# Best Network Detection and Response (NDR) Software

## How Many Network Detection and Response (NDR) Software Products Does G2 Track?

**Total Products under this Category:** 70

### Category Stats (Aug 2026)

- **Average Rating:** 4.39/5 The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** BluSapphire OnePlatform (+0.96%) - Among all products in this category, BluSapphire OnePlatform recorded the largest rating increase compared to last month

_Last updated: August 05, 2026_

## How Does G2 Rank Network Detection and Response (NDR) Software Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 1,600+ Authentic Reviews
- 70+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Network Detection and Response (NDR) Software
 ![G2 Grid® for Network Detection and Response (NDR) Software plotting products by satisfaction and market presence](https://www.g2.com/categories/network-detection-and-response-ndr/grids.png?focus%5B%5D=19387&focus%5B%5D=1405921&focus%5B%5D=130021&focus%5B%5D=27617&focus%5B%5D=129114&focus%5B%5D=1293&focus%5B%5D=5691&focus%5B%5D=30501)

Highlighted products: Progress WhatsUp Gold, Sophos NDR, TrendAI Vision One, Cortex XDR, Darktrace / NETWORK, ExtraHop, ManageEngine ADAudit Plus, and Rapid7 Next-Gen SIEM.

Underlying data: [Grid® JSON](https://www.g2.com/categories/network-detection-and-response-ndr/grids.json?focus%5B%5D=progress-whatsup-gold&focus%5B%5D=sophos-ndr&focus%5B%5D=trendai-vision-one&focus%5B%5D=palo-alto-networks-cortex-xdr&focus%5B%5D=darktrace-network&focus%5B%5D=extrahop&focus%5B%5D=manageengine-adaudit-plus&focus%5B%5D=rapid7-next-gen-siem)

**Sponsored**

### IRONSCALES

IRONSCALES is a cloud-native email security platform that helps enterprises and MSPs close gaps with mailbox-level detection, autonomous remediation, and built-in user training. It combines AI and human insights that continuously learn from user behavior, message context, and analyst feedback to identify advanced threats like BEC, account takeovers, impersonation, and other advanced phishing attacks. IRONSCALES is headquartered in Atlanta, Georgia and is proud to serve more than 17,000 customers globally. IRONSCALES leverages adaptive AI and its Agentic AI engine, Themis, to drive autonomous, mailbox-level remediation with customizable automation. Smart clustering, context-driven decisioning, and user-reported inputs enable Themis to remediate threats in real time while preserving analyst oversight and control. Designed for rapid deployment via API, IRONSCALES integrates with existing security stacks without requiring MX record changes. To reduce risk, improve SOC efficiency, and support a proactive security culture, its comprehensive capabilities also include: - Phishing Simulations - Security Awareness Training - DMARC management - Deepfake Live Protection - Generative AI tools

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=2380&secure%5Bchosen_at%5D=2026-08-07T00%3A58%3A09Z&secure%5Bdisplayable_resource_id%5D=1833&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=retargeted_product&secure%5Bplacement_resource_ids%5D%5B%5D=127324&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=127324&secure%5Bresource_id%5D=2380&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fnetwork-detection-and-response-ndr&secure%5Btoken%5D=5a5d57cad4a8af1527903c4f548dc691bbea1bcb392d3c82c4a48d86121e506e&secure%5Burl%5D=https%3A%2F%2Fsecure.ironscales.com%2F90-day-scan-back%3Futm_source%3Dg2%26utm_medium%3Daffiliate%26utm_campaign%3Dg2-ads&secure%5Burl_type%5D=custom_url)

### [Progress WhatsUp Gold](https://www.g2.com/es/products/progress-whatsup-gold/reviews)

WhatsUp Gold es un software de monitoreo de infraestructura de TI diseñado para ayudar a los usuarios a identificar y resolver problemas de red rápidamente, a menudo antes de que afecten a los usuarios finales. Esta solución proporciona una visibilidad integral del rendimiento y la disponibilidad de la red, lo que permite a los profesionales de TI mantener operaciones óptimas en toda su infraestructura. Con su interfaz de mapeo interactivo, WhatsUp Gold permite a los usuarios visualizar el estado de todos los dispositivos conectados a su red, facilitando el monitoreo tanto de recursos locales como en la nube. Dirigido principalmente a administradores de TI e ingenieros de redes, WhatsUp Gold es particularmente beneficioso para organizaciones que dependen en gran medida del rendimiento de la red para sus operaciones diarias. Su diseño fácil de usar se adapta tanto a profesionales experimentados como a aquellos nuevos en la gestión de redes, ofreciendo una gama de características que simplifican el proceso de monitoreo. El software está diseñado para soportar varios casos de uso, desde pequeñas empresas que necesitan capacidades básicas de monitoreo hasta grandes empresas que requieren soluciones avanzadas de gestión de redes. Una de las características destacadas de WhatsUp Gold es su panel de control personalizable de arrastrar y soltar, que proporciona a los usuarios la flexibilidad de adaptar su experiencia de monitoreo según necesidades específicas. Estos paneles presentan datos en tiempo real sobre el estado y el rendimiento de los dispositivos, permitiendo a los usuarios evaluar rápidamente la salud de su red. Además, las capacidades de descubrimiento y mapeo automáticos del software permiten a los usuarios visualizar toda la topología de su red, asegurando que ningún dispositivo pase desapercibido durante el monitoreo. WhatsUp Gold también enfatiza la optimización, ayudando a los usuarios a gestionar el tráfico de red y la utilización del ancho de banda de manera efectiva. Al proporcionar información procesable y vistas unificadas del rendimiento de la red, el software capacita a los equipos de TI para solucionar problemas de manera eficiente. La capacidad de identificar y resolver problemas de red y servidores de manera proactiva no solo mejora la eficiencia operativa, sino que también mejora la satisfacción general del usuario al minimizar el tiempo de inactividad. En resumen, WhatsUp Gold ofrece una solución robusta e interactiva para el monitoreo de infraestructura de TI, combinando facilidad de uso con características poderosas. Su enfoque en la visibilidad en tiempo real, la personalización y la solución de problemas proactiva lo convierte en una herramienta valiosa para organizaciones que buscan mejorar sus capacidades de gestión de redes.

**Average Rating:** 4.4/5.0

**Total Reviews:** 381

#### How Do G2 Users Rate Progress WhatsUp Gold?

- **Calidad del soporte:** 8.8/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Progress WhatsUp Gold?

- **Vendedor:** [Progress Software](https://www.g2.com/es/sellers/progress-software)
- **Sitio web de la empresa:** www.progress.com
- **Año de fundación:** 1981
- **Ubicación de la sede:** Burlington, MA.
- **Twitter:** @ProgressSW  
48,773 seguidores en Twitter
- **Página de LinkedIn®:** [www.linkedin.com](https://www.g2.com/es/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=ab257d11ab0255eaaae8c28635f37e0e64277d81eae954d5985edfd545cd2d69&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fprogress-software%2F&secure%5Burl_type%5D=linkedin_company_website)  
4,205 empleados en LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Ingeniero de Redes, Administrador de Red
- **Top Industries:** Tecnología de la información y servicios, Gestión Educativa
- **Company Size:** 58% Medium, 27% Large

#### What Do G2 Reviewers Say About Progress WhatsUp Gold?

_AI-generated summary from verified user reviews_

##### Pros

- Los usuarios encuentran Progress WhatsUp Gold **fácil de usar** , con alertas claras y monitoreo en tiempo real que mejora la gestión de la red.
- Los usuarios valoran el **monitoreo en tiempo real** de Progress WhatsUp Gold, que simplifica la gestión de la red y mejora la capacidad de respuesta.
- Los usuarios valoran el **monitoreo en tiempo real y las alertas claras** de Progress WhatsUp Gold, mejorando la eficiencia de la gestión de la red.
- Los usuarios valoran las **notificaciones de alerta claras y en tiempo real** de Progress WhatsUp Gold, mejorando su eficiencia en la gestión de redes.
- Los usuarios aprecian la **interfaz fácil de usar** de Progress WhatsUp Gold, haciendo que el monitoreo de la red sea sencillo y eficiente.

##### Cons

- Los usuarios encuentran que WhatsUp Gold es **caro** debido a los costosos complementos para funciones que deberían ser estándar.
- Los usuarios encuentran que el **diseño deficiente de la interfaz** de Progress WhatsUp Gold dificulta la usabilidad y crea confusión durante la operación.
- Los usuarios encuentran el **configuración compleja** de Progress WhatsUp Gold desafiante, requiriendo experiencia técnica para una configuración efectiva.
- Los usuarios notan una **alta curva de aprendizaje** con Progress WhatsUp Gold, lo que hace que la configuración inicial sea desafiante y consuma mucho tiempo.
- Los usuarios a menudo encuentran la **interfaz obsoleta** de Progress WhatsUp Gold confusa, lo que dificulta su experiencia y eficiencia en general.

