Listing Thumbnail

    Logs for Security (AWS Built-In)

     Info
    Deployed on AWS
    Monitor your entire AWS environment in minutes. Sumo Logic integrates with your AWS SaaS services, providing unparalleled visibility into your cloud infrastructure and security data at scale.
    4.3

    Overview

    Logs for Security provides a unified security and compliance audit view of your AWS infrastructure and insight into threat activity across that environment. It leverages native AWS tools and telemetry to accelerate the work of development, operations, security, and reliability management teams in maintaining security, monitoring their environment, and managing their risk and attack surface.

    Modern ever-changing cloud environments need ongoing audits of configuration, vulnerability, versioning, activity, and other factors to ensure they are well maintained and not subject to vulnerability created by aging or drifting configuration, access rights, or software. Logs for Security helps teams get rapid, ongoing security visibility into the diverse aspects of their environment and provides customizable alerting, evaluation, and remediation of issues.

    Sumo Logic rapid onboarding process makes setup easy, allowing AWS users to visualize and begin improving the security posture of their environments in minutes.

    New Sumo Logic AWS Built In automation and integration. An AWS Certified deployment that reduces the time and effort to configure your multi-account environment, starting with AWS Control Tower and key Cloud Foundational Services to achieve a stronger security posture that drives efficiency and reduces risk in your business critical applications.

    The price below is for a two year subscription to ingest up to 5 GB per day. If you require more than 5 GB per day, please contact your AWS sales representative.

    Highlights

    • Unified security visibility and analytics across your entire AWS environment using native and 3rd-party data sources.
    • Integrated threat intel which accelerates threat detection and reduces the time to detect and investigate
    • Global Intelligence Service that creates statistical baselines for Amazon GuardDuty and AWS CloudTrail to help accurately pinpoint investigations and resources

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Logs for Security (AWS Built-In)

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    24-month contract (1)

     Info
    Dimension
    Description
    Cost/24 months
    5GB/Day Ingest
    5GB/day ingest with 365 days retention
    $13,350.00

    Vendor refund policy

    Please see seller website for refund details.

    Custom pricing options

    Request a private offer to receive a custom quote.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    Start by visiting Sumo Logic Support at https://support.sumologic.com/support/s/  or email us directly at support@sumologic.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    100
    In Log Analysis
    Top
    25
    In Security Observability, Data Security and Governance
    Top
    25
    In Data Governance, Infrastructure as Code

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Security Monitoring
    Provides unified security and compliance audit view of AWS infrastructure with comprehensive threat activity insights
    Threat Detection
    Integrates native AWS tools and telemetry to accelerate security monitoring and risk management across cloud environment
    Cloud Configuration Analysis
    Performs ongoing audits of configuration, vulnerability, versioning, and activity to identify potential security drifts
    Threat Intelligence Integration
    Leverages Global Intelligence Service to create statistical baselines for Amazon GuardDuty and AWS CloudTrail for precise investigations
    Multi-Account Security Management
    Supports automated deployment and integration across multi-account AWS environments using AWS Control Tower and Cloud Foundational Services
    Endpoint Security
    Advanced detection capabilities with both agent-based and agentless scanning across traditional infrastructure, serverless environments, and containers
    Threat Intelligence Correlation
    Cross-domain intelligence and telemetry integration for unified investigations, detection, and response through a single console
    Identity and Access Management
    Intelligent credential security with multi-factor authentication enforcement, identity provider integration, and privileged account management
    Vulnerability Management
    Predictive CVE detection and prioritization mechanism for effective vulnerability patching and remediation
    Compliance Monitoring
    Comprehensive compliance reporting and scoring against multiple frameworks including PCI, SOC2, NIST, and HIPAA with resource compliance tracking
    Cloud Infrastructure Monitoring
    Continually monitor public cloud infrastructure across AWS, Azure, and GCP environments to provide comprehensive visibility of resources and potential threats
    Vulnerability Detection
    Identify infrastructure vulnerabilities impacting security and compliance best practice standards with risk profiling and contextual alerts
    Multi-Cloud Asset Management
    Achieve a complete picture of cloud assets across multi-cloud environments, monitoring configurations, deployments, and access anomalies
    Security Configuration Analysis
    Detect insecure configurations, over-privileged IAM roles, and compliance failures from development through live service stages
    API Integration Capabilities
    Provide programmatic access to security features via REST API for seamless integration with third-party SIEM and DevOps tools

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.3
    369 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    29%
    58%
    10%
    2%
    1%
    4 AWS reviews
    |
    365 external reviews
    External reviews are from G2  and PeerSpot .
    Rahul K.

