It is the seamless unification of SIEM, XDR and endpoint protection into one powerhouse platform. It's like having a full-spectrum security orchestra that plays perfectly in tune. Real-time AI-driven threat detection and Kibanas drag-and-drop dashboard make investigating complex attacks intuitive and fast, turning hours of manual log-sifting into minutes of actionable insights. Plus, its scalability handles massive data volumes across hybrid environments without compromising performance, delivering unbeatable TCO compared to fragmented legacy tools. Its empowered our team to shift from constant alert overload to strategic hunting, which is a game-changer for any SOC under pressure.
February 6, 2026
The AI capabilities, based on what is considered GA in the product right now, is really, really subpar. I also dislike that we can't easily downgrade if we perform an upgrade and it causes issues. Overall, the product is really good but the constant drive to introduce new features seems to negatively impact the stability and reliability of the tool Also, the documentation provided by Elastic is far too complex and vague to be of any real help when troubleshooting. And - it's REALLY, REALLY hard to find experienced engineers working with Elasticsearch.
May 21, 2025