# Best Security Orchestration, Automation, and Response (SOAR) Software - Page 5

## How Many Security Orchestration, Automation, and Response (SOAR) Software Products Does G2 Track?

**Total Products under this Category:** 81

### Category Stats (Jul 2026)

- **Average Rating:** 4.53/5 (↑0.02 vs Jun 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Singularity AI SIEM (+23.8%) - Among all products in this category, Singularity AI SIEM recorded the largest rating increase compared to last month

_Last updated: July 31, 2026_

## How Does G2 Rank Security Orchestration, Automation, and Response (SOAR) Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 3,500+ Authentic Reviews
- 81+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Security Orchestration, Automation, and Response (SOAR) Software
 ![G2 Grid® for Security Orchestration, Automation, and Response (SOAR) Software plotting products by satisfaction and market presence](https://www.g2.com/categories/security-orchestration-automation-and-response-soar/grids.png?focus%5B%5D=98376&focus%5B%5D=120746&focus%5B%5D=139264&focus%5B%5D=164907&focus%5B%5D=30500&focus%5B%5D=55254&focus%5B%5D=122123&focus%5B%5D=58203)

Highlighted products: Tines, n8n, KnowBe4 PhishER/PhishER Plus, Torq AI SOC Platform, Google Security Operations, ServiceNow Security Operations, Microsoft Sentinel, and Check Point Infinity Platform.

Underlying data: [Grid® JSON](https://www.g2.com/categories/security-orchestration-automation-and-response-soar/grids.json?focus%5B%5D=tines&focus%5B%5D=n8n&focus%5B%5D=knowbe4-phisher-phisher-plus&focus%5B%5D=torq-ai-soc-platform&focus%5B%5D=google-security-operations&focus%5B%5D=servicenow-security-operations&focus%5B%5D=microsoft-sentinel&focus%5B%5D=check-point-infinity-platform)

**Sponsored**

### Google Security Operations

Google Security Operations offers a unified experience across SIEM, SOAR, and threat intelligence to drive better detection, investigation, and response. Collect security telemetry data, apply threat intel to identify high priority threats, drive response with playbook automation, case management, and collaboration. It also provides Gemini-native agentic defense to help autonomously handle workflows like alert triage, threat hunting, and detection engineering. Google Security Operations also supports AI Threat Defense to monitor, detect, and respond to threats from code you do not own or cannot patch.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=2178&secure%5Bchosen_at%5D=2026-07-31T16%3A30%3A14Z&secure%5Bdisplayable_resource_id%5D=2178&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=page_category&secure%5Bplacement_resource_ids%5D%5B%5D=2178&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=30500&secure%5Bresource_id%5D=2178&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fsecurity-orchestration-automation-and-response-soar%3Fpage%3D5&secure%5Btoken%5D=90608264540ca6b5cf5f0efc32a367373ed931a3bcad13aebdc2facc841b8fa6&secure%5Burl%5D=https%3A%2F%2Fcloud.google.com%2Fsecurity%2Fproducts%2Fsecurity-operations%3Futm_source%3DG2%26utm_medium%3Ddisplay%26utm_campaign%3DCloud-SS-DR-GCP-1713658-GCP-DR-NA-US-en-G2-Display-Banner-All-%2525epid%21-%2525ecid%21-securityops%26utm_content%3D%257Bdevice%257D-%257Badgroupid%257D-%257Bnetwork%257D-%257Btargetid%257D-%257Bloc_physical_ms%257D-%257Bcampaignid%257D&secure%5Burl_type%5D=custom_url)

### [CyberSentien](https://www.g2.com/products/cybersentien/reviews)

CyberSentien is an Australian, sovereign-hosted GRC assurance platform. It assesses your evidence against Essential Eight, the ISM at IRAP depth, APRA CPS 230/234 and SMB1001 — and maps it to ISO 27001 / SOC 2 readiness. It never marks a control compliant without timestamped, SHA-256-lineaged evidence: no false greens.

#### Who Is the Company Behind CyberSentien?

- **Seller:** [CyberSentien](https://www.g2.com/sellers/cybersentien)
- **Year Founded:** 2025
- **HQ Location:** N/A
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=677d76e1e21dbe753911655fff8faaf199aef2cf42f3a2dfe23de1b02f3ecaee&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcybersentien&secure%5Burl_type%5D=linkedin_company_website)  
1 employees on LinkedIn®

### [DoControl](https://www.g2.com/products/docontrol/reviews)

DoControl provides organizations with the automated, self-service tools they require for Software as a Service (SaaS) application data access monitoring, orchestration, and remediation. The solution uncovers all SaaS users, 3rd party collaborators, assets/metadata, OAuth apps, groups, and activity events. From there, security teams can create granular data access control policies to reduce the risk of data overexposure and exfiltration. We take a unique, customer-focused approach to the challenge of labor-intensive security risk management and data loss prevention (DLP) in SaaS. DoControl has no agents, no inline redirections, and no slow response times as commonly found in Cloud Access Security Broker (CASB) solutions.

