# OpenText Core Behavioral Signals Software Pricing, Alternatives & More 2026 | Capterra

> With the help of Capterra, learn about OpenText Core Behavioral Signals Software - reviews, pricing plans, popular comparisons to other SOAR products and more.

Source: https://www.capterra.com/p/275325/ArcSight

---

# 

 OpenText Core Behavioral Signals Software Review 2026: Features, Integrations, Pros & Cons

Last updated on December 14, 2025

Provider data verified by our Software Research team, and reviews moderated by our Reviews Verification team.

Independent research methodology

Capterra’s researchers use a mix of verified reviews, independent research and objective methodologies to bring you selection and ranking information you can trust. While we may earn a referral fee when you visit a provider through our links or speak to an advisor, this has no influence on our research or methodology. [Learn more](https://www.capterra.com/resources/proprietary-data-research/)

How Capterra verifies reviews

Capterra carefully verified over 2.5 million+ reviews to bring you authentic software experiences from real users. Our human moderators verify that reviewers are real people and that reviews are authentic. They use leading tech to analyze text quality and to detect plagiarism and generative AI. [Learn more](https://www.capterra.com/resources/how-we-verify-reviews/)

How Capterra ensures transparency

Capterra lists all providers across its website—not just those that pay us—so that users can make informed purchase decisions. Capterra is free for users. Software providers pay us for sponsored profiles to receive web traffic and sales opportunities. Sponsored profiles include a link-out icon that takes users to the provider’s website. [Learn more](https://www.capterra.com/resources/how-we-ensure-transparency/)

[Description](#description)[Use cases](#use-cases)[Alternatives](#alternatives)[Features](#features)[Pricing](#pricing)[Support](#support)[Reviews](#reviews)

OpenText Core Behavioral Signals

## What is OpenText Core Behavioral Signals?

ArcSight is a security operations and analytics platform that provides holistic security monitoring, threat detection, investigation, and response capabilities. The platform offers real-time correlation, behavioral analytics, and orchestration to help security teams detect threats, streamline investigations, and automate response workflows. Key capabilities include multi-layered analytics, adversary intelligence, log management, MITRE ATT&CK framework integration, and a data lake for collecting and enriching security data.

## What is OpenText Core Behavioral Signals used for?

[SIEM](https://www.capterra.com/siem-software/)[Threat Intelligence](https://www.capterra.com/threat-intelligence-software/)[SOAR](https://www.capterra.com/soar-software/)

Top alternative

Featured

Overall rating

Based on 12 user reviews

Reviews sentiment

Positive

\-

Neutral

\-

Negative

\-

Contact vendor  
for pricing

Free trial  
not available

Capterra Shortlist charts the highest-rated and most popular products...

Our "Best of" badge program showcases products with the highest ratings...

Our "Best of" badge program showcases products with the highest ratings...

Do you work for OpenText Core Behavioral Signals?[Manage this product listing](https://digitalmarkets.gartner.com/get-listed/claim-bx?url=https://www.opentext.com/&name=OpenText Core Behavioral Signals)

## Compare with a popular alternative

Capterra selects software alternatives based on relevant features, verified user reviews and user interactions. Placement may be influenced by client status.

### OpenText Core Behavioral Signals

4.1 (12)

VS.

[4.7 (26)](https://www.capterra.com/p/175185/Log360/reviews/)

Starting Price

Contact vendor

Starting Price

Contact vendor

Free Trial

Free Version

Pricing Options

Free Trial

Free Version

Ease Of Use

3.8 (12)

Ease Of Use

4.8 (7)

Value For Money

4.0 (12)

Value For Money

4.9 (6)

Customer Service

3.7 (12)

Customer Service

4.7 (7)

## OpenText Core Behavioral Signals alternatives

Highest Rated

[5.0 (1)](https://www.capterra.com/p/168954/Fidelis-Elevate/#reviews)

Starting price

Contact vendor for pricing

Pricing Options

Free Trial

Free Version

User Rating

100%

of reviewers

rated it above 4 stars

[4.7 (26)](https://www.capterra.com/p/171539/Netsparker-Web-Application-Security-Scanner/reviews/)

