Top Free Identity Threat Detection and Response (ITDR) Software

How Many Identity Threat Detection and Response (ITDR) Software Products Does G2 Track?

Total Products under this Category: 73

Category Stats (Oct 2026)

  • Average Rating: 4.57/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Falcon Identity protection (+2.92%) - Among all products in this category, Falcon Identity protection recorded the largest rating increase compared to last month

Last updated: October 01, 2026

How Does G2 Rank Identity Threat Detection and Response (ITDR) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 3,900+ Authentic Reviews
  • 73+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Identity Threat Detection and Response (ITDR) Software

G2 Grid® for Identity Threat Detection and Response (ITDR)  Software plotting products by satisfaction and market presence

Highlighted products: CrowdStrike Falcon Endpoint Protection Platform, Huntress Managed ITDR, Abnormal AI, Okta, Microsoft Defender for Identity, Guardz, IBM MaaS360, and Idira Identity Security Platform.

Underlying data: [Grid® JSON](https://www.g2.com/categories/identity-threat-detection-and-response-itdr/grids.json?focus%5B%5D=crowdstrike-falcon-endpoint-protection-platform&focus%5B%5D=huntress-managed-itdr&focus%5B%5D=abnormal-ai&focus%5B%5D=okta&focus%5B%5D=microsoft-defender-for-identity&focus%5B%5D=guardz&focus%5B%5D=ibm-maas360&focus%5B%5D=idira-identity-security-platform)

CrowdStrike Falcon Endpoint Protection Platform

Organizations today face a serious challenge: managing numerous security vendors and tools while confronting an ever-evolving threat landscape. Sophisticated adversaries are becoming smarter, faster, and more evasive, launching complex attacks that can strike in minutes or even seconds. Traditional security approaches struggle to keep pace, leaving businesses vulnerable. The CrowdStrike Falcon Platform addresses this by offering a unified, cloud-native solution. It consolidates previously siloed security solutions and incorporates third-party data into a single platform with one efficient and resource-conscious agent, leveraging advanced AI and real-time threat intelligence. This approach simplifies security operations, speeds analyst decision making, and enhances protection to stop the breach, allowing organizations to reduce risk with less complexity and lower costs. CrowdStrike's Falcon Platform includes: - Endpoint Security: Secure the endpoint, stop the breach - Identify Protection: Identity is the front line, defend it - Next-Gen SIEM: The future of SIEM, today - Data Protection: Real-time data protection from endpoint to cloud - Exposure Management: Understand risk to stop breaches - Charlotte AI: Powering the next evolution of the SOC

Average Rating: 4.7/5.0

Total Reviews: 547

How Do G2 Users Rate CrowdStrike Falcon Endpoint Protection Platform?

  • Quality of Support: 9.0/10 (Category avg: 9.1/10)
  • Ease of Use: 9.0/10 (Category avg: 9.0/10)

Who Is the Company Behind CrowdStrike Falcon Endpoint Protection Platform?

  • Seller: CrowdStrike
  • Company Website:
  • Year Founded: 2011
  • HQ Location: Sunnyvale, CA
  • Twitter: @CrowdStrike
    110,809 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    21,058 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: Security Analyst, Security Engineer
  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 46% Large, 40% Medium

What Do G2 Reviewers Say About CrowdStrike Falcon Endpoint Protection Platform?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the lightweight performance and powerful threat detection of CrowdStrike Falcon, enhancing security without slowing down systems.
  • Users commend the effective threat detection capabilities of CrowdStrike Falcon, ensuring robust security without system slowdowns.
  • Users appreciate the ease of use of CrowdStrike Falcon, benefiting from its lightweight impact and efficient incident management.
  • Users appreciate the advanced real-time threat protection of CrowdStrike Falcon, ensuring efficient security without system performance issues.
  • Users praise the exceptional threat detection of CrowdStrike Falcon, noting its effectiveness against both known and unknown threats.
Cons
  • Users find the cost prohibitive for smaller organizations, especially with additional modules increasing overall expenses.
  • Users find the complexity of the user interface and additional costs challenging, complicating their overall experience.
  • Users face a steep learning curve with CrowdStrike’s query language, making transitions from other platforms challenging.
  • Users find the limited features challenging, especially concerning cost and technical accessibility for smaller businesses.
  • Users find that pricing can be a barrier for smaller organizations, complicating access to advanced features.

What Are Recent G2 Reviews of CrowdStrike Falcon Endpoint Protection Platform?

