+
+
Visit Website

About

Graylog is the AI-powered SIEM and log management platform built for security and IT operations. The platform centralizes and analyzes event data from across complex environments to help teams detect threats faster, investigate smarter, and control data costs—without compromise. Graylog combines scalable log management with explainable AI that summarizes dashboards, prioritizes real risks, and automates investigation workflows—while keeping analysts in control. With products including Graylog Security, Enterprise, API Security, and Open, Graylog serves more than 60,000 organizations across 180 countries. Headquartered in Houston with roots in open source, Graylog continues to redefine how modern teams achieve clarity, context, and control across their environments.

About

Logit.io are a centralized logging and metrics management platform that serves hundreds of customers around the world, solving complex problems for FTSE 100, Fortune 500 and fast-growing organizations alike. The Logit.io platform delivers you with a fully customized log and metrics solution based on ELK, Grafana & Open Distro that is scalable, secure and compliant. Using the Logit.io platform simplifies logging and metrics, so that your team gains the insights to deliver the best experience for your customers. Logit.io enables you to monitor and troubleshoot your applications and infrastructure in real-time and enhance your organization's security and compliance. Allow your team to focus on what's important to them, instead of hosting, configuration and upgrading separate open source solutions. Sending your data to the platform is easy, simply use our preconfigured sources to automate the collection of your logs and metrics.

Platforms Supported

Windows Supported
Mac Not Supported
Linux Supported
Cloud Supported
On-Premises Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Platforms Supported

Windows Not Supported
Mac Not Supported
Linux Not Supported
Cloud Supported
On-Premises Not Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Audience

Security Analysts, SOC Managers, IT Admins, SIEM Admins, CISOs

Audience

Organizations that need a fully managed logging and metrics solution

Support

Phone Support Supported
24/7 Live Support Not Supported
Online Supported

Support

Phone Support Supported
24/7 Live Support Supported
Online Supported

API

Offers API Supported

API

Offers API Supported

Screenshots and Videos

Screenshots and Videos

Pricing

$1250/month
Free Version Supported
Free Trial Supported

Pricing

From $0.74 per GB per day
Log Management
From $0.74 per GB per day

Application Monitoring
From $5 per million spans per month

Metrics Management
From $2.80 per 1000 metrics per minute

Hosted ELK
From $0.74 per GB per day

Hosted Grafana
From $2.80 per 1000 metrics per minute

Hosted OpenSearch
From $0.74 per GB per day

Hosted Prometheus
From $2.80 per 1000 metrics per minute
Free Version Not Supported
Free Trial Supported

Reviews/Ratings

Overall 3.0 / 5
ease 3.0 / 5
features 4.0 / 5
design 4.0 / 5
support 4.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Pros from Real Users

Pros

  • Once it is set up, if done correctly, it requires minimum supervision to maintain, adding different channels to receive information from is easy, since it is an open source project, there is a lot of info. the Graylog web page is a good to start checking info, if you see any problems a simple question in stack overflow might send you to the right direction

Training

Documentation Supported
Webinars Supported
Live Online Supported
In Person Supported

Training

Documentation Supported
Webinars Supported
Live Online Supported
In Person Supported

Company Information

Graylog
Founded: 2009
United States
graylog.org

Company Information

Logit.io
Founded: 2013
United Kingdom
logit.io

Alternatives

Alternatives

Fluentd

Fluentd

Fluentd Project
Grafana Loki

Grafana Loki

Grafana

Categories

API Security Supported

Graylog gives security teams full visibility across logs, events, and API activity—essential for detecting threats, investigating incidents, and responding with precision. Graylog Enterprise centralizes log management at scale with powerful search, alerting, and correlation to accelerate root cause analysis. Graylog Security builds on that foundation with advanced threat detection, prebuilt content for common attack techniques, and seamless SOC integration. Graylog API Security extends this visibility into the growing API layer, automatically discovering APIs, identifying sensitive data exposure, and detecting data exfiltration in real time. Together, the Graylog platform delivers unified, cost-effective security operations and API protection—on-prem or in the cloud—so teams can detect, investigate, and respond to what matters most.