Starting price

Contact vendor for pricing

Pricing Options

Free Trial

Free Version

User Rating

92%

of reviewers

rated it above 4 stars

[Securaa](https://www.capterra.com/p/241084/SOAR-Tools/)

[4.1 (7)](https://www.capterra.com/p/241084/SOAR-Tools/#reviews)

Starting price

Contact vendor for pricing

Pricing Options

Free Trial

Free Version

User Rating

86%

of reviewers

rated it above 4 stars

[Learn More](https://www.capterra.com/p/241084/SOAR-Tools/)

[FortiSIEM](https://www.capterra.com/p/172959/FortiSIEM/)

[4.5 (12)](https://www.capterra.com/p/172959/FortiSIEM/reviews/)

Starting price

Contact vendor for pricing

Pricing Options

Free Trial

Free Version

User Rating

100%

of reviewers

rated it above 4 stars

[Learn More](https://www.capterra.com/p/172959/FortiSIEM/)

[View all alternatives](https://www.capterra.com/p/275325/ArcSight/alternatives/)

## Features

Features with the highest number of reviews are displayed first. Those that have no reviews appear next, sorted alphabetically.

Alerts/Notifications

3.0 (1)

100.00% of 1 reviewers that rated this feature as important or highly important

Alerts or notifications of various types such as pop-up messages, sounds, banners, or badges

API

5.0 (1)

100.00% of 1 reviewers that rated this feature as important or highly important

Application programming interface that allows for integration with other systems/databases

Network Scanning

1.0 (1)

0.00% of 1 reviewers that rated this feature as important or highly important

Scanning networks to identify security threats

Reporting/Analytics

5.0 (1)

100.00% of 1 reviewers that rated this feature as important or highly important

View and track pertinent metrics to find patterns and gain insights from data

Web-Application Security

1.0 (1)

0.00% of 1 reviewers that rated this feature as important or highly important

Identify and respond to security threats to web applications

Activity Dashboard

Dashboard to view the status of ongoing processes, identify current incidents and track past activities

OpenText Core Behavioral Signals 21 features

Dashboard to view the status of ongoing processes, identify current incidents and track past activities

Alerts or notifications of various types such as pop-up messages, sounds, banners, or badges

Application programming interface that allows for integration with other systems/databases

Track and analyze user behavior within a system or network

Track and analyse user behavior within a system or network

Provides a channel for team members to share media files, communicate, and work together

Manage and track all disruptions and incidents

Collects and aggregates data from various systems within the IT environment

Observe and track the demand, usage, progress or quality of a system, product, or user

Scanning networks to identify security threats

Arrange tasks based on the level of priority or urgency

Streamlining repetitive tasks and activities through automated and predefined workflows

Active reporting of data and metrics

View and track pertinent metrics to find patterns and gain insights from data

Notifying as a warning or reminder of a potential or imminent hazard

Set up connections to third-party platforms to improve business processes

Information to prevent, understand and identify cyber threats

Identifying, analyzing, and mitigating security issues and taking appropriate action to protect systems and data from potential harm

Detect (and block) vulnerabilities and threats in your applications based on vulnerability information

Discover patch statuses and vulnerabilities

Identify and respond to security threats to web applications

Features

4.3 (12)

4.3

Based on 12 reviews

## Pricing

Value for money

4.0 (12)

### Starting price

Contact vendor  
for pricing

Free trial  
not available

Value for money

4.0 (12)

4.0

Based on 12 reviews

## Support, customer service and training options

Customer Service

3.7 (12)

Support

-   Email/Help Desk
-   FAQs/Forum
-   Knowledge Base
-   Phone Support
-   24/7 (Live rep)
-   Chat

Training

-   In Person
-   Live Online
-   Webinars
-   Documentation
-   Videos

Deployment

-   Web
-   Android
-   iPhone/iPad

Typical users

-   Freelancers
-   Small businesses
-   Mid size businesses
-   Enterprises

Customer Service

3.7 (12)

3.7

Based on 12 reviews

## User reviews

Overall rating

4.1

Based on 12 reviews

Filter by rating

5(4)

4(5)

3(3)

2(0)

1(0)

Mentioned topic

Sorted by most recent

AU

Anonymous User

Cyber security analyst

Computer & Network Security

### "ArcSight Review"

5.0

Overall Rating

5.0

5.0

Ease of Use

5.0

5.0

Features

5.0

5.0

Customer Service

5.0

5.0

Likelihood to Recommend

10/10

November 24, 2023

Pros

ArcSight is a SIEM tool. Which is used to collecting, analyzing and managing the logs from multiple log sources.

