fitgap

OpenText Security Log Analytics (ArcSight)

Features
Ease of use
Ease of management
Quality of support
Affordability
Market presence
Take the quiz to check if OpenText Security Log Analytics (ArcSight) and its alternatives fit your requirements.
Pricing from
Contact the product provider
Free Trial
Free version unavailable
User corporate size
Small
Medium
Large
User industry
  1. Banking and insurance
  2. Public sector and nonprofit organizations
  3. Energy and utilities

What is OpenText Security Log Analytics (ArcSight)

OpenText Security Log Analytics (ArcSight) is a security-focused log management and analytics product used to collect, normalize, store, and analyze event data from infrastructure, applications, and security tools. It is typically used by security operations teams for threat detection, investigations, and compliance reporting. The product emphasizes security event normalization and correlation workflows and is commonly deployed in environments that require centralized log retention and controlled access.

pros

Security-focused log normalization

It supports parsing and normalization of security-relevant events from a wide range of sources, which helps analysts search and correlate data consistently. This is useful in heterogeneous environments where logs come from many vendors and formats. Normalized fields also support repeatable detection and reporting workflows.

Correlation and investigation workflows

The platform is designed around security analytics use cases such as event correlation, triage, and investigation. It supports building and tuning rules and using structured event fields to pivot during incident response. These capabilities align more closely with SOC workflows than general-purpose observability tooling.

Compliance-oriented retention controls

It is commonly used for centralized log retention and auditability requirements, including controlled access to security logs. The product’s architecture and features are oriented toward maintaining evidentiary records and supporting compliance reporting. This can reduce reliance on ad hoc log storage approaches across teams.

cons

Complex deployment and operations

Implementations often require careful planning for collectors, storage, normalization, and performance tuning. Ongoing operations can involve specialized skills for content tuning and data onboarding. This can increase time-to-value compared with more turnkey SaaS-first log analytics offerings.

Cost sensitivity at high volume

Security log analytics platforms can become expensive as event volume, retention periods, and high-availability requirements grow. Organizations may need to manage ingestion scope, filtering, and tiered retention to control total cost. This can constrain “log everything” approaches in large environments.

Less aligned to DevSecOps telemetry

While it can ingest application and infrastructure logs, it is primarily oriented to security operations rather than full-stack observability. Teams looking for unified metrics-traces-logs workflows and developer-centric debugging may need additional tooling. Integration into CI/CD and developer workflows may require extra engineering effort.

Seller details

OpenText Corporation
Waterloo, Ontario, Canada
1991
Public
https://www.opentext.com/
https://x.com/OpenText
https://www.linkedin.com/company/opentext/

Tools by OpenText Corporation

OpenText Application Quality Management
Opentext functional Testing
OpenText Professional Performance Engineering
Opentext functional Testing for Developers
OpenText Functional Testing Lab for Mobile and Web
OpenText AppWorks Platform
OpenText LoadRunner Enterprise
OpenText Deployment Automation 25.2
OpenText AccuRev
OpenText Universal Discovery & Universal CMDB (UD/UCMDB)
OpenText ZENworks Configuration Management
OpenText Operations Bridge (OpsBridge)
OpenText Core Performance Engineering
OpenText Silk Performer
OpenText Service Virtualization
Ext JS
OpenText Project and Portfolio Management (PPM)
OpenText Vertica
OpenText PlateSpin Migrate
OpenText Migrate

Best OpenText Security Log Analytics (ArcSight) alternatives

Datadog
Sumo Logic
Falcon LogScale
ManageEngine Log360
See all alternatives

Popular categories

All categories