**Average Rating:** 4.5/5.0

**Total Reviews:** 3

#### How Do G2 Users Rate DoControl?

- **Quality of Support:** 8.9/10 (Category avg: 9.0/10)

#### Who Is the Company Behind DoControl?

- **Seller:** [DoControl](https://www.g2.com/sellers/docontrol)
- **Year Founded:** 2020
- **HQ Location:** New York, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=752fa6ac19c58744edc5b7513de05e74f9aaea9236173058bacebf2458f9531f&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fdo-control%2F&secure%5Burl_type%5D=linkedin_company_website)  
55 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 67% Medium, 33% Large

#### What Do G2 Reviewers Say About DoControl?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **clear visibility** into SaaS data, enhancing awareness of user activities and potential security flaws.
- Users appreciate the **clear visibility and continuous monitoring** of DoControl, aiding in the discovery of security flaws.
- Users value the **real-time monitoring** of DoControl, enhancing visibility into SaaS data and user activities.
- Users value the **security monitoring capabilities** of DoControl, enhancing awareness of data environment and user activities.
- Users value the **robust access control** of DoControl, enhancing security by monitoring cloud app users and activities.

##### Cons

- Users find the **complexity of policy management** in DoControl challenging, requiring significant time and effort to navigate.
- Users find the **difficult learning** curve for SaaS security onboarding and policy management challenging and confusing.
- Users find the **policy management interface confusing** , especially when dealing with user access and group interactions.
- Users find **complex configurations** time-consuming to create, limiting their ability to efficiently customize the product.
- Users note that **configuration issues** arise as complex setups can be time-consuming and options are limited.

#### What Are Recent G2 Reviews of DoControl?

**["Ensuring availability of SaaS application data"](https://www.g2.com/survey_responses/docontrol-review-9966343)**

**Rating:** 4.0/5.0 stars

_— Pietro G._

[Read full review](https://www.g2.com/survey_responses/docontrol-review-9966343)

**["Excellent SaaS Security Platform."](https://www.g2.com/survey_responses/docontrol-review-12211782)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/docontrol-review-12211782)

### [HyprEdge](https://www.g2.com/products/hypredge/reviews)

HyprEdge is a first of its kind No Code automation platform to modernize cybersecurity automation by introducing multiple innovative and industry first capabilities that bring cohesive collaboration across tools, teams & industry. - AI powered dynamic workflows with federated Search & Actions that make security responses complete, comprehensive, and immediate. - No-code Platform to build & orchestrate workflows across apps with intelligent & low latency data operations. - Vendor Neutral spec-based implementation following OCSF model to simplify building and maintaining workflows and enabling sharing and adoption across industry. - CISO / Security Goals driven automation to achieve org alignment and streamline operations across teams with incremental showcase of progress and results. - Enterprise & MSP features & unique capabilities with one-console that operates at the highest level or with full autonomy by sub-org units backed by granular RBAC. - Solves multiple unmet use case scenarios such as contextual security operations, manager of manager for multi-instance appliances/apps, closed loop remediation and many more.

#### Who Is the Company Behind HyprEdge?

- **Seller:** [HyprEdge](https://www.g2.com/sellers/hypredge)
- **Year Founded:** 2023
- **HQ Location:** Portland, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=6bdcbc486a4f3f8bbd78b99075d9ab8839b6ce277e559a54d78b77a54df6c266&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fhypredge%2F&secure%5Burl_type%5D=linkedin_company_website)  
6 employees on LinkedIn®

### [Kontext](https://www.g2.com/products/kontext-kontext/reviews)

Kontext provides runtime authorization for AI agents, ensuring every agent action is scoped to what the underlying user and application are allowed to do. Same agent, different callers, different permissions - enforced at runtime instead of configured statically upfront.