Cybersecurity Supported

Graylog is an AI-powered SIEM and log management platform built for real-world security teams. It centralizes logs and security data across cloud, on-prem, and hybrid environments to help teams detect threats faster, investigate smarter, and control data costs—without vendor lock-in. Graylog combines scalable log management with practical, explainable AI to reduce alert noise, prioritize real risk, and guide investigations from alert to resolution. Selective ingestion and intelligent data tiering keep SIEM costs predictable, while built-in detections, correlation, threat intelligence, and guided workflows help lean teams operate efficiently. With flexible deployment, open integrations, and solutions for Security Operations, IT Operations, and API Security, Graylog gives organizations clear visibility, faster response, and full control over their data—without unnecessary complexity.

IT Security Supported

Graylog is a centralized log management and IT security platform that helps teams monitor, investigate, and secure complex environments with confidence. It collects and analyzes log data from servers, applications, networks, and cloud infrastructure to surface security issues, misconfigurations, and operational risks in real time. Designed for efficiency, Graylog reduces noise with normalized data, targeted alerts, and guided workflows—so IT and security teams can quickly understand what’s happening and take action. Flexible deployment options support on-prem, cloud, and hybrid environments, while selective ingestion and intelligent data tiering keep storage and licensing costs predictable. With open integrations, built-in dashboards, and powerful search, Graylog gives IT teams clear visibility, faster troubleshooting, and stronger security—without complexity or vendor lock-in.

Log Analysis Supported

Graylog turns raw log data into actionable insight. By normalizing and enriching data from every system, it helps teams analyze patterns, detect anomalies, and understand the story behind events in real time. Its intuitive search, dashboards, and AI-assisted summaries make it easy to pinpoint root causes, spot emerging issues, and validate fixes—without learning a proprietary query language or sifting through noise. Whether troubleshooting performance problems, monitoring uptime, or investigating security incidents, Graylog accelerates decision-making and reduces mean time to resolution. The result: faster insight, fewer blind spots, and more confidence that every system is performing—and protected—as expected.

Log Management Supported

Graylog centralizes and analyzes event and log data from across complex environments, giving IT and security teams the visibility they need to detect issues, investigate incidents, and maintain compliance. Unlike traditional tools that force trade-offs between cost, scale, and speed, Graylog simplifies log collection, storage, and search through guided onboarding, integrated parsing, and a cost-efficient data lake that lets users preview and retrieve only the data they need. This unified approach helps teams pinpoint problems faster, reduce cloud spend, and stay audit-ready—without the overhead of complex setups or unpredictable billing. It’s centralized log management without compromise.

Log Monitoring Supported

Graylog combines continuous log monitoring with explainable AI to give IT, DevOps, and security teams real-time visibility and faster insight across complex environments. It centralizes logs from cloud, on-prem, and hybrid systems, then uses AI-driven summaries and anomaly detection to highlight what truly matters—whether it’s a performance issue, a failed deployment, or a security threat. With dashboards, thresholds, and guided remediation built in, teams can move from alert to action in seconds. Graylog’s AI helps cut through the noise, identify root causes, and keep infrastructure stable, secure, and compliant—delivering centralized log monitoring without compromise.

Graylog enhances Security Orchestration, Automation, and Response (SOAR) workflows by embedding automation and guided remediation directly into the SIEM—without replacing a dedicated SOAR platform. Built-in capabilities automate and accelerate response through AI-driven remediation steps, incident management, and threat intelligence integrations. Event Procedures provide consistent guidance while automated actions handle notifications, lookups, and evidence collection. Analysts gain actionable insights through unified analytics and seamless integrations, reducing false positives and manual work. The result is faster, more reliable investigations and efficient collaboration across the entire security stack.

SIEM Supported

Graylog helps security and IT teams make sense of the overwhelming data their environments generate every second. Acting as a unified SIEM and log management platform, Graylog collects, normalizes, and correlates event data from every corner of the infrastructure—on-prem, cloud, or hybrid. Analysts can instantly visualize activity, detect anomalies, and investigate threats with AI-driven summaries, guided response workflows, and customizable dashboards. This clarity cuts through alert noise and turns raw data into action. For organizations under pressure to do more with lean teams and tight budgets, Graylog matters because it delivers complete visibility, faster investigations, and predictable costs—SIEM without compromise.

Graylog Security combines AI, machine learning, and behavioral analytics to help teams detect and respond to threats that traditional rules miss. Its User and Entity Behavior Analytics (UEBA) continuously learns what normal activity looks like across users, hosts, and applications, adapting to new behaviors and risks over time. By correlating anomalies with log, asset, and threat intelligence data, Graylog highlights meaningful threats—such as insider activity or credential misuse—while filtering out false positives. Built-in AI summarization and guided investigation workflows give analysts clear context and faster triage, turning complex data into confident, timely decisions.