What Are G2 Users Discussing About CrowdStrike Falcon Endpoint Protection Platform?

Huntress Managed ITDR

Huntress Managed ITDR is a fully managed identity threat detection and response (ITDR) solution that pairs continuous identity monitoring across Microsoft 365 and Google Workspace with a 24/7, human-staffed Security Operations Center (SOC). Built for managed service providers (MSPs) and small to mid-sized businesses (SMBs) with limited in-house identity security expertise, it detects identity-based threats such as credential compromise, privilege escalation, and lateral movement, and pairs automated behavioral analysis with expert analysts who investigate and respond to identity incidents in real time. Huntress Managed ITDR reduces dwell time on compromised accounts through rapid detection and remediation, giving lean IT and security teams enterprise-grade identity protection without the overhead of building an in-house identity security team. Our enterprise-grade solution gives you continuous monitoring for identity-based threats, rapid detection of unauthorized access, location-based and VPN/tunnel/proxy anomalies, and fast response to suspicious activities like rogue applications, shadow workflows, and business email compromise (BEC) scams. By focusing on protecting user credentials and session tokens, Huntress keeps your organization's digital identities safe, even as attackers develop sneakier tactics.

Average Rating: 4.8/5.0

Total Reviews: 117

How Do G2 Users Rate Huntress Managed ITDR?

  • Quality of Support: 9.7/10 (Category avg: 9.1/10)
  • Ease of Use: 9.5/10 (Category avg: 9.0/10)

Who Is the Company Behind Huntress Managed ITDR?

  • Seller: Huntress Labs
  • Company Website:
  • Year Founded: 2015
  • HQ Location: Ellicott City, US
  • Twitter: @HuntressLabs
    40,338 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    978 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 76% Small, 20% Medium

What Do G2 Reviewers Say About Huntress Managed ITDR?

AI-generated summary from verified user reviews

Pros
  • Users value the continuous monitoring of Huntress Managed ITDR, enabling quick detection of threats without additional overhead.
  • Users value the easy integrations of Huntress Managed ITDR, enhancing efficiency and security across multiple platforms.
  • Users value the reliability of Huntress Managed ITDR, ensuring continuous protection and quick detection of threats.
  • Users value the clear visibility and actionable alerts Huntress Managed ITDR provides for identity-based threats.
  • Users praise the rapid and responsive customer support of Huntress Managed ITDR, enhancing overall satisfaction and efficiency.
Cons
  • Users report inadequate detection of failed login attempts, limiting proactive responses to security threats.
  • Users desire greater control and customization in the management console for enhanced functionality and flexibility.
  • Users find the pricing to be high since costs accumulate with each user, impacting overall affordability.
  • Users note occasional false positives triggered by VPN usage or incorrect location data, but overall security is prioritized.
  • Users report an inefficient alert system, lacking crucial details and failing to detect key security threats promptly.

What Are Recent G2 Reviews of Huntress Managed ITDR?

Abnormal AI

Abnormal AI is the leading AI-native human behavior security platform, leveraging machine learning to stop sophisticated inbound attacks and detect compromised accounts across email and connected applications. The anomaly detection engine leverages identity and context to understand human behavior and analyze the risk of every cloud email event--detecting and stopping sophisticated, socially-engineered attacks that target the human vulnerability. You can deploy Abnormal in minutes with an API integration for Microsoft 365 or Google Workspace and experience the full value of the platform instantly. Additional protection is available for Slack, Workday, ServiceNow, Zoom, and multiple other cloud applications. Abnormal is currently trusted by more than 3,200 organizations, including over 25% of the Fortune 500, as it continues to redefine how cybersecurity works in the age of AI. For more information, please visit abnormal.ai

Average Rating: 4.7/5.0

Total Reviews: 89

How Do G2 Users Rate Abnormal AI?

  • Quality of Support: 9.5/10 (Category avg: 9.1/10)
  • Ease of Use: 9.5/10 (Category avg: 9.0/10)

Who Is the Company Behind Abnormal AI?

  • Seller: Abnormal AI
  • Company Website:
  • Year Founded: 2018
  • HQ Location: Las Vegas, USA
  • LinkedIn® Page: www.linkedin.com
    1,620 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Financial Services, Information Technology and Services
  • Company Size: 47% Large, 41% Medium

What Do G2 Reviewers Say About Abnormal AI?

