Best Endpoint Detection & Response (EDR) Software Solutions - Page 9

How Many Endpoint Detection & Response (EDR) Software Products Does G2 Track?

Total Products under this Category: 128

Category Stats (Sep 2026)

  • Average Rating: 4.43/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: BluSapphire OnePlatform (+1.05%) - Among all products in this category, BluSapphire OnePlatform recorded the largest rating increase compared to last month

Last updated: September 01, 2026

How Does G2 Rank Endpoint Detection & Response (EDR) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 12,800+ Authentic Reviews
  • 128+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Endpoint Detection & Response (EDR) Software

G2 Grid® for Endpoint Detection & Response (EDR) Software plotting products by satisfaction and market presence

Highlighted products: CrowdStrike Falcon Endpoint Protection Platform, Sophos Endpoint, Acronis Cyber Protect Cloud, Huntress Managed EDR, ThreatDown, ESET PROTECT, Check Point Endpoint Security, and Arctic Wolf.

Underlying data: [Grid® JSON](https://www.g2.com/categories/endpoint-detection-response-edr/grids.json?focus%5B%5D=crowdstrike-falcon-endpoint-protection-platform&focus%5B%5D=sophos-endpoint&focus%5B%5D=acronis-cyber-protect-cloud&focus%5B%5D=huntress-managed-edr&focus%5B%5D=threatdown&focus%5B%5D=eset-protect&focus%5B%5D=check-point-endpoint-security&focus%5B%5D=arctic-wolf)

ThreatLocker EDR Real-Time Threat Detection

ThreatLocker EDR Real-Time Threat Detection is a fully policy-driven Endpoint Detection and Response solution that automatically reacts and isolates threats in real time without waiting for human or AI intervention. Powered by the ThreatLocker Zero Trust Platform, this EDR solution analyzes telemetry and behavior patterns to identify Indicators of Compromise (IoCs) and instantly enforce predefined policies that contain and neutralize threats. The solution continuously monitors endpoint activity and detects abnormal behavior instantly, including unusual IP connections, rogue applications, abnormal script execution, unexpected privilege escalation, excessive file writes, and suspicious PowerShell activity. When threats are detected, ThreatLocker EDR automatically enforces predefined deny policies to isolate devices, shut down risky processes, and block attacker pathways in real time. Key capabilities include automatic activation of policies to block or terminate high-risk tools like PowerShell and Command Prompt, detection and blocking of excessive file writes or reads to stop ransomware encryption and data exfiltration, automatic application of policies to block risky network access such as RDP, and near-instant on-device reaction based on ThreatLocker threat scores without cloud delays. The EDR solution integrates deeply with the ThreatLocker Zero Trust Platform, seamlessly triggering Zero Trust policies based on threat activity. It can also integrate with and send alerts to other security tools, including SIEM or SOAR platforms, and make REST API calls for immediate security team action when automated response isn't enabled. ThreatLocker EDR extends protection into Microsoft 365 environments with identity threat detection and response, monitoring Microsoft 365 logs using policies tuned to surface real-world threats such as impossible travel, anonymous sign-ins, leaked credentials, and sign-ins from infected devices. The solution allows IT administrators to create custom policies using any fields from Microsoft 365 or Microsoft Graph API logs. The platform includes a robust catalog of policy actions and allows users to tap into and share proven policies from other IT professionals and the ThreatLocker team. This collaborative approach enables organizations to benefit from collective security intelligence and best practices. The solution is designed to detect insider threats, abuse of legitimate tools, and novel attacks that traditional EDRs might overlook, providing comprehensive protection against both known and unknown threats.

Who Is the Company Behind ThreatLocker EDR Real-Time Threat Detection?

  • Seller: Threatlocker Inc
  • Company Website:
  • Year Founded: 2017
  • HQ Location: Orlando, Florida, United States
  • Twitter: @ThreatLocker
    2,764 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    736 employees on LinkedIn®

TRAPMINE Endpoint Security

TRAPMINE is an endpoint protection, detection and response platform. Security and IT Operation Teams often look for a single endpoint security platform provides both prevention, antivirus and threat hunting features together. Trapmine is a single platform comes with all-in-one agent to protect your devices from malware attacks, ransomware, exploit attempts and other type of advanced attacks.

