--- title: Carbon Black EDR Reviews meta\_title: 'Carbon Black EDR Reviews 2026: Details, Pricing, & Features | G2' meta\_description: Filter 87 reviews by the users' company size, role or industry to find out how Carbon Black EDR works for a business like yours. aggregate\_rating: rating\_value: 4.4 review\_count: 87 scale: '5' date\_modified: '2026-08-07' parent\_category: name: Endpoint Protection url: https://www.g2.com/categories/endpoint-protection ---

# Carbon Black EDR Reviews & Product Details

Claimed

###### Profile Status

This profile is currently managed by Carbon Black EDR but has limited features.  
  
Are you part of the Carbon Black EDR team? [Upgrade your plan](https://sell.g2.com) to enhance your branding and engage with visitors to your profile!

Carbon Black EDR is a market-leading incident response and threat hunting solution designed to provide responders with the most information possible, accompanied by expert threat analysis and armed with real-time response capabilities to stop attacks, minimize damage and close security gaps. Carbon Black EDR makes these teams more efficient, reducing investigations from days to hours, and more effective, enabling them to discover threats before attacks can exploit them. Carbon Black EDR also allows teams to connect to and isolate infected machines to prevent lateral movement and remediate devices without costly IT involvement. Continuous and Centralized Recording Centralized access to continuously recorded endpoint data means that security professionals have the information they need to hunt threats in real time as well as conduct in-depth investigations after a breach has occurred. Live Response for Remote Remediation With Live Response, incident responders can create a secure connection to infected hosts to pull or push files, kill processes, perform memory dumps and quickly remediate from anywhere in the world. Attack Chain Visualization and Search Carbon Black EDR provides intuitive attack chain visualization to make identifying root cause fast and easy. Analysts can quickly jump through each stage of an attack to gain insight into the attacker’s behavior, close security gaps and learn from every new attack technique to avoid falling victim to the same attack twice. Automation via Integrations and Open APIs Carbon Black boasts a robust partner ecosystem and open platform that allows security teams to integrate products like Carbon Black EDR into their existing security stack.

* * *

Seller
[Broadcom](https://www.g2.com/sellers/broadcom-ab3091cd-4724-46a8-ac89-219d6bc8e166)
Discussions
[Carbon Black EDR Community](https://www.g2.com/products/carbon-black-edr/discuss)
Languages Supported

English

Solution Type

Best-of-Breed

Overview by
Hope Boyer

Show More

## Value at a Glance

Averages based on real user reviews.

### Time to Implement

3 months

### Return on Investment

16 months

[
View More Pricing Information
](https://www.g2.com/products/carbon-black-edr/pricing)

## Top-Rated Alternatives

[

 ![Microsoft Defender for Endpoint](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Microsoft Defender for Endpoint")

Microsoft Defender for Endpoint

4.4/5(312)

](https://www.g2.com/products/microsoft-defender-for-endpoint/reviews)

[

 ![SentinelOne Singularity Endpoint](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "SentinelOne Singularity Endpoint")

SentinelOne Singularity Endpoint

4.7/5(212)

](https://www.g2.com/products/sentinelone-singularity-endpoint/reviews)

[

 ![Sophos Endpoint](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Sophos Endpoint")

Sophos Endpoint

4.7/5(837)

](https://www.g2.com/products/sophos-endpoint/reviews)

[
View All Alternatives
](https://www.g2.com/products/carbon-black-edr/competitors/alternatives)

## User Insights

Average based on 87 real user reviews.

Implementation Time

3 months

Perceived Cost

$$$$$

[Log in to unlock pricing and user insights](/login)

## Carbon Black EDR Integrations
(2)

What do users say about integrations?

Integration information sourced from real user reviews.