AI-generated summary from verified user reviews

Pros
  • Users commend the ease of use of Abnormal AI, finding it simplifies workflows with a seamless setup process.
  • Users highlight the excellent customer support provided by Abnormal AI, enhancing their overall experience and effectiveness.
  • Users commend the easy setup of Abnormal AI, enabling quick activation and effortless email protection.
  • Users commend Abnormal AI for its exceptional detection efficiency, effectively blocking sophisticated email threats effortlessly.
  • Users appreciate the automated email monitoring of Abnormal AI, significantly reducing manual review time and improving efficiency.
Cons
  • Users experience email filtering issues with Abnormal AI, including persistence of filters and occasional misflagging of legitimate emails.
  • Users experience email delivery delays with Abnormal AI, leading to confusion and potential security risks with threats.
  • Users experience frequent false positives with Abnormal AI, causing confusion and requiring manual review for legitimate emails.
  • Users note the need for improved reporting features, as filtering settings often do not persist, complicating usability.
  • Users express a desire for pre-delivery action on emails, as it briefly shows in mailboxes before remediation.

What Are Recent G2 Reviews of Abnormal AI?

AI can help you find the answers. G2 helps you trust them.

Connect G2 to Claude or ChatGPT for answers grounded in G2's trusted reviews, comparisons, and pricing from real user insights.

How it works

Guardz

Guardz is a unified cybersecurity platform specifically designed for Managed Service Providers (MSPs). This innovative solution consolidates essential security controls, identity threat detection and response (ITDR), endpoint protection (EDR), email security, user awareness training and phishing simulations, and Managed Detection and Response (MDR) into a single AI-native framework. The platform aims to enhance operational efficiency by streamlining security processes and providing a comprehensive approach to cybersecurity. Targeting MSPs, Guardz addresses the unique challenges these providers face in managing multiple security tools that often operate in silos. By adopting an identity-centric approach, Guardz connects various security vectors, effectively reducing the gaps that can leave organizations vulnerable. This layered and holistic view enables MSPs to respond to user risks in real time, ensuring that security measures are not only reactive but also proactive in safeguarding client environments. Key features of Guardz include its 24/7 AI and human-led Managed Detection and Response (MDR) services. The platform employs agentic AI to triage threats at machine speed, allowing for rapid identification and prioritization of potential security incidents. This automated triage process is complemented by expert analysts who validate findings, mitigate risks, and guide response actions. As a result, MSPs can offer scalable protection to their clients without the need to expand their workforce, making it a cost-effective solution for growing cybersecurity demands. Guardz stands out in the cybersecurity landscape by providing a unified platform that integrates various security functions into one cohesive system. This integration not only simplifies the management of security tools but also enhances the overall effectiveness of security measures. By leveraging AI-driven insights and human expertise, Guardz empowers MSPs to deliver robust cybersecurity solutions that adapt to the evolving threat landscape, ensuring their clients remain protected against emerging risks.

Average Rating: 4.6/5.0

Total Reviews: 125

How Do G2 Users Rate Guardz?

  • Quality of Support: 9.3/10 (Category avg: 9.1/10)
  • Ease of Use: 9.4/10 (Category avg: 9.0/10)

Who Is the Company Behind Guardz?

  • Seller: Guardz
  • Company Website:
  • Year Founded: 2022
  • HQ Location: Tel Aviv, IL
  • Twitter: @GuardzCyber
    114 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    160 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: CEO, Owner
  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 77% Small, 18% Medium

What Do G2 Reviewers Say About Guardz?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the ease of use of Guardz, highlighting its organized dashboard and straightforward integration.
  • Users value the robust security of Guardz, ensuring comprehensive protection for their systems and emails effortlessly.
  • Users value the efficient multi-tenant features of Guardz, enhancing operational workflow and client management.
  • Users appreciate the easy setup of Guardz, quickly deploying it for customers in about an hour.
  • Users value the effective threat detection capabilities of Guardz, enhancing overall cybersecurity for their clients.
Cons
  • Users find the limited features of Guardz restrict their workflow and hinder automation capabilities, needing more flexibility.
  • Users face integration issues with Guardz, finding alerts cumbersome and lacking essential API support for smoother operations.
  • Users note a significant lack of features in Guardz, limiting its effectiveness in mixed environments and advanced configurations.
  • Users find limited customization options in Guardz, impacting its adaptability for advanced configurations in mixed environments.
  • Users desire more transparency and clarity regarding the tools and methods used by Guardz for safety.

What Are Recent G2 Reviews of Guardz?