#### What Are Recent G2 Reviews of Progress WhatsUp Gold?

**["Interfaz fácil de usar, monitoreo integral"](https://www.g2.com/es/survey_responses/progress-whatsup-gold-review-13021374)**

**Rating:** 4.5/5.0 stars

_— Zidani B._

[Read full review](https://www.g2.com/es/survey_responses/progress-whatsup-gold-review-13021374)

**["18 años de visibilidad de red comprobada"](https://www.g2.com/es/survey_responses/progress-whatsup-gold-review-13206439)**

**Rating:** 5.0/5.0 stars

_— Usuario verificado en Manufactura_

[Read full review](https://www.g2.com/es/survey_responses/progress-whatsup-gold-review-13206439)

#### What Are G2 Users Discussing About Progress WhatsUp Gold?

- [¿Para qué se utiliza Progress WhatsUp Gold?](https://www.g2.com/es/discussions/what-is-progress-whatsup-gold-used-for)
- [How much does WhatsUp gold cost?](https://www.g2.com/es/discussions/how-much-does-whatsup-gold-cost)
- [What is up monitoring tool?](https://www.g2.com/es/discussions/what-is-up-monitoring-tool)
- [How does WhatsUp gold work?](https://www.g2.com/es/discussions/how-does-whatsup-gold-work)
- [¿Qué es la herramienta de monitoreo WhatsUp Gold?](https://www.g2.com/es/discussions/what-is-whatsup-gold-monitoring-tool) - 1 comment

### [Sophos NDR](https://www.g2.com/products/sophos-ndr/reviews)

Sophos NDR works together with your managed endpoints and firewalls to monitor network activity for suspicious and malicious patterns they cannot see. It detects abnormal traffic flows from unmanaged systems and IoT devices, rogue assets, insider threats, previously unseen zero-day attacks, and unusual patterns deep within the network.

**Average Rating:** 4.8/5.0

**Total Reviews:** 16

#### How Do G2 Users Rate Sophos NDR?

- **Metadata Enrichment:** 9.8/10 (Category avg: 8.5/10)
- **Quality of Support:** 9.9/10 (Category avg: 8.9/10)
- **Multi-Network Monitoring:** 9.8/10 (Category avg: 8.6/10)
- **Network Visibility:** 9.4/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Sophos NDR?

- **Seller:** [Sophos](https://www.g2.com/sellers/sophos)
- **Year Founded:** 1985
- **HQ Location:** Oxfordshire
- **Twitter:** @Sophos  
36,759 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=e7bb09f1d9ceb61adf28e57fdaf53266846612b2c5e7a5d2a80d0008113c9990&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F5053%2F&secure%5Burl_type%5D=linkedin_company_website)  
5,500 employees on LinkedIn®
- **Ownership:** LSE:SOPH

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services
- **Company Size:** 95% Small, 5% Medium

#### What Are Recent G2 Reviews of Sophos NDR?

**["Sophos NDR gives us visibility we never had before - it catches things our firewall and endpoint."](https://www.g2.com/survey_responses/sophos-ndr-review-13212496)**

**Rating:** 5.0/5.0 stars

_— Shibu K._

[Read full review](https://www.g2.com/survey_responses/sophos-ndr-review-13212496)

**["Visibilidad completa y detección avanzada en tiempo real"](https://www.g2.com/survey_responses/sophos-ndr-review-12609724)**

**Rating:** 4.5/5.0 stars

_— Rafael L._

[Read full review](https://www.g2.com/survey_responses/sophos-ndr-review-12609724)

### [TrendAI Vision One](https://www.g2.com/it/products/trendai-vision-one/reviews)

TrendAI Vision One è una piattaforma di operazioni di sicurezza nativa del cloud, che serve ambienti cloud, ibridi e on-premises. Combina ASM e XDR in una singola console per gestire efficacemente il rischio informatico all'interno della tua organizzazione. La piattaforma fornisce potenti intuizioni sui rischi, rilevamento anticipato delle minacce e opzioni di risposta automatizzata ai rischi e alle minacce. Utilizza l'apprendimento automatico predittivo della piattaforma e le analisi di sicurezza avanzate per una prospettiva più ampia e un contesto avanzato. TrendAI Vision One si integra con il proprio ampio portafoglio di piattaforme di protezione e con l'intelligence sulle minacce globali leader del settore, oltre a un ampio ecosistema di integrazioni di terze parti costruite appositamente e guidate da API.

**Average Rating:** 4.7/5.0

**Total Reviews:** 246

#### How Do G2 Users Rate TrendAI Vision One?

- **Arricchimento dei metadati:** 7.2/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 8.7/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 8.1/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 8.7/10 (Category avg: 8.9/10)

#### Who Is the Company Behind TrendAI Vision One?

- **Venditore:** [TrendAI](https://www.g2.com/it/sellers/trendai)
- **Sito web dell'azienda:** www.trendmicro.com
- **Anno di Fondazione:** 1988
- **Sede centrale:** Tokyo
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=454c2fb5d9ffdec950c31f62cc45f1b76a4b9ce72ef5e5a91b06fad1ee8584b7&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F4312%2F&secure%5Burl_type%5D=linkedin_company_website)  
8,040 dipendenti su LinkedIn®
- **Proprietà:** OTCMKTS:TMICY

#### Who Uses This Product?

- **Top Industries:** Tecnologia dell'informazione e servizi, Sicurezza informatica e di rete
- **Company Size:** 52% Large, 33% Medium

#### What Do G2 Reviewers Say About TrendAI Vision One?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **visibilità centralizzata** di TrendAI Vision One, migliorando le operazioni in diversi ambienti senza sforzo.
- Gli utenti apprezzano la **copertura di sicurezza completa** di TrendAI Vision One, elogiando il suo dashboard intuitivo e le funzionalità di automazione.
- Gli utenti trovano **l'uso facile** di TrendAI Vision One inestimabile, con dashboard intuitivi e gestione automatizzata delle minacce che migliorano la sicurezza.
- Gli utenti apprezzano la **piattaforma centralizzata e facile da usare** di TrendAI Vision One, migliorando la gestione in diverse geografie.
- Gli utenti apprezzano la **rilevazione efficace delle minacce** di TrendAI Vision One, migliorando la visibilità e riducendo l'affaticamento da allerta per i team di sicurezza.

##### Cons

- Gli utenti trovano l' **interfaccia complessa** , con una curva di apprendimento ripida che sfida l'uso efficace durante situazioni di alta pressione.
- Gli utenti notano **problemi di integrazione** con strumenti di terze parti, rendendo TrendAI Vision One meno flessibile e user-friendly di quanto desiderato.
- Gli utenti trovano la **curva di apprendimento ripida** per TrendAI Vision One, rendendo l'installazione e l'utilizzo delle funzionalità impegnativi.
- Gli utenti notano che il **prezzo è piuttosto alto** , rendendolo meno accessibile rispetto ai concorrenti.
- Gli utenti notano le **funzionalità limitate** di TrendAI Vision One, evidenziando la necessità di migliorare le opzioni di reportistica e DLP.

#### What Are Recent G2 Reviews of TrendAI Vision One?

**["Sicurezza scalabile con configurazione facile, necessita di un supporto di formazione migliore"](https://www.g2.com/it/survey_responses/trendai-vision-one-review-12800247)**

**Rating:** 4.5/5.0 stars

_— Andrew W._

[Read full review](https://www.g2.com/it/survey_responses/trendai-vision-one-review-12800247)

**["Piattaforma XDR Unificata che Fornisce Maggiore Visibilità, Rilevamento Più Rapido e Risposta Proattiva alle Minacce"](https://www.g2.com/it/survey_responses/trendai-vision-one-review-12375604)**

**Rating:** 5.0/5.0 stars

_— Nishant K._

[Read full review](https://www.g2.com/it/survey_responses/trendai-vision-one-review-12375604)

#### What Are G2 Users Discussing About TrendAI Vision One?

- [A cosa serve Trend Micro Vision One (XDR)?](https://www.g2.com/it/discussions/what-is-trend-micro-vision-one-xdr-used-for) - 1 comment, 2 upvotes
- [Come funziona XDR?](https://www.g2.com/it/discussions/how-does-xdr-work) - 1 comment, 2 upvotes
- [Come può Trend Micro XDR risolvere le tue sfide di rilevamento e risposta?](https://www.g2.com/it/discussions/how-can-trend-micro-xdr-solve-your-detection-and-response-challenges) - 1 comment
- [What is Trend Micro XDR?](https://www.g2.com/it/discussions/what-is-trend-micro-xdr)
- [Cosa ti permette di fare Trend Micro XDR?](https://www.g2.com/it/discussions/what-does-trend-micro-xdr-allow-you-to-do) - 1 comment

### [Cortex XDR](https://www.g2.com/products/palo-alto-networks-cortex-xdr/reviews)

Cortex XDR is the industry’s first extended detection and response platform that stops modern attacks by integrating data from any source. With Cortex XDR, you can harness the power of AI, analytics and rich data to detect stealthy threats. Your SOC team can cut through the noise and focus on what matters most with intelligent alert grouping and incident scoring. Cross-data insights accelerate investigations, so you can streamline incident response and recovery. Cortex XDR delivers peace of mind with best-in-class endpoint protection that achieved the highest combined protection and detection scores in the MITRE ATT&CK® round 3 evaluation. The Cortex XDR platform collects and analyzes all data, so you can gain complete visibility and holistic protection to secure what’s next.

**Average Rating:** 4.5/5.0

**Total Reviews:** 81

#### How Do G2 Users Rate Cortex XDR?

- **Metadata Enrichment:** 10.0/10 (Category avg: 8.5/10)
- **Quality of Support:** 8.7/10 (Category avg: 8.9/10)
- **Network Visibility:** 10.0/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Cortex XDR?

