Sign in
Categories
Migration Mapping Assistant Your Saved List Partners Sell in AWS Marketplace Amazon Web Services Home Help

Alert Logic SIEMless Threat Management (US)

Alert Logic Essentials - Vulnerability and Asset Visibility and Endpoint Protection Gain visibility into your AWS environment and find services that are misconfigured such as permissive IAM policies and unauthenticated access to S3 buckets. And, Alert Logic's endpoint protection intelligently blocks... See more

Customer Reviews

3
Create Your Own Review

The installation and configuration were slick. However, this product needs to mature more.

  • By AwsAdminb048
  • on 01/16/2019

We use it to be able to review logs and the overall system help and learn on anything that we need to handle.
How has it helped my organization?
Our organization's issue is that we implemented it and kicked the tires, but we never put an administrator behind it to own it and do a whole lot for it. There were a couple of select cases that we found and acted on those alerts. However, for the most part, it's just a climbing number of alerts with nobody touching them.
We needed a better plan for implantation. If we put something out there, we have to have people lined up to look at it and admin it, then reap the benefits of everything it's telling us to act on it. If you're not doing this, you have good intentions, but you fell short.
What is most valuable?
We receive infrastructure security warnings from it. So, we know what is going on and what needs to be addressed, e.g., things that we didn't have somebody looking for. It shows us these automatically, using things like automated scanning.
What needs improvement?
This product needs to mature more. While it is a good product, there are some areas where it needs work. If this is a cloud service, I shouldn't have to tell them how to develop analytics to tell me this is what is going on. They should be able to do it. Over time, their own system should be able to identify, "This is something that is a continuous thing with a particular user or company." Or, I should be able to click on it being able to "ignore" it, dropping it completely. It should be smarter than what it is, and it is not.
For how long have I used the solution?
One to three years.
How was the initial setup?
It implemented pretty quickly.
We have everything you need. It would typically take a lot other solutions weeks to set up. This set up within fifteen minutes, which is pretty slick, and it has a lot of different interfaces.
The installation and configuration were slick. After installing in 20 to 30 minutes, you can start provisioning access, so people can take a look.
What's my experience with pricing, setup cost, and licensing?
I was not involved in the pricing and licensing.
Which other solutions did I evaluate?
Other solutions that we evaluated were Datadog and LogRhythm, but it is not an apples to apples comparison.
Alert Logic was not my choice. I implemented it, and said, "Here you go guys. Kick the tires."
What other advice do I have?


It fully integrates with our AWS environment and is quick to set up

  • By Mark S.
  • on 12/18/2018

The primary use case is security.
How has it helped my organization?
The quicker implementation of changes to our infrastructure from Alert Logic tell us if there are any problems.
What is most valuable?
* Easy to use, nice interface.
* It is quick set up.
What needs improvement?
The documentation, especially with the initial setup, needs improvement.
For how long have I used the solution?
Less than one year.
What do I think about the stability of the solution?
The stability is good. We trust it fully.
What do I think about the scalability of the solution?
Scalability seems good. This was one of the other features that we were interested in.
We have eight different accounts and are able to implement the solution across them easily.
How is customer service and technical support?
I go internally into the business for technical support rather than using the supplier for technical support.
How was the initial setup?
It fully integrates with our AWS environment, which is brilliant.
Alert Logic integrates with all of our products, which was one of the reasons that we went for it.
Which other solutions did I evaluate?
We also evaluated on-premise and open source products. We went with Alert Logic because it was quicker to implement.
What other advice do I have?
Try and get a demo. It is the best one products. As soon as you see it working, you will see it is very good.


It improves our security by scanning containers correctly and quickly

  • By Riyad C.
  • on 12/10/2018

We use it for security scanning containers on Kubernetes. We have containers running on Kubernetes, so we use it to scan for vulnerabilities.
How has it helped my organization?
It improves our security. Before, we didn't have anything scanning our containers. We had software scanning all the physical servers, but we had nothing to scan our containers. With Alert Logic, we can do that.
What is most valuable?
It scans correctly and quickly. For example, we had an issue where we had Bitcoin mined and sold in some of our containers, and Alert Logic was able to find it and alert us about it. Then, we were able to find out why the containers were being hacked and killed it.
What needs improvement?
I would like more data on the alert payload. It would be good to have the ability to customize the alert payload to add whatever data that we want on there. Right now, it is a bit limited.
For how long have I used the solution?
Less than one year.
What do I think about the stability of the solution?
It's stable. We've not had any issues with stability.
What do I think about the scalability of the solution?
It is scalable. We have been adding more AWS accounts every day. We have been adding more containers, but we are not seeing any issues.
We have 240 AWS accounts. We have about 1000 containers, but we have 300 to 400 services which are running with containers on the cloud, and we are still able to continue to scale.
How is customer service and technical support?
I have not contacted the technical support.
Which other solutions did I evaluate?
The security team chose the product. I wasn't involved in the process.
What other advice do I have?
Give it a try. It is very useful.
The product is integrated with a product called BigPanda. It's an alerting platform, and it post alerts through SAP to BigPanda. The integration was good, but standard.


showing 1 - 3