#### Who Is the Company Behind Kontext?

- **Seller:** [Kontext](https://www.g2.com/sellers/kontext-4f00d1cc-c4c2-4373-be37-936551756ff1)
- **HQ Location:** N/A
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=127de09e07fe07e415c320e2174d70fbd4784a9217bb1f8a1d0470a2df07ba99&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fkontextdev%2F&secure%5Burl_type%5D=linkedin_company_website)  
3 employees on LinkedIn®

### [LTS Secure SOAR](https://www.g2.com/products/lts-secure-soar/reviews)

Streamline your approach to security operations with the industry’s most comprehensive cyber security solution bringing together People, Process and Technology.

#### Who Is the Company Behind LTS Secure SOAR?

- **Seller:** [LTS Secure](https://www.g2.com/sellers/lts-secure)
- **Year Founded:** 2012
- **HQ Location:** Pune, IN
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9d97cba5b994241dee19a963817bd02dd5458cb88eff4776ee33666fb09691dd&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fltssecure-adaptive-soc-platform-for-cyber-security&secure%5Burl_type%5D=linkedin_company_website)  
10 employees on LinkedIn®

### [Mindflow](https://www.g2.com/products/mindflow/reviews)

Mindflow&nbsp;is the first AI-driven platform for enterprise hyperautomation, that makes automation achievable in the whole company to dramatically increase efficiency and consistency of repetitive processes.

#### Who Is the Company Behind Mindflow?

- **Seller:** [Mindflow](https://www.g2.com/sellers/mindflow)
- **HQ Location:** Paris, FR
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=7eb8d21b9516958bd271a07efc59f41a80129a1e139e1413c0d09ddb9e8aafb7&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fmindflow%2F&secure%5Burl_type%5D=linkedin_company_website)  
47 employees on LinkedIn®

### [Revelstoke](https://www.g2.com/products/revelstoke/reviews)

Revelstoke radically simplifies security orchestration, automation and response (SOAR), so security teams can work faster, smarter and more effectively. With a low-code, drag-and-drop interface, dozens of built-in integrations, incredible visibility into performance metrics, and robust reporting capabilities, Revelstoke empowers analysts to stop threats fast, and gives security leaders a clear picture on the business impact of security operations.

#### Who Is the Company Behind Revelstoke?

- **Seller:** [Revelstoke](https://www.g2.com/sellers/revelstoke)
- **HQ Location:** Eden Prairie, Minnesota, United States
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=998f7bed8b8fea98c3cc43c96272cbdc6a6b6326f546ca654578ae5f19688915&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Farctic-wolf-networks&secure%5Burl_type%5D=linkedin_company_website)  
3,131 employees on LinkedIn®

### [SARA Agentic AI](https://www.g2.com/products/sara-agentic-ai/reviews)

Agentic AI video monitoring for RAD devices and third-party camera systems. Verify incidents, trigger deterrence, and orchestrate response from detection to resolution. ⤷ 2026 SIA New Product Showcase Winner – Commercial Monitoring Solutions: Inside Immix ⤷ 2025 SIA New Product Showcase Winner – Threat Detection and Response ⤷ 2025 SIA Judges’ Choice Winner – SARA (Speaking Autonomous Responsive Agent)

#### Who Is the Company Behind SARA Agentic AI?

- **Seller:** [RAD Security](https://www.g2.com/sellers/rad-security)
- **Year Founded:** 2016
- **HQ Location:** Ferndale, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=cab1afe3d0049698a3bc51e65716fa02fad6ff3cb99e6bf3e397b2806a83da81&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Frobotic-assistance-devices-rad&secure%5Burl_type%5D=linkedin_company_website)  
111 employees on LinkedIn®

### [SecPortal](https://www.g2.com/products/secportal/reviews)

SecPortal is an AI-native security orchestration platform that automates vulnerability remediation, incident response, penetration testing workflows, and compliance management. It uses AI to analyze security findings, generate remediation actions, and orchestrate workflows from detection to resolution. Security teams use SecPortal to centralize operations, automate remediation, and accelerate security workflows with intelligent automation.

#### Who Is the Company Behind SecPortal?

- **Seller:** [Xygen](https://www.g2.com/sellers/xygen)
- **HQ Location:** N/A
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=7886df2ed926834e5eb248c77dcfa8e5c815d3ab1f0fe3132ced0dba45868834&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2FNo-Linkedin-Presence-Added-Intentionally-By-DataOps&secure%5Burl_type%5D=linkedin_company_website)  
1 employees on LinkedIn®

### [SECURAA](https://www.g2.com/es/products/securaa/reviews)

Securaa es una Plataforma Integral de Automatización de Seguridad Sin Código que combina inteligencia, gestión de activos basada en riesgos, información sobre vulnerabilidades, automatización y respuesta a incidentes en una sola plataforma, permitiendo a los SOC reducir significativamente el tiempo de respuesta en ciberseguridad y aumentar el rendimiento de manera exponencial. Securaa proporciona una vista única para recibir alertas de diversas fuentes como SIEM, EPP, NDR, EDR, UBA, CSP, así como problemas de configuración y vulnerabilidades. Securaa funciona como la tecnología principal para los equipos SOC para automatizar las actividades diarias de investigación, clasificación, enriquecimiento y respuesta.

