Sold by
Elastic Agent
Single unified agent to collect and send data to Elastic.
Reviews (34)
Chirag J.
Performance Max
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
It helps provide optimal performance at the most efficient cost
What do you dislike about the product?
There are no major downfalls as such on it
What problems is the product solving and how is that benefiting you?
Helps provide confidence from data breaches or injection attacks
Shubham P.
It's very efficient to learn and to work on it.
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
Flexibility, Speed and Centralized visibility.
What do you dislike about the product?
Nothing like that I can dislike in elastik
What problems is the product solving and how is that benefiting you?
Fragmented viability in security
Financial Services
Powerful Log Collection & Rule Correlation, But Annotations Feel Tedious
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
Elastic log collection and correlation to specified rules.
What do you dislike about the product?
Annotations which makes it hectic to annotate every other event
What problems is the product solving and how is that benefiting you?
Loading large amount of data within short span compared to other solutions like Qradar
Sandeep B.
Elastic Security: Powerful, Flexible, and Scalable
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
I like Elastic Security’s unified platform, along with its powerful threat detection, real-time analytics, and flexible search capabilities. Together, these features make it easier to detect, investigate, and respond to security threats from a single place.
What do you dislike about the product?
The initial learning curve can feel steep, especially for new users. Some of the more advanced security features also require deeper technical expertise and careful configuration to use effectively. In addition, the user interface and documentation could be more intuitive, which would help speed up adoption and make it easier to get started.
What problems is the product solving and how is that benefiting you?
✅ Security Information and Event Management (SIEM) — Primary
✅ Extended Detection and Response (XDR) Platforms
✅ Endpoint Detection and Response (EDR)
✅ Extended Detection and Response (XDR) Platforms
✅ Endpoint Detection and Response (EDR)
CHIRAG S.
Fast and Scalable SIEM
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
The query speed is very good. Being able to search through massive logs in seconds saves the team a lot of time during incident response.
What do you dislike about the product?
Setup and maintenance is what i dislike more because it takes very much time to get in place.
What problems is the product solving and how is that benefiting you?
It pulls all our security and cloud logs from various sources into one place. Which help in ease of use and no more jumping between tools, which also cut down our investigation time a lot.
Robin D.
Goat Products
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
It is primafaci approach, high end security tool
What do you dislike about the product?
Nothing as such which we don't like of it
What problems is the product solving and how is that benefiting you?
Yes definitely
Vipul G.
Good for use
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
Useful and end point protection Unmatched Search Speed at Scale:
What do you dislike about the product?
Unlike SaaS SIEM solutions that work right out of the box, setting up, tuning, and maintaining Elastic Security requires dedicated operational knowledge
What problems is the product solving and how is that benefiting you?
Eliminating Tool Fragmentation: Traditional enterprise security setups require separate vendors for log management (SIEM), host protection (EDR), cloud security, and orchestration (SOAR). Elastic combines these capabilities into a single agent, unified data schema, and single-pane UI.
Nikhil B.
Best security Product for Organisations
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
It unifies SIEM, endpoint protection, and threat hunting on one platform, backed by Elasticsearch's fast search across huge volumes of security data. Hundreds of prebuilt, open detection rules mapped to MITRE ATT&CK, built-in ML anomaly detection, and AI-assisted investigation help us detect and respond to threats quickly without juggling multiple tools.
What do you dislike about the product?
Detection rules need significant tuning to cut false positives, and setup and cluster management demand strong expertise. The interface can feel complex for new analysts, and resource and storage costs rise quickly as log ingestion grows.
What problems is the product solving and how is that benefiting you?
Elastic Security solves fragmented visibility and slow threat detection by bringing logs, endpoint telemetry, and network data into one searchable platform. We now correlate events across our whole environment, detect threats early with prebuilt and ML-driven rules, and investigate incidents in minutes instead of hours. This strengthens our security posture while reducing tool costs and analyst fatigue.
Aniket M.
Platform Engineer
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
The rules and alerts page is very useful for understanding things more clearly.
What do you dislike about the product?
There isn’t anything in particular that I dislike about Elastic.
What problems is the product solving and how is that benefiting you?
None
Mahesh L.
Soc team leader
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
Hands-on experience with ELK SIEM for log monitoring, detection rule creation, threat hunting, alert investigation, dashboards, and SIEM administration.
What do you dislike about the product?
The learning curve can be steep, especially for advanced configurations, troubleshooting, and large-scale deployments
What problems is the product solving and how is that benefiting you?
It provides centralized log monitoring, threat detection, investigation, and faster incident response, improving SOC visibility and operational efficiency.