Cons

Its all good but it has components which we have to install and use separately. It should be all in one like Splunk.

Review source

Non-incentivized review: any software user can leave a review for any product listed on our site. All submitted reviews are subject to our verification process prior to publication.

ST

Shubham T.

SOC Analyst

Information Technology and Services

### "Best On-prem SIEM tool"

4.0

Overall Rating

4.0

4.0

Ease of Use

4.0

4.0

Features

4.0

4.0

Customer Service

5.0

5.0

Likelihood to Recommend

7/10

July 28, 2021

Pros

The most impactful feature of the ArcSight is the rule co-relation engine and the capabilities that it has are almost exceptional and literally stand out when compared to its competitors.

Cons

The least exciting feature of ArcSight is that it has some third party security devices that cannot be integrated with ArcSight leading it to be less effective sometimes.

Review source

Non-incentivized review: any software user can leave a review for any product listed on our site. All submitted reviews are subject to our verification process prior to publication.

Joe L.

Cyber Incident Response Manager

Information Technology and Services

### "Outdated UI - Powerful backend "

3.0

Overall Rating

3.0

3.0

Ease of Use

2.0

2.0

Features

4.0

4.0

Customer Service

3.0

3.0

Likelihood to Recommend

4/10

March 15, 2021

Poor. 'meat' of the product is good but the UI is difficult to use. Due to this, my company moved to Logrhythm, A company leveraging ex Arcsight employees to improve on the faults of Arcsight whilst retaining the benefits

Pros

The 'meat' of this product is very powerful allowing for complex searches of ingested log data.

Cons

The UI of this product is very outdated, relying on 90's looking themes.

Review source

Non-incentivized review: any software user can leave a review for any product listed on our site. All submitted reviews are subject to our verification process prior to publication.

AU

Anonymous User

Manager Information Systems Security

Financial Services

### "Arcsight - Good but complex SIEM solution"

3.0

Overall Rating

3.0

3.0

Ease of Use

3.0

3.0

Features

5.0

5.0

Customer Service

4.0

4.0

Likelihood to Recommend

8/10

January 22, 2021

Arcsight ESM is a powerful but complex tool that needs deep knowledge of the product.

Pros

We are using Arcsight ESM and Logger for event logging and correlation. Events correlation is done at the ESM level and provides better visibility on organizations' security posture. Dashboards and reports can be generated on ESM and further, it facilitates case management so we can open a case on the tool itself. Arcsight was one of the most demanding tools at the time we implemented the tool. ESM's log supporting surface is very high and almost all the types of logs are supported which is one of the best features of the tool. Further logs can be routed through the smart connectors and through these connectors EPS count can be managed which is a good option when it comes to licensing. I like the option of Flex connectors which can be used for integrating non supporting devices or logs.

Cons

Arcsight Smart connector setup needs deep knowledge of the tool and configuration is a bit hectic task. Flex connector configuration and correlation configuration is another complex task that cannot be done without product knowledge. Further case management tools need more features with a simple view. First level support should have a technically savvy team. Most of the time the first level support team provides generic solutions and references to knowledge-based articles rather than studying the case.

Review source

Non-incentivized review: any software user can leave a review for any product listed on our site. All submitted reviews are subject to our verification process prior to publication.

LC

Luis C.

Solution Consultant

Information Technology and Services

### "Excellent Enterprise Grade Security Log Analyzer"

5.0

Overall Rating

5.0

5.0

Ease of Use

4.0

4.0

Features

4.0

4.0

Customer Service

4.0

4.0

Likelihood to Recommend

8/10

March 17, 2020

Very powerfull Security Log Analyzer and visualizer, simply enterprise grade

Pros

Processing power is amazing, it can analyze hundreds of gigs per minute very easily and efficiently with not a lot of resource consumption.

Cons

It's not so easy to set up and every connector requires a different setup so it takes some time to manage.

Review source

Incentivized review: software users are invited to submit an honest review and offered a nominal incentive for their time and effort. All incentivized reviews are subject to our verification process prior to publication.

