# Elastic Security vs Rapid7 InsightIDR

**Leader by Vioscale score:** Elastic Security

| Attribute | Elastic Security | Rapid7 InsightIDR |
|---|---|---|
| **Vioscale score** | 54.1 (76% (high)) | 39.7 (29% (low)) |
| activity.commits_last_30d | 100 | - |
| adoption.dependent_repos | 18,551 | - |
| adoption.github_stars | 77,862 | - |
| deployment.options | `{"cloud":true,"hybrid":true,"on_prem":true,"self_hosted":true}` | `{"cloud":true,"hybrid":true,"on_prem":true}` |
| description.long | A security operations platform combining SIEM and XDR capabilities with built-in AI-driven automation and threat analysis. Autonomous agents handle detection and investigation workflows, while analysts focus on verification and decision-making. | A multi-tier security platform that combines asset discovery and attack surface visibility with vulnerability management, cloud security, and incident detection. Delivers risk-based prioritization and automated response capabilities tailored to different organizational needs, from basic asset visibility to comprehensive threat detection. |
| features.capabilities | `{"siem":true,"soar":true,"ueba":true,"deployment":"hybrid","ml_detection":true,"threat_intel":true,"pricing_basis":"ingest_gb","case_management":true,"connector_breadth":"26+ integrations including security tools (Slack, Jira, PagerDuty, ServiceNow), ","open_core_available":true,"mitre_attack_mapping":false}` | `{"siem":true,"soar":true,"ueba":false,"ml_detection":true,"threat_intel":true,"pricing_basis":"assets","case_management":true,"connector_breadth":"Enterprise security tools, cloud platforms, IT service management","open_core_available":false}` |
| integrations.count | 26 | 7 |
| integrations.list | `[{"name":"Slack"},{"name":"Jira"},{"name":"Microsoft Teams"},{"name":"PagerDuty"},{"name":"ServiceNow"},{"name":"IBM Resilient"},{"name":"xMatters"},{"name":"OpenAI"},{"name":"Anthropic"},{"name":"Amazon Bedrock"},{"name":"Google Vertex AI"},{"name":"Microsoft Azure AI"},{"name":"Cohere"},{"name":"Mistral"},{"name":"Hugging Face"},{"name":"LangChain"},{"name":"LlamaIndex"},{"name":"Jina AI"},{"name":"IBM watsonx"},{"name":"NVIDIA"},{"name":"Aryn"},{"name":"Tableau"},{"name":"Apache Spark"},{"name":"Elasticsearch-Hadoop"},{"name":"Unstructured.io"},{"name":"Alibaba Cloud"}]` | `[{"name":"Jira"},{"name":"ServiceNow"},{"name":"Microsoft Defender"},{"name":"AWS"},{"name":"Azure"},{"name":"GCP"},{"name":"Kubernetes"}]` |
| language.primary | Java | - |
| market.availability | `{"primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | `{"hqCountry":"US","primaryMarkets":["US","EU"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` |
| platform.support | `{"cli":true,"web":true}` | `{"web":true}` |
| pricing | `{"freeTier":true,"sourceUrl":"https://www.elastic.co/pricing/faq/licensing","retrievedAt":"2026-08-14T11:06:59.285Z","freeTrialDays":14}` | `{"type":"quote","plans":[{"free":false,"name":"Surface Command","features":["Asset discovery & unified inventory (CAASM)","Internal + external attack surface visibility (EASM)","Asset context, enrichment & relationships","Blast radius analysis","Exposure Management dashboard & remediation hub","Built-in automation & integrations"],"commitment":"annual","description":"Asset discovery and attack surface visibility","contactSales":true},{"free":false,"name":"Exposure Command Essentials","features":["Everything in Surface Command","Vulnerability management (agent-based and network scanning)","Risk-based prioritization with threat-aware scoring","Policy & configuration assessment","Remediation workflows, SLAs & reporting","Dynamic asset tagging & criticality","Integrations with security & IT tools"],"commitment":"annual","description":"Vulnerability management across hybrid environments with risk-based prioritization","contactSales":true},{"free":false,"name":"Exposure Command Ultimate","features":["Everything in Essentials","Multi-cloud & container security (AWS, Azure, GCP, K8s)","Cloud posture & compliance (CIS + frameworks)","Attack path analysis & contextual risk prioritization","Real-time cloud visibility & threat detection","Identity & access risk analysis (least privilege)","Infrastructure-as-code (IaC) security","Application & API security testing (DAST, API, LLM)","Automated cloud remediation"],"commitment":"annual","description":"Unified risk management across cloud, applications, and infrastructure","contactSales":true}],"summary":"Custom quote based on billable assets; annual subscriptions. Volume discounts available.","currency":"USD","freeTier":false,"sourceUrl":"https://www.rapid7.com/products/command/pricing/","retrievedAt":"2026-08-14T12:14:54.563Z","billingPeriods":["year"]}` |
