Software Alternatives & Reviews

AlienVault OSSIM VS SecurityOnion

Compare AlienVault OSSIM VS SecurityOnion and see what are their differences

AlienVault OSSIM logo AlienVault OSSIM

Alienvault integrates and correlates many popular network and security monitoring tools in one...

SecurityOnion logo SecurityOnion

Security Onion is a free and open source Linux distribution for intrusion detection, enterprise security monitoring, and log management.
  • AlienVault OSSIM Landing page
    Landing page //
    2022-11-03
  • SecurityOnion Landing page
    Landing page //
    2021-10-18

AlienVault OSSIM videos

AlienVault® USM vs. OSSIM™

SecurityOnion videos

No SecurityOnion videos yet. You could help us improve this page by suggesting one.

+ Add video

Category Popularity

0-100% (relative to AlienVault OSSIM and SecurityOnion)
Monitoring Tools
58 58%
42% 42
Security & Privacy
46 46%
54% 54
Log Management
100 100%
0% 0
Cyber Security
0 0%
100% 100

User comments

Share your experience with using AlienVault OSSIM and SecurityOnion. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare AlienVault OSSIM and SecurityOnion

AlienVault OSSIM Reviews

7 Best Free Open Source SIEM Tools
AlienVault OSSIM This is one of the oldest SIEM systems around but it is very well supported by AT&T, so it is still being improved on solid, reliable code that has been extensively tested in the field. Runs as a virtual appliance.
8 Best Open Source SIEM Tools
OSSIM is one of the most popular open-source SIEM systems that combines other open-source tools that aid security, threat detection, and prevention. It includes key SIEM components such as event collection, processing, and event correlation. Some of OSSIM’s components include Nagios Core for monitoring and alerting, Snort for network intrusion detection and prevention, Munin...
Source: www.logiq.ai
Best Log Management Tools: Useful Tools for Log Management, Monitoring, Analytics, and More
AlientVault USM (Unified Security Management) reaches far beyond the capabilities of SIEM solutions using a powerful AIO (All in One) security precautions and comprehensive threat analysis algorithm to identify threats in your physical or cloud locations. Resource-dependent IT teams that rely on SIEM are at risk of delaying their ability to detect and analyze threats as they...
Source: stackify.com

SecurityOnion Reviews

We have no reviews of SecurityOnion yet.
Be the first one to post

Social recommendations and mentions

Based on our record, SecurityOnion should be more popular than AlienVault OSSIM. It has been mentiond 23 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

AlienVault OSSIM mentions (9)

  • SIEM for your own internal network
    You can look at a table with the differences here: Https://cybersecurity.att.com/products/ossim. Source: 11 months ago
  • What do you guys use for networking monitoring
    Another is AT&T's AlienVault OSSIM software. If you can put it on its own hardware, it runs FAR better than it did on a VM in my experience. I've seen this in action and it's a huge monster to get into - I barely scratched the surface and thought I was hitting walls, so it might not be the most intuitive - but I'd recommend watching a few youtube videos to show off what it can do I suppose. Mine set off my... Source: about 1 year ago
  • SIEM solution
    There's also https://cybersecurity.att.com/products/ossim by AlienVault (now AT&T). Source: over 1 year ago
  • Does the BGW320 perform automated SSH vulnerability tests on clients?
    I enabled my ATT security this morning and had a download going that used about 70% of my capacity. I also have an Ubiquiti setup, I don’t believe ATT’s security is as harsh on cpu load that Ubiquiti is. Several years ago, ATT bought Alien Vault which primarily monitors log files and conducts routine vulnerability scans. Since it was purchased, they renamed us as ATT Cybersecurity.... Source: over 2 years ago
  • Top 20 Open-source tools for every Blue Teamer
    As a SIEM system, OSSIM is intended to give security analysts and administrators a more complete view of all the security-related aspects of their system, by combining log management which can be extended with plugins and asset management and discovery with information from dedicated information security controls and detection systems. This information is then correlated together to create contexts to the... Source: over 2 years ago
View more

SecurityOnion mentions (23)

  • Self Hosted Traffic Monitoring
    You’re looking for Security Onion, https://securityonionsolutions.com/. It’s a bunch of integrated tools that will sniff traffic and show alerts. Self hosted, open source, and free. Source: 5 months ago
  • Did I get a cyber role too early?
    Grab Security Onion for some blue team tools, try to get Zeek, Wazuh, and Suricata working and look at the output. Source: 10 months ago
  • Do you have any recommendations for a way to log every website that comes across my network with the mac address that requested it?
    If you want a GUI tool try Security Onion. (https://securityonionsolutions.com/). It is essentially zeek & more wrapped up in an easy to use GUI. Source: 10 months ago
  • Home Virtual SIEM Lab Suggestions?
    Used security onion many years ago. https://securityonionsolutions.com/. Source: about 1 year ago
  • Server Hardening
    Active Measures - Includes (IDS/IPS) such as open-source Suricata or Snort on pfSense, and File Integrity Monitoring (FIM), such as the commercial Tripwire and dated, open-source Tripwire, or the open-source Wazuh installed on servers. These can be combined into a Security Information and Event Management (SIEM) system like the open-source solution, Security Onion. Wazuh itself has evolved into a SIEM. Source: over 1 year ago
View more

What are some alternatives?

When comparing AlienVault OSSIM and SecurityOnion, you can also consider the following products

Graylog - Graylog is an open source log management platform for collecting, indexing, and analyzing both structured and unstructured data.

Suricata - Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine.

Logz.io - Logz.io provides log analysis software with alerts, role-based access, unlimited scalability and free ELK apps. Index, search & visualize your log data!

Wazuh - Open Source Host and Endpoint Security

Sumo Logic - Sumo Logic is a secure, purpose-built cloud-based machine data analytics service that leverages big data for real-time IT insights

Zabbix - Track, record, alert and visualize performance and availability of IT resources