A combined SIEM and SOAR, used to accelerate threat detection and response with holistic security analytics, native SOAR, and intelligent automation.
N/A
RackFoundry Total Security Management (discontinued)
Score 1.4 out of 10
N/A
RackFoundry was a firewall solution with VPN, SIEM, automated vulnerability scanning and log management features scaled for SME’s. It has been discontinued and is no longer available.
N/A
Pricing
Arcsight by OpenText
RackFoundry Total Security Management (discontinued)
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Arcsight by OpenText
RackFoundry Total Security Management (discontinued)
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Arcsight by OpenText
RackFoundry Total Security Management (discontinued)
Features
Arcsight by OpenText
RackFoundry Total Security Management (discontinued)
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Arcsight by OpenText
5.5
Ratings
34% below category average
RackFoundry Total Security Management (discontinued)
1.0
Ratings
154% below category average
Centralized event and log data collection
8.00 Ratings
1.00 Ratings
Correlation
9.00 Ratings
1.00 Ratings
Event and log normalization/management
8.00 Ratings
1.00 Ratings
Deployment flexibility
6.00 Ratings
1.00 Ratings
Integration with Identity and Access Management Tools
6.00 Ratings
1.00 Ratings
Custom dashboards and workspaces
5.00 Ratings
1.00 Ratings
Host and network-based intrusion detection
8.00 Ratings
1.00 Ratings
Data integration/API management
5.00 Ratings
00 Ratings
Behavioral analytics and baselining
2.00 Ratings
00 Ratings
Rules-based and algorithmic detection thresholds
8.00 Ratings
00 Ratings
Response orchestration and automation
2.00 Ratings
00 Ratings
Reporting and compliance management
4.00 Ratings
00 Ratings
Incident indexing/searching
1.00 Ratings
00 Ratings
User Ratings
Arcsight by OpenText
RackFoundry Total Security Management (discontinued)
RackFoundry Total Security Management (discontinued)
Likelihood to Recommend
In the current lot of hundreds of SIEM solutions out there in the market, ArcSight ESM is fairly less expensive with strong fundamentals in place. The log ingestion, correlation are very well performing and totally worth ROI. However, the tool has lost its way when it comes to staying abreast with current feature curve of SIEM technology and the evolution has not been done by MicroFocus. Search times are high and there is no major plug-in that has been introduced as part of the product life cycle.
I would not recommend RackFoundry to any company whatsoever. At first it seems like a viable solution for the cost. Offering SOC monitoring, implementation and deployment all-in-one seems like a great deal. However it all falls apart when push comes to shoves. As it currently stands we are just over a year into our deployment. All we have to show for it is a fancy web app that does not display any information. In the year that this deployment has been ongoing it has taken us a few months just to get the virtual appliance installed. Then it was another few months of back and forth until we finally got credentials. Then when I finally logged in we began the process of deploying agents and began collecting data. Shortly afterward things began to stall to where they are now. We faced major issues with the web app, scans were not running, assets were not reporting in and data and reports were not being generated. After doing some more research and googling I realized that we were not alone with these issues. Countless other reports from companies who have had similar issues to ours. Each time I ask when the issues were going to be resolved, I got the same answer every time: "The next release should fix the issues you have been experiencing", only for the next release to come, and the issues remain.
Overall, it is a good investment in order for an organization to stay compliant and stay secure from all the wild things happening. It is definitely a cost effective tool with some good features including correlation, log storage, reporting and dashboards. If a customer is looking for advanced set of features, then I would highly not recommend this.
If you go for platinum support, it's good as you have priority for support. They will take remote control of your machines and troubleshoot. Also, they arrange requirement SEM depending on the issue.
We are currently using Elastic search as well for better management of our devices and to keep all the loopholes filled that have been created around the non-upgraded version of Arcsight Enterprise Manager. Elastic searches have the latest mechanism to fetch logs and correlated data, as well as process them in a more useful way.
Well I have experience with the big names: SecureWorks, IBM and Splunk. Individually their logging tools are much better than RackFoundry's Total Security Management. This is great for large corporations and urban cities, however not so great for municipalities, mid size businesses and companies who fluctuate between 1-7 members on their IT staff. Why? Because it takes too much of their resources and integration with other products gets a little rough as you will need to configure your preferences to theirs. When a company has stability it is great to have a name brand product, however renewals and upgrade costs can be taxing to an organization.