- **Seller:** [Palo Alto Networks](https://www.g2.com/sellers/palo-alto-networks)
- **Company Website:** www.paloaltonetworks.com
- **Year Founded:** 2005
- **HQ Location:** Santa Clara, CA
- **Twitter:** @PaloAltoNtwks  
128,951 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=283fa006a7b7db5565e608e4d1bc1dafae45bdf4b312f2cd5bb208ac9271f81d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F30086%2F&secure%5Burl_type%5D=linkedin_company_website)  
22,313 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer & Network Security, Information Technology and Services
- **Company Size:** 41% Medium, 39% Large

#### What Do G2 Reviewers Say About Cortex XDR?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **important alert notifications** from Cortex XDR, which enhance security without overwhelming them.
- Users appreciate the **simplicity and manageability** of Cortex XDR, finding it easy to navigate and utilize effectively.
- Users love the **unique features** of Cortex XDR, especially its effective threat detection without compromising system speed.
- Users praise the **unified detection and response capability** of Cortex XDR, enhancing threat investigation efficiency and accuracy.
- Users value the **unified detection and response capability** of Cortex XDR for swift and precise threat investigations.

##### Cons

- Users find **limited features** in Cortex XDR, with restrictions affecting core OS functionalities and usability issues on lower-end systems.
- Users experience a **noticeable performance impact** on lower-end systems with the Cortex XDR agent installed.
- Users face **compatibility issues** with Cortex XDR, restricting core functionalities and software installations on their machines.
- Users find the **system complexity** challenging, often struggling with management and a steep learning curve.
- Users find the **complex management** of Cortex XDR challenging due to its steep learning curve and customization difficulties.

#### What Are Recent G2 Reviews of Cortex XDR?

**["Comprehensive Threat Detection with Efficient Response"](https://www.g2.com/survey_responses/cortex-xdr-review-13198919)**

**Rating:** 4.0/5.0 stars

_— Hunny B._

[Read full review](https://www.g2.com/survey_responses/cortex-xdr-review-13198919)

**["Robust Threat Detection, But a Steep Learning Curve"](https://www.g2.com/survey_responses/cortex-xdr-review-13150344)**

**Rating:** 4.0/5.0 stars

_— Dev S._

[Read full review](https://www.g2.com/survey_responses/cortex-xdr-review-13150344)

#### What Are G2 Users Discussing About Cortex XDR?

- [What is an advantage of Cortex XDR cloud based analysis?](https://www.g2.com/discussions/what-is-an-advantage-of-cortex-xdr-cloud-based-analysis)
- [How does cortex XDR use machine learning?](https://www.g2.com/discussions/how-does-cortex-xdr-use-machine-learning)
- [What is Cortex XDR?](https://www.g2.com/discussions/what-is-cortex-xdr) - 1 comment

### [Darktrace / NETWORK](https://www.g2.com/it/products/darktrace-network/reviews)

Darktrace / NETWORK™ è la soluzione di Network Detection and Response (NDR) più avanzata del settore. Impara qual è il comportamento normale per l'intera rete moderna, utilizzando l'IA auto-apprendente per rilevare e contenere autonomamente qualsiasi attività che potrebbe causare interruzioni aziendali, incluse minacce conosciute, nuove e interne. - Sofisticata IA agentica per automatizzare il triage e l'indagine con velocità e scala - Riconosciuto come Leader nel Magic Quadrant™ di Gartner® 2025 per NDR - Oltre 10.000 clienti a livello globale

**Average Rating:** 4.5/5.0

**Total Reviews:** 44

#### How Do G2 Users Rate Darktrace / NETWORK?

- **Arricchimento dei metadati:** 9.3/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 9.2/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 9.3/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 9.3/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Darktrace / NETWORK?

- **Venditore:** [Darktrace](https://www.g2.com/it/sellers/darktrace)
- **Sito web dell'azienda:** www.darktrace.com
- **Anno di Fondazione:** 2013
- **Sede centrale:** Cambridgeshire, England
- **Twitter:** @Darktrace  
18,177 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=135b6c23b3a9e309b159fca717d84aafed8cc711e65da3de0cae9184091cd6d3&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F5013440%2F&secure%5Burl_type%5D=linkedin_company_website)  
2,607 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Servizi finanziari, Tecnologia dell'informazione e servizi
- **Company Size:** 60% Medium, 32% Large

#### What Do G2 Reviewers Say About Darktrace / NETWORK?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano le **capacità di monitoraggio complete** di Darktrace, migliorando l'efficienza e la fiducia nella gestione della sicurezza della rete.
- Gli utenti apprezzano la **tecnologia AI auto-apprendente** di Darktrace/Network per la sua eccezionale rilevazione delle minacce e risposta in tempo reale.
- Gli utenti evidenziano le capacità di **rilevamento rapido delle minacce** di Darktrace, migliorando la sicurezza della rete e la fiducia degli utenti.
- Gli utenti elogiano il **supporto clienti reattivo** di Darktrace, migliorando efficacemente la loro esperienza di apprendimento e adozione.
- Gli utenti apprezzano l' **intelligenza artificiale cibernetica autonoma** di Darktrace, migliorando efficacemente la sicurezza informatica proattiva con il rilevamento delle minacce in tempo reale.

##### Cons

- Gli utenti trovano una significativa **curva di apprendimento** con Darktrace poiché l'IA genera molti avvisi durante la fase iniziale di configurazione.
- Gli utenti trovano il prodotto **costoso** , influenzando particolarmente le organizzazioni più piccole con budget limitati per la sicurezza e alti costi di implementazione.
- Gli utenti segnalano **problemi di allerta** con Darktrace, notando frequenti falsi positivi e un periodo di apprendimento iniziale impegnativo.
- Gli utenti trovano la **configurazione complessa** di Darktrace impegnativa, richiedendo forti competenze e risorse significative per una gestione efficace.
- Gli utenti segnalano occasionali **falsi positivi** che richiedono l'intervento dell'IT, influenzando l'efficienza complessiva del monitoraggio della rete di Darktrace.

#### What Are Recent G2 Reviews of Darktrace / NETWORK?

**["Darktrace Network: Sicurezza informatica intuitiva e guidata dall'IA con rilevamento delle minacce in tempo reale"](https://www.g2.com/it/survey_responses/darktrace-network-review-12679592)**

**Rating:** 5.0/5.0 stars

_— Daniel S._

[Read full review](https://www.g2.com/it/survey_responses/darktrace-network-review-12679592)

**["Sicurezza alimentata dall'IA, ha bisogno di un'interfaccia utente più amichevole"](https://www.g2.com/it/survey_responses/darktrace-network-review-12984323)**

**Rating:** 5.0/5.0 stars

_— Utente verificato_

[Read full review](https://www.g2.com/it/survey_responses/darktrace-network-review-12984323)

#### What Are G2 Users Discussing About Darktrace / NETWORK?

- [How does Darktrace collect data?](https://www.g2.com/it/discussions/how-does-darktrace-collect-data)
- [What is Darktrace and how it works?](https://www.g2.com/it/discussions/what-is-darktrace-and-how-it-works)
- [What can Darktrace do?](https://www.g2.com/it/discussions/what-can-darktrace-do)
- [What is Darktrace Antigena network?](https://www.g2.com/it/discussions/what-is-darktrace-antigena-network)
- [Che cos'è il sistema immunitario aziendale di Darktrace?](https://www.g2.com/it/discussions/what-is-darktrace-enterprise-immune-system) - 1 comment

### [ExtraHop](https://www.g2.com/it/products/extrahop/reviews)

ExtraHop è il partner di cybersecurity di cui le imprese si fidano per rivelare i rischi informatici e costruire la resilienza aziendale. La piattaforma ExtraHop RevealX per il rilevamento e la risposta alla rete e la gestione delle prestazioni di rete offre in modo unico la visibilità istantanea e le capacità di decrittazione senza pari di cui le organizzazioni hanno bisogno per esporre i rischi informatici e i problemi di prestazioni che altri strumenti non possono vedere. Quando le organizzazioni hanno piena trasparenza della rete con ExtraHop, possono indagare in modo più intelligente, fermare le minacce più velocemente e mantenere le operazioni in funzione. RevealX si implementa in sede o nel cloud. Affronta i seguenti casi d'uso: - Ransomware - Zero trust - Attacchi alla catena di fornitura del software - Movimento laterale e comunicazione C2 - Igiene della sicurezza - Gestione delle prestazioni di rete e applicazioni - IDS - Forense e altro ancora Alcuni dei nostri differenziatori: PCAP continuo e su richiesta: l'elaborazione completa dei pacchetti è superiore a NetFlow e offre rilevamenti di qualità superiore. Decrittazione strategica attraverso una varietà di protocolli, inclusi SSL/TLS, MS-RPC, WinRM e SMBv3, ti offre una migliore visibilità sulle minacce in fase iniziale nascoste nel traffico crittografato mentre tentano di muoversi lateralmente attraverso la tua rete. Copertura dei protocolli: RevealX decodifica più di 70 protocolli di rete. Apprendimento automatico su scala cloud: anziché fare affidamento su una potenza di calcolo "on-box" limitata per l'analisi e i rilevamenti, RevealX utilizza carichi di lavoro di apprendimento automatico ospitati nel cloud e su scala cloud per identificare comportamenti sospetti in tempo reale e creare avvisi ad alta fedeltà. ExtraHop è stata nominata Leader in The Forrester Wave™: Network Analysis and Visibility, Q2 2023. Principali integrazioni tecnologiche e partner di go-to-market: CrowdStrike: RevealX si integra con CrowdStrike Falcon® LogScale, Falcon Insight XDR, Falcon Threat Graph e Falcon Intelligence. Splunk SOAR AWS Google Cloud Security Fondata nel 2007, ExtraHop è una società privata con sede a Seattle, Washington. Per saperne di più, visita www.extrahop.com.

