Best Security Orchestration, Automation, and Response (SOAR) Software - Page 7

How Many Security Orchestration, Automation, and Response (SOAR) Software Products Does G2 Track?

Total Products under this Category: 99

Category Stats (Sep 2026)

  • Average Rating: 4.54/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: ReliaQuest GreyMatter (+1.22%) - Among all products in this category, ReliaQuest GreyMatter recorded the largest rating increase compared to last month

Last updated: September 26, 2026

How Does G2 Rank Security Orchestration, Automation, and Response (SOAR) Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 3,700+ Authentic Reviews
  • 99+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Security Orchestration, Automation, and Response (SOAR) Software

G2 Grid® for Security Orchestration, Automation, and Response (SOAR) Software plotting products by satisfaction and market presence

Highlighted products: Google Security Operations, Tines Stories, n8n, Torq AI SOC Platform, KnowBe4 PhishER/PhishER Plus, ServiceNow Security Operations, Microsoft Sentinel, and Palo Alto Cortex XSIAM.

Underlying data: [Grid® JSON](https://www.g2.com/categories/security-orchestration-automation-and-response-soar/grids.json?focus%5B%5D=google-security-operations&focus%5B%5D=tines-stories&focus%5B%5D=n8n&focus%5B%5D=torq-ai-soc-platform&focus%5B%5D=knowbe4-phisher-phisher-plus&focus%5B%5D=servicenow-security-operations&focus%5B%5D=microsoft-sentinel&focus%5B%5D=palo-alto-cortex-xsiam)

Splunk SOAR

Who Is the Company Behind Splunk SOAR?

  • Seller: Splunk
  • Year Founded: 2003
  • HQ Location: San Francisco, California, United States
  • Twitter: @splunk
    78,182 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    10,012 employees on LinkedIn®
  • Ownership: NASDAQ:SPLK

STORM

Who Is the Company Behind STORM?

  • Seller: OTRS Group
  • Year Founded: 2003
  • HQ Location: Oberursel, Germany
  • Twitter: @OTRSGroup
    2,639 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    110 employees on LinkedIn®

StrikeReady

Transform your SOC team into a proactive cyber task force by streamlining and centralizing security operations, empowering your team to optimize intelligence, automate alert handling and expedite incident response. StrikeReady’s user centric design provides dynamic insights and real-time guidance enabling your team to make smarter, faster decisions. The platform also continuously learns and evolves ensuring security teams stay ahead of the ever-changing threat landscape.

Who Is the Company Behind StrikeReady?

Trickest Platform

Trickest provides an innovative approach to offensive cybersecurity automation, assets, and vulnerability discovery. The platform combines extensive adversary tactics and techniques with full transparency, hypercustomization, and hyperscalability, making it the go-to platform for offensive security operations. The Trickest platform comes with comprehensive tooling, scripting, managed infrastructure, scaling, ready-to-go solutions, and analytics, serving as a collaborative command center for Offensive Security, Penetration testing, Red teams, Security Analysts, and Security Service providers (MSSPs). What makes us different? Easy customization of logic, inputs, outputs, and integrations, making them adaptable to specific needs and thus producing superior-quality data compared to others. Some of the automation workflows and solutions that our customers deploy and execute: - Attack Surface Discovery - Vulnerability Scanning - Dynamic Application Security Testing (DAST) - Recon/Information Gathering (Passive & Active) - Organization OSINT - CVE scanning - Cloud Scanning - DNS recon & research - Subdomain Enumeration - Subdomain Takeover - Custom Security Automation and Orchestration Main components of the Trickest platform include: Solutions & Analytics - Ready-to-go and transparent solutions for Attack Surface Discovery, Vulnerability Scanning, Dynamic Application Security Testing (DAST), and Open-source intelligence OSINT, offering insight into every step of the process, easy customization, and Analytics on the top. The Builder - Access to 90+ workflow templates, 300+ open-source tools, Bash & Python scripting, CLI for building custom workflows to discover asset, vulnerabilities, scan network & apps, crawl, spider, enumerate, fuzz, bruteforce and much more. Hyperscalability - Whether scanning regional infrastructures with 100s of 1000s of assets or smaller organizational scopes, Trickest supports it all without per-asset costs.

Who Is the Company Behind Trickest Platform?

  • Seller: Trickest
  • Year Founded: 2020
  • HQ Location: Dover, US
  • LinkedIn® Page: www.linkedin.com
    12 employees on LinkedIn®

UpGuard Risk Automations

UpGuard Risk Automations is a powerful risk orchestration solution that empowers risk professionals and security operations teams to automate discovery, notification, and resolution across their entire tech stack. As part of the UpGuard Cyber Risk Posture Management (CRPM) platform, it acts as the connective tissue for Vendor Risk, Breach Risk, and User Risk to provide a unified defense against modern cyber threats. As organizations scale, security teams are often overwhelmed by siloed data sources and disjointed tools. Traditional manual handoffs waste valuable time and delay response efforts, leaving critical risks lingering. Risk Automations solves this by combining pre-built integrations, targeted visibility, and intelligent workflow resolution into a single drag-and-drop platform. Key Capabilities: • Pre-Built Integrations: Break down silos and connect your technology. Unify your current tools and data sources to eliminate time-wasting manual handoffs. Sync 100+ tools with pre-built integrations—including ServiceNow, Splunk, Cloudflare, Jira, and Microsoft Entra—directly with UpGuard to achieve a connected security ecosystem. • Targeted Visibility: Decisive action over chasing noise. Integrate high-fidelity alerts, reports, and tickets directly into the tools your team already uses, like Jira, Slack, Zendesk, and Microsoft Teams. Our AI triages the data, delivering contextualized insights directly to the right decision-makers. • Intelligent Resolution: Start remediating instantly. Trigger automated workflows that take action—from triaging a vulnerability and opening a ticket, to actioning remediation—the moment a risk is discovered. Add human-in-the-loop checkpoints to ensure you get the right amount of visibility and control for your needs. By translating complex data streams into automated, actionable workflows, UpGuard Risk Automations enables security leaders to eliminate manual handoffs, reduce time-to-resolution from days to seconds, and achieve a proactive, autonomous security posture.

Who Is the Company Behind UpGuard Risk Automations?

  • Seller: UpGuard
  • Year Founded: 2012
  • HQ Location: Mountain View, California
  • Twitter: @UpGuard
    8,705 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    402 employees on LinkedIn®

Uplevel Security

Uplevel is the first intelligent cybersecurity system powered by graph-based machine learning. Our platform centralizes and contextualizes security data to provide the insights required for an efficient, powerful response.

Who Is the Company Behind Uplevel Security?

  • Seller: Uplevel Security
  • Year Founded: 2014
  • HQ Location: New York, US
  • Twitter: @uplevelsecurity
    519 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®

Valkyrie Security Automation

A powerful tool for OT cybersecurity environments - leveraging host and network data through automation to provide network visibility and assist in threat hunting. Valkyrie proactively monitors for threats and helps you respond quickly and efficiently.

Who Is the Company Behind Valkyrie Security Automation?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 3, 2024