Comparison

Elastic Security vs Wazuh

On the evidence we track, Elastic Security leads this comparison with a composite score of 54/100. Scores are only directly comparable because these tools share a category; the full breakdown and every source is below.

Machine formatsJSONMarkdownGraphQLor send Accept: application/json
Elastic Security54
Wazuh43
Score
Vioscale score
Elastic Security54 / 100high · 76%updating
Wazuh43 / 100medium · 64%updating
Pricing
Free tier
Elastic Security
Wazuh
Model
Elastic Securitycommercial
Price level
Elastic Securitylow
Wazuhfree
Transparent
Elastic Security
Wazuh
Integrations
Count
Elastic Security26
Wazuh3
Reliability
Status page
Elastic Security
Wazuh
Adoption
Dependent repos
Elastic Security18,551
Wazuh0
Github stars
Elastic Security77,862
Wazuh16,689
Activity
Commits last 30d
Elastic Security100
Wazuh100
Release
Cadence days
Elastic Security
Wazuh27
History
Elastic Security20 items
Language
Primary
Elastic SecurityJava
WazuhC++
Market
Availability

Capabilities

Feature-by-feature on the axes that matter for siem & soar software. “-” means undocumented, not absent.

Core
SIEM (log correlation & detection)
Elastic Security
Wazuh
SOAR (playbooks / automated response)
Elastic Security
Wazuh
Detection
UEBA (behavioural analytics)
Elastic Security
Wazuh-
Built-in threat intelligence
Elastic Security
Wazuh
ML / anomaly detection
Elastic Security
Wazuh-
MITRE ATT&CK detection mapping
Elastic Security
Wazuh
Ops
Case / incident management
Elastic Security
Wazuh
Pricing
Pricing basis
Elastic SecurityIngest GB/day
Wazuh-
Deployment
Deployment
Elastic SecurityHybrid
WazuhHybrid
Integration
Connector / content-pack breadth
Elastic Security26+ integrations including security tools (Slack, Jira, PagerDuty, ServiceNow),
WazuhCloud and endpoint integrations including AWS services and threat intelligence f
Licensing
Open-core available
Elastic Security
Wazuh

What each one is

The product in its own terms, so the numbers below have context.

Elastic Security

Leader

A security operations platform combining SIEM and XDR capabilities with built-in AI-driven automation and threat analysis. Autonomous agents handle detection and investigation workflows, while analysts focus on verification and decision-making.

Independently observed

Wazuh

Unified XDR and SIEM platform that analyzes security data across endpoints, clouds, and networks to detect threats, respond to incidents, and ensure compliance.

Independently observed

Pricing

List pricing as published by each vendor, with the date we read it. Always verify at the source before you buy.

Elastic Security

Leader
Free tier14-day trial
as of verify ↗

Wazuh

Open sourceFree tier
as of verify ↗

Platform & deployment

Where each product runs and how it can be hosted. A dash means undocumented, not unsupported.

Platforms
Web
Elastic Security
Wazuh
macOS
Elastic Security
Wazuh
Windows
Elastic Security
Wazuh
Linux
Elastic Security
Wazuh
CLI
Elastic Security
Wazuh
Deployment
Cloud / SaaS
Elastic Security
Wazuh
Self-hosted
Elastic Security
Wazuh
On-premise
Elastic Security
Wazuh
Hybrid
Elastic Security
Wazuh

Integrations

What each product connects to. Counts come from the vendor's own integration directory where one exists.

Elastic Security

Leader
26 total
  • Slack
  • Jira
  • Microsoft Teams
  • PagerDuty
  • ServiceNow
  • IBM Resilient
  • xMatters
  • OpenAI
  • Anthropic
  • Amazon Bedrock
  • Google Vertex AI
  • Microsoft Azure AI
  • Cohere
  • Mistral
  • Hugging Face
  • LangChain
  • LlamaIndex
  • Jina AI
  • IBM watsonx
  • NVIDIA
  • Aryn
  • Tableau
  • Apache Spark
  • Elasticsearch-Hadoop
  • +2 more
Independently observed

Wazuh

3 total
  • Amazon Security Lake
  • AWS Inspector
  • AWS SQS
Independently observed

Comparison generated from independently-sourced facts. Every value links to its source and retrieval date. See the method.