The product is a log aggregator of all the logs from all our environments, including AWS. Our infrastructure is deployed on AWS. We ship all logs to Sumo Logic. Based on the logs, we create alerts. These alerts are sent to an email ID, which creates tickets.
Logs for Security (AWS Built-In)
Sumo Logic Inc.External reviews
External reviews are not included in the AWS star rating for the product.
High End Security Provision
Experience with using CloudSOAR
2. Using Cloud Soar can save money because businesses only pay for what they use, rather than buying and maintaining expensive equipment.
2. There's a risk that someone might hack into Cloud Soar and get hold of your sensitive information, so you need to make sure everything is protected properly.
Real-Time Log Management tool
1. Real time insights : The platform's capability to monitor and analyze log data in real time can help organizations quickly identify and address issues.
2. Ease of use : Sumo Logic is user interface intuitive and user-friendly. This can be crucial, especially for teams that may not have extensive experience with log management and analytics platforms.
3. Scalability : It's ability to handle large volumes of data and scale with the needs of the organization is often seen as a strong point. This makes it suitable for both small startups and large enterprises.
4.Analytics : analytics and visualization features help organizations to gain insights from their log data, identify the trends and patterns
Complexity: Sumo Logic's interface intuitive, but certain advanced features or configurations can be complex to set up and use effectively. This could potentially result in a steeper learning curve for some users.
Limited Historical Data Access: due to higher price, few organizations might have limitations in accessing historical log data.
1. Complex Log Management:
Problem: As our organization generate vast amounts of log data from various sources, making it challenging to consolidate, manage, and make sense of this data effectively.
Solution & Benefits: Sumo Logic centralizes log data, offering a unified platform to collect, store, and manage logs from different sources. This simplifies log management, making it easier to troubleshoot issues, analyze trends, and gain insights from the data.
2. Real-Time Monitoring:
Problem: Traditional log analysis processes might involve delayed response times to events, leading to missed opportunities for rapid issue detection and resolution.
Solution & Benefits: Sumo Logic provides real-time monitoring capabilities, allowing organizations to detect and respond to issues as they occur. This reduces downtime, enhances application performance, and improves overall operational efficiency.
The solution is automated and has a good number of extensions, but it is costly, and it must improve its UI
What is our primary use case?
What is most valuable?
The solution is automated. It has a good number of extensions like CrowdStrike and AWS extensions. It is very useful. We can integrate threat intelligence solutions into the product.
What needs improvement?
The query of Sumo Logic is complex. It should be improved. The solution should improve its UI. FireEye, Splunk, and LogRhythm provide proper UIs. The solution should improve its scalability and stability.
Connecting the collector with Sumo is difficult if a collector or device is down. We have faced multiple challenges like this, and we are still facing these challenges. We recently raised a ticket to Sumo Logic to investigate the issue.
For how long have I used the solution?
I have been using the solution for one and a half years. I am using the latest version of the solution.
What do I think about the stability of the solution?
I rate the tool’s stability a seven out of ten.
What do I think about the scalability of the solution?
I rate the tool’s scalability a seven out of ten. In my current organization, there are around 18 people who have access to the product, including the security team. Apart from these, 30 people from different teams have access to the tool but do not have full admin access.
How are customer service and support?
The support team is very cooperative. As soon as the team receives our tickets, a support person is assigned to us. They reach out to us and try to solve the problem.
How would you rate customer service and support?
Positive
How was the initial setup?
The installation of the devices was good. The product is deployed on the cloud.
What's my experience with pricing, setup cost, and licensing?
The product is costly. At the same cost, we can get other tools with better features and capabilities.
What other advice do I have?
First-time users must decide how they want to use the tool. The product is very good as a log aggregator. If we want to use the solution as a SIEM console, it will not be that useful because it does not have the features a SIEM tool would have. It does not have analyzing or threat intel features. The product does provide the option of using extensions, but it does not have its own threat intel feature. Overall, I rate the solution a seven out of ten.
Sumologic logging tool review
Documentation & Support can be bit better
Easy to collect logs, but can get pricey fast.
fast log analysis using sumologic
2. Nice UI/UX for searching the logs
3. Dashborad creation with proactive rule based alerting
costly and some fileting and aggegation option available in ELK is missing
A little complicated but good
Useful logging tool
Sumo logic - Best analytic power tool
Sunlogic is a flexible query language. The json field formatting is also extremely useful. I had an error where a process was stuck in a retry loop creating alot of time the log in a healthy process.
Alerting is quite disturbing at times as it is gonna trigger many times and there is not tracking of alerts in dashboard
Also used for logging and analysis the logs in case of deployment.