EVERYTHING OPENSOURCE , get alert when incident is happen. and the thing i like most is the OTX (Open Threat Exchange) that provide the info about latest virus,malware,and suspicious IP reputation details to prevents such threats in company premises to...
Combersome installation and maintenance. Looks like the "non-free" solution provides more usability.
ArcSight offers incredible customizability for creating, viewing and managing any use cases a SOC needs from dashboards, active channels, reports, trends and many others.
The agent is resource intensive, the UEBA module is missing, Alarm/alert trigger quite late which leads to a breach of SLAs.
EVERYTHING OPENSOURCE , get alert when incident is happen. and the thing i like most is the OTX (Open Threat Exchange) that provide the info about latest virus,malware,and suspicious IP reputation details to prevents such threats in company premises to...
ArcSight offers incredible customizability for creating, viewing and managing any use cases a SOC needs from dashboards, active channels, reports, trends and many others.
Combersome installation and maintenance. Looks like the "non-free" solution provides more usability.
The agent is resource intensive, the UEBA module is missing, Alarm/alert trigger quite late which leads to a breach of SLAs.