    Seamless Log Management with Powerful Analytics

    Reviewed on Nov 29, 2025
    Review provided by G2
    What do you like best about the product?
    I love how Sumo Logic seamlessly brings together powerful analytics with an incredibly user-friendly experience. The platform’s real-time search and visualization capabilities stand out for their ability to update dashboards instantly and alert tickets with minimal delays, even when dealing with massive volumes. I appreciate the optimized query language, which offers the flexibility of advanced analytics at a field level while still being approachable enough for new team members to pick up quickly. Another standout feature is the platform’s reliability and scalability; its performance remains consistent whether we’re ingesting a few gigabytes or terabytes of data. Additionally, the built-in integration with cloud services like AWS, Kubernetes, and security tools saves a huge amount of setup time. Overall, Sumo Logic feels like a twofold multiplier for both operational and security teams, enhancing efficiency and reducing the manual burden significantly.
    What do you dislike about the product?
    While Sumo Logic is a robust platform, there are a few areas needing improvement. During peak ingestion periods, the dashboard and search functions can slow down, especially when handling very large datasets or complex queries. Although the query language is powerful, it can initially seem challenging, and the learning curve for deep dive analysis is steeper than expected for new users. Additionally, managing ingestion volume and associated costs require careful tuning to prevent unexpected log spikes. More proactive recommendations or automatic optimization features could help maintain predictability. Furthermore, while integrations are generally effective, some newer cloud services demand more manual configuration than preferred.
    What problems is the product solving and how is that benefiting you?
    I use Sumo Logic for centralized log management and security analysis, enabling real-time monitoring and anomaly detection. It consolidates fragmented logs, reduces downtime, and streamlines compliance reporting, significantly enhancing both operational efficiency and security posture across our cloud-native infrastructure.
    Kim K.

    Effortless Log Search and Data Consolidation at Scale

    Reviewed on Nov 25, 2025
    Review provided by G2
    What do you like best about the product?
    I appreciate the quick log search feature, as it allows for efficient searching through records even at the petabyte scale. Additionally, I find the data consolidation helpful, since it simplifies the process of generating reports.
    What do you dislike about the product?
    Junior analysts encounter a steep learning curve when trying to master the complex on-site security queries.
    What problems is the product solving and how is that benefiting you?
    Sumo Logic is a solid and reliable solution that integrates seamlessly with modern cloud-based IT infrastructures. It has proven valuable for both performance monitoring and effective data management.
    Cruz J.

    Unified Dashboard and Predictive Analytics Streamline Workflow

    Reviewed on Nov 14, 2025
    Review provided by G2
    What do you like best about the product?
    I appreciated the native integration of logs, metrics, and tracking within a single dashboard, as it means I no longer need to switch between multiple tools. I also found the predictive analytics feature helpful, since it saves me time.
    What do you dislike about the product?
    While the API itself is robust, I found the configuration of the control panel and alerts to be less intuitive and not as smooth as I would have liked. Additionally, I was not a fan of its syntax, which I found to be quite cumbersome.
    What problems is the product solving and how is that benefiting you?
    Sumo Logic addresses a variety of challenges for us and has been extremely helpful, particularly due to its strong core capabilities in analyzing logs and metrics. This has significantly reduced our mean time to resolution, and the level of confidence it offers is truly impressive. Additionally, its scalable data ingestion has proven to be a valuable advantage.
    Rafael N.

    Flexible Pricing and Powerful Insights

    Reviewed on Nov 11, 2025
    Review provided by G2
    What do you like best about the product?
    Sumo Logic's Flex pricing model and insight generation.
    What do you dislike about the product?
    User experience (UX) design does not match a friendly interface.
    What problems is the product solving and how is that benefiting you?
    This tool is useful for both log management and security monitoring.
    Sean L.

    Powerful Real-Time Data Evaluation and Reliable Anomaly Detection

    Reviewed on Nov 10, 2025
    Review provided by G2
    What do you like best about the product?
    What I appreciate most is the powerful real-time data evaluation. I rely on the machine learning features for anomaly detection, which I find invaluable. Rather than manually searching for error patterns or unusual traffic spikes, these tools enable us to validate CI/CD deployments in production with confidence, knowing that any regression will be detected immediately.
    What do you dislike about the product?
    One of the downsides is that managing collectors in dynamic environments such as Kubernetes demands ongoing maintenance. Additionally, although the dashboards serve their monitoring purpose, they lack the flexibility and visual sophistication found in dedicated visualization tools.
    What problems is the product solving and how is that benefiting you?
    Thanks to Sumo Logic, we've been able to resolve the issue of dispersed telemetry data. It brings together logs, metrics, and traces onto one unified platform. This consolidation has helped us reduce our mean time to detect (MTTD) by automatically correlating events, which has enabled me to shift from a reactive stance to a more proactive approach in monitoring and managing reliability.
    View all reviews