Response from Vendor

March 19, 2020

Luis, My name is Michael Mychalczuk, and I am the Dir. Of Product Management for Micro Focus' Security Operations portfolio which includes ArcSight. I would like to personally take a moment, and thank you for the review you provided. We are thrilled that you were able to find the product feature rich, easy to use, and find value in the solution. We do agree that there is more we can do in making the product easier to use, and we are working to make that happen in the near future. Speaking for the entire ArcSight product team nothing makes us happier than finding someone who is very likely to recommend us to other. I would also like to direct you to our Ideas Exchange: https://community.microfocus.com/t5/ArcSight-Idea-Exchange/idb-p/ArcSightIdeas?utm\_campaign=00164298 to share your ideas with us. Respectfully Michael Mychalczuk

SV

Sebnem V.

Senior Information Security Specialist

Financial Services

### "Micro Focus ArcSight SIEM"

5.0

Overall Rating

5.0

5.0

Ease of Use

4.0

4.0

Features

5.0

5.0

Customer Service

5.0

5.0

Likelihood to Recommend

8/10

February 25, 2020

We have a lot of security products and applications. We gather all logs from these products and we can easily manage our logs according to rules. Reporting module and dashboard are the best feature of this product.

Pros

We have been using Arcsight SIEM tool in Information Security department in our organization since 2013. We can integrated this product with all other security management products such as Firewall, IPS, Antivirus, Web Filtering etc. also in house softwares easily. We can gather all logs from these products and create rules and manage logs according to rules. Dashboard and alarm mechanism are done well.

Cons

Sometimes we have some problems with search mechanism, it needs some improvements. Because of our big organization and large products which gather logs sometimes we have problems with troubleshooting issues that is little bit hard for us.

Alternatives considered

[IBM Security QRadar](https://www.capterra.com/p/179511/IBM-QRadar-SIEM/)

[Symantec Data Center Security](https://www.capterra.com/p/32113/Symantec-Data-Center-Security/)

Reasons for choosing OpenText Core Behavioral Signals

This product enables the detection and prevention of attacks by establishing connections between the logs (correlation). Normalization and correlation features are the best of this product.

Review source

Incentivized review: software users are invited to submit an honest review and offered a nominal incentive for their time and effort. All incentivized reviews are subject to our verification process prior to publication.

Response from Vendor

March 9, 2020

My name is Michael Mychalczuk, and I am the Director Of Product Management for Micro Focus' Security Operations portfolio which includes ArcSight. I would like to personally take a moment, and thank you for the review you provided. We are thrilled that you were able to find the product feature rich, easy to use, and find value in the solution. We do agree that there is more we can do in making the product easier to use, and we are working to make that happen in the near future. In fact, any suggestions you might have to improve ArcSight, please do not hesitate to submit them to the Idea Exchange: https://community.microfocus.com/t5/ArcSight-Idea-Exchange/idb-p/ArcSightIdeas. Speaking for the entire ArcSight product team nothing makes us happier than finding someone who is very likely to recommend us to other.

Alexander Z.

Account Manager

Computer & Network Security

### "Heart of the SOC"

5.0

Overall Rating

5.0

5.0

Ease of Use

4.0

4.0

Features

5.0

5.0

Customer Service

5.0

5.0

Likelihood to Recommend

10/10

December 5, 2019

Our company and our partners facing a lot incidents masked as a normal events. The SIEM helped us to be protected and to prioritize the events, based of the security risk. Automations of the responses is the other feauture that is a key differentiator.

Pros

Very powerful SIEM with plenty of predefined corellation scenarios. Could be integrate easily with almost everything.

Cons

For new users could be a little difficult to play with, but there are a lot of training materials and courses.

Alternatives considered

[IBM Security QRadar](https://www.capterra.com/p/179511/IBM-QRadar-SIEM/)

Review source

Incentivized review: software users are invited to submit an honest review and offered a nominal incentive for their time and effort. All incentivized reviews are subject to our verification process prior to publication.

AU

Anonymous User

Senior Incident Response Analyst.

