"Centralized Security Management and Outstanding Support"
I rely on ReliaQuest GreyMatter as a unified platform to handle security alerts from various appliances, which is extremely valuable for streamlining our security operations. One of the features I like most is the AI-generated summary and analysis provided with each incident. It's presented in straightforward language, includes all the relevant data points, and is easy to act on, which greatly improves our response times. The initial setup was also quite easy, mainly due to the knowledgeable onboarding team that guided us through every step. The integration is impressive, as GreyMatter connects effortlessly with our existing tools such as Microsoft Defender suite, Sentinel, Palo Alto Firewall, and AbnormalAI, creating a seamless security workflow. Moreover, the custom rules they deploy have been essential in alerting us to incidents that other platforms missed. I also value the outstanding customer support, which has been consistently excellent, adding significant value to our overall experience. I find the Android app a bit awkward, especially during login. While I know most users are on iOS, it would be great to see enhancements for Android. I use GreyMatter to centralize security alerts, solving the problem of managing events across multiple tools. It delivers AI-driven summaries and custom rules, improving incident response and detection, making security management more efficient.
"Unified Security with AI Insights and Excellent Support"
The ability to bring together different security tools into a single pane, without any performance hit, is a major advantage. It also offers actionable AI-driven insights with written analysis that helps us make better-informed choices. The interface is simple and intuitive. The cost is somewhat high, but the value became clear over time. They also have great on-demand support. There is a steep learning curve given the breadth of features, and it takes a while to become comfortable with everything. The price is also quite expensive. It supplies us with rich analysis via its multi-SIEM integration and AI, which helps us make more strategic decisions.
M
Mid-Market (51-1000 emp.)
"Comprehensive, Fast, and Integrated—AI Needs Work"
It's an all-in-one solution with a nice UI. There are many native integrations that connect directly to sources. Performance is generally fast and responsive. The AI could be better. It's decent for providing an overview, but it doesn't go the extra mile like a human analyst would. It offers a solid all-in-one package where everything can be done through GreyMatter.
"Simplified SOC Management with GreyMatter"
GM works as an effective abstraction layer, consolidating all SOC data and workflows into a single, user-friendly interface. This interface becomes the go-to 'single pane of glass' for monitoring, reviewing, alerting, and escalating all SOC activities. Its AI capabilities are also a great addition for streamlining investigations and threat hunting. So far, I haven't encountered any problems. GM has truly raised the bar for SOC automation. It addresses the problem of massive alert volumes and the fragmented visibility that results from using multiple separate security tools. By offering unified visibility across different security environments, it helps reduce alert fatigue and ensures that crucial threat signals don't get buried in the noise. It significantly amplifies security team productivity, allowing smaller teams to produce output similar to much larger ones while preventing burnout.
S
Senior Cybersecurity Engineer
"Time-Saving with Smooth Integrations"
The time it saves me on investigations—both within GreyMatter itself and across the various tools it connects and monitors. Some of the settings and new features aren't always straightforward. We're a high-performing cybersecurity team with a broad set of tools available. The challenge is managing time to make full use of them. GreyMatter and its integrations make sure there's constant oversight of the infrastructure we're protecting. \r\n\r\nWe've particularly appreciated the support aspect. Whether it's our Customer Success Manager or the engineer we work with regularly, they address our needs promptly and with care, unlike being passed to a call center where we'd just be a ticket number.
S
Security Operations Manager
"Great Automation for MSSP Using GreyMatter"
I'm fond of the automation, along with the AI agents and GreyMatter workflows, because they cut down the time needed for detection, investigation, containment, and resolution of incidents. I also like that it enables me to outsource my SOC and decrease response times. In addition, the integration with our SIEM and other security tools is something I highly appreciate. The initial setup was simpler than with other vendors, all thanks to the API. As of now, we haven't come across any downsides. Using GreyMatter, I outsource my SOC and reduce detection and response times. The automation and AI agents speed up the processes of detection, investigation, containment, and resolution.
"Easy-to-Use Dashboard and Smooth Integrations That Boost Security"
I genuinely value their partnership with our organization; they truly help companies strengthen their defenses. The dashboard is user-friendly and gives us all the necessary data, and I find it simple to navigate and operate. I'm also a big fan of the many integration options GreyMatter offers, which makes it easy to incorporate into our current processes. On occasion, there are so many alerts that it becomes chaotic and noisy. This alert volume can be problematic, and at times it's also unclear where certain features are located. It provides us with a full picture of our environment, which simplifies our tasks. It also facilitates proactive threat detection by identifying risks and vulnerabilities early on. Overall, it ensures outstanding protection at all times.
I
Incident Response Manager
"Simplifies Incident Handling with Great Ease"
What I value about ReliaQuest GreyMatter is that it offers a unified view across all the appliances we oversee. The AI-generated summary that accompanies every incident is what I rely on most; it provides a plain-language overview with pertinent details already compiled, so my analysts don't waste time gathering context during an urgent situation. The onboarding exceeded my expectations, thanks to a skilled team. Connecting Microsoft Defender, Sentinel, Palo Alto firewalls, and AbnormalAI went off without a hitch. I also appreciate the custom rules they've set up that catch things other platforms miss. The Android app seems less refined than the rest of the product, particularly when signing in. I notice that iOS has more users, but we Android users would like some focus there too. Having biometric login that keeps the session alive for a while would be particularly helpful, since re-authenticating every time an alert comes in slows me down while I'm out of the office. I utilize GreyMatter to centralize incident prioritization across client environments, which saves me from juggling multiple consoles and helps in assigning responsibilities quickly. The AI summaries give essential context, and the custom rules enhance detection where other platforms fall short.
"Simple Onboarding, Great UI, and Robust Threat Detection"
The initial setup was uncomplicated, and the user interface is top-notch. It also comes with a number of features that I truly enjoy. What stands out to me is how well it integrates with my current security stack to deliver all-around coverage. When it comes to detecting threats, I've found it to be superb, and its AI agents and comprehensive visibility contributed to an 89% reduction in incidents. It's compatible across various environments, which enables a more tailored deployment. Its adaptability to different industry requirements and compliance rules makes it a versatile solution for numerous scenarios. The platform optimizes security infrastructure by linking different technologies. It enables immediate threat detection and prompt action. Furthermore, it cuts down on manual effort through automation, saving 60% of resources and speeding up response times. It also aids in reducing alert fatigue.
"Intuitive UI, Proactive Oversight, and an Outstanding Mapping Feature"
The mapping visualization is something I find particularly appealing—it gives a clear picture of how everything is spread out. It also gave us assurance that during an actual threat, there would be personnel actively watching and responding, not just a board full of alerts left for us to prioritize. As far as the interface goes, it feels more streamlined and user-friendly compared to Microsoft's security portal. The deployment was a breeze, and our interaction with their team has been fantastic; they are always there for us. It brings a sense of security knowing our infrastructure is managed even when we're not online. Personally, the most valuable aspect is the automated security measures that cut off user access during an incident. It's a relief to know that everyone's identity is being protected. This has been demonstrated time and again for both our customers and ourselves.