#### Who Is the Company Behind SECURAA?

- **Vendedor:** [Securaa](https://www.g2.com/es/sellers/securaa)
- **Ubicación de la sede:** Dallas, US
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=a7a363e514070e9f7fbf34c669787fa1a0dae47662482fe91b2dd832c9e51b75&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fsecuraa-io%2F&secure%5Burl_type%5D=linkedin_company_website)  
54 empleados en LinkedIn®

### [Security Flow](https://www.g2.com/products/security-flow/reviews)

Security Flow is a hybrid Security Orchestration, Automation, and Response solution designed to empower security analysts by automating time-consuming tasks without the need for coding expertise. By integrating diverse security and IT tools, Security Flow enhances operational efficiency, reduces alert fatigue, and enables teams to focus on high-value activities. Key Features and Functionality: - Visual Interface: Offers an intuitive, flow-based environment that allows users to create and manage automation workflows seamlessly. - Extensive Plugin Library: Provides a wide range of plugins to integrate with various security and IT products, facilitating comprehensive automation capabilities. - Broadcast Event Mechanism: Utilizes broadcast actions to decouple workflows from plugins, enabling flexible and efficient event handling across multiple scenarios. - Extensibility: Allows power users to execute Python and JavaScript scripts, offering the flexibility to extend functionality and integrate with custom or less common services. - Professional Services Support: Includes professional service hours with licenses to assist in implementation and customization, ensuring optimal value from existing and future software installations. Primary Value and Problem Solved: Security Flow addresses the challenges of alert fatigue and staffing shortages in security operations by automating routine and complex incident management tasks. This automation decreases the window of vulnerability, ensures repeatable responses, and maintains comprehensive action tracking. By leveraging Security Flow, organizations can fully utilize their existing security and IT portfolios, achieving faster return on investment and enhanced overall performance.

#### Who Is the Company Behind Security Flow?

- **Seller:** [Nevelex Labs](https://www.g2.com/sellers/nevelex-labs)
- **HQ Location:** N/A
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=7886df2ed926834e5eb248c77dcfa8e5c815d3ab1f0fe3132ced0dba45868834&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2FNo-Linkedin-Presence-Added-Intentionally-By-DataOps&secure%5Burl_type%5D=linkedin_company_website)  
1 employees on LinkedIn®

### [Sekoia](https://www.g2.com/products/sekoia/reviews)

SEKOIA provides Consulting, Expertise and Innovation in cybersecurity to respond to the challenges of a VUCA world.

#### Who Is the Company Behind Sekoia?

- **Seller:** [SEKOIA](https://www.g2.com/sellers/sekoia)
- **HQ Location:** Paris, France
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=7886df2ed926834e5eb248c77dcfa8e5c815d3ab1f0fe3132ced0dba45868834&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2FNo-Linkedin-Presence-Added-Intentionally-By-DataOps&secure%5Burl_type%5D=linkedin_company_website)  
37 employees on LinkedIn®

### [SentinelOne Purple AI](https://www.g2.com/products/sentinelone-purple-ai/reviews)

SentinelOne Purple AI is an advanced AI cybersecurity analyst designed to enhance security operations by automating and accelerating threat detection, investigation, and response. By integrating generative AI, Purple AI empowers security teams to manage complex threats more efficiently, reducing response times and improving overall security posture. Key Features and Functionality: - Automated Threat Detection: Utilizes AI-driven analysis to identify and assess potential security threats in real-time. - Accelerated Incident Investigation: Streamlines the investigation process by providing comprehensive insights and context for detected threats. - Enhanced Response Capabilities: Facilitates rapid and informed decision-making to mitigate risks effectively. - Integration with SentinelOne Platform: Seamlessly works within the SentinelOne ecosystem, ensuring cohesive security management. Primary Value and User Benefits: Purple AI addresses the challenges of modern cybersecurity by automating routine tasks, allowing security teams to focus on strategic initiatives. It reduces the time and effort required for threat detection and response, thereby minimizing potential damage from cyber incidents. By leveraging generative AI, Purple AI enhances the efficiency and effectiveness of security operations, providing organizations with a robust defense against evolving cyber threats.

