Skip to content
BestAIToolix

Elastic Security

SIEM and endpoint security capabilities built on the Elastic Stack for detection, alerting, and investigation.

Pricing
usage
Free tier
true
License
open-source, source-available
Open source
No

Editorial review

Elastic Security has not yet been editorially reviewed. User reviews and published field data below are unaffected — we say so rather than implying an editorial verdict.

Sign in to save this tool to a private list.

Facts & attributes

Every value carries its evidence state. “—” means unknown — never a silent default (P-02).

Identity · Taxonomy

Documentation(HTTPS URL)
https://www.elastic.co/docs/solutions/securityVerification pending
Tags(open-source;cloud-native)
siem, xdr, security-analytics, threat-detection, agentic-aiVerification pending

Platform · Deployment

Delivery model(SaaS;self-hosted;desktop;mobile;embedded;managed-cloud;appliance)
SaaS, self-hostedVerification pending

Pricing · Licensing

Free plan(true/false)
trueVerification pending
Free trial(true/false)
trueVerification pending
License model(proprietary;open-source;source-available;dual-license)
open-source, source-availableVerification pending
Pricing model(free;subscription;usage;seat;asset;transaction;revenue-share;perpetual;custom)
usageVerification pending
Source repository(HTTPS URL)
https://github.com/elastic/elasticsearchVerification pending
SPDX license IDs(Apache-2.0;MIT)
AGPL-3.0-only, SSPL-1.0, Elastic License 2.0Verification pending

Features · Product · Fit

Core capabilities(authoring;automation;analytics)
SIEM threat detection and alerting, XDR and endpoint security, Agentic SOAR alert triage and response, Security analytics and investigation, Prebuilt open detection rulesVerification pending

Api · Integrations · Ecosystem

API available(true/false)
trueVerification pending
Enterprise SSO(SAML;OIDC)
SAML, OpenID Connect, Kerberos, JWTVerification pending

Security · Privacy · Compliance

Security certifications(SOC 2 Type II;ISO 27001)
SOC 2, SOC 3, ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, FedRAMP High, FedRAMP Moderate, HIPAA, PCI DSS, CSA STAR, TISAXVerification pending

Audience · Use · Case

Best for(Neutral editorial summary)
Security operations teams that want SIEM and XDR capability deployable as SaaS or self-managed, with usage-based cloud pricing and a free basic tier.Verification pending
Company-size fit(individual;SMB;mid-market;enterprise)
SMB, mid-market, enterpriseVerification pending
Primary use cases(build;monitor;automate)
Threat detection and response, Alert triage automation, Incident investigation, Security monitoring across endpoints, cloud, and containersVerification pending
Skill level(beginner;intermediate;advanced;specialist)
advancedVerification pending

Lifecycle · Versioning

Changelog/release notes(HTTPS URL)
https://www.elastic.co/docs/release-notes/securityVerification pending
Maintenance status(active;maintenance;deprecated;EOL;archived)
activeVerification pending

Vendor · Maintainer

Founded year(2012)
2012Verification pending
Headquarters country(US)
NetherlandsVerification pending
Vendor type(commercial;foundation;community;government;consortium;individual)
commercialVerification pending

User reviews

Review policy

No published reviews yet.

Write a review

Sign in to write a review. One review per person per tool; your review enters moderation before publication.