Al evaluar las dos soluciones, los revisores encontraron que OpenText ArcSight Enterprise Security Manager (ESM) es más fácil de usar y hacer negocios en general. Sin embargo, prefirieron la facilidad de configuración con OSSIM (Open Source), junto con la administración.
EVERYTHING OPENSOURCE , get alert when incident is happen. and the thing i like most is the OTX (Open Threat Exchange) that provide the info about latest virus,malware,and suspicious IP reputation details to prevents such threats in company premises to...
Instalación y mantenimiento engorrosos. Parece que la solución "no libre" ofrece más usabilidad.
ArcSight offers incredible customizability for creating, viewing and managing any use cases a SOC needs from dashboards, active channels, reports, trends and many others.
The agent is resource intensive, the UEBA module is missing, Alarm/alert trigger quite late which leads to a breach of SLAs.
EVERYTHING OPENSOURCE , get alert when incident is happen. and the thing i like most is the OTX (Open Threat Exchange) that provide the info about latest virus,malware,and suspicious IP reputation details to prevents such threats in company premises to...
ArcSight offers incredible customizability for creating, viewing and managing any use cases a SOC needs from dashboards, active channels, reports, trends and many others.
Instalación y mantenimiento engorrosos. Parece que la solución "no libre" ofrece más usabilidad.
The agent is resource intensive, the UEBA module is missing, Alarm/alert trigger quite late which leads to a breach of SLAs.