**Average Rating:** 4.8/5.0

**Total Reviews:** 2

#### How Do G2 Users Rate SentinelOne Purple AI?

- **Quality of Support:** 9.2/10 (Category avg: 9.0/10)

#### Who Is the Company Behind SentinelOne Purple AI?

- **Seller:** [SentinelOne](https://www.g2.com/sellers/sentinelone)
- **Year Founded:** 2013
- **HQ Location:** Mountain View, CA
- **Twitter:** @SentinelOne  
57,863 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=74020d53a476ae0e483a0d2613eaf520ba6aa350af89839fdb2bae462d053ed2&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F2886771%2F&secure%5Burl_type%5D=linkedin_company_website)  
3,174 employees on LinkedIn®
- **Ownership:** NASDAQ: S

#### Who Uses This Product?

- **Company Size:** 50% Large, 50% Small

#### What Are Recent G2 Reviews of SentinelOne Purple AI?

**["SentinelOne Purple AI Makes Security Investigations Faster and Clearer"](https://www.g2.com/survey_responses/sentinelone-purple-ai-review-12533336)**

**Rating:** 4.5/5.0 stars

_— Verified User in Information Technology and Services_

[Read full review](https://www.g2.com/survey_responses/sentinelone-purple-ai-review-12533336)

**["Super-Fast Threat Detection with Actionable Alerts and Insights"](https://www.g2.com/survey_responses/sentinelone-purple-ai-review-12662364)**

**Rating:** 5.0/5.0 stars

_— Verified User in Legal Services_

[Read full review](https://www.g2.com/survey_responses/sentinelone-purple-ai-review-12662364)

### [Sequretek MDR](https://www.g2.com/products/sequretek-mdr/reviews)

Defines organizational security posture. Determines type, level, volume of sources. Collects, collates, correlates and analyzes telemetry data. Overlays cyber threat intelligence. Derives actionable cyber security intelligence. Cyber security incident response & remediation.

**Average Rating:** 4.5/5.0

**Total Reviews:** 1

#### How Do G2 Users Rate Sequretek MDR?

- **Quality of Support:** 8.3/10 (Category avg: 9.0/10)
- **Ease of Admin:** 8.3/10 (Category avg: 8.6/10)

#### Who Is the Company Behind Sequretek MDR?

- **Seller:** [SEQURETEK IT SOLUTIONS PVT. LTD](https://www.g2.com/sellers/sequretek-it-solutions-pvt-ltd-36e9c6dc-f236-43d5-8b4c-6e23743f5e89)
- **Year Founded:** 2013
- **HQ Location:** Woodbridge, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=8a680ed80b119a2d55e4cbfc2d6ace7eeb52c06adcdeff7e1fef1e17efcab923&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F3769944&secure%5Burl_type%5D=linkedin_company_website)  
391 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Medium

#### What Are Recent G2 Reviews of Sequretek MDR?

**["Essential EDR Tool To Secure Your Valuable Assets"](https://www.g2.com/survey_responses/sequretek-mdr-review-7260789)**

**Rating:** 4.5/5.0 stars

_— Wai Yan P._

[Read full review](https://www.g2.com/survey_responses/sequretek-mdr-review-7260789)

### [Shield Sphere](https://www.g2.com/products/shield-sphere/reviews)

Shield Sphere by Raptas is an advanced cybersecurity platform that unifies SIEM, SOAR, IOC, threat intelligence, and compliance automation into a single intelligent command center. Designed to replace 5–15 fragmented tools, it delivers real-time threat detection, automated incident response, and continuous compliance monitoring. With role-based dashboards for CXOs, CISOs, and SOC teams, Shield Sphere provides clarity across operations, risk, and governance. Features include AI-powered query builder, dark web monitoring, multi-framework compliance automation, and board-ready reporting. Deployed in hours, Shield Sphere reduces costs by 50% while enhancing visibility, resilience, and executive confidence in enterprise-wide security operations.

