United States of America
69.4%951 installations of 1,370
Ability to normalize event syntax so that logs can be compared and are machine-understandable
Category average: 8.5
Effectiveness of real-time centralized event and log data collection
Category average: 9
Correlation of logs and events to pinpoint significant threats
Category average: 8.4
dashboards that can be customized to meet the needs of specific groups
Category average: 8
How effectively activity and behavior baselines are established and maintained
Category average: 7.5
Ability to detect both endpoint intrusion and network ingress detection
Category average: 7.4
951 installations of 1,370
67 installations of 1,370
52 installations of 1,370