IBM MaaS360

IBM MaaS360 is an easy to use, unified endpoint management (UEM) solution that transforms the way that organizations support users, apps, content, and data across essentially every type of device. Its open, cloud-based platform integrates with preferred security and productivity tools. You can protect your workforce with evolved Threat Management, Mobile Security, Device management features and your analytics will be powered by watsonx AI capabilities, helping you to set up a good security posture. IBM MaaS360 is available for purchase on ibm.com and AWS Marketplace.

Average Rating: 4.2/5.0

Total Reviews: 193

G2 Deal: Buy today for 30% off

Manage and protect your mobile workforce with AI-driven unified endpoint management (UEM). Choose IBM Maas360 and get 30% off your first annual subscription. Offer ends 15 April 2026.

Price: ~~5.00 USD~~ → 3.50 USD

View this exclusive G2 deal

How Do G2 Users Rate IBM MaaS360?

  • Quality of Support: 8.1/10 (Category avg: 9.1/10)
  • Ease of Use: 8.2/10 (Category avg: 9.0/10)

Who Is the Company Behind IBM MaaS360?

  • Seller: IBM
  • Company Website:
  • Year Founded: 1911
  • HQ Location: Armonk, New York, United States
  • Twitter: @IBMSecurity
    74,660 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    344,328 employees on LinkedIn®

Who Uses This Product?

  • Who Uses This: IT Manager, Software Engineer
  • Top Industries: Information Technology and Services, Computer Software
  • Company Size: 44% Medium, 33% Large

What Do G2 Reviewers Say About IBM MaaS360?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the advanced threat management and user-friendly integration of IBM MaaS360 for enhanced security.
  • Users appreciate the security features of IBM MaaS360, effectively safeguarding their tools against various cyber threats.
  • Users value the unified device management of IBM MaaS360, effectively enhancing security across all devices.
  • Users value the ease of use in IBM MaaS360, highlighting its intuitive onboarding and management features.
  • Users value the robust protection offered by IBM MaaS360, ensuring security and management for enterprise tools.
Cons
  • Users find the learning curve steep, as advanced configurations and outdated interface complicate intuitive usage.
  • Users find the interface design poor, describing it as outdated and occasionally overwhelming for new users.
  • Users find the UI outdated and clunky, making navigation and usability less enjoyable on IBM MaaS360.
  • Users experience slow performance with IBM MaaS360 due to outdated interface and occasional sync delays.
  • Users find the interface outdated, making navigation and usage less intuitive compared to modern applications.

What Are Recent G2 Reviews of IBM MaaS360?

What Are G2 Users Discussing About IBM MaaS360?

SentinelOne Singularity Endpoint

SentinelOne® Singularity™ Endpoint is an autonomous endpoint security platform that stops threats in real-time. It unifies endpoint protection (EPP), endpoint detection and response (EDR), and autonomous remediation to stop ransomware, zero-day exploits, supply chain attacks, and fileless malware. Singularity Endpoint protects workstations, mobile devices, servers, and cloud workloads across SaaS, on-premises, hybrid, and air-gapped environments. Behavioral and static AI detection models stop known and unknown threats by identifying how threats behave, not just what they look like. SentinelOne catches what signatures miss, without waiting on updates. Storyline® automatically correlates telemetry into one visual attack story, and patented one-click rollback restores systems to a trusted state in seconds. The result is stronger protection with fewer incidents and less operational overhead: lower dwell time, fewer false positives, and faster response. With Purple AI™, teams accelerate triage, threat hunting, and investigation. From alert to verdict without manual investigation. Purple AI's Agentic Investigation runs the analysis, surfaces the evidence, and tells your team exactly what to do next. The same SentinelOne agent that protects endpoints also defends every identity behind them. Detect credential abuse, shrink your attack surface, and contain identity threats from one console. Seamless integration of endpoint, identity, cloud, and third-party telemetry eliminates blind spots. Built AI-native from day one, Singularity Endpoint delivers best-in-industry coverage across Windows, macOS, Linux, and mobile operating systems, including legacy OSes. Trusted by more than 11,500 customers, SentinelOne is a six-time Gartner® Magic Quadrant™ Leader for Endpoint Protection.

Average Rating: 4.7/5.0

Total Reviews: 206

How Do G2 Users Rate SentinelOne Singularity Endpoint?

  • Quality of Support: 8.9/10 (Category avg: 9.1/10)
  • Ease of Use: 8.9/10 (Category avg: 9.0/10)

Who Is the Company Behind SentinelOne Singularity Endpoint?

