fbpx

SIEM & XDR Security

Simple per seat pricing to help you predict your budget. Improve your security and save every month with unlimited data ingestion. Get started today by purchasing SIEM Starter or contact us for a custom quote on SIEM + and XDR.

UNLIMITED
Free SIEM
No Credit Card Required
Sign Up Today

Access to everything below, for free:

14 days retention
Choose 3 cloud integrations**
Log collection & threat analysis
Managed detections, rule insight, and rule management
Response playbooks
Dashboard summary & basic reporting
Email notifications
10-50 SEATS
SIEM Starter
$15/seat/month
Buy Now

Everything in Free
SIEM, plus:

90 days retention
Endpoint visibility & response
All cloud integrations
Detection filters
Manual host isolation
Advanced dashboards & compliance reports
Notifications (voice, email & text)
Customer support (9am-8pm ET)
50+ SEATS
SIEM +
$20/seat/month
Contact Us

Everything in SIEM
Starter
, plus:

1 year retention
Access to on-prem sensor integrations
Manual dynamic blocklists
Executive Summaries
Honeypots
Blumira Investigate
Recurring CSM syncs & external threat scans
Emergency after hours support (24/7 for critical issues)
50+ SEATS
XDR
$25/seat/month
Try XDR Free

Everything in SIEM+, plus:

1 year retention+
Automated host isolation
Automated blocking (for dynamic blocklists)
White glove onboarding included

 

Volume and nonprofit discounts available.Contact sales for custom quote.

Compare SIEM & XDR Editions

Easily meet compliance with SIEM data retention, security reporting, 24/7 SecOps and more.

Free SIEM
Choose 3 cloud integrations & set up a SIEM in minutes
SIEM Starter
Expanded coverage with access to all cloud integrations and Blumira Agent
SIEM+
Access to all cloud and on-prem integrations, plus 1 year data retention
XDR Platform
Detect & respond faster w/ SIEM + endpoint visibility + automated response
Data
Data Ingestion
Unlimited
Unlimited
Unlimited
Unlimited
Data Retention
14 days
90 Days (Upgrade 365 Days)
365 Days
365 Days
Long Term Storage Option
Available (Helps With Compliance)
Agent
Endpoint Visibility + Response – Blumira Agent
1 per seat
1 per seat, additional available
1 per seat, additional available
Minimum Agents
-
10
50
50
Maximum Agents
-
50
Unlimited
Unlimited
Integrations
Cloud Connectors
Pick 3: Microsoft 365, Google Workspace, SentinelOne, Webroot, Mimecast, Duo Security, Cisco Umbrella, Sophos, JumpCloud or OneLogin
On-Prem Sensors
-
-
Logging
Log Collection
Threat Analysis
Detection
Managed Detections
Detection Rule Insight
Detection Rule Management
Detection Filters
Response
Response Playbooks
Manual Host Isolation
Manual Dynamic Blocklists
Automated Blocking (for Dynamic Blocklists)
Automated Host Isolation
Dashboards
Dashboard Summary
Advanced Dashboards
Reporting
Saved Reports
Basic
Advanced
Advanced
Advanced
Compliance Reports
Basic
Advanced
Advanced
Advanced
Report Builder
Executive Summaries
With Upgrade
Investigate & Visualize Data
Deception Technology
Honeypots
Notification & Support
Notifications (Voice, Text & Email)
Email only
White Glove Onboarding (One Time Fee - Required)
$250
$500
Included
Customer Support (9am-8pm ET)
Emergency After Hours Support (24/7 for critical priority issues)
External Threat Surface Scans (Biannually)
Dedicated CSM + Recurring Syncs (Quarterly)

MSP pricing and packaging will differ. Contact [email protected] for more details.
*Subject to our Terms and Conditions.
*Free SIEM can choose up to 3 cloud integrations: Microsoft 365, Google Workspace, SentinelOne, Webroot, Mimecast, Duo Security, Cisco Umbrella, Sophos, JumpCloud, OneLogin

See FAQ for more information on seats (it does not refer to the number of users or admins with Blumira accounts).
Pricing for SIEM Starter is contracted on a monthly basis. Pricing for SIEM+ and XDR is contracted on an annual basis.
Additional endpoint agents available for SIEM+ and XDR editions.

Real Customers Solving Real Problems

"I told my director it’s like adding another employee, except much cheaper. That was a major driver — that Blumira was going to be taking care of the solution. "

Les Neely

Sys Admin

"Blumira is at least 50% -- if not more -- affordable compared to some of the other solutions. I would definitely recommend Blumira to other companies looking to increase their visibility into the security of their networks."

Ethan Shutika

Director of IT and Security

"We like that Blumira is user-friendly and we don’t need a dedicated security analyst to maintain it. For some of the other solutions, it would probably require us to have two security analysts on staff. Blumira is well-worth the money."

Mike Morrow

Technical Infrastructure Manager

Frequently Asked Questions

What can I expect with Blumira's Free SIEM edition?

Choose up to 3 cloud integrations – Microsoft 365, SentinelOne, Webroot, Mimecast, Duo Security, Cisco Umbrella, OneLogin and more – to start streaming logs to Blumira for advanced threat detection and response. Get started in minutes with: What to Expect With Blumira’s Free Edition

How can I protect my full tech stack?

SIEM + and the XDR platform provide access to all cloud and on-prem including Windows Server, firewalls, identity and more integrations along with endpoint visibility for Windows, MacOS and Linux endpoints.

How do I switch to a different plan?

SIEM Starter and SIEM Starter + Compliance can be purchased online and you can add users directly in the product. Those interested in SIEM + or XDR will need to reach out to your Blumira account representative or dedicated Solution Architect to help assist you with any plan changes.

What do I need to help meet compliance?

While compliance regulations may vary, most industry standards and upcoming cybersecurity insurance mandates often require at least one year of data retention for audit trails, log monitoring, investigation and incident response. Purchase SIEM Starter + Compliance for one year of retention, or upgrade to the Blumira SIEM+ edition or XDR Platform for the option of longer data retention.

What defines a seat?

Pricing is based on the total number of “seats” or knowledge workers in your organization (it does not refer to the number of users or admins with Blumira accounts). A knowledge worker is an employee with a corporate email address and workstation/device (may not include number of factory workers or students at a university).

This helps us determine a more accurate estimate of the amount of data you are sending to our platform.

Is there a seat minimum?

There is a 10 seat minimum for Blumira Starter and a 50 seat minimum worker for SIEM + and XDR. Free SIEM has no minimum and comes with unlimited seats.

How do you provide support?

Customer support is available for paid editions only. Your team can contact our support directly in the Blumira app, by email or calling our support line. For SIEM+ and XDR Platform, Blumira provides emergency after hours support 24 hours, 7 days a week for critical priority issues. Free SIEM users have access to our support documentation

Is there a contract term?

Our contract terms for SIEM Starter is month to month and both SIEM + and XDR are contracted on an annual basis.

How can I purchase Blumira Agent?

SIEM Starter, SIEM Plus, and XDR Platform come bundled with 1 Blumira Agent per seat. SIEM+ and XDR Platform have the ability to purchase additional agents at $3 per agent per month. MSP pricing and packaging will differ – contact [email protected] for more details.

Still have questions?

If you don't see what you're looking for above, please reach out. We're happy to help!