[

 ![Product Avatar Image](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Product Avatar Image")

Proofpoint Threat Response Auto-Pull

](https://www.g2.com/products/proofpoint-threat-response-auto-pull/reviews)[

 ![Product Avatar Image](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Product Avatar Image")

Splunk Enterprise

](https://www.g2.com/products/splunk-enterprise/reviews)

Show More

 ![Mercy N.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Mercy N.")
MN

Mercy N.

IT Manager

Telecommunications

Mid-Market (51-1000 emp.)

7/27/2019

"Fast incident response and threat hunting software"

5/5

What do you like best about Carbon Black EDR?

So far this software has enabled me to respond rapidly and stop active attacks and it has also helped capture comprehensive information about endpoint events.CB Response software is the best software when it comes to delivering advanced threat hunting incidences. CB response software is so far the best saftware in curbing security threats and this qualifies as being one feature that i like. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

So far CB Response has been of assistance to my daily routine of work as there has not been so much disadvantage of using the software. However the software is a sophisticated one and requires a lot of understanding bt its easy to use this particular software. So far the software has no much dislikes. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

I recommend this software to others considering about it as the software is fast as it captures comprehensive information in just minutes. Its also efficient as it merges threats and suspicious behaviours. So far so good as it is the best in threat hunting and stopping attacks. I reccomend the use of this software as it is a fast responder to threats. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

CB Response software has been helpful in isolating infected systems in my PC and removing malicious files to prevent lateral movement and this has helped more so with the security. It has also helped me in securing shell access to any endpoint with Live Response as it has helped in responding to threats immediately. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Telecommunications](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Telecommunications")
UT

Verified User in Telecommunications

Enterprise (\> 1000 emp.)

9/10/2019

"CB Response will improve your Incident Response and provide incredible endpoints visibility"

4.5/5

What do you like best about Carbon Black EDR?

The installation process is very easy. The server can be up and running in less than one our and the agent's installation process is very simple. The endpoints visibility provided by the CB agent has allowed our security analyst to respond to incidents in a very efficient and quick way. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

The white listing process is still complicated. CB provide an awesome collection of feeds, however the process of white listing some of the feed's reports is still complicated. They should improve that. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

Our biggest challenge before CBR was the lack of visibility in our endpoints and the time required to do a security investigation. CBR has provided, since day zero, the capabilities to detect, quickly respond, and investigate threats, eradicating and preventing future threats. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerIncentivizedSource: Seller invite

 ![Verified User in Information Technology and Services](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Information Technology and Services")
CI

Verified User in Information Technology and Services

Mid-Market (51-1000 emp.)

10/16/2019

Business partner of the seller or seller's competitor, not included in G2 scores.

"Detect with techniques and procedures, not code"

4.5/5

What do you like best about Carbon Black EDR?

Cb Response is helpful in detecting malware that gets recompiled so that there are not any anti-malware hits. However, the malware still does the same thing with WMI or Powershell, which still gets triggered in Cb Response. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

For some of the threat feeds that are based on IP addreses or URLs may generate false positives. You can still leave them enabled to enrich the context in the process search results but not really alert with them. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

In some cases we have been able to remove malware components and locate systems in the network that are running malware on behalf of the IT staff. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerIncentivizedSource: Seller invite

 ![Miguel Ángel C.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Miguel Ángel C.")
MC

Miguel Ángel C.

electrical engineer

Enterprise (\> 1000 emp.)

6/28/2019

"greater protection and fewer threats with endpoint visibility."

4.5/5

What do you like best about Carbon Black EDR?

research and analysis of amenzasas can last a long time, but thanks CB Response we can complete the search in a few minutes, because thanks to its incredible tools gives us greater efficiency allowing us to save time and money, it is also possible to access the full activity record of each endpoint, even when offline. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

I really like this solution, I can say that it has a very intuitive and comfortable interface and I can not find anything that I do not like. Their functions are correct and they do a very efficient job. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

excellent solution, very good to boost your organization quickly, prevents all types of threats quickly, designed to provide respondents with as much information as possible, in a short time Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

before using CB Responser it was a complete challenge being very difficult to find the problems, failures due to possible threats but thanks to this software we discovered malware in a matter of minutes minimizing the time, accessing the equipment register of each endpoint, it is also possible to make a preventive maintenance and get rid of possible threats. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Information Technology and Services](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Information Technology and Services")
UI

Verified User in Information Technology and Services

Enterprise (\> 1000 emp.)