  • Seller: SentinelOne
  • Company Website:
  • Year Founded: 2013
  • HQ Location: Mountain View, CA
  • Twitter: @SentinelOne
    57,863 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,529 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 46% Medium, 36% Large

What Do G2 Reviewers Say About SentinelOne Singularity Endpoint?

AI-generated summary from verified user reviews

Pros
  • Users value the tool efficiency of SentinelOne Singularity Endpoint, appreciating its user-friendly interface and effective threat detection.
  • Users find the ease of integration with Nable RMM and setup straightforward for daily operations.
  • Users praise the exceptional malware protection of SentinelOne, effectively stopping threats before they can cause harm.
  • Users find SentinelOne Singularity Endpoint to be a highly useful tool for incident notification and investigation.
  • Users appreciate the quick alerts and feature-rich capabilities of SentinelOne, enhancing security management and support.
Cons
  • Users face update issues with SentinelOne Singularity, leading to login problems and cumbersome agent management.
  • Users find the difficult learning curve of SentinelOne Singularity Endpoint challenging, especially for beginners navigating its features.
  • Users find the frequent updates challenging, as rapid changes lead to login issues and a steep learning curve.
  • Users report challenges with agent removal issues impacting application functionality and requiring improvement in uninstallation processes.
  • Users report ineffective alerts that hinder troubleshooting and prevent them from addressing application issues effectively.

What Are Recent G2 Reviews of SentinelOne Singularity Endpoint?

What Are G2 Users Discussing About SentinelOne Singularity Endpoint?

SaaS Alerts

​​SaaS Alerts is a automated cybersecurity platform to detect and automate the remediation of SaaS security threats. The platform provides unified, continuous monitoring of core business SaaS applications to protect against data theft and malicious actors, including Microsoft 365, Google Workspace, Salesforce, Slack, Dropbox, Okta, Duo and more. SaaS Alerts uses machine learning pattern detection to identify breaches, create instant alerts, and lock affected accounts, providing you with valuable time to respond before further damage can occur. It also enables you to terminate dangerous end-user file sharing activities and automate essential security tasks, enhancing efficiency and overall security.

Average Rating: 4.4/5.0

Total Reviews: 32

How Do G2 Users Rate SaaS Alerts?

  • Quality of Support: 9.1/10 (Category avg: 9.1/10)
  • Ease of Use: 8.1/10 (Category avg: 9.0/10)

Who Is the Company Behind SaaS Alerts?

  • Seller: Kaseya
  • Company Website:
  • Year Founded: 2000
  • HQ Location: Miami, FL
  • Twitter: @KaseyaCorp
    17,411 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    5,483 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services, Computer & Network Security
  • Company Size: 88% Small, 13% Medium

What Do G2 Reviewers Say About SaaS Alerts?

AI-generated summary from verified user reviews

Pros
  • Users value the real-time alerts of SaaS Alerts, enhancing security awareness and user activity tracking across platforms.
  • Users appreciate the ease of use of SaaS Alerts, enjoying its intuitive interface and straightforward navigation.
  • Users appreciate the real-time alert notifications from SaaS Alerts, enhancing their confidence in monitoring user activity.
  • Users value the ease of setup and regular innovative features, along with a supportive community for sharing information.
  • Users value the effective reporting of SaaS Alerts, enabling them to identify security gaps efficiently.
Cons
  • Users find the ineffective alerts to be time-consuming, leading to unnecessary investigations into routine activities.
  • Users find the inefficient alert system complicates their workflow, requiring extra time to verify actionable issues.
  • Users experience false positives initially, but report that the system improves with time and learning filters.
  • Users find the inadequate filtering capabilities of SaaS Alerts lead to unnecessary time spent on non-actionable alerts.
  • Users find the inefficient filtering of alerts frustrating, wasting time on identifying real issues versus routine activity.

What Are Recent G2 Reviews of SaaS Alerts?

