Elastic Security
SIEM and endpoint security capabilities built on the Elastic Stack for detection, alerting, and investigation.
- Pricing
- usage
- Free tier
- true
- License
- open-source, source-available
- Open source
- No
Editorial review
Elastic Security has not yet been editorially reviewed. User reviews and published field data below are unaffected — we say so rather than implying an editorial verdict.
Sign in to save this tool to a private list.
Facts & attributes
Every value carries its evidence state. “—” means unknown — never a silent default (P-02).
Identity · Taxonomy
- Documentation(HTTPS URL)
- https://www.elastic.co/docs/solutions/securityVerification pending
- Tags(open-source;cloud-native)
- siem, xdr, security-analytics, threat-detection, agentic-aiVerification pending
Platform · Deployment
- Delivery model(SaaS;self-hosted;desktop;mobile;embedded;managed-cloud;appliance)
- SaaS, self-hostedVerification pending
Pricing · Licensing
- Free plan(true/false)
- trueVerification pending
- Free trial(true/false)
- trueVerification pending
- License model(proprietary;open-source;source-available;dual-license)
- open-source, source-availableVerification pending
- Pricing model(free;subscription;usage;seat;asset;transaction;revenue-share;perpetual;custom)
- usageVerification pending
- Source repository(HTTPS URL)
- https://github.com/elastic/elasticsearchVerification pending
- SPDX license IDs(Apache-2.0;MIT)
- AGPL-3.0-only, SSPL-1.0, Elastic License 2.0Verification pending
Features · Product · Fit
- Core capabilities(authoring;automation;analytics)
- SIEM threat detection and alerting, XDR and endpoint security, Agentic SOAR alert triage and response, Security analytics and investigation, Prebuilt open detection rulesVerification pending
Api · Integrations · Ecosystem
- API available(true/false)
- trueVerification pending
- Enterprise SSO(SAML;OIDC)
- SAML, OpenID Connect, Kerberos, JWTVerification pending
Security · Privacy · Compliance
- Security certifications(SOC 2 Type II;ISO 27001)
- SOC 2, SOC 3, ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, FedRAMP High, FedRAMP Moderate, HIPAA, PCI DSS, CSA STAR, TISAXVerification pending
Audience · Use · Case
- Best for(Neutral editorial summary)
- Security operations teams that want SIEM and XDR capability deployable as SaaS or self-managed, with usage-based cloud pricing and a free basic tier.Verification pending
- Company-size fit(individual;SMB;mid-market;enterprise)
- SMB, mid-market, enterpriseVerification pending
- Primary use cases(build;monitor;automate)
- Threat detection and response, Alert triage automation, Incident investigation, Security monitoring across endpoints, cloud, and containersVerification pending
- Skill level(beginner;intermediate;advanced;specialist)
- advancedVerification pending
Lifecycle · Versioning
- Changelog/release notes(HTTPS URL)
- https://www.elastic.co/docs/release-notes/securityVerification pending
- Maintenance status(active;maintenance;deprecated;EOL;archived)
- activeVerification pending
Vendor · Maintainer
- Founded year(2012)
- 2012Verification pending
- Headquarters country(US)
- NetherlandsVerification pending
- Vendor type(commercial;foundation;community;government;consortium;individual)
- commercialVerification pending
User reviews
Review policyNo published reviews yet.
Write a review
Sign in to write a review. One review per person per tool; your review enters moderation before publication.