#### Who Is the Company Behind Shield Sphere?

- **Seller:** [Raptas Resolute](https://www.g2.com/sellers/raptas-resolute)
- **Year Founded:** 2017
- **HQ Location:** New York, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=1c9c292c2765510534f1a8b93b4a5cb3fd05614017ca3e4c441459bfb19c2807&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fraptasresoluteltd%2F&secure%5Burl_type%5D=linkedin_company_website)  
7 employees on LinkedIn®

- [&lsaquo; Prev‹ Prev](/categories/security-orchestration-automation-and-response-soar?order=g2_score&page=4#product-list)
- [1](/categories/security-orchestration-automation-and-response-soar?order=g2_score#product-list)
- [2](/categories/security-orchestration-automation-and-response-soar?order=g2_score&page=2#product-list)
- [3](/categories/security-orchestration-automation-and-response-soar?order=g2_score&page=3#product-list)
- [4](/categories/security-orchestration-automation-and-response-soar?order=g2_score&page=4#product-list)
- 5
- [6](/categories/security-orchestration-automation-and-response-soar?order=g2_score&page=6#product-list)
- [Next &rsaquo;Next ›](/categories/security-orchestration-automation-and-response-soar?order=g2_score&page=6#product-list)

Spotlight Categories

[Enterprise Risk Management (ERM) Software](https://www.g2.com/categories/enterprise-risk-management-erm)

[Project Management Software](https://www.g2.com/categories/project-management)

[Email Marketing Software](https://www.g2.com/categories/email-marketing)

[Media Monitoring Software](https://www.g2.com/categories/media-monitoring)

[Product Lifecycle Management (PLM) Software](https://www.g2.com/categories/product-lifecycle-management-plm)

Similar Categories

- [Incident Response](/categories/incident-response)
- [Security Information and Event Management (SIEM)](/categories/security-information-and-event-management-siem)
- [Threat Intelligence](/categories/threat-intelligence)
- [AI SOC Agents](/categories/ai-soc-agents)
- [Breach and Attack Simulation (BAS)](/categories/breach-and-attack-simulation-bas)

- [Deception Technology](/categories/deception-technology)
- [Digital Forensics](/categories/digital-forensics)
- [Digital Risk Protection (DRP) Platforms](/categories/digital-risk-protection-drp-platforms)
- [IoT Security Solutions](/categories/iot-security-solutions)
- [Malware Analysis Tools](/categories/malware-analysis-tools)

- [Managed Detection and Response (MDR)](/categories/managed-detection-and-response-mdr)
- [OT Secure Remote Access](/categories/ot-secure-remote-access)
- [OT Security Tools](/categories/ot-security-tools)
- [Red Teaming Tools](/categories/red-teaming-tools)

[Browse Security Orchestration, Automation, and Response (SOAR) Themes](/categories/security-orchestration-automation-and-response-soar/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated October 3, 2024

Security orchestration, automation, and response (SOAR) software products are tools used to help integrate security technologies and automate incident-related tasks. These tools integrate with a company’s existing security solutions to help users build and automate workflows, simplifying the incident response process and reducing the amount of human intervention necessary to handle security incidents. Companies use these tools to create a centralized system complete with visibility into a company’s security software and operational processes. These tools also reduce the time it takes to respond to incidents, as well as the potential for human error in remediating security threats and vulnerabilities.

SOAR platforms combine aspects of [vulnerability management](https://www.g2.com/categories/vulnerability-management), [incident response](https://www.g2.com/categories/incident-response), and [security information and event management (SIEM)](https://www.g2.com/categories/security-information-and-event-management-siem) solutions. SOAR products are designed to provide some of each tool’s respective functionality or integrate with third-party tools. Once integrated, processes can be designed to identify incidents and automate remediation tasks.

To qualify for inclusion in the Security Orchestration, Automation, and Response (SOAR) category, a product must:

- Integrate security information and incident response tools
- Allow security professionals to build response workflows
- Automate incident management and response tasks within workflows
- Provide formalized incident, workflow, and performance reports

Show More

* * *

## How Do You Choose the Right Security Orchestration, Automation, and Response (SOAR) Software?

### What You Should Know About Security, Orchestration, Automation, and Response (SOAR) Software

### What is Security, Orchestration, Automation, and Response (SOAR) Software?

Security orchestration, automation, and response (SOAR) software helps coordinate, execute, and automate tasks between various IT workers and tools. SOAR tools allow organizations to respond quickly to cybersecurity attacks and observe, understand, and prevent future incidents.

SOAR software gives organizations a comprehensive view of their existing security systems while centralizing the security data. By automating security responses and reducing manual tasks, SOAR helps to generate a faster and more accurate response to security attacks. It also helps better coordinate and route incident response to the most appropriate IT worker in real time.

**What Does SOAR Stand For?**

SOAR stands for security orchestration, automation, and response. SOAR software significantly contributes to identifying potential future security threats.