Netwrix PingCastle

Netwrix PingCastle runs an Entra ID & Active Directory security assessment so you can find vulnerabilities, reduce attack surface, and secure your environment - fast, with clear insights and remediation guidance. Netwrix PingCastle enhances identity security by scanning for misconfigurations, outdated settings, and other risk indicators, mapping results to industry frameworks like MITRE ATT&CK and ANSSI so you can prioritize remediation and align your security posture with recognized standards. The tool is trusted by 45,000+ domains in 193 countries and can detect 270+ hybrid identity risks to safeguard environments with proactive, validated insights into evolving threats. Its core capabilities include: Automated vulnerability scanning across AD and Entra ID that generates detailed risk reports exposing weaknesses and breach points. Risk scoring and prioritization that gives a clear risk score to help focus efforts on the most critical security issues before they escalate. Risk remediation and tracking that closes security gaps with guidance to strengthen identity security posture. Multi-domain reporting consolidates risk visibility across multiple domains instead of reviewing them one by one. Scheduled scanning runs scheduled AD risk assessment scans in the Enterprise version to track risk trends and improve security. The product is offered in two tiers: the free community edition gives fast visibility with manual scans, while Enterprise adds scheduled assessments, risk remediation tracking, multi-domain coverage and more. Additionally, users can use PingCastle as part of the Netwrix 1Secure SaaS platform for simplified deployment and centralized risk management.

Average Rating: 3.8/5.0

Total Reviews: 11

How Do G2 Users Rate Netwrix PingCastle?

  • Quality of Support: 6.4/10 (Category avg: 9.1/10)
  • Ease of Use: 8.5/10 (Category avg: 9.0/10)

Who Is the Company Behind Netwrix PingCastle?

  • Seller: Netwrix
  • Company Website:
  • HQ Location: Irvine, CA
  • Twitter: @Netwrix
    2,912 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    757 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 58% Small, 33% Medium

What Are Recent G2 Reviews of Netwrix PingCastle?

Heimdal

Accommodate all your cybersecurity needs under one convenient roof with the Heimdal® Unified Cybersecurity Platform. Our cybersecurity solutions can be used as standalone products or integrated into one another as part of a cohesive and unified XDR platform. Whether you’re a reseller, distributor, MSSP, or an organization committed to bolstering your online security, we provide an array of cutting-edge products to make your mission smoother. Heimdal® is a fast-growing cybersecurity company focused on continuous technological innovation. Since its establishment in 2014 in Copenhagen, based on the winning idea of CTF World Champions, Heimdal has experienced spectacular growth by proactively building products that anticipate threatscape trends. The company offers a multi-layeredand unified security suite that combines threat prevention, patch and asset management, endpoint rights management, antivirus and mail security which together secure customers against cyberattacks and keep critical information and intellectual property safe. Heimdal has been recognized as a thought leader in the industry and has won multiple international awards both for its solutions and for its educational content creation. The Heimdal line of products currently consists of 10 products and 2 services. The former category encompasses DNS Security for Endpoints & Network, Patch & Asset Management, Privileged Access Management, Application Control, Next-Gen Endpoint Antivirus, Ransomware Encryption Protection, Email Security, Email Fraud Prevention, and Remote Desktop. The latter is represented by Endpoint Detection & Response, as well as eXtended Detection & Response, or EDR and XDR for short. Currently, Heimdal’s cybersecurity solutions are deployed in more than 45 countries and supported regionally from offices in 15+ countries, by 175+ highly qualified specialists. Heimdal is ISAE 3000 certified and secures more than 2 million endpoints for over 10,000 companies. The company supports its partners without concessions on the basis of predictability and scalability. The common goal is to create a sustainable ecosystem and a strategic partnership.

Average Rating: 4.4/5.0

Total Reviews: 80

How Do G2 Users Rate Heimdal?

  • Quality of Support: 9.5/10 (Category avg: 9.1/10)
  • Ease of Use: 8.6/10 (Category avg: 9.0/10)

Who Is the Company Behind Heimdal?

  • Seller: Heimdal®
  • Company Website:
  • Year Founded: 2014
  • HQ Location: Copenhagen, Denmark
  • Twitter: @HeimdalSecurity
    5,086 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    284 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer & Network Security, Construction
  • Company Size: 57% Medium, 30% Small

What Do G2 Reviewers Say About Heimdal?

AI-generated summary from verified user reviews

Pros
  • Users praise the easy setup of Heimdal, appreciating its straightforward installation and quick integration with their systems.
  • Users find that file transfer with Heimdal is seamless and reliable, enhancing overall productivity and ease of use.
  • Users commend Heimdal for its exceptional issue resolution support, providing quick and professional solutions exceeding expectations.
  • Users value the reliable patch management of Heimdal, delivering consistent performance without issues during monthly updates.
  • Users value the reliable security and user-friendly interface of Heimdal, enhancing overall satisfaction and support.
Cons
  • Users find the complex interface of Heimdal difficult to navigate, complicating their overall experience and functionality.
  • Users find the admin portal complex and illogical, making navigation frustrating and cumbersome for essential tasks.
  • Users find the customer support lacking during initial setup, which causes issues with product deployment and upgrades.
  • Users find the poor interface design of Heimdal difficult to navigate, complicating essential tasks and access.
  • Users experience restart issues with Heimdal, feeling unprotected after scans until the software is rebooted.