**Average Rating:** 4.6/5.0

**Total Reviews:** 68

#### How Do G2 Users Rate ExtraHop?

- **Arricchimento dei metadati:** 9.1/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 9.0/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 9.3/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 9.8/10 (Category avg: 8.9/10)

#### Who Is the Company Behind ExtraHop?

- **Venditore:** [ExtraHop Networks](https://www.g2.com/it/sellers/extrahop-networks)
- **Anno di Fondazione:** 2007
- **Sede centrale:** Seattle, Washington
- **Twitter:** @ExtraHop  
10,695 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=03b8d5e060cbe70fe5e5509ca10b34638477d3e3220671072d97532dbf9392a8&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fextrahop-networks%2F&secure%5Burl_type%5D=linkedin_company_website)  
761 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Ospedali e assistenza sanitaria, Trasporti/Autotrasporti/Ferroviario
- **Company Size:** 69% Large, 26% Medium

#### What Do G2 Reviewers Say About ExtraHop?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **soluzione tutto-in-uno** di ExtraHop, che consente una visibilità completa della rete e un eccellente supporto da parte di team competenti.
- Gli utenti apprezzano il **monitoraggio completo** fornito da ExtraHop, che consente un'analisi dettagliata del traffico e una maggiore visibilità della rete.
- Gli utenti trovano il **Facile Implementazione** di ExtraHop senza soluzione di continuità, migliorando la visibilità della rete con un eccellente supporto dai team di Customer Success.
- Gli utenti apprezzano il **supporto reattivo** dei competenti team di Customer Success di ExtraHop, migliorando la loro esperienza complessiva.

#### What Are Recent G2 Reviews of ExtraHop?

**["Un negozio unico per rilevamenti di rete e notifiche Facile da usare e facile da capire."](https://www.g2.com/it/survey_responses/extrahop-review-9197231)**

**Rating:** 5.0/5.0 stars

_— Jeff H._

[Read full review](https://www.g2.com/it/survey_responses/extrahop-review-9197231)

**["Visibilità completa sull'attività di rete"](https://www.g2.com/it/survey_responses/extrahop-review-10580190)**

**Rating:** 5.0/5.0 stars

_— Utente verificato in Assicurazioni_

[Read full review](https://www.g2.com/it/survey_responses/extrahop-review-10580190)

#### What Are G2 Users Discussing About ExtraHop?

- [Is ExtraHop a startup?](https://www.g2.com/it/discussions/is-extrahop-a-startup)
- [What is ExtraHop appliance?](https://www.g2.com/it/discussions/what-is-extrahop-appliance)
- [Is ExtraHop a SIEM?](https://www.g2.com/it/discussions/is-extrahop-a-siem)
- [What is ExtraHop?](https://www.g2.com/it/discussions/what-is-extrahop)

### [ManageEngine ADAudit Plus](https://www.g2.com/it/products/manageengine-adaudit-plus/reviews)

ADAudit Plus è un auditor guidato da UBA che aiuta a mantenere sicuri e conformi il tuo AD, Azure AD, i sistemi di file (inclusi Windows, NetApp, EMC, Synology, Hitachi e Huawei), i server Windows e le workstation. ADAudit Plus trasforma i dati grezzi e rumorosi dei log degli eventi in report e avvisi in tempo reale, permettendoti di ottenere una visibilità completa sulle attività che avvengono nel tuo ecosistema Windows Server in pochi clic. Più di 10.000 organizzazioni in tutto il mondo si affidano ad ADAudit Plus per: 1. Notificarli istantaneamente sui cambiamenti nei loro ambienti Windows Server. 2. Tracciare continuamente l'attività di accesso degli utenti Windows. 3. Monitorare il tempo attivo e inattivo trascorso dai dipendenti alle loro workstation. 4. Rilevare e risolvere i blocchi degli account AD. 5. Fornire una traccia di audit consolidata delle attività degli utenti privilegiati nei loro domini. 6. Tracciare i cambiamenti e gli accessi in Azure AD. 7. Auditare gli accessi ai file su sistemi di file Windows, NetApp, EMC, Synology, Hitachi e Huawei. 8. Monitorare l'integrità dei file sui file locali presenti sui sistemi Windows. 9. Mitigare le minacce interne sfruttando UBA e l'automazione delle risposte. 10. Generare report di conformità pronti per l'audit per SOX, il GDPR e altri mandati IT.

**Average Rating:** 4.6/5.0

**Total Reviews:** 59

#### How Do G2 Users Rate ManageEngine ADAudit Plus?

- **Arricchimento dei metadati:** 5.8/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 8.3/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 6.7/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 5.8/10 (Category avg: 8.9/10)

#### Who Is the Company Behind ManageEngine ADAudit Plus?

- **Venditore:** [Zoho](https://www.g2.com/it/sellers/zoho-b00ca9d5-bca8-41b5-a8ad-275480841704)
- **Anno di Fondazione:** 1996
- **Sede centrale:** Austin, TX
- **Twitter:** @Zoho  
137,880 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=9c8e45ddb296c32c6c5597ef9ba945c94562c57624f7bd1dcf1a9e9931f71578&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F38373%2F&secure%5Burl_type%5D=linkedin_company_website)  
30,766 dipendenti su LinkedIn®
- **Telefono:** +1 (888) 900-9646 

#### Who Uses This Product?

- **Top Industries:** Ospedali e assistenza sanitaria, Tecnologia dell'informazione e servizi
- **Company Size:** 59% Medium, 32% Large

#### What Do G2 Reviewers Say About ManageEngine ADAudit Plus?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **profondità dei report** in ADAudit Plus, migliorando la visibilità negli ambienti AD con opzioni predefinite.
- Gli utenti apprezzano l' **usabilità intuitiva del cruscotto** di ADAudit Plus, che offre una facile navigazione e opzioni di reportistica complete.
- Gli utenti apprezzano la **facile configurazione e le ampie opzioni di reportistica** in ManageEngine ADAudit Plus per un monitoraggio efficace.
- Gli utenti apprezzano il **design del dashboard** di ADAudit Plus per la sua panoramica completa e le opzioni di reportistica dettagliate.
- Gli utenti apprezzano il **cruscotto intuitivo e le ampie opzioni di reportistica** in ADAudit Plus per una gestione efficace di Active Directory.

##### Cons

- Gli utenti trovano i **livelli di allerta limitati** insufficienti per regolare finemente le notifiche, nonostante le opzioni di reportistica utili e le funzionalità di ricerca.
- Gli utenti trovano il **sovraccarico di dati** derivante dalle numerose opzioni di reportistica opprimente, rendendo difficile individuare report specifici.
- Gli utenti trovano il prodotto **costoso** , il che influisce sulla loro soddisfazione complessiva nonostante le sue caratteristiche e capacità.
- Gli utenti sperimentano **falsi positivi** con gli avvisi, che potrebbero essere migliorati con una maggiore granularità nei livelli di gravità.
- Gli utenti sono frustrati dall' **elevato utilizzo delle risorse** di ManageEngine ADAudit Plus, che influisce significativamente sulle prestazioni del sistema.

#### What Are Recent G2 Reviews of ManageEngine ADAudit Plus?

**["Configurazione Facile, Reportistica Potente e Grande Valore"](https://www.g2.com/it/survey_responses/manageengine-adaudit-plus-review-12999020)**

**Rating:** 4.5/5.0 stars

_— Ryan A._

[Read full review](https://www.g2.com/it/survey_responses/manageengine-adaudit-plus-review-12999020)

**["Ottimo strumento per l'auditing e le indagini di Active Directory"](https://www.g2.com/it/survey_responses/manageengine-adaudit-plus-review-13001820)**

**Rating:** 5.0/5.0 stars

_— Jose R._

[Read full review](https://www.g2.com/it/survey_responses/manageengine-adaudit-plus-review-13001820)

#### What Are G2 Users Discussing About ManageEngine ADAudit Plus?

- [What does AD audit do?](https://www.g2.com/it/discussions/what-does-ad-audit-do)
- [Is Ad audit plus a SIEM?](https://www.g2.com/it/discussions/is-ad-audit-plus-a-siem)
- [What is ManageEngine Audit Plus?](https://www.g2.com/it/discussions/what-is-manageengine-audit-plus)
- [What does ADAudit plus do?](https://www.g2.com/it/discussions/what-does-adaudit-plus-do)

### [Rapid7 Next-Gen SIEM](https://www.g2.com/it/products/rapid7-next-gen-siem/reviews)

Rapid7 InsightIDR è un SIEM SaaS per la rilevazione e risposta alle minacce moderne. InsightIDR consente agli analisti della sicurezza di lavorare in modo più efficiente ed efficace, unificando diverse fonti di dati, fornendo rilevamenti precoci e affidabili pronti all'uso, e offrendo indagini visive ricche e automazione per accelerare la risposta. Con un'implementazione cloud leggera e un'interfaccia utente intuitiva e un'esperienza di onboarding, i clienti di InsightIDR riconoscono un ritorno accelerato sul loro investimento e iniziano a vedere intuizioni preziose dal primo giorno. Con InsightIDR, i team possono avanzare il loro programma di rilevazione e risposta alle minacce senza aggiungere personale.

