GRAYLOG PRICING

Threat Detection & Response Solutions

Starting at $1250/mo*
10GB per day

Centralized Log Management for IT Operations and DevOps teams, built on the Graylog platform. Graylog Operations is designed to maximize your systems’ uptime, alert you to issues and outages, enhance productivity, and meet data retention requirements for larger teams and complex situations.

*pre-paid annually

Graylog Security Icon

Starting at $1550/mo*
10GB per day

Graylog Security delivers on all of the promises of the traditional SIEM without all the complexity, alert fatigue, and high costs. Built on the Graylog platform, Graylog Security reduces the strain on your cybersecurity staff, improves your overall security posture, and reduces risk. Technical support included.

*pre-paid annually

API Security icon red

Starting at $1500/mo*
2 nodes

Graylog API Security is a comprehensive solution designed to offer discovery and end-to-end protection for your business-critical APIs and peace of mind as your business thrives, safe in the knowledge that you are guarded by a smart, state-of-the-art, adaptable shield against the most sophisticated cyber threats.

*pre-paid annually

Compare Graylog Platform Plans

Feature

Open

Operations

Security

Open

Free SSPL license

Operations

Graylog Open plus:

Security

Graylog Operations plus:

Log Collection & Fleet Management

Open

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Operations

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Security

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Search

Open

Basic

Operations

Filters
Parameters
Workflows

Security

Filters
Parameters
Workflows

Events & Alerts

Open

Basic Triggers & Aggregations Notifications: Email & HTTP Post

Operations

Correlation Engine
Notifications:
Slack, MS Teams, Discord, & Enterprise Script

Security

Correlation Engine
Notifications:
Slack, MS Teams, Discord, & Enterprise Script

Scalable Architecture

Open

Multi-cluster

Operations

Cloud Forwarder
Cluster Forwarder

Security

Cloud Forwarder
Cluster Forwarder

Integrations

Open

Rest API
Content Packs
TCP Raw & TCP Syslog Outputs

Operations

O365, Azure, GCP, AWS, Okta, PaloAlto, F5-BIGIP, Crowdstrike, Salesforce, STDOUT-Enterprise, Google Cloud Big Query

Security

O365, Azure, GCP, AWS, Okta, PaloAlto, F5-BIGIP, Crowdstrike, Salesforce, STDOUT-Enterprise, Google Cloud Big Query

Reports & Dashboards

Open

Basic Dashboards

Operations

Email Reports
Advanced Data Visualization

Security

Email Reports
Advanced Data Visualization

Data Enrichment

Open

Static Lookup Tables

Operations

Dynamic Lookup Tables
Data Enrichment Connectors

Security

Asset Module
Dynamic Lookup Tables
Data
Enrichment Connectors

Archiving

Open

Operations

Checkmark red

Security

Checkmark red

Illuminate Parsers & Dashboards

Open

Operations

Checkmark red

Security

Checkmark red

Access Control

Open

Operations

Checkmark red

Security

Checkmark red

Audit Logs

Open

Operations

Checkmark red

Security

Checkmark red

Anomaly Detection

Open

Operations

Security

Checkmark red

Risk Management

Open

Operations

Security

Checkmark red

Investigations Management

Open

Operations

Security

Checkmark red

WE'VE GOT YOU COVERED

Windows

Linux

Unix

JSON, CSV, TXT

Commercial Apps

Custom Apps

Change Mgmt

Switches

Firewalls

DNS

Routers

DBMS

Storage Mgmt