List of Elastic SIEM Customers
Amsterdam, 1016 ED,
Netherlands
Since 2010, our global team of researchers has been studying Elastic SIEM customers around the world, aggregating massive amounts of data points that form the basis of our forecast assumptions and perhaps the rise and fall of certain vendors and their products on a quarterly basis.
Each quarter our research team identifies companies that have purchased Elastic SIEM for Security Information and Event Management (SIEM) from public (Press Releases, Customer References, Testimonials, Case Studies and Success Stories) and proprietary sources, including the customer size, industry, location, implementation status, partner involvement, LOB Key Stakeholders and related IT decision-makers contact details.
Companies using Elastic SIEM for Security Information and Event Management (SIEM) include: Bharti Airtel India, a India based Communications organisation with 24420 employees and revenues of $22.00 billion, Sierra Nevada, a United States based Aerospace and Defense organisation with 5000 employees and revenues of $2.60 billion, Mimecast, a United Kingdom based Professional Services organisation with 649 employees and revenues of $240.0 million and many others.
Contact us if you need a completed and verified list of companies using Elastic SIEM, including the breakdown by industry (21 Verticals), Geography (Region, Country, State, City), Company Size (Revenue, Employees, Asset) and related IT Decision Makers, Key Stakeholders, business and technology executives responsible for the software purchases.
The Elastic SIEM customer wins are being incorporated in our Enterprise Applications Buyer Insight and Technographics Customer Database which has over 100 data fields that detail company usage of software systems and their digital transformation initiatives. Apps Run The World wants to become your No. 1 technographic data source!
Apply Filters For Customers
| Logo | Customer | Industry | Empl. | Revenue | Country | Vendor | Application | Category | When | SI | Insight |
|---|---|---|---|---|---|---|---|---|---|---|---|
|
|
Bharti Airtel India | Communications | 24420 | $22.0B | India | Elasticsearch | Elastic SIEM | Security Information and Event Management (SIEM) | 2024 | n/a |
In 2024, Bharti Airtel India deployed Elastic SIEM to power its managed security services and its security operations center, leveraging Security Information and Event Management (SIEM) capabilities to support enterprise customers in India. The Elastic SIEM implementation is positioned as the core analytics and detection layer for Airtel's MSS offering and SOC operations.
The deployment uses Elastic Security components arranged for a multi tenant SIEM architecture, ingesting endpoint security telemetry and cloud security telemetry into centralized indexed storage. Configurations emphasize detection rules, alerting, automated investigation playbooks, and scalable AI driven analytics to support threat detection, incident investigation, and continuous monitoring workflows.
Operationally the Elastic SIEM integrates telemetry from endpoints and cloud security sources to enable faster customer onboarding into Airtel's MSS product, and it is instrumented for SOC analyst workflows and managed service delivery. The scope of coverage explicitly includes Airtel's SOC and MSS teams serving enterprise customers across India, with the platform enabling tenant separation and role based access controls for multi customer operations.
Governance and rollout focused on standardizing investigation workflows and onboarding processes to support a multi tenant managed security service model. Outcomes reported by Airtel include improving SOC efficiency by up to 40 percent and accelerating investigations by roughly 30 percent for enterprise customers, reflecting operational gains from Elastic SIEM and the Elastic Security analytics stack.
|
|
|
Mimecast | Professional Services | 649 | $240M | United Kingdom | Elasticsearch | Elastic SIEM | Security Information and Event Management (SIEM) | 2023 | Elastic |
In 2023, Mimecast deployed Elastic SIEM to centralize SecOps and accelerate data onboarding across its global environment. The deployment used Elastic Security on Elastic Cloud on AWS to deliver Security Information and Event Management (SIEM) capabilities and a centralized security telemetry platform.
The implementation included Elastic Security SIEM and Elastic Agent to establish centralized ingest, indexing, detection rule orchestration, alerting, and case management workflows. Configuration work focused on data onboarding automation and detection tuning to support incident detection and response workflows consistent with Security Information and Event Management (SIEM) functional patterns.
Elastic Professional Services and Consulting supported the migration and training phases, and Elastic acted as the implementation services provider for the Cloud on AWS architecture. The deployment architecture leverages Elastic Cloud on AWS for scalability and Elastic Agent for endpoint and host telemetry collection, covering SecOps and security management functions across Mimecasts global footprint.
Operational governance included centralized incident triage and security management process standardization to align teams on detection and response. Outcomes reported by the vendor include a reduction in severe incidents by more than 95 percent and an approximate 50 percent reduction in security management overhead across the environment.
|
|
|
Sierra Nevada | Aerospace and Defense | 5000 | $2.6B | United States | Elasticsearch | Elastic SIEM | Security Information and Event Management (SIEM) | 2023 | n/a |
In 2023, Sierra Nevada Corporation deployed Elastic SIEM as the core Security Information and Event Management (SIEM) technology in a cloud-based Security Operations Center hosted on Microsoft Azure Government. The SOC was built to serve defense customers in the United States, with explicit focus on operational technology protection and regulated data protections. Vendor and SNC statements identify Elastic Security as the core SIEM/XDR technology used in the SNC SOC offering.
The implementation emphasizes enterprise-level monitoring, OT protection, and managed security services, configured to deliver detection, correlation, alerting, and XDR-style cross-domain visibility across IT and OT environments. Functional capabilities implemented include centralized log collection and indexing, security event analysis, incident detection workflows, and managed incident response services aligned to defense operational needs. The Elastic Security stack and Elastic SIEM are used to instrument observability and threat detection pipelines and to operationalize SOC analytics.
The deployment architecture is cloud-native on Microsoft Azure Government, providing isolated government cloud tenancy and controls suitable for defense workloads. Integrations center on ingesting telemetry from OT and network sources into Elastic indexes for analytic processing, with SOC operations delivered as managed services to downstream customers in the United States. The operational coverage is explicit to U.S. defense customers and regulated sites, with the SOC tooling architected for managed, multi-customer delivery.
Governance and process design emphasize regulated data protections and centralized SOC workflows, aligning incident handling and service delivery to defense compliance requirements. SNC and vendor communications position the Elastic SIEM powered SOC as a capability to strengthen customer cybersecurity posture against increasing threats, with Elastic Security serving as the technical foundation for monitoring, OT protection, and managed security offerings.
|
Buyer Intent: Companies Evaluating Elastic SIEM
- IHG Hotels & Resorts, a United Kingdom based Leisure and Hospitality organization with 13462 Employees
Discover Software Buyers actively Evaluating Enterprise Applications
| Logo | Company | Industry | Employees | Revenue | Country | Evaluated | ||
|---|---|---|---|---|---|---|---|---|
| No data found | ||||||||