| pricing.free_tier | yes | no |
| pricing.model | commercial | quote |
| pricing.price_level | low | unknown |
| pricing.transparent | no | no |
| release.history | `[{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.5.2","date":"2026-08-20T16:44:04Z","type":"stable","version":"v9.5.2"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.5.1","date":"2026-08-11T17:58:01Z","type":"stable","version":"v9.5.1"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.4.5","date":"2026-08-11T17:57:54Z","type":"stable","version":"v9.4.5"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v8.19.20","date":"2026-08-11T18:24:43Z","type":"stable","version":"v8.19.20"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.5.0","date":"2026-08-04T11:46:37Z","type":"stable","version":"v9.5.0"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.4.4","date":"2026-07-21T12:56:20Z","type":"stable","version":"v9.4.4"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.3.8","date":"2026-07-21T12:56:46Z","type":"stable","version":"v9.3.8"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v8.19.19","date":"2026-07-21T13:28:17Z","type":"stable","version":"v8.19.19"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v8.19.18","date":"2026-06-30T16:43:41Z","type":"stable","version":"v8.19.18"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.3.7","date":"2026-06-30T16:47:02Z","type":"stable","version":"v9.3.7"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.4.3","date":"2026-06-30T14:30:13Z","type":"stable","version":"v9.4.3"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v8.19.17","date":"2026-06-23T13:59:04Z","type":"stable","version":"v8.19.17"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.3.6","date":"2026-06-23T14:09:56Z","type":"stable","version":"v9.3.6"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.4.2","date":"2026-05-28T14:59:44Z","type":"stable","version":"v9.4.2"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.3.5","date":"2026-05-28T14:59:30Z","type":"stable","version":"v9.3.5"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v8.19.16","date":"2026-05-28T14:59:08Z","type":"stable","version":"v8.19.16"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.4.1","date":"2026-05-12T18:02:29Z","type":"stable","version":"v9.4.1"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.4.0","date":"2026-05-05T15:15:40Z","type":"stable","version":"v9.4.0"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v8.19.15","date":"2026-04-30T15:24:27Z","type":"stable","version":"v8.19.15"},{"url":"https://github.com/elastic/elasticsearch/releases/tag/v9.3.4","date":"2026-04-30T15:24:33Z","type":"stable","version":"v9.3.4"}]` | - |
| reliability.status_page | yes | yes |
| security.disclosure_policy | yes | yes |
| security.gdpr | yes | yes |
| security.iso27001 | yes | - |
| security.scorecard | 6.9 | - |
| security.vulnerabilities | `{"count":45,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=maven&package_name=org.elasticsearch%3Aelasticsearch&per_page=100","last_12m":2,"max_severity":"HIGH"}` | - |

## Capabilities (SIEM & SOAR Software)

| Capability | Elastic Security | Rapid7 InsightIDR |
|---|:--:|:--:|
| **Core** |  |  |
| SIEM (log correlation & detection) | ✓ | ✓ |
| SOAR (playbooks / automated response) | ✓ | ✓ |
| **Detection** |  |  |
| UEBA (behavioural analytics) | ✓ | ✗ |
| Built-in threat intelligence | ✓ | ✓ |
| ML / anomaly detection | ✓ | ✓ |
| MITRE ATT&CK detection mapping | ✗ | - |
| **Ops** |  |  |
| Case / incident management | ✓ | ✓ |
| **Pricing** |  |  |
| Pricing basis | Ingest GB/day | Per-asset |
| **Deployment** |  |  |
| Deployment | Hybrid | - |
| **Integration** |  |  |
| Connector / content-pack breadth | 26+ integrations including security tools (Slack, Jira, PagerDuty, ServiceNow), | Enterprise security tools, cloud platforms, IT service management |
| **Licensing** |  |  |
| Open-core available | ✓ | ✗ |

*Source: Vioscale. Generated 2026-09-01T16:52:04.125Z. "-" = undocumented, not absent.*