7/25/2019

"Enhanced logging allow us to quickly identify/resolve security issue"

4.5/5

What do you like best about Carbon Black EDR?

Enhanced logging and investigate components quickly helps us to quickly identify problem and start resolving before it spread. CB response hunts threat immediately rather than approaching security. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

Everything seems to be good if you can afford price of software. I found pricing little bit expensive. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

Explore all the options in space and see if you are ready to really use incident response such as this for threat hunting in your environment or if you should focus on closing some other large security gaps first. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

The ability to quickly isolate the system from the network, while still being able to perform some forensics and mitigation work remotely, was of great value to us since we had many mobile and distributed systems. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerIncentivizedSource: G2 invite

 ![Salome W.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Salome W.")
SW

Salome W.

IT Specialist

Information Technology and Services

Mid-Market (51-1000 emp.)

8/8/2019

"Restrict cyber attackers activity and uncover hidden threats with automated threat response. "

4.5/5

What do you like best about Carbon Black EDR?

This software offers a quick quality investigation and one is able to know what happened at every stage of the attack. Detect suspicious behavior automatically. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

No dislikes for this software we enjoy its services to the maximum. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

This software handles a wide range of security from attackers to threats with good end results and so i would recommend it good services to any organization. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

This software is able to store detailed forensics for post incident investigation. It as well uncover and respond to to hidden threats which may collapse our systems. Upon detection a hacker it blocks them by reducing their dwelling time to cut them short of even a slight damage. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Anthony M.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Anthony M.")
AM

Anthony M.

ICT manager

Mid-Market (51-1000 emp.)

7/13/2019

"Best Incident Rensponse and Threat Hunting system."

5/5

What do you like best about Carbon Black EDR?

I like The way Investigations that typically take days or weeks can be completed in just minutes. CB Response captures comprehensive information about endpoint events, giving security professionals a clear understanding of what happened.more itssophisticated detection combines various systems to Isolate and Automatically counter threats. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

No major drawbacks but more expertise and training is required in admin usage and also some aspects of installation. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

Looking for the best Automated,fast and Efficient incident rensponse and threat hunt system?CB Rensponse gives you the solutions to all that with a flexible n workers friendly system to use. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

CB Rensponse is really of use to me especially when accessing the complete activity record of every endpoint, even if it’s offline,thus saves on time and gives a good workframe. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Lydia N.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Lydia N.")
LN

Lydia N.

IT Manager

Information Technology and Services

Mid-Market (51-1000 emp.)

8/7/2019

"Stay protected from Advanced threats 24hours."

5/5

What do you like best about Carbon Black EDR?

This software has the ability to quickly detect and spot an attacker block them before any harmful activity is done. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

No dislike for this software we love it and how it has helped us stay secure and safe. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

This software detect, isolates and remove threats so that they don't infect your system and by trying it we have no regrets recommending it to your or others Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

This software detect any advanced threats and solves them quickly. It also detect any unrecognizable and suspicious behaviors and deals with it, it isolate detected threats so they don't infect and spread through the system. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Mary I.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Mary I.")
MI

Mary I.

IT Manager

Computer & Network Security

Mid-Market (51-1000 emp.)

8/4/2019

"Best Incident response and threats hunting tool."

5/5

What do you like best about Carbon Black EDR?

I like the way this software captures comprehensive information about endpoints, giving the experts clear picture of what is going on. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

I have not used this software for long. So far I can't complaint since I have not seen any single point of failure. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

This is the best tool to use in business for security purposes. It can respond immediately to attacks, stopping active attacks and respiring damage quickly. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

We have been using this software for the last one year for real time threats hunting and incident response. We are able to minimize attackers dwell time. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Vivian O.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Vivian O.")
VO

Vivian O.

