Architecture & Platform Foundation
Unified Underlying Data Engine
Tethered to vendor data platform
Proprietary SaaS backend
Proprietary Internal Communication Protocol
Standard APIs only
Standard APIs only
Microservice Architecture Footprint12 vCPU minimum
Heavy resource footprint
Vendor Lock-in Resistance
Pulls buyer into vendor stack
Master Engine Synchronization
DB-driven clustering
Distributed High Availability (HA)
Independent Storage Data Persistence
External DB cluster required
Cost & Licensing
Total Cost of Ownership (TCO)
High enterprise / volume-based cost
User / volume-based cost
Database Licensing Costs
Commercial DB license required
Dedicated Offline Licensing UI
Manual support ticket / CLI
N/A
Deployment & Infrastructure
True Air-Gapped / Offline Support
Complex on-prem configuration
Cloud-first focus
Installation Scripting (Interactive CLI)
Multi-step / complex deployment
Vendor provisioned
Hardware Allocation Profiles3 tiers
Variable on load
Multi-OS SupportRHEL 8/9 & Ubuntu 22/24
RHEL/CentOS focus
SaaS / cloud app
Pre-compiled Source Deployments
Container / RPM / tarball only
SaaS only
Standalone Centralized Deployment
Edge deployments
Granular Service Traffic Binding
OS-level routing
Automation, AI & Playbooks
Artificial Intelligence (AI) Pillar
Separate SKU / add-on module
Code Requirement for Playbooks
Moderate-to-heavy (JS/Python)
Visual Playbook Flow Testing
Code execution focus
Playbook Execution Concurrency50+
Resource intensive
Automated Defensive Maneuvers
Automated Data Classification
Playbook dependent
Incident & Threat Operations
Unified Incident Management Lifecycle
Daily Incident Processing Volume2,500+
Scaling requires heavy hardware
Threat Intelligence Management
Add-on / companion app required
Integration required
Attribute-based Incident Routing
Dynamic Severity & Priority Assignment
Actionable MTTR Reduction Tracking
Immediate Network Isolation Actions
Integrations, Collaboration & UX
Integration Flexibility
Custom app development required
Out-of-the-Box Integrations250+
Third-Party Web Service Orchestration
Secure External API Authentication
Real-Time Collaboration Ecosystem
Limited (events only)