### What are the Common Features of Security, Orchestration, Automation, and Response (SOAR) Software?

Usually, a SOAR software offering operates under three primary software capabilities:

**Threat and vulnerability management:** Threat and vulnerability management examines key assets and prioritizes efforts to reduce risk. Working with other security teams, threat and vulnerability management helps prevent attacks by threat actors.

**Security incident response:** Security incident response addresses and manages the aftermath of a security breach, cyberattack, computer incident, or security incident. Security incident response is to handle the aftermath of a security breach in a way that limits damage, reduces recovery time, and reduces cost.

**Security operations automation:** Security operations automation is the technology that enables the automation and orchestration of security tasks. This can include both administrative duties and incident detection and response.

### What are the Benefits of Security, Orchestration, Automation, and Response (SOAR) Software?

The benefits of using a SOAR tool are that it lessens the impact of security incidents and reduces the risk of legal liability. SOAR software helps companies’ security teams by enabling them to:

**Maintain a central view:** One of the benefits of SOAR software is that it gives security staff a central view and enables control of existing security systems while centralizing data collection to improve a company's security posture, operational efficiency, and productivity.&nbsp;

**Automate manual tasks:** As with most software today, users are looking for help in terms of automation. SOAR software helps to manage and automate all aspects of a security incident lifecycle. This removes manual tasks, gives security staff more time to be productive, and allows them to focus on more mission-critical security tasks that do not require manual tasks.

**Define incident and response procedures:** SOAR software helps security systems define incident and response procedures. This helps to route security incidents to the correct security staff. SOAR can also prioritize and standardize the security response processes in a consistent, transparent, and documented way.&nbsp;

**Optimize incident response** : Because SOAR software helps security staff define incident and response procedures, incident response is more accurate. This accuracy enables security systems and staff to have improved responses where they may have to contain, eradicate, or recover crucial data.&nbsp;

**Identify and assign incident severity levels:** SOAR software helps to identify and assign incident severity levels. Severity levels in cybersecurity measure how severely a security incident impacts various parts of the organization. SOAR software automatically identifies and assigns severity levels, enabling the right security system and staff to respond appropriately. This means both can respond immediately to security incidents that may negatively affect an organization, such as networks, software, employee or customer data, etc.

**Support collaboration and unstructured investigations:** SOAR software supports collaboration and unstructured investigations in real time, helping route each security incident to the security system and security staff best suited to respond. Collaboration with other IT teams for tasks such as remediation or other departments such as legal is possible.&nbsp;

**Streamline operations:** By using SOAR software, organizations can streamline security operations for threat and vulnerability management, security incident response, and security operations automation. SOAR software connects these security elements while integrating disparate security systems. SOAR software’s playbooks allow users to orchestrate, streamline and automate tasks. Playbooks also codify the process workflows that streamline the SOAR software functions.

### Who Uses Security, Orchestration, Automation, and Response (SOAR) Software?

**IT and cybersecurity staff:** They use SOAR software to handle security alerts such as phishing, which includes looking for threat feed data from endpoints, failed user logins, logins from unusual locations, malicious VPN access attempts, and so on. It's also used to hunt for threats and respond to incidents from attached files for malware analysis, cloud-aware incident response, and automate data enrichment. Cybersecurity staff who assign incident severity and check other products for vulnerability scores also use SOAR platforms.

### Challenges with Security, Orchestration, Automation, and Response (SOAR) software

There are a number of challenges with SOAR software that IT teams can encounter.

**Skill gaps:** While there is the misconception that SOAR software could replace security staff, the tool is meant to augment security teams, allowing them to work efficiently and effectively but not replacing them. However, there still may be a skills gap as the security team must be able to create detailed workflows of their processes.

**Effective deployment:** Another challenge of SOAR software is that it must be deployed to the enterprise but also connected to the other applications and technologies, which can be very complicated. An organization must also have staff with enough skills to deploy and maintain the platform. The applications and technologies used by the enterprise must also be able to support or be integrated into the SOAR software. One of SOAR software’s greatest strengths is to connect and orchestrate other technologies; however, if each technology is unable to be integrated, it hampers the benefits of deploying SOAR software.

### How to Buy Security, Orchestration, Automation, and Response Software

#### Requirements Gathering (RFI/RFP) for Security, Orchestration, Automation, and Response (SOAR) Software

If an organization is just starting out and looking to purchase SOAR software, g2.com can help select the best one.