IT Manager

Information Technology and Services

Mid-Market (51-1000 emp.)

8/9/2019

"More advanced and improved threats detection and responses."

4.5/5

What do you like best about Carbon Black EDR?

This software fast search and visualise the process tree and timelines to pinpoint threats,it isolates any infected system and removes suspicious files to prevent spread to other areas, Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

No dislike for this software,I works fully since it's installation Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

We have benefited so much from this software and that why we are sharing experiences to you you try it out. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

This software is capable of discovering hidden threats validating them and finally removes them from system. When a hacker is detected this software detects automatically and block any activity. Review collected by and hosted on G2.com.

Show More

8/12/2019
Validated ReviewerIncentivizedSource: G2 invite

## Questions about Carbon Black EDR? Ask real users or explore answers from the community

Get practical answers, real workflows, and honest pros and cons from the G2 community or share your insights.

[
Ask about Carbon Black EDR
](https://www.g2.com/products/carbon-black-edr/discussions/new)

GU

Guest User
•
Last activity over 3 years ago

What does carbon black software do?

0 Upvotes

1

[
Join the conversation
](https://www.g2.com/discussions/what-does-carbon-black-software-do)

[
View all Discussions
](https://www.g2.com/products/carbon-black-edr/discuss)

## Pricing Insights

Averages based on real user reviews.

### Time to Implement

3 months

### Return on Investment

16 months

### Average Discount

19%

[
View More Pricing Information
](https://www.g2.com/products/carbon-black-edr/pricing)

Carbon Black EDR Comparisons

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_4e2b08dd17397bdc99a5658447cbc589/microsoft-defender-for-endpoint.jpg "Product Avatar Image")

Microsoft Defender for...

4.4/5(312)

[
Compare Now
](https://www.g2.com/compare/carbon-black-edr-vs-microsoft-defender-for-endpoint)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_14c966aee92aa8713f0bf6eb7b139afa/carbon-black-cloud.png "Product Avatar Image")

Carbon Black Cloud

4.1/5(39)

[
Compare Now
](https://www.g2.com/compare/carbon-black-cloud-vs-carbon-black-edr)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_5292562d6a2cb01ab3d34a4e57a3225a/sentinelone-singularity-endpoint.png "Product Avatar Image")

SentinelOne Singularity...

4.7/5(212)

[
Compare Now
](https://www.g2.com/compare/carbon-black-edr-vs-sentinelone-singularity-endpoint)

##### Categories on G2

[Endpoint Detection & Response (EDR)](https://www.g2.com/categories/endpoint-detection-response-edr)

##### Explore More

[Which partner ecosystem software is the best for tracking partner-sourced and partner-influenced revenue so partnerships can actually prove their contribution to the business?](https://www.g2.com/discussions/which-partner-ecosystem-software-is-the-best-for-tracking-partner-sourced-and-partner-influenced-revenue-so-partnerships-can-actually-prove-their-contribution-to-the-business)[Best iPaaS for small business software integration](https://www.g2.com/discussions/what-s-the-best-ipaas-for-small-business-software-integration)[Which ERM systems have the most stable and reliable uptime record with proven customer support, based on user reviews?](https://www.g2.com/discussions/which-erm-systems-have-the-most-stable-and-reliable-uptime-record-with-proven-customer-support-based-on-user-reviews)

[What is the recommended knowledge management software for customer support?](https://www.g2.com/discussions/what-is-the-recommended-knowledge-management-software-for-customer-support)[Which web client accelerators have the best caching and compression effectiveness?](https://www.g2.com/discussions/which-web-client-accelerators-have-the-best-caching-and-compression-effectiveness)[Pros and Cons Details](https://www.g2.com/products/carbon-black-edr/reviews?qs=pros-and-cons)

[Show MoreShow Less](javascript:void(0);)