What Are Recent G2 Reviews of Heimdal?

Sonrai Security

Sonrai Security is a leading cloud privileged access management solutions provider. With a mission to empower enterprises of all sizes to innovate securely and confidently, Sonrai Security delivers identity, access, and privilege security for companies running on AWS, Azure, and Google Cloud platforms. The company is renowned for pioneering the Cloud Permissions Firewall, enabling one-click least privilege while supporting developer access needs without disruption. Trusted by Cloud Operations, Development, and Security Teams at leading companies across various industries, Sonrai Security is committed to driving innovation and excellence in cloud security. Sonrai’s Cloud Permissions Firewall, the leading cloud PAM solution, gets cloud access under control, slashes the privileged attack surface, and automates least privilege all without impeding DevOps. The Cloud Permissions Firewall uses privileged permission intelligence and usage monitoring to determine who needs what permissions in your cloud. Then, with one-click, it eliminates all unused sensitive privileges across your entire multi-cloud estate. Just-in-time access and exceptions are granted to roles on the fly as new needs come up so development goes uninterrupted. SecOps teams spend 97% less time achieving least privilege and slash the attack surface by 92%.

Average Rating: 4.5/5.0

Total Reviews: 26

How Do G2 Users Rate Sonrai Security?

  • Quality of Support: 9.1/10 (Category avg: 9.1/10)
  • Ease of Use: 8.6/10 (Category avg: 9.0/10)

Who Is the Company Behind Sonrai Security?

Who Uses This Product?

  • Top Industries: Information Technology and Services
  • Company Size: 42% Medium, 38% Large

What Do G2 Reviewers Say About Sonrai Security?

AI-generated summary from verified user reviews

Pros
  • Users value the enhanced visibility and control Sonrai Security offers for effective cloud security management.
  • Users value the strong security features of Sonrai Security, enabling effective control over permissions and risk management.
  • Users commend Sonrai Security for its effective cloud management, streamlining permission controls and enhancing security effortlessly.
  • Users highlight the ease of use of Sonrai Security, appreciating its straightforward deployment and seamless integration.
  • Users value the cloud security solution of Sonrai Security for simplifying access management and minimizing permissions.
Cons
  • Users find Sonrai Security to have a complexity that requires significant tuning and deep learning for effective use.
  • Users find the pricing to be high, especially impacting smaller teams and businesses seeking security solutions.
  • Users find feature limitations of Sonrai Security frustrating, citing complexity and the need for manual intervention.
  • Users feel that improvement is needed in Sonrai Security's complexity, feature limitations, and dashboard customization options.
  • Users feel the limited customization options hinder their experience and functionality in Sonrai Security.

What Are Recent G2 Reviews of Sonrai Security?

Oort Identity Security Platform

Oort is an identity threat detection and response platform for enterprise security. Oort enables IAM, SOC, and GRC professionals to find users quickly and easily, to conduct deep and thorough identity investigations, and to collect evidence for audit. Oort's Identity Security Checks automatically detect identity threats and vulnerabilities in SaaS identity providers (IdP) and human resources systems (HRIS). Seamless workflow integrations with Slack, Microsoft Teams, and ServiceNow enable thoughtful and immediate remediation that speeds up teams and adds simplicity to the chaotic mess of identity security.

Average Rating: 4.8/5.0

Total Reviews: 6

How Do G2 Users Rate Oort Identity Security Platform?

  • Quality of Support: 10.0/10 (Category avg: 9.1/10)
  • Ease of Use: 9.3/10 (Category avg: 9.0/10)

Who Is the Company Behind Oort Identity Security Platform?

  • Seller: Oort
  • Year Founded: 2019
  • HQ Location: Boston, US
  • LinkedIn® Page: www.linkedin.com
    11 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 67% Medium, 33% Large

What Are Recent G2 Reviews of Oort Identity Security Platform?