Most business pain points might be related to all of the manual work that must be completed. If the company is large and has a lot of networks, data, or devices in its organization, they may need to shop for a SOAR software that can grow with its organization. Users should think about the pain points in security to help create a checklist of criteria. Additionally, the buyer must determine the number of employees who will need to use the SOAR software and if they currently have the skills to administer it.&nbsp;

Taking a holistic overview of the business and identifying pain points can help the team springboard into creating a checklist of criteria. The checklist serves as a detailed guide that includes both necessary and nice-to-have features, including budget, features, number of users, integrations, security staff skills, cloud or on-premises solutions, and more.

Depending on the scope of the deployment, it might be helpful to produce an RFI, a one-page list with a few bullet points describing what is needed from SOAR software.

#### Compare Security, Orchestration, Automation, and Response (SOAR) Software

**Create a long list**

Vendor evaluations are an essential part of the software buying process from meeting the business functionality needs to implementation. For ease of comparison, after all demos are complete, it helps to prepare a consistent list of questions regarding specific needs and concerns to ask each vendor.

**Create a short list**

From the long list of vendors, it is helpful to narrow down the list of vendors and come up with a shorter list of contenders, preferably no more than three to five. With this list in hand, businesses can produce a matrix to compare the features and pricing of the various solutions.

**Conduct demos**

To ensure the comparison is comprehensive, the user should demo each solution on the shortlist with the same use cases. This will allow the business to evaluate like for like and see how each vendor stacks up against the competition.&nbsp;

#### Selection of Security, Orchestration, Automation, and Response (SOAR) Software

**Choose a selection team**

Before getting started, creating a winning team that will work together throughout the entire process, from identifying pain points to implementation, is crucial. The software selection team should consist of organization members with the right interest, skills, and time to participate in this process. A good starting point is to aim for three to five people who fill roles such as the main decision maker, project manager, process owner, system owner, or staffing subject matter expert, as well as a technical lead, head administrator, or security administrator. In smaller companies, the vendor selection team may be smaller, with fewer participants multitasking and taking on more responsibilities.

**Compare notes**

The selection team should compare notes and facts and figures which they noted during the process, such as costs, security capabilities, and alert and incident response times.

**Negotiation**

Just because something is written on a company’s pricing page does not mean it's final. It is crucial to open up a conversation regarding pricing and licensing. For example, the vendor may be willing to give a discount for multi-year contracts or for recommending the product to others.

**Final decision**

After this stage, and before going all in, it is recommended to roll out a test run or pilot program to test adoption with a small sample size of users. If the tool is well used and well received, the buyer can be confident that the selection was correct. If not, it might be time to go back to the drawing board.

### What does Security, Orchestration, Automation, and Response (SOAR) Software cost?

SOAR is considered a long-term investment. This means there must be a careful evaluation of vendors, and the software should be tailored to each organization's specific requirements. Once a SOAR solution is purchased, deployed, and integrated into an organization’s security system, the cost could be high, which is why the evaluation stage of selecting SOAR software is so crucial. The notion of rip-and-replace cost can be high. The SOAR vendor chosen should continue to provide support for the SOAR solution with flexibility and open integration.

#### Return on Investment (ROI)

Organizations decide to purchase SOAR software with some type of return on investment (ROI). As they want to recoup the money spent on the software, it is critical to understand the costs that will be saved in terms of efficiency.

SOAR software saves security staff costs by eliminating manual tasks. For example, SOAR software automatically investigates the scenario of email phishing attacks which is very common, so this task can be very repetitive and consumes security staff time if it is done manually. A large enterprise used actual data from its SOAR software deployment and compared it to the cost of handling email phishing investigations automatically using SOAR software versus handling them manually. The enterprise found that the reduction in staff time required to handle phishing emails equated to savings of over $680,000 per year.

### Security, Orchestration, Automation, and Response (SOAR) Software Trends

**Enterprises:** Due to the requirements to maintain such large-scale IT and network infrastructure, organizations such as large enterprises tend to be more interested in purchasing SOAR software. Having such large networks and more complex IT makes such organizations more vulnerable to security threats which is another drive to purchase SOAR software. Also, larger organizations have more employees with more devices, which increases threats if they are accessing workplace applications on these devices.

**Retail and e-commerce:** These industries have increased interest in SOAR software due to the vulnerabilities in PoS)transactions and online purchases. It is the processing of these monetary transactions which creates a security risk, especially there personal and financial information of customers. Adopting technologies such as location-based marketing for these types of purchases also makes the retail industry more vulnerable to security threats.