS400 (iSeries), VMware]    
Custom devices
  • Firewalls
  • Intrusion Detection System/ Intrusion Prevention System (IDS/IPS)
  • Anti-virus application
  • Mail and web application
  • Vulnerability Scanners
  • Unified threat management solutions
    • Symantec DLP Application
    • FireEye
    • Symantec Endpoint Solution
   
Alerts and notifications
Real-time alerts    
Notification – email and SMS    
Compliance alerts    
In-built incident management module    
Forward tickets to external help desk software ServiceDesk Plus and ServiceNow  
Threat intelligence
Real-time alerts for global blacklisted IPs intruding the network    

ESM optional package (Threat Central and Reputation Security Monitor)

Reports
File integrity monitoring    
Canned reports    
Custom reports    
Scheduled reports    
Report distribution via email    
Reports in PDF, CSV and HTML formats    
Drill down to raw logs    
Filter using mouse gesture    
Management specific reports (Ask ME)    
Trend reports    
Privileged user activity monitoring reports    
Log search
Advanced search using Boolean, wildcards, grouped search, range search, phrase search    
Formatted log search    
Raw log search    
Save search result as report and as alerts    
Compliance reports
Canned reports    

ESM optional package (Compliance Automation and Reporting)

Customizing existing report    

ESM optional package (Compliance Automation and Reporting)

Creating new compliance reports    

ESM optional package (Compliance Automation and Reporting)

PCI-DSS    

ESM optional package (Compliance Automation and Reporting)

HIPAA    

ESM optional package (Compliance Automation and Reporting)

FISMA    

ESM optional package (Compliance Automation and Reporting)

SOX    

ESM optional package (Compliance Automation and Reporting)

GLBA    

ESM optional package (Compliance Automation and Reporting)

ISO 27001    

ESM optional package (Compliance Automation and Reporting)

Real-time event correlation
Event correlation    
Field-level filters to build correlation rules    
Pre-defined rules to detect various attacks, including ransomware, brute-force and more.    
User session monitoring    
File Integrity Monitoring
Reports on file integrity monitoring    
Report scheduling    
Real-time alerts when critical changes are made to files/folders that are being monitored    
Audit trail of file/folder changes    
Log archiving
Flexible periodicity    
Flexible retention    
Secured (Encrypted)    
Tamper-proof    
Service provider features
User based views    
User based dashboards    
Rebranding    
User management
Realm and user-based access    
Active Directory (AD)-based user authentication    
RADIUS server-based user authentication    
Implementation
Easy to install    
Web-based client    
Appliance-based    
System requirements
Bundled database (PostgreSQL/MySQL)   Not specified
Windows & Linux platforms support    
64-bit support    
Pricing
Pricing basis Based on the number of servers, devices and applications. Not specified
Subscription model Annual basis Not specified
Perpetual licensing model   Not specified

Can the solution be considered value for money?

Component-based pricing model
The Premium edition starts at $595 per year for 10 log sources.

(Includes 1st year AMS)

 

 

customer-testimonial-logo

What customers say about us

  • CAMH will be able to save close to $26,000 a year on service desk calls related to Active Directory password resets and locked accounts, and will see a return on investment within the first six months of product implementation.

    Judy OlivierProject Manager, CAMH

About ManageEngine EventLog Analyzer

EventLog Analyzer is a web-based, real-time log management and IT compliance solution that combats network security attacks. With comprehensive log management capabilities, EventLog Analyzer helps organizations meet their diverse auditing needs. It also offers out-of-the-box compliance reports and alerts that meet stringent IT regulatory mandate requirements with ease.

For more information about ManageEngine EventLog Analyzer, please visit

www.manageengine.com/products/eventlog/
Download
Get quote
Demo

Thank you for downloading!

Your download should begin automatically in 15 seconds. If not, click here to download manually.

Download fully functional30-days FREE trial!

  •  
    By clicking 'Claim Your Free Trial', you agree to processing of personal data according to the Privacy Policy.

Thank you

Thank you for your interest in ManageEngine EventLog Analyzer. We have received your request for a price quote and will contact you shortly.

Get a personalized Quote,that best suits your requirements

  • Add-ons

    Application Auditing(IIS, MS SQL, etc.)
     
    Collectively specify the number of applications from which you want to collect and analyze the logs. This could be your Oracle,MySql database, Apache, DHCP, Terminal Servers, and more.
    Linux File Server Auditing
     
    This add-on helps auditing the Linux File Servers. Monitor file and folder changes through effective file integrity monitoring techniques.
    Windows File Server Auditing
     
    This add-on helps auditing the Windows File Servers. Monitor the changes within systems effectively through effective file integrity monitoring techniques
    (Windows File Servers *)
    Advanced Threat Analytics
     
    This add-on helps you assess the severity of threats when potentially malicious URLs, domains and IP addresses intrude into your network
  • By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Thank you

Thank you for your interest in ManageEngine EventLog Analyzer. We have received your request for a personalized demo and will contact you shortly.

Schedule apersonalized web demo

  • By clicking 'Submit', you agree to processing of personal data according to the Privacy Policy.

Disclaimer: ManageEngine does not guarantee the accuracy of any information presented in this document, and there is no commitment, expressed or implied, on ManageEngine’s part to update or otherwise amend this document. The furnishing of this document does not provide any license to patents, trademarks, copyrights or other intellectual property rights owned or held by ManageEngine.

EventLog Analyzer Trusted By

Los Alamos National Bank Michigan State University
Panasonic Comcast
Oklahoma State University IBM
Accenture Bank of America
Infosys
Ernst Young

Customer Speaks

  • Credit Union of Denver has been using EventLog Analyzer for more than four years for our internal user activity monitoring. EventLog Analyzer provides great value as a network forensic tool and for regulatory due diligence. This product can rapidly be scaled to meet our dynamic business needs.
    Benjamin Shumaker
    Vice President of IT / ISO
    Credit Union of Denver
  • The best thing, I like about the application, is the well structured GUI and the automated reports. This is a great help for network engineers to monitor all the devices in a single dashboard. The canned reports are a clever piece of work.
    Joseph Graziano, MCSE CCA VCP
    Senior Network Engineer
    Citadel
  • EventLog Analyzer has been a good event log reporting and alerting solution for our information technology needs. It minimizes the amount of time we spent on filtering through event logs and provides almost near real-time notification of administratively defined alerts.
    Joseph E. Veretto
    Operations Review Specialist
    Office of Information System
    Florida Department of Transportation
  • Windows Event logs and device Syslogs are a real time synopsis of what is happening on a computer or network. EventLog Analyzer is an economical, functional and easy-to-utilize tool that allows me to know what is going on in the network by pushing alerts and reports, both in real time and scheduled. It is a premium software Intrusion Detection System application.
    Jim Lloyd
    Information Systems Manager
    First Mountain Bank

Awards and Recognitions

  •  
  •  
  •  
  •  
  •  
  •  
  •  
  •  
  •  
  •  
A Single Pane of Glass for Comprehensive Log Management