getapp-logo

App comparison

Add up to 4 apps below to see how they compare. You can also use the "Compare" buttons while browsing.

GetApp offers objective, independent research and verified user reviews. We may earn a referral fee when you visit a vendor through our links. 

SIEM Software with Anomaly Detection (2026)

Last updated: February 2026

SIEM Software Key Features

    Based on 149 user opinions, we identified 6 features that are important for any product in SIEM Software
  • Real-Time Monitoring

    Active monitoring of systems, applications, or networks

    Average user rating

    4.5
  • Alerts/Notifications

    Alerts or notifications of various types such as pop-up messages, sounds, banners, or badges

    Average user rating

    4.7
  • Real-Time Notifications

    Notifications that are delivered to users as soon as an event occurs

    Average user rating

    4.7
  • Real-Time Data

    Receive data and information in real time

    Average user rating

    4.6
  • Audit Trail

    A record of all activities within the system, including user access, changes made, etc.

    Average user rating

    4.6
  • Third-Party Integrations

    Set up connections to third-party platforms to improve business processes

    Average user rating

    4.6
1 filter applied

Features


Integrated with


Pricing model


Devices supported


Organization types


User rating


20 software options

BusinessLOG logo

Log Management AI, New Generation LOG Collector Tools

visit website
Powerful network control and management functions make BusinessLog the new generation of log management and cyber security tools

Read more about BusinessLOG

Users also considered
EventSentry logo

Real-time log & event log hybrid SIEM monitoring solution

visit website
EventSentry is a hybrid SIEM (security information & event management) solution which offers a range of tools including event log monitoring, reporting, health monitoring, compliance management, network monitoring, environment tracking, data consolidation, Active Directory integration & more

Read more about EventSentry

Users also considered
ManageEngine Log360 logo

Comprehensive SIEM solution

visit website
ManageEngine Log360 is a log management and SIEM (security information and event management) platform which helps businesses to monitor and manage network security, audit Active Directory changes, log devices, and gain visibility into cloud infrastructures.

Read more about ManageEngine Log360

Users also considered
CloudJacket MDR logo

Managed Cybersecurity Platform with 24/7 SOC Monitoring

visit website
In today's digital landscape, organizations face an ever-evolving array of cyber threats. Secnap's CloudJacket MDR offers a comprehensive, AI-augmented security solution that combines advanced technology with 24/7 expert monitoring, delivering robust protection.

Read more about CloudJacket MDR

Users also considered
Datadog logo

Cloud-Scale Monitoring Platform For Dev, Sec, and Ops teams.

learn more
Secure your tech stack with Datadog Security Monitoring's real-time threat detection. Set up key security integrations in minutes; apply OOTB Detection Rules without a query language; and correlate security signals to investigate suspicious activity.

Read more about Datadog

Users also considered
Sematext Cloud logo

Cloud-based application and infrastructure monitoring tool

learn more
Sematext Cloud is an all-in-one observability tool that helps businesses assess and gain key insights into the front and back-end performance of system applications. Features include real user and synthetic monitoring, transaction tracing, infrastructure monitoring, and log management.

Read more about Sematext Cloud

Users also considered
Sumo Logic logo

Unified Logs & Metrics for Full App Visibility

learn more
Sumo Logic is a log management and data analytics software that creates information based on data feeds. It assesses server, application and website performances by creating graphs and charts. It creates alerts when data reaches certain levels which in turn notify of potential threats/downtime.

Read more about Sumo Logic

Users also considered
Graylog logo

Log Management | SIEM | API Security

learn more
Graylog is an open, AI-powered SIEM that helps security and IT teams detect threats faster, reduce alert noise, and control security data costs across cloud and on-prem environments.

Read more about Graylog

Users also considered
Logz.io logo

Machine data analytics based on ELK and Grafana

learn more
Unified platform for monitoring, troubleshooting and security based on ELK and Grafana.

Read more about Logz.io

Users also considered
Logsign Unified SO Platform logo

Logsign Unified Security Operations Platform

learn more
Logsign Unified SO Platform delivers comprehensive threat detection, investigation, and response (TDIR) through integrated next-gen SIEM, threat intelligence, UEBA, and SOAR capabilities.

Read more about Logsign Unified SO Platform

Users also considered
Logmanager logo

Log management platform enhanced with SIEM capabilities

learn more
Tap into enterprise-grade security without drowning in complexity. Logmanager is a lightweight SIEM solution that offers essential features, effortless management, and flexibility, simplifying IT observability, security, and compliance.

Read more about Logmanager

Users also considered
Blumira logo

Automated SIEM + XDR for IT Teams

learn more
Blumira’s cloud SIEM can be deployed in hours with broad integration coverage across cloud, endpoint protection, firewall and identity providers including Office 365, G Suite, Crowdstrike, Okta, Palo Alto, Cisco FTD and many others.

Read more about Blumira

Users also considered
LogPoint logo

Accelerate threat detection and response with SIEM and UEBA

learn more
LogPoint's SIEM platform helps businesses secure data from threats & respond to cyberattacks in compliance with regulatory norms.

Read more about LogPoint

Users also considered
ServicePilot logo

Continuous measurement of IT performance and security

learn more
ServicePilot is a high-performance monitoring software solution providing full-stack observability via metrics, traces, and logs. Businesses can collect data from IT infrastructure, networks, applications, and security services to streamline issue resolution.

Read more about ServicePilot

Users also considered
Reveelium logo

Detection and response solution

learn more
Reveelium helps users reduce the impact of incidents by responding quickly to threats with behavioral analysis, threat Intelligence, correlation and alert prioritization.

Read more about Reveelium

Users also considered
Exabeam New-Scale Fusion logo

Real Intelligence. Real Security. Real Fast.

learn more
A scalable, cloud-native architecture provides rapid data ingestion, hyper-fast query performance, powerful behavioral analytics & AI.

Read more about Exabeam New-Scale Fusion

Users also considered
DNIF HYPERCLOUD logo

SIEM and log management solution for organizations

learn more
DNIF HYPERCLOUD is a cloud-based security information and event management (SIEM) solution, which assists small to large organizations with threat detection and incident response. Key features include data parsing, user behavior analysis, workflow automation, data recovery, and performance metrics.

Read more about DNIF HYPERCLOUD

Users also considered
Devo Platform logo

Enterprise log management (ELM) software for data analysts

learn more
Devo is a cloud-based enterprise log management (ELM) software designed to help businesses in retail, finance, telecom, and other sectors create, analyze, and store event logs.

Read more about Devo Platform

Users also considered
tbSIEM logo

Discover Real Threats in Real-time

learn more
Compliance through Security Information and Event Management, Log Management, and Network Behavioral Analysis. Unified event correlation and risk management for modern networks.

The solution that provides real-time analysis of security alerts generated by applications and network hardware.

Read more about tbSIEM

Users also considered
Trunc logo

Log management and SIEM platform

learn more
Trunc aggregates logs into one centralized location, allowing for better analysis and visualization. It is a powerful SIEM capable of identifying issues and notifying DevOps teams of important incidents.

Read more about Trunc

Users also considered