**Average Rating:** 4.4/5.0

**Total Reviews:** 69

#### How Do G2 Users Rate Rapid7 Next-Gen SIEM?

- **Arricchimento dei metadati:** 8.3/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 8.9/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 8.0/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 9.0/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Rapid7 Next-Gen SIEM?

- **Venditore:** [Rapid7](https://www.g2.com/it/sellers/rapid7)
- **Anno di Fondazione:** 2000
- **Sede centrale:** Boston, MA
- **Twitter:** @rapid7  
124,405 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=04bdb542ee8372d372b62e305f57e5c7aefbd59efac3d6831f78fcc71f4f819c&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F39624%2F&secure%5Burl_type%5D=linkedin_company_website)  
3,274 dipendenti su LinkedIn®
- **Proprietà:** NASDAQ:RPD

#### Who Uses This Product?

- **Top Industries:** Tecnologia dell'informazione e servizi, Software per computer
- **Company Size:** 67% Medium, 30% Large

#### What Do G2 Reviewers Say About Rapid7 Next-Gen SIEM?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **facilità d'uso** di Rapid7 Next-Gen SIEM, facilitando la gestione dei log e l'integrazione senza sforzo.
- Gli utenti apprezzano le **facili integrazioni** di Rapid7 Next-Gen SIEM, migliorando la compatibilità con vari strumenti di terze parti senza sforzo.
- Gli utenti apprezzano le **facili integrazioni** con strumenti di terze parti, migliorando la funzionalità e semplificando la gestione della sicurezza.
- Gli utenti apprezzano le **capacità di rilevamento delle minacce efficaci** di Rapid7 Next-Gen SIEM, migliorando la velocità e l'efficienza delle indagini.
- Gli utenti apprezzano la **visibilità** di Rapid7 Next-Gen SIEM, che consente una facile ricerca e comprensione dei dati di log.

##### Cons

- Gli utenti trovano le **funzionalità limitate** di Rapid7 Next-Gen SIEM restrittive rispetto ai concorrenti più grandi, ostacolando la creazione di avvisi.
- Gli utenti trovano le **capacità di allerta limitate** , rendendo difficile creare avvisi tempestivi ed efficaci.
- Gli utenti trovano la **gestione degli avvisi limitata** , rendendo difficile creare avvisi efficaci e tempestivi.
- Gli utenti trovano il processo di **personalizzazione difficile** frustrante, specialmente quando creano avvisi e impostano modelli.
- Gli utenti trovano **difficile l'installazione** di Rapid7 Next-Gen SIEM frustrante, specialmente per la creazione di avvisi e modelli.

#### What Are Recent G2 Reviews of Rapid7 Next-Gen SIEM?

**["SIEM intuitivo, ad alte prestazioni con ottimo supporto e valore conveniente"](https://www.g2.com/it/survey_responses/rapid7-next-gen-siem-review-12711350)**

**Rating:** 4.5/5.0 stars

_— Nihal J._

[Read full review](https://www.g2.com/it/survey_responses/rapid7-next-gen-siem-review-12711350)

**["Query veloci e facili con una potente funzione AI da testo semplice a LEQL"](https://www.g2.com/it/survey_responses/rapid7-next-gen-siem-review-13140538)**

**Rating:** 4.0/5.0 stars

_— Utente verificato in Tecnologia dell'informazione e servizi_

[Read full review](https://www.g2.com/it/survey_responses/rapid7-next-gen-siem-review-13140538)

#### What Are G2 Users Discussing About Rapid7 Next-Gen SIEM?

- [A cosa serve InsightIDR?](https://www.g2.com/it/discussions/what-is-insightidr-used-for)
- [What is rapid7 InsightVM?](https://www.g2.com/it/discussions/what-is-rapid7-insightvm)
- [Is rapid7 a SIEM?](https://www.g2.com/it/discussions/is-rapid7-a-siem)
- [What is rapid7 used for?](https://www.g2.com/it/discussions/insightidr-what-is-rapid7-used-for)
- [What is InsightIDR?](https://www.g2.com/it/discussions/what-is-insightidr)

### [Verizon Network Detection and Response](https://www.g2.com/it/products/verizon-network-detection-and-response/reviews)

Network Detection and Response è una piattaforma di sicurezza di rete fornita tramite cloud che ti aiuta a prendere provvedimenti contro le minacce e a identificare le minacce future con velocità, precisione e scala.

**Average Rating:** 3.6/5.0

**Total Reviews:** 16

#### How Do G2 Users Rate Verizon Network Detection and Response?

- **Arricchimento dei metadati:** 8.3/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 9.0/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 8.5/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 8.7/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Verizon Network Detection and Response?

- **Venditore:** [Verizon](https://www.g2.com/it/sellers/verizon)
- **Anno di Fondazione:** 1983
- **Sede centrale:** Basking RIdge, NJ
- **Twitter:** @Verizon  
1,486,564 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=11cabcb908a83f580e768918da49ce0dfbf7d794aa8582ec174ea41463d1a184&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F1103%2F&secure%5Burl_type%5D=linkedin_company_website)  
95,704 dipendenti su LinkedIn®
- **Proprietà:** NYSE:VZ

#### Who Uses This Product?

- **Company Size:** 44% Small, 31% Large

#### What Are Recent G2 Reviews of Verizon Network Detection and Response?

**["Verizon Network Detection and Response: Strumento molto affidabile per il rilevamento delle minacce e la risposta immediata"](https://www.g2.com/it/survey_responses/verizon-network-detection-and-response-review-9215039)**

**Rating:** 5.0/5.0 stars

_— Sigit P._

[Read full review](https://www.g2.com/it/survey_responses/verizon-network-detection-and-response-review-9215039)

**["Una Soluzione Efficace per il Rilevamento e la Risposta della Rete"](https://www.g2.com/it/survey_responses/verizon-network-detection-and-response-review-9549778)**

**Rating:** 4.5/5.0 stars

_— Jack M._

[Read full review](https://www.g2.com/it/survey_responses/verizon-network-detection-and-response-review-9549778)

### [Heimdal](https://www.g2.com/it/products/heimdal/reviews)

Accomodate tutte le tue esigenze di cybersecurity sotto un unico tetto conveniente con la Piattaforma di Cybersecurity Unificata Heimdal®. Le nostre soluzioni di cybersecurity possono essere utilizzate come prodotti autonomi o integrate tra loro come parte di una piattaforma XDR coesa e unificata. Che tu sia un rivenditore, distributore, MSSP o un'organizzazione impegnata a rafforzare la tua sicurezza online, forniamo una gamma di prodotti all'avanguardia per rendere la tua missione più agevole. Heimdal® è un'azienda di cybersecurity in rapida crescita focalizzata sull'innovazione tecnologica continua. Dalla sua fondazione nel 2014 a Copenaghen, basata sull'idea vincente dei Campioni del Mondo CTF, Heimdal ha vissuto una crescita spettacolare costruendo proattivamente prodotti che anticipano le tendenze del panorama delle minacce. L'azienda offre una suite di sicurezza multilivello e unificata che combina prevenzione delle minacce, gestione delle patch e degli asset, gestione dei diritti degli endpoint, antivirus e sicurezza della posta elettronica che insieme proteggono i clienti dagli attacchi informatici e mantengono al sicuro informazioni critiche e proprietà intellettuale. Heimdal è stata riconosciuta come leader di pensiero nel settore e ha vinto numerosi premi internazionali sia per le sue soluzioni che per la creazione di contenuti educativi. La linea di prodotti Heimdal attualmente consiste di 10 prodotti e 2 servizi. La prima categoria comprende Sicurezza DNS per Endpoint e Rete, Gestione delle Patch e degli Asset, Gestione degli Accessi Privilegiati, Controllo delle Applicazioni, Antivirus per Endpoint di Nuova Generazione, Protezione dalla Crittografia Ransomware, Sicurezza della Posta Elettronica, Prevenzione delle Frodi via Email e Desktop Remoto. La seconda è rappresentata da Rilevamento e Risposta degli Endpoint, così come Rilevamento e Risposta Estesa, o EDR e XDR in breve. Attualmente, le soluzioni di cybersecurity di Heimdal sono distribuite in più di 45 paesi e supportate a livello regionale da uffici in oltre 15 paesi, da più di 175 specialisti altamente qualificati. Heimdal è certificata ISAE 3000 e protegge più di 2 milioni di endpoint per oltre 10.000 aziende. L'azienda supporta i suoi partner senza concessioni sulla base della prevedibilità e scalabilità. L'obiettivo comune è creare un ecosistema sostenibile e una partnership strategica.

**Average Rating:** 4.4/5.0

**Total Reviews:** 76

#### How Do G2 Users Rate Heimdal?

- **Qualità del supporto:** 9.5/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Heimdal?