Unosecur

Attackers no longer break in. They log in. Around 80 percent of security incidents now involve a compromised identity, and identities with production access extend far beyond the payroll. Non-human identities outnumber people by as much as 144 to 1, and AI agents are arriving faster than most teams can keep track of. The tools already in place see a slice of this, on a delay. Connect your identity providers, cloud platforms, and applications to Unosecur, and you get the Unified Identity Fabric, a live model that correlates every AI agent, non-human identity, and human identity into one view with its permissions, activity, and access paths. Agentless, read-only, connected in fifteen minutes. Deployed in the cloud or self-hosted for regulated environments. From there, Unosecur surfaces the risks that matter and ranks them by blast radius: Shadow Admins, toxic privilege combinations, identity drift, and partially offboarded accounts. It enforces activity-based least privilege, cutting each identity down to the access it uses. For agents, Unosecur learns how each behaves and governs access to MCP servers via the MCP Auth Gateway, maintaining a tamper-proof record of every action. ARK AI proposes each fix and acts only once a human approves. See it in your own environment with the Identity Exposure Assessment, a risk assessment we normally charge for, offered at no cost. One Platform. Every Identity. No Blind Spots.

Average Rating: 4.8/5.0

Total Reviews: 7

How Do G2 Users Rate Unosecur?

  • Quality of Support: 10.0/10 (Category avg: 9.1/10)
  • Ease of Use: 9.3/10 (Category avg: 9.0/10)

Who Is the Company Behind Unosecur?

  • Seller: Unosecur
  • Year Founded: 2021
  • HQ Location: Berlin, DE
  • LinkedIn® Page: www.linkedin.com
    58 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 29% Large, 29% Medium

What Are Recent G2 Reviews of Unosecur?

Netwrix Threat Manager

Netwrix Threat Manager detects and responds in real time to advanced cyberattacks, adding a layer of security around identities (AD and Entra ID) and sensitive data. It uses unsupervised machine learning to evaluate, correlate, and baseline user and entity behaviour, cutting through noise to surface meaningful alerts rather than excessive, undifferentiated warnings. The product ships with preconfigured threat models covering DCSync, Golden Ticket, Kerberoasing ransomware, abnormal behaviour and more. Response Playbooks automate multi-stage response actions across connected tools, and SIEM integration extends existing security workflows. Netwrix Threat Manager helps security teams move faster from detection to resolution: user behavior profiles make it easy to spot deviations from normal activity. When something looks off, built-in investigations stitch related events into a single timeline, giving teams a clear, savable report instead of a pile of disconnected logs. And because Netwrix Threat Manager plugs directly into ServiceNow, Slack, Microsoft Teams, and SIEM platforms teams can contain threats and keep incident response in the tools they already work in every day.

Average Rating: 4.4/5.0

Total Reviews: 4

How Do G2 Users Rate Netwrix Threat Manager?

  • Quality of Support: 8.8/10 (Category avg: 9.1/10)
  • Ease of Use: 6.3/10 (Category avg: 9.0/10)

Who Is the Company Behind Netwrix Threat Manager?

  • Seller: Netwrix
  • HQ Location: Irvine, CA
  • Twitter: @Netwrix
    2,912 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    757 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Medium, 25% Large

What Are Recent G2 Reviews of Netwrix Threat Manager?

Forestall ISPM

Forestall is an agentless Identity Security Posture Management (ISPM) and Identity Visibility and Intelligence Platform (IVIP). It helps security, IAM, and IT teams discover identity exposures, map privilege escalation and attack paths, and reduce identity risk across on-prem and cloud: Active Directory, Microsoft Entra ID, Microsoft 365, AWS, Azure, and Google Cloud. Coverage spans human identities, service accounts, non-human identities (NHI), and AI agent identities. Deployment is read-only and takes about an hour, with no admin privileges and no endpoint agents. Teams get prioritized, fix-first remediation guidance and audit-ready compliance reporting aligned to ISO 27001, NIST, CIS, STIG, PCI DSS, SAMA, NCA ECC, and UAE IAR.

Average Rating: 5.0/5.0

Total Reviews: 1

Who Is the Company Behind Forestall ISPM?

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of Forestall ISPM?

Resmo

All in one platform for SaaS app and access management for modern IT teams. Streamline app discovery, user offboarding, access reviews, and cost tracking.

Average Rating: 5.0/5.0

Total Reviews: 9

How Do G2 Users Rate Resmo?

  • Quality of Support: 10.0/10 (Category avg: 9.1/10)
  • Ease of Use: 9.7/10 (Category avg: 9.0/10)

Who Is the Company Behind Resmo?

  • Seller: Resmo
  • Year Founded: 2022
  • HQ Location: Dover, US
  • Twitter: @resmoio
    1,204 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    2 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 60% Small, 30% Medium

What Are Recent G2 Reviews of Resmo?

What Are G2 Users Discussing About Resmo?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 3, 2024