TrustRadius: an HG Insights company

Securonix Next-Generation SIEM

Score10 out of 10

9 Reviews and Ratings

What is Securonix Next-Generation SIEM?

Securonix headquartered in Addison offers the Securonix Next-Generation SIEM deployment, combining log management as well as user and entity behavior analytics (UEBA), for a complete SOC solution.

Top Performing Features

  • Centralized event and log data collection

    Effectiveness of real-time centralized event and log data collection

    Category average: 9

  • Rules-based and algorithmic detection thresholds

    Effectiveness of manually-established rules and algorithmically-determined detection thresholds

    Category average: 8.2

  • Incident indexing/searching

    Effectiveness of searching across structured and unstructured events and incidents within SIEM

    Category average: 8.8

Areas for Improvement

  • Custom dashboards and workspaces

    dashboards that can be customized to meet the needs of specific groups

    Category average: 8

  • Data integration/API management

    Ease and quality of data integrations between SIEM and other systems

    Category average: 8.1

  • Response orchestration and automation

    Quality of built-in response orchestration and automation in Next-Gen SIEM

    Category average: 7.1

Exploring the User-Friendly Nature of the SIEM Tool

Use Cases and Deployment Scope

We use Securonix Next-Generation SIEM for real-time log monitoring to detect incidents and protect our environment from intruders. It parses logs from the source and helps our analysts review and classify violations. If a concern is identified, we escalate it for further action. This process keeps our data secure and ensures swift response to potential threats.

Pros

  • Log Parsing
  • Handles Loads of Data
  • Easy to Scale

Cons

  • Customization option
  • Integration with Legacy Systems:
  • Complexity of Setup

Return on Investment

  • Enhanced Security
  • Operational Efficiency
  • Customer Trust

Usability

Alternatives Considered

Splunk Enterprise and Microsoft Sentinel

Other Software Used

Microsoft Defender for Endpoint, Qualys VMDR, Cisco Meraki Dashboard

Securonix Review

Pros

  • User Entity Behaviour Analytics
  • Near real time visibility of estate
  • Quick onboarding of new log source
  • Quick policy and threat model configurations
  • OOTB connectors, threat models and playbooks

Cons

  • Full fledged SOAR capability

Return on Investment

Net Positive ROI

Usability

A SIEM with unrivaled speed, flexibility and scalability!

Pros

  • Collect data from just about any log source.
  • Provides lightning fast searching across large data-sets.
  • Provides in-depth analytics across both micro and macro time frames using threat models.

Cons

  • There is a steep learning curve for the platform.
  • Developing your own analytics can be challenging due to the depth and complexity of the analytics engine.

Return on Investment

  • We have been able to more than double the amount of clients we provide our managed security service to since moving to Securonix.
  • We can quickly and more accurately provide clients with the security data that they request.

Usability

Securonix Next-Generation SIEM - Data Visualized Efficiently

Pros

  • A robust automated response mechanism via Playbooks.
  • Thorough documentation on search query syntax.
  • Built-in Graph/chart creation based on query results.
  • A quick and responsive support team.

Cons

  • Grant customers to ability to rename mapped attributes.
  • Further clarification on Access Control via Roles vs. Groups.
  • Improved default reports.

Return on Investment

  • Securonix Next-Generation SIEM has reduced the amount of overhead required for environment monitoring by 15%!

Usability

Securonix Next-Gen SIEM, a flexible cloud-native solution fit to detect modern cyber threats

Pros

  • User & Entity Behavioral Analytics (UEBA) is an area Securonix Next-Generation SIEM performs particularly well. This allows an organization to baseline and understand the typical behaviors of their user base and easily identify anomalous behavior worthy of their valuable IT/Security people's time to investigate.
  • Flexible and Customizable Dashboarding is an area Securonix Next-Generation SIEM performs particularly well. This allows an organization a very granular and flexible view of the data being ingested by the SIEM to help drive out trends and other 'at-a-glance' useful insights that can be leveraged to drive action.

Cons

  • Securonix Next-Gen SIEM Role Based Access Controls (RBAC) could be a bit better. It currently allows for so much granularity that it's too complex & difficult to configure. Distilled and better defined RBAC would benefit the product.

Return on Investment

  • Securonix Next-Generation SIEM has reduced our overall operational costs by helping our team focus on the most pertinent security monitoring concerns first and by reducing the typical signal-to-noise ratio that is common amongst SIEMs not leveraging User & Entity Behavioral Analytics (UEBA) technology.

Usability