Feature Description |
ManageEngine EventLog Analyzer
Try now |
Vigilance Managed SIEM |
Log collection |
Agentless |
|
Not specified |
Agent-based |
|
Not specified |
Cross platform log collection |
|
|
Heterogeneous server/ device support |
|
|
Import logs |
|
Not specified |
Periodical import of logs |
|
Not specified |
Log filter |
|
Not specified |
Custom log parsing and indexing |
|
Not specified |
Log collection and processing rate |
20,000 logs/second with peak event handling capacity up to 25,000 logs/second. For Windows event logs the EPS is 2000 logs/second. |
Not specified |
Log formats supported |
Windows event log |
|
Not specified |
Syslog |
|
Not specified |
Any format – with custom log Parsing and indexing technology |
|
Not specified |
Amazon Web Services (AWS) EC2 Instance |
|
Not specified |
Application logs supported |
Proprietary applications [Microsoft IIS Web Server, FTP Server (W3C logs), Apache Web Server, DHCP Windows, DHCP Linux] |
|
|
Database applications [Oracle Audit, Microsoft SQL Server] |
|
Not specified |
Any application – with custom log parsing and indexing technology |
|
Not specified |
Other devices supported |
Custom devices [IBM AS400 (iSeries), VMware] |
|
Not specified |
Custom devices
- Firewalls
- Intrusion Detection System/ Intrusion Prevention System (IDS/IPS)
- Anti-virus application
- Mail and web application
- Vulnerability Scanners
- Unified threat management solutions
- Symantec DLP Application
- FireEye
- Symantec Endpoint Solution
|
|
|
Alerts and notifications |
Real-time alerts |
|
|
Canned alerts |
|
Not specified |
Correlation alerts |
|
|
Custom alerting |
|
Not specified |
Notification – email, SMS, Run program |
|
Not specified |
Compliance alerts |
|
|
In-built incident management module |
|
|
Forward tickets to external help desk software |
ServiceDesk Plus, ServiceNow, Jira Service Desk, Zendesk, Kayako, and BMC Remedy Service Desk |
|
Threat intelligence |
Real-time alerts for global blacklisted IPs intruding the network |
|
|
Reports |
File integrity monitoring |
|
Not specified |
Canned reports |
|
Not specified |
Custom reports |
|
|
Scheduled reports |
|
Not specified |
Report distribution via email |
|
Not specified |
Reports in PDF& CSV formats |
|
|
Drill down to raw logs |
|
|
Filter using mouse gesture |
|
|
Management specific reports (Ask ME) |
|
|
Trend reports |
|
|
Privileged user activity monitoring reports |
|
|
Log search |
Advanced search using Boolean, wildcards, grouped search, range search, phrase search |
|
Not specified |
Formatted log search |
|
|
Raw log search |
|
|
Save search result as report and as alerts |
|
|
Compliance reports |
Canned reports |
|
Not specified |
Customizing existing report |
|
Not specified |
Creating new compliance reports |
|
Not specified |
PCI-DSS |
|
|
HIPAA |
|
|
FISMA |
|
|
SOX |
|
|
GLBA |
|
|
ISO 27001 |
|
Not specified |
Real-time event correlation |
Event correlation |
|
|
Field-level filters to build correlation rules |
|
Not specified |
Pre-defined rules to detect various attacks, including ransomware, brute-force and more |
|
Not specified |
User session monitoring |
|
Not specified |
File Integrity Monitoring |
Reports on file integrity monitoring |
|
Not specified |
Report scheduling |
|
Not specified |
Real-time alerts when critical changes are made to files/folders that are being monitored |
|
Not specified |
Audit trail of file/folder changes |
|
Not specified |
Log archiving |
Flexible periodicity |
|
Not specified |
Flexible retention |
|
Not specified |
Secured (Encrypted) |
|
Not specified |
Tamper-proof |
|
Not specified |
Service provider features |
User based views |
|
Not specified |
User based dashboards |
|
Not specified |
Rebranding |
|
Not specified |
User management |
Realm and user-based access |
|
Not specified |
Active Directory (AD)-based user authentication |
|
Not mentioned |
RADIUS server-based user authentication |
|
Not specified |
Other key features |
Incident workflows |
|
|
Risk Assessment |
|
|
Advanced threat analytics |
|
Not specified |
Implementation |
Easy to install |
|
|
Web-based client |
|
|
Appliance-based |
|
|
System requirements |
Bundled database (PostgreSQL/MySQL) |
|
Not specified |
Windows & Linux platforms support |
|
|
64-bit support |
|
|
Pricing |
Pricing basis |
Based on the number of servers, devices and applications. |
Not specified |
Subscription mode |
Annual-basis |
Not specified |
Perpetual licensing model |
|
Not specified |