Information Technology and Services

### "Lack of Support"

3.0

Overall Rating

3.0

3.0

Ease of Use

4.0

4.0

Features

4.0

4.0

Customer Service

1.0

1.0

Likelihood to Recommend

2/10

June 13, 2019

Pros

The flexibility. I liked that even without good product support, the application was still flexible enough for our team to create work arounds.

Cons

The lack of enterprise support. There are no out of the box connectors for new SSO products like Okta.

Review source

Incentivized review: software users are invited to submit an honest review and offered a nominal incentive for their time and effort. All incentivized reviews are subject to our verification process prior to publication.

Response from Vendor

June 20, 2019

Thank you for the review and I'm sorry to read that your experience with Micro Focus was not wholly what we strive to deliver. It is true that our connectors do not yet support some popular SSO products like Okta. I have reached out to the ArcSight Connectors Product Manager for information on the roadmap. We do support many others, such as RSA, IBM, Layer 7, etc. This does not solve the challenges you experienced with Customer Support. I would welcome the opportunity to remediate the situation. Could you be more specific? You should receive my contact details via Capterra. I look forward to having the opportunity to help improve your impression of Micro Focus. David Shephard Program Manager, Customer Engagement david.shephard@microfocus.com

AU

Anonymous User

Cyber Security Engineer

Banking

### "World of Data"

4.0

Overall Rating

4.0

4.0

Ease of Use

4.0

4.0

Features

4.0

4.0

Customer Service

4.0

4.0

Likelihood to Recommend

9/10

May 17, 2019

The ArcSight product is seen as one of the leaders and leaders in the Safety Information and Event Management category, according to Gartner's Magic Quadrant report. ArcSight's approach is to create a single point of communication for observation and control. Gathers all appropriate event data and puts it into a standard form. It collects at a central location for analysis. As a result, the company allows you to easily monitor and, if necessary, take measures. This increases your compliance with your legal requirements and business continuity.

Pros

The most important feature of Arcsight is that it is the only point of communication for observation and control. collects all appropriate data and puts it into a standard form. these data are stored on a hard disk and are expected to be analyzed. With arcsight, it is monitored with the help of side applications and with the help of monitoring tool (see arcsight esm).

Cons

The ESM platform is Java. This causes slowness and excessive welding in intensive processes.

Review source

Non-incentivized review: any software user can leave a review for any product listed on our site. All submitted reviews are subject to our verification process prior to publication.

JB

Javier B.

CSO

Computer Software

### "First layer for enterprise SIEM"

4.0

Overall Rating

4.0

4.0

Ease of Use

3.0

3.0

Features

4.0

4.0

Customer Service

3.0

3.0

Likelihood to Recommend

8/10

May 8, 2019

The current configuration of the platform allows the intake of millions of events and its ability to integrate third-party applications and addons facilitates the availability of a functional SIEM in a reasonable time. However, deepening and getting to have very customized configurations implies...

Pros

Ease to perform the intake of virtually any data source.

Cons

The learning curve is very complex and requires specialized personnel

Review source

Non-incentivized review: any software user can leave a review for any product listed on our site. All submitted reviews are subject to our verification process prior to publication.

[View all Reviews](https://www.capterra.com/p/275325/ArcSight/reviews/)

## Top-rated software of 2026

### Fill out the form and we'll send a list of the top-rated software based on real user reviews directly to your inbox.

Independent research methodology

Capterra's researchers use a mix of verified reviews, independent research and objective methodologies to bring you selection and ranking information you can trust. While we may earn a referral fee when you visit a provider through our links or speak to an advisor, this has no influence on our research or methodology.

[Learn more](https://www.capterra.com/resources/proprietary-data-research/)

How Capterra verifies reviews

Capterra carefully verified over 2.5 million+ reviews to bring you authentic software experiences from real users. Our human moderators verify that reviewers are real people and that reviews are authentic. They use leading tech to analyze text quality and to detect plagiarism and generative AI.

[Learn more](https://www.capterra.com/resources/how-we-verify-reviews/)

How Capterra ensures transparency

Capterra lists all providers across its website—not just those that pay us—so that users can make informed purchase decisions. Capterra is free for users. Software providers pay us for sponsored profiles to receive web traffic and sales opportunities. Sponsored profiles include a link-out icon that takes users to the provider's website.

[Learn more](https://www.capterra.com/resources/how-we-ensure-transparency/)