- **Venditore:** [Heimdal®](https://www.g2.com/it/sellers/heimdal)
- **Sito web dell'azienda:** heimdalsecurity.com
- **Anno di Fondazione:** 2014
- **Sede centrale:** Copenhagen, Denmark
- **Twitter:** @HeimdalSecurity  
5,086 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=4243d36e84d7125b091c9f78c8d63c35f03d88a7252b4c7df5584fd2fa0a49c1&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fheimdal-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
277 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Sicurezza informatica e di rete, Costruzioni
- **Company Size:** 58% Medium, 27% Small

#### What Do G2 Reviewers Say About Heimdal?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano l' **interfaccia utente semplice e diretta** di Heimdal, rendendola accessibile al personale di livello base.
- Gli utenti elogiano il **supporto clienti eccezionale** di Heimdal, notando risposte rapide e assistenza professionale che spesso supera le aspettative.
- Gli utenti apprezzano la **robusta sicurezza** di Heimdal, notando la sua affidabilità e l'interfaccia intuitiva per una difesa efficace.
- Gli utenti lodano Heimdal per le sue **soluzioni di sicurezza affidabili** , offrendo prestazioni costanti e supporto affidabile per le loro esigenze.
- Gli utenti apprezzano Heimdal per le sue **soluzioni di sicurezza affidabili** e il supporto reattivo 24/7, migliorando la fiducia degli utenti.

##### Cons

- Gli utenti affrontano significativi **problemi di accesso** con il portale amministrativo di Heimdal, trovando la navigazione complessa e le risorse essenziali difficili da individuare.
- Gli utenti trovano l' **interfaccia complessa** di Heimdal frustrante, lottando con la navigazione e l'accesso alle funzionalità essenziali.
- Gli utenti trovano le **opzioni di personalizzazione limitate** frustranti, in particolare nella navigazione del complesso portale di amministrazione e dell'interfaccia utente.
- Gli utenti trovano Heimdal **non intuitivo** a causa del suo portale amministrativo complesso e della navigazione difficile per compiti essenziali.
- Gli utenti segnalano difficoltà con **scarso supporto clienti** durante la configurazione iniziale, influenzando l'esperienza complessiva e l'efficienza.

#### What Are Recent G2 Reviews of Heimdal?

**["Gestione delle Patch Chiara e Visibilità degli Endpoint che Costruisce Fiducia nella Conformità"](https://www.g2.com/it/survey_responses/heimdal-review-13056558)**

**Rating:** 4.5/5.0 stars

_— Utente verificato in Compagnie aeree/Aviazione_

[Read full review](https://www.g2.com/it/survey_responses/heimdal-review-13056558)

**["La patching automatizzata rende la vita più facile, ma il desktop remoto ha bisogno di lavoro"](https://www.g2.com/it/survey_responses/heimdal-review-12879665)**

**Rating:** 5.0/5.0 stars

_— Kris B._

[Read full review](https://www.g2.com/it/survey_responses/heimdal-review-12879665)

### [Cisco Secure Network Analytics](https://www.g2.com/it/products/cisco-secure-network-analytics/reviews)

Stealthwatch è l'unica soluzione che rileva le minacce nella tua rete privata, nei cloud pubblici e persino nel traffico crittografato.

**Average Rating:** 4.4/5.0

**Total Reviews:** 31

#### How Do G2 Users Rate Cisco Secure Network Analytics?

- **Arricchimento dei metadati:** 8.9/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 8.9/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 10.0/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 9.7/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Cisco Secure Network Analytics?

- **Venditore:** [Cisco](https://www.g2.com/it/sellers/cisco)
- **Anno di Fondazione:** 1984
- **Sede centrale:** San Jose, CA
- **Twitter:** @Cisco  
720,366 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=476aeabc5a712d049453edd5c54ea0318890d9e60d93782e37fe028224df1cbd&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcisco%2F&secure%5Burl_type%5D=linkedin_company_website)  
95,545 dipendenti su LinkedIn®
- **Proprietà:** NASDAQ:CSCO

#### Who Uses This Product?

- **Top Industries:** Tecnologia dell'informazione e servizi, Sicurezza informatica e di rete
- **Company Size:** 52% Large, 33% Small

#### What Are Recent G2 Reviews of Cisco Secure Network Analytics?

**["Ottimo strumento di analisi della rete di Cisco"](https://www.g2.com/it/survey_responses/cisco-secure-network-analytics-review-8647472)**

**Rating:** 4.5/5.0 stars

_— Utente verificato in Tecnologia dell'informazione e servizi_

[Read full review](https://www.g2.com/it/survey_responses/cisco-secure-network-analytics-review-8647472)

**["Revisione della Rete Sicura Cisco"](https://www.g2.com/it/survey_responses/cisco-secure-network-analytics-review-8728642)**

**Rating:** 5.0/5.0 stars

_— Harsh P._

[Read full review](https://www.g2.com/it/survey_responses/cisco-secure-network-analytics-review-8728642)

### [NetWitness Platform](https://www.g2.com/products/netwitness-platform/reviews)

NetWitness is a comprehensive threat detection, investigation and response platform that combines visibility, analytics, insight, and automation into a single solution. It collects and analyzes data across all capture points (logs, packets, netflow, endpoint and IoT) and computing platforms (physical, virtual and cloud), enriching data with threat intelligence and business context.

**Average Rating:** 3.9/5.0

**Total Reviews:** 23

#### How Do G2 Users Rate NetWitness Platform?

- **Metadata Enrichment:** 8.3/10 (Category avg: 8.5/10)
- **Quality of Support:** 7.6/10 (Category avg: 8.9/10)
- **Multi-Network Monitoring:** 6.7/10 (Category avg: 8.6/10)
- **Network Visibility:** 8.3/10 (Category avg: 8.9/10)

#### Who Is the Company Behind NetWitness Platform?

- **Seller:** [NetWitness](https://www.g2.com/sellers/netwitness)
- **Year Founded:** 1997
- **HQ Location:** Bedford, MA
- **Twitter:** @Netwitness  
1,621 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=8ae249a18b34c6a0f632d7c0953c6bcf05c3692f1f32add16a5d89d58de98cdb&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fnetwitness-platform%2F&secure%5Burl_type%5D=linkedin_company_website)  
194 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 54% Large, 33% Medium

#### What Do G2 Reviewers Say About NetWitness Platform?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **centralized management** of NetWitness Platform for its comprehensive threat hunting capabilities across various data sources.
- Users appreciate the **converged capabilities** of NetWitness Platform, which streamline threat hunting and reduce tool sprawl.
- Users appreciate the **packet capture and replay capabilities** of NetWitness Platform, essential for thorough forensic investigations.
- Users appreciate the **ability to capture full network packets** , enhancing their deep forensic investigation capabilities.
- Users value the **centralized view** offered by the Management Console, enhancing efficiency in threat hunting across diverse environments.

##### Cons

- Users find the **complex implementation** of NetWitness Platform challenging, needing significant technical expertise for deployment and upgrades.
- Users find the **initial deployment and upgrades complicated** , often necessitating significant technical expertise and leading to instability.
- Users find the **initial setup complex** , often needing extensive technical expertise, and face challenges during upgrades.
- Users find the **deployment difficulties** of NetWitness Platform challenging, needing extensive expertise and facing upgrade instability.
- Users find the **expertise required** for initial deployment and upgrades complicates their experience with NetWitness Platform.

#### What Are Recent G2 Reviews of NetWitness Platform?

**["All-in-One Security Console for Centralized Threat Hunting"](https://www.g2.com/survey_responses/netwitness-platform-review-12381089)**

**Rating:** 5.0/5.0 stars

_— Verified User in Information Services_

[Read full review](https://www.g2.com/survey_responses/netwitness-platform-review-12381089)

**["A Powerhouse in Endpoint, Network, and SIEM Integration."](https://www.g2.com/survey_responses/netwitness-platform-review-11524038)**

**Rating:** 4.0/5.0 stars

_— pushpendra Y._

[Read full review](https://www.g2.com/survey_responses/netwitness-platform-review-11524038)

#### What Are G2 Users Discussing About NetWitness Platform?

- [What is one of the biggest differentiators for RSA NetWitness platform?](https://www.g2.com/discussions/what-is-one-of-the-biggest-differentiators-for-rsa-netwitness-platform)
- [What types of data can the RSA NetWitness platform capture and process?](https://www.g2.com/discussions/what-types-of-data-can-the-rsa-netwitness-platform-capture-and-process)
- [What is NetWitness used for?](https://www.g2.com/discussions/what-is-netwitness-used-for) - 1 comment
- [What does RSA NetWitness do?](https://www.g2.com/discussions/what-does-rsa-netwitness-do)

### [Blumira Automated Detection & Response](https://www.g2.com/it/products/blumira-automated-detection-response/reviews)

Blumira è una piattaforma integrata per le operazioni di sicurezza costruita per i team in crescita e i partner che li supportano per ottenere una visibilità completa nel loro ambiente, identificare e affrontare i rischi più rapidamente e fornire sicurezza avanzata e conformità. La piattaforma include: - Rilevamenti Gestiti per la caccia automatizzata alle minacce per identificare gli attacchi precocemente - Investigazione AI con il 98,5% di precisione, triage con intervento umano validato su casi reali - Risposta Rapida con automazione e azioni con un clic per contenere e bloccare le minacce immediatamente - Un Anno di Conservazione dei Dati con ingestione illimitata di log per soddisfare i requisiti di conformità - Reportistica Avanzata e dashboard per forense e facile investigazione - Protezione Endpoint & Identità (EDR/ITDR) per la rimedio in tempo reale su dispositivi e utenti - Supporto Operazioni di Sicurezza 24/7 per questioni di priorità critica

**Average Rating:** 4.6/5.0

**Total Reviews:** 122

#### How Do G2 Users Rate Blumira Automated Detection & Response?

- **Arricchimento dei metadati:** 6.7/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 9.5/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 8.9/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 7.9/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Blumira Automated Detection & Response?

