- Stars
- 14,899
- License
- —
- Last commit
- 10 hours ago
Best SIEM & Threat Detection Tools
Security information and event management platforms for threat monitoring and analysis.
Top Open Source SIEM & Threat Detection platforms
- Stars
- 10,175
- License
- —
- Last commit
- 4 days ago

OSSEC
Unified host-based intrusion detection, log analysis, and response platform
- Stars
- 5,022
- License
- —
- Last commit
- 27 days ago

RedELK
Centralized SIEM for Red Teams to monitor and detect Blue Team activity
- Stars
- 2,623
- License
- BSD-3-Clause
- Last commit
- 2 months ago
- Stars
- 1,658
- License
- Apache-2.0
- Last commit
- 1 year ago
Wazuh delivers real‑time intrusion detection, log analysis, vulnerability scanning, and compliance reporting across on‑prem, cloud, and container environments with native Elastic Stack integration and automated response actions.
Leading SIEM & Threat Detection SaaS platforms
Elastic Security SIEM
Modern, cost-efficient SIEM with years of searchable data.
Exabeam
SIEM and UEBA for threat detection and response
IBM QRadar SIEM
Enterprise SIEM for real-time threat detection and compliance.
Microsoft Sentinel
Cloud-native SIEM and SOAR solution for intelligent security analytics and threat detection across enterprise environments
Sumo Logic Cloud SIEM
Cloud-native SIEM with real-time analytics and AI-guided investigation.
Elastic SIEM centralizes security data, enables hunting and detections aligned to MITRE ATT&CK, and links with the Elastic platform for investigation.
Frequently replaced when teams want private deployments and lower TCO.