Categories

DDoS Protection Supported
Log Analysis Supported
Log Management Supported
Observability Supported
SIEM Supported
Website Monitoring Supported

Log Management Features

Archiving Supported
Audit Trails Supported
Compliance Reporting Supported
Consolidation Supported
Data Visualization Supported
Event Logs Supported
Network Logs Supported
Remediation Supported
Syslogs Supported
Thresholds Supported
Web Logs Supported

SIEM Features

Application Security Supported
Behavioral Analytics Supported
Compliance Reporting Supported
Endpoint Management Not Supported
File Integrity Monitoring Not Supported
Forensic Analysis Supported
Log Management Supported
Network Monitoring Supported
Real Time Monitoring Supported
Threat Intelligence Supported
User Activity Monitoring Supported

Log Management Features

Archiving Supported
Audit Trails Supported
Compliance Reporting Supported
Consolidation Supported
Data Visualization Supported
Event Logs Supported
Network Logs Supported
Remediation Supported
Syslogs Supported
Thresholds Supported
Web Logs Supported

SIEM Features

Application Security Supported
Behavioral Analytics Not Supported
Compliance Reporting Supported
Endpoint Management Supported
File Integrity Monitoring Not Supported
Forensic Analysis Not Supported
Log Management Supported
Network Monitoring Supported
Real Time Monitoring Supported
Threat Intelligence Not Supported
User Activity Monitoring Supported

Business Activity Monitoring Features

Alerts / Notifications Supported
Business Process Management Supported
Cross Application Analysis Supported
Email Monitoring Not Supported
Events Monitoring Supported
KPI Monitoring Supported
Pre-Configured Events Not Supported
Reporting / Analytics Supported
Workflow Management Not Supported

DDoS Protection Features

DNS Amplification Protection Not Supported
DNS Reflection Protection Not Supported
High Network Capacity Not Supported
Illegitimate Traffic Recognition Not Supported
Infrastructure Protection (Layer 3/Layer 4) Not Supported
Post Attack Analysis Not Supported
Traffic Monitoring Supported
Website Protection (Layer 7) Not Supported

IT Infrastructure Monitoring Features

Alerts / Notifications Supported
Application Monitoring Supported
Bandwidth Monitoring Not Supported
Capacity Planning Not Supported
Configuration Change Management Not Supported
Data Movement Monitoring Not Supported
Health Monitoring Supported
Multi-Platform Support Supported
Performance Monitoring Not Supported
Point-in-Time Visibility Not Supported
Reporting / Analytics Supported
Virtual Machine Monitoring Supported

Website Monitoring Features

Availability Testing Not Supported
Event Logs Supported
Event-Based Notifications Supported
FTP Monitoring Not Supported
Mail Server Monitoring Not Supported
Maintenance Scheduling Not Supported
Performance Metrics Supported
Real Time Monitoring Supported
Transaction Monitoring Not Supported
Uptime Reporting Supported

Integrations

Amazon CloudWatch Supported
Google Cloud Platform Supported
Kubernetes Supported
AWS CloudTrail Supported
Azure-AD-External-Identities Supported
Fleet Supported
FortiGate Cloud Supported
GitHub Supported
Google Cloud CDN Not Supported
Heroku Not Supported
Icinga Supported
KeyCDN Not Supported
Microsoft Entra ID Not Supported
MySQL Not Supported
Recorded Future Supported
SOC Prime Platform Supported
ServiceNow Asset Management Supported
StixMDM Supported
Tenzir Supported
Trapster Supported

Integrations

Amazon CloudWatch Supported
Google Cloud Platform Supported
Kubernetes Supported
AWS CloudTrail Not Supported
Azure-AD-External-Identities Not Supported
Fleet Not Supported
FortiGate Cloud Not Supported
GitHub Not Supported
Google Cloud CDN Supported
Heroku Supported
Icinga Not Supported
KeyCDN Supported
Microsoft Entra ID Supported
MySQL Supported
Recorded Future Not Supported
SOC Prime Platform Not Supported
ServiceNow Asset Management Not Supported
StixMDM Not Supported
Tenzir Not Supported
Trapster Not Supported
Claim Logit.io and update features and information
Claim Logit.io and update features and information