- **Venditore:** [Blumira](https://www.g2.com/it/sellers/blumira)
- **Sito web dell'azienda:** www.blumira.com
- **Anno di Fondazione:** 2018
- **Sede centrale:** Ann Arbor, Michigan
- **Twitter:** @blumira  
1 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=2a04d201c0abee0744509c17e4beed4ccbdbde532e5d35f04981851a7ee48cfa&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fblumira%2F&secure%5Burl_type%5D=linkedin_company_website)  
67 dipendenti su LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** IT Manager
- **Top Industries:** Tecnologia dell'informazione e servizi, Sicurezza informatica e di rete
- **Company Size:** 51% Medium, 36% Small

#### What Do G2 Reviewers Say About Blumira Automated Detection & Response?

_AI-generated summary from verified user reviews_

##### Pros

- Gli utenti apprezzano la **facilità d'uso** di Blumira, notando la rapida configurazione e il team di supporto reattivo.
- Gli utenti apprezzano il **supporto reattivo e personalizzato** del team SOC di Blumira, migliorando significativamente la loro esperienza complessiva.
- Gli utenti trovano il **processo di configurazione incredibilmente facile** , con un'integrazione intuitiva e funzionalità di allerta immediata che potenziano la gestione della sicurezza.
- Gli utenti apprezzano l' **affidabile allerta in tempo reale** di Blumira, migliorando la loro esperienza senza sopraffarli con notifiche non necessarie.
- Gli utenti apprezzano l' **affidabile allerta in tempo reale** di Blumira, apprezzandone la chiarezza e la facilità di gestione.

##### Cons

- Gli utenti trovano la **personalizzazione limitata** nei filtri di rilevamento uno svantaggio, nonostante il supporto utile per creare rilevamenti personalizzati.
- Gli utenti affrontano problemi con **falsi positivi** dagli avvisi, che possono interrompere le funzioni aziendali e sprecare tempo prezioso.
- Gli utenti trovano il **modello di prezzo inflessibile e costoso** , rendendo difficile soddisfare le loro esigenze di bilancio.
- Gli utenti affrontano sfide con **falsi positivi** in Blumira, portando a frustrazione e perdita di tempo su avvisi ripetitivi.
- Gli utenti notano le **informazioni insufficienti** disponibili sull'acquisizione dei dati, rendendo la ricerca e l'usabilità difficili.

#### What Are Recent G2 Reviews of Blumira Automated Detection & Response?

**["Passa dalle Vendite all'Onboarding con un'Interfaccia Utente Intuitiva e Facile da Configurare"](https://www.g2.com/it/survey_responses/blumira-automated-detection-response-review-12984186)**

**Rating:** 5.0/5.0 stars

_— Blake C._

[Read full review](https://www.g2.com/it/survey_responses/blumira-automated-detection-response-review-12984186)

**["Un sistema di rilevamento completo con un supporto fantastico"](https://www.g2.com/it/survey_responses/blumira-automated-detection-response-review-10479545)**

**Rating:** 5.0/5.0 stars

_— Jeremy A._

[Read full review](https://www.g2.com/it/survey_responses/blumira-automated-detection-response-review-10479545)

#### What Are G2 Users Discussing About Blumira Automated Detection & Response?

- [Quali sono i vantaggi e gli svantaggi dell'utilizzo di Blumira per il rilevamento delle minacce?](https://www.g2.com/it/discussions/what-are-the-benefits-and-drawbacks-of-using-blumira-for-threat-detection)
- [What is cloud SIEM?](https://www.g2.com/it/discussions/what-is-cloud-siem)
- [What does the term Siem stand for?](https://www.g2.com/it/discussions/what-does-the-term-siem-stand-for)
- [What does Blumira do?](https://www.g2.com/it/discussions/what-does-blumira-do)
- [What is Blumira automated detection & response?](https://www.g2.com/it/discussions/what-is-blumira-automated-detection-response)

### [Corelight](https://www.g2.com/products/corelight/reviews)

Corelight's Open Network Detection and Response (NDR) Platform improves network detection coverage, accelerates incident response, and reduces operational costs by consolidating NDR, intrusion detection (IDS), and PCAP functionality in a single solution and by providing security analysts with machine learning-assisted investigations and one-click-pivots from prioritized alerts to the evidence needed to investigate and remediate them. Network Detection and Response platforms monitor and analyze network traffic, delivering telemetry into existing SIEM, XDR, or SaaS-based solutions. Corelight’s platform is unique because our detections and visibility engineering are community driven—with continuous content creation from Zeek®, Suricata IDS, and other Intel communities. And our integration with CrowdStrike XDR enables cross platform (EDR+NDR) analytics. This provides you with the most complete network visibility, powerful analytics, and threat hunting capabilities, and accelerates investigation across your entire kill chain. Corelight also delivers a comprehensive suite of network security analytics that help organizations identify more than 75 adversarial TTPs across the MITRE ATT&CK® spectrum including Exfiltration, Command and Control (C2), and Lateral Movement. These detections reveal known and unknown threats via hundreds of unique insights and alerts across machine learning, behavioral analysis, and signature-based approaches. CORELIGHT PRODUCTS + SERVICES Open NDR Platform Appliance, Cloud, Software, Virtual and SaaS Sensors IDS Fleet Manager Investigator Threat Hunting Platform Smart PCAP Corelight Training CERTIFICATIONS FIPS 140-2

**Average Rating:** 4.6/5.0

**Total Reviews:** 20

#### How Do G2 Users Rate Corelight?

- **Metadata Enrichment:** 8.6/10 (Category avg: 8.5/10)
- **Quality of Support:** 9.1/10 (Category avg: 8.9/10)
- **Multi-Network Monitoring:** 9.0/10 (Category avg: 8.6/10)
- **Network Visibility:** 9.1/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Corelight?

- **Seller:** [Corelight](https://www.g2.com/sellers/corelight)
- **Year Founded:** 2013
- **HQ Location:** San Francisco, CA
- **Twitter:** @corelight\_inc  
4,227 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=93887355efbb4d86e0cb68a5d54ea5b7289fd77ba26178d31fc6a761d658f522&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcorelight&secure%5Burl_type%5D=linkedin_company_website)  
474 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Computer & Network Security
- **Company Size:** 50% Medium, 50% Large

#### What Do G2 Reviewers Say About Corelight?

_AI-generated summary from verified user reviews_

##### Pros

- Users praise Corelight for its **comprehensive security** features, effectively detecting threats and simplifying network event analysis.
- Users value Corelight for its **effective network telemetry** , simplifying the detection of security threats and vulnerabilities.
- Users value the **great network telemetry** of Corelight, enhancing security event visibility and threat detection efficiency.
- Users commend Corelight for its **exceptional network security** capabilities, effectively detecting threats and simplifying event analysis.
- Users appreciate the **robust security features** of Corelight, enabling effective detection of network threats and smooth operation.

##### Cons

- Users find Corelight's **complex coding** challenging, making it difficult for novice security analysts to navigate effectively.
- Users find the **complex configuration** of Corelight challenging, especially for novice security analysts requiring specialized knowledge.
- Users find Corelight's setup and management **complex and not suitable for novice security analysts** , requiring specialized knowledge and costly training.
- Users find the **complex setup** of Corelight challenging, especially for novice security analysts needing specialized knowledge.
- Users find the **learning curve challenging** , particularly for novice security analysts needing specialized training for effective use.

#### What Are Recent G2 Reviews of Corelight?

**["Best NDR solution Guardians of Network"](https://www.g2.com/survey_responses/corelight-review-8692252)**

**Rating:** 5.0/5.0 stars

_— Aman P._

[Read full review](https://www.g2.com/survey_responses/corelight-review-8692252)

**["Corelight the Threat Hunters"](https://www.g2.com/survey_responses/corelight-review-11196044)**

**Rating:** 4.5/5.0 stars

_— Andy V._

[Read full review](https://www.g2.com/survey_responses/corelight-review-11196044)

### [Cisco Adaptive Wireless IPS Software](https://www.g2.com/it/products/cisco-adaptive-wireless-ips-software/reviews)

Il Cisco Adaptive Wireless Intrusion Prevention System (IPS) offre una sicurezza di rete avanzata per il monitoraggio dedicato e il rilevamento delle anomalie della rete wireless, degli accessi non autorizzati e degli attacchi RF. Completamente integrata con il Cisco Unified Wireless Network, questa soluzione fornisce visibilità e controllo integrati su tutta la rete, senza la necessità di una soluzione overlay.