Who Is the Company Behind TRAPMINE Endpoint Security?

  • Seller: TRAPMINE
  • Year Founded: 2016
  • HQ Location: Talinn, EE
  • LinkedIn® Page: www.linkedin.com
    2 employees on LinkedIn®

Veramine

We build endpoint threat detection software to automate collection of all security-relevant events, detection of commodity and advanced attackers, flexible search of collected data, and rapid response to detected attacks.

Who Is the Company Behind Veramine?

Versive

The Versive AI Platform was developed to provide large enterprises with solutions that empower their teams to achieve world-class results.

Who Is the Company Behind Versive?

  • Seller: eSentire
  • Year Founded: 2001
  • HQ Location: Waterloo, Ontario
  • Twitter: @eSentire
    6,438 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    574 employees on LinkedIn®

VIPRE Endpoint Detection & Response

VIPRE Endpoint Detection & Response (EDR) provides powerful endpoint threat detection with intuitive and actionable incident management and threat visualization in the console. Built on top of our Endpoint Security Cloud, VIPRE EDR brings our well-known usability and high efficacy to the EDR market. You will be able to easily identify and investigate new kinds of threats and respond quickly and accurately, all from within an interface that is a pleasure to use.

Who Is the Company Behind VIPRE Endpoint Detection & Response?

  • Seller: VIPRE Security
  • Year Founded: 1994
  • HQ Location: Clearwater, FL
  • Twitter: @VIPRESecurity
    8,293 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    236 employees on LinkedIn®

VIPRE Endpoint MDR

VIPRE Endpoint Managed Detection and Response (MDR is a comprehensive cybersecurity solution designed to enhance organizational security by providing continuous monitoring, rapid incident response, and expert threat management. By integrating advanced technologies with a team of seasoned security professionals, VIPRE Endpoint MDR ensures swift detection, containment, and remediation of security incidents, thereby minimizing potential damage and reducing the burden on internal IT teams. Key Features and Functionality: - 24/7 Monitoring and Incident Coverage: Continuous surveillance of endpoints to promptly identify and address security threats. - Rapid Containment: Quick isolation of compromised endpoints to prevent the spread of attacks. - Expert Security Guidance: Access to a team of security experts offering guidance during incident response and cleanup. - Proactive Incident Response: Includes forensic analysis, containment, and remediation conducted by VIPRE's team using advanced technologies like Remote Shell. - Artifact Analysis: Thorough examination of detected artifacts in sandbox environments to extract additional Indicators of Compromise (IoCs for further investigation and system hardening. Primary Value and Problem Solved: VIPRE Endpoint MDR addresses the challenges organizations face in managing complex cybersecurity threats with limited resources. By offering a managed service that combines advanced detection technologies with expert human analysis, it reduces the dwell time of threats, prevents the spread of attacks, and alleviates the workload on internal IT teams. This comprehensive approach enhances the organization's overall security posture, ensuring swift and effective handling of security incidents.

Who Is the Company Behind VIPRE Endpoint MDR?

  • Seller: VIPRE Security
  • Year Founded: 1994
  • HQ Location: Clearwater, FL
  • Twitter: @VIPRESecurity
    8,293 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    236 employees on LinkedIn®

zeroexfil

ZeroExfil is a cutting-edge security tool that prevents data theft by protecting sensitive files in real time. It swiftly detects and stops unauthorized access or exfiltration attempts, automates remediation, and ensures your data stays in your control.

Who Is the Company Behind zeroexfil?

ZiftenBI

Ziften isa security solution that provides teams with continuous endpoint visibility to view the full context of security landscape, amplify teams abilities, and establish organizational resiliency.

Who Is the Company Behind ZiftenBI?

  • Seller: Ziften
  • Year Founded: 2009
  • HQ Location: Austin, US
  • LinkedIn® Page: www.linkedin.com
    7 employees on LinkedIn®
Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated March 4, 2025