I use it for the log monitoring of our legacy site. We typically monitor the event timestamps.
Logs for Security (AWS Built-In)
Sumo Logic Inc.External reviews
External reviews are not included in the AWS star rating for the product.
Helps to monitor logs and event timestamps
What is our primary use case?
What is most valuable?
The tool has key features like operability. It will alert the admins whenever a device is onboarded.
What needs improvement?
From the network segmentation side, there is some discrepancy in log onboarding. The tool needs to improve direct API integrations, login integration, native login integration, etc.
For how long have I used the solution?
I have been working with the product for three years.
What do I think about the stability of the solution?
I would rate the tool's stability a nine point five out of ten.
What do I think about the scalability of the solution?
I would rate the product's scalability a nine out of ten.
How are customer service and support?
The support replies to us back within 24 hours of opening a ticket.
How would you rate customer service and support?
Positive
How was the initial setup?
The tool's setup is simple and straightforward. A three-member team manages the solution.
What other advice do I have?
I would rate the solution a nine out of ten.
Integrates well, useful rules, and beneficial GUI
What is our primary use case?
We are using Sumo Logic Security for security monitoring.
What is most valuable?
The most valuable features of Sumo Logic Security are the rules, use cases, and ease of use. Additionally, the integration is straightforward and good GUI.
What needs improvement?
The API integration in Sumo Logic Security could improve. There are delayed connections or they stop and then automatically start. Having a seamless log collection would be beneficial.
In a feature release, more insights on threat intelligence would be helpful.
For how long have I used the solution?
I have been using Sumo Logic Security for approximately one year.
What do I think about the stability of the solution?
The solution is stable.
I rate the stability of Sumo Logic Security a seven out of ten.
What do I think about the scalability of the solution?
We have approximately 20 to 35 users using this solution. We use it on a daily basis.
How are customer service and support?
I rate the support of Sumo Logic Security an eight out of ten.
Which solution did I use previously and why did I switch?
I was previously using IBM Security QRadar. We switched to Sumo Logic Security because it was on the cloud and IBM Security QRadar was on-premise.
How was the initial setup?
The setup of Sumo Logic Security is easy.
The time it takes for the deployment depends on how many logs and the sources there are.
I rate the initial setup of Sumo Logic Security a seven out of ten.
What's my experience with pricing, setup cost, and licensing?
The license pricing model is based on the events that are processed through the solution.
The price of Sumo Logic Security is high.
I rate the price of Sumo Logic Security a seven out of ten.
What other advice do I have?
It is important to tune the rules so that are minimal false positives.
I rate Sumo Logic Security an eight out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Great monitoring tool but too costly
Easy to use and full of features
Great tool for log processing & data fetching real-time
2. Super quick to fetch the relevant data from the logs.
3. Proper documentation & user-friendly as it can be integrated with any application.
4. Support is also very responsive
2. Interface is confusing & messed with an overlap of multiple data cards.
3. Not compatible with all query languages. SQL is a must to use it. It can't support all other languages.
Sumo Logic as SIEM
Amazing customer service
Initial setup can be challenging but there are lots of resources available for learning
New, efficient and scalable
Very efficient tool for real time log processing with ability to fetch data from various sources
* Ability to process and correlate the data
* Ability to search through direct search, regex
* Steep learning curve for engineers and users