**Average Rating:** 4.3/5.0

**Total Reviews:** 16

#### How Do G2 Users Rate Cisco Adaptive Wireless IPS Software?

- **Arricchimento dei metadati:** 8.5/10 (Category avg: 8.5/10)
- **Qualità del supporto:** 8.2/10 (Category avg: 8.9/10)
- **Monitoraggio Multi-Rete:** 8.3/10 (Category avg: 8.6/10)
- **Visibilità della Rete:** 8.7/10 (Category avg: 8.9/10)

#### Who Is the Company Behind Cisco Adaptive Wireless IPS Software?

- **Venditore:** [Cisco](https://www.g2.com/it/sellers/cisco)
- **Anno di Fondazione:** 1984
- **Sede centrale:** San Jose, CA
- **Twitter:** @Cisco  
720,366 follower su Twitter
- **Pagina LinkedIn®:** [www.linkedin.com](https://www.g2.com/it/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=476aeabc5a712d049453edd5c54ea0318890d9e60d93782e37fe028224df1cbd&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcisco%2F&secure%5Burl_type%5D=linkedin_company_website)  
95,545 dipendenti su LinkedIn®
- **Proprietà:** NASDAQ:CSCO

#### Who Uses This Product?

- **Company Size:** 63% Medium, 25% Large

#### What Are Recent G2 Reviews of Cisco Adaptive Wireless IPS Software?

**["Proteggere le reti wireless con Cisco Adaptive Wireless IPS"](https://www.g2.com/it/survey_responses/cisco-adaptive-wireless-ips-software-review-9025295)**

**Rating:** 4.5/5.0 stars

_— umesh s._

[Read full review](https://www.g2.com/it/survey_responses/cisco-adaptive-wireless-ips-software-review-9025295)

**["Software Cisco Adaptive Wireless IPS."](https://www.g2.com/it/survey_responses/cisco-adaptive-wireless-ips-software-review-9051686)**

**Rating:** 5.0/5.0 stars

_— Varun Preet S._

[Read full review](https://www.g2.com/it/survey_responses/cisco-adaptive-wireless-ips-software-review-9051686)

- &lsaquo; Prev‹ Prev
- 1
- [2](/categories/network-detection-and-response-ndr?order=g2_score&page=2#product-list)
- [3](/categories/network-detection-and-response-ndr?order=g2_score&page=3#product-list)
- [4](/categories/network-detection-and-response-ndr?order=g2_score&page=4#product-list)
- [5](/categories/network-detection-and-response-ndr?order=g2_score&page=5#product-list)
- [Next &rsaquo;Next ›](/categories/network-detection-and-response-ndr?order=g2_score&page=2#product-list)

Spotlight Categories

[E-Signature Software](https://www.g2.com/categories/e-signature)

[Electronic Data Interchange (EDI) Software](https://www.g2.com/categories/electronic-data-interchange-edi)

[Customer Service Automation Software](https://www.g2.com/categories/customer-service-automation)

[Sales Intelligence Software](https://www.g2.com/categories/sales-intelligence)

[Employee Engagement Software](https://www.g2.com/categories/employee-engagement)

Similar Categories

- [Business VPN](/categories/business-vpn)
- [DNS Security Solutions](/categories/dns-security-solutions)
- [Firewall Software](/categories/firewall-software)
- [Intrusion Detection and Prevention Systems (IDPS)](/categories/intrusion-detection-and-prevention-systems-idps)

- [Microsegmentation](/categories/microsegmentation)
- [Network Access Control (NAC)](/categories/network-access-control-nac)
- [Network Sandboxing](/categories/network-sandboxing)
- [Network Security Policy Management (NSPM)](/categories/network-security-policy-management-nspm)

- [Network Traffic Analysis (NTA)](/categories/network-traffic-analysis-nta)
- [Software-Defined Perimeter (SDP)](/categories/software-defined-perimeter-sdp)
- [Unified Threat Management (UTM)](/categories/unified-threat-management-utm)

[Browse Network Detection and Response (NDR) Themes](/categories/network-detection-and-response-ndr/themes)

 ![Brandon Summers-Miller](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Brandon Summers-Miller")
BS

Researched and written by [Brandon Summers-Miller](https://research.g2.com/insights/author/brandon-summers-miller)

Updated October 3, 2024

Network detection and response (NDR) software is used to document business network activity for security threats and alert relevant parties or automate threat remediation. These tools work by monitoring east-west traffic and comparing them to established baselines. When traffic behavior deviates from normal functionality, the solution will detect the issue and assist in forensic investigation. Many tools include or integrate with other solutions that automate incident response processes to minimize the threat’s impact.

These tools are used by security professionals and IT staff to observe network traffic and detect anomalies related to user behavior. Other, older technologies may offer one component of network threat detection or incident response, but NDR combines the functionality of numerous security solutions. These tools use artificial intelligence and machine learning to analyze user behavior as well as existing security data; security professionals can then use that data to develop streamlined discovery and response workflows.

[Network traffic analysis (NTA)](https://www.g2.com/categories/network-traffic-analysis-nta) is a similar emerging technology related to NDR. NTA is the core technology behind NDR; it refers to the analytical and monitoring capabilities used to develop baselines and response frameworks as NDR. But NTA solutions do not have the same level of response automation and end-user, behavioral anomaly detection used to trigger incident response. [Endpoint detection and response (EDR)](https://www.g2.com/categories/endpoint-detection-response-edr) has a similar name, but products within that category only detect issues at the device level while NDR provides visibility to threats across the entire network.

To qualify for inclusion in the Network Detection and Response (NDR) category, a product must:

- Analyze network traffic in real time
- Utilize AI or ML to develop baselines for network behavior 
- Automate threat and anomaly detection across the network
- Deploy network forensics upon detection for investigation and remediation

Show More

### Network Detection and Response (NDR) Topics

- [What is Network Detection and Response (NDR) Software?](#what-is-network-detection-and-response-ndr-software)
- [What are the Common Features of Network Detection and Response (NDR) System?](#what-are-the-common-features-of-network-detection-and-response-ndr-system)
- [What are the Benefits of Network Detection and Response (NDR)&nbsp; Software?](#what-are-the-benefits-of-network-detection-and-response-ndr-software)
- [What Are Alternatives to Network Detection and Response (NDR) Software?](#what-are-alternatives-to-network-detection-and-response-ndr-software)
- [Challenges with Network Detection and Response (NDR) Software](#challenges-with-network-detection-and-response-ndr-software)
- [How to Buy Network Detection and Response (NDR) Software](#how-to-buy-network-detection-and-response-ndr-software)
- [What Does Network Detection and Response (NDR) Software Cost?](#what-does-network-detection-and-response-ndr-software-cost)

[
### Network Detection and Response (NDR) Topics
Expand/Collapse ](#)
- [What is Network Detection and Response (NDR) Software?](#what-is-network-detection-and-response-ndr-software)
- [What are the Common Features of Network Detection and Response (NDR) System?](#what-are-the-common-features-of-network-detection-and-response-ndr-system)
- [What are the Benefits of Network Detection and Response (NDR)&nbsp; Software?](#what-are-the-benefits-of-network-detection-and-response-ndr-software)
- [What Are Alternatives to Network Detection and Response (NDR) Software?](#what-are-alternatives-to-network-detection-and-response-ndr-software)
- [Challenges with Network Detection and Response (NDR) Software](#challenges-with-network-detection-and-response-ndr-software)
- [How to Buy Network Detection and Response (NDR) Software](#how-to-buy-network-detection-and-response-ndr-software)
- [What Does Network Detection and Response (NDR) Software Cost?](#what-does-network-detection-and-response-ndr-software-cost)

## Learn More About Network Detection and Response (NDR) Software

### What is Network Detection and Response (NDR) Software?

Network detection and response (NDR) software documents a company’s network activity while automating threat remediation and reporting cyber threats to IT and security teams. NDR enables an organization to consolidate IT security services into one solution and simplifies network protection.

NDR is critical because it provides an end-to-end view of network activity. For example, certain malicious activity may not be reflected in network logs but will be visible by network tools as soon as they interact with systems throughout the network.&nbsp;

Since NDR software uses artificial intelligence (AI) and machine learning (ML) to analyze network traffic, it is highly adept at detecting malicious behavior as well as reporting and remediating such activity in real time.&nbsp;

### What are the Common Features of Network Detection and Response (NDR) System?

NDR system usually includes the following:

**AI and ML:** NDR uses AI and ML in its software solution. IT and security professionals can use the data to develop streamlined discovery and response workflows across an organization’s network.

**Automated threat detection:** When traffic behavior deviates from normal functionality, an NDR solution detects the issue and automatically assists in an investigation. NDR software includes or integrates with other solutions that automate incident response processes to minimize the threat’s impact.

### What are the Benefits of Network Detection and Response (NDR)&nbsp; Software?

There are several benefits to using NDR software.

**Automatically detects anomalies** : NDR software automatically detects anomalies in network traffic by applying non-signature-based detection techniques and using behavioral analytics, AI, and ML.

**Monitors all traffic flows** : NDR solutions monitor all traffic entering or exiting the network so there is visibility to identify and mitigate security incidents, regardless of where a threat comes from. Giving this end-to-end view of the network offers IT and security teams greater visibility across the network to mitigate traffic threats.

**Analyzes network in real time** : NDR analyzes an organization’s network for threats in real time or near real time. It provides timely alerts for IT and security teams, improving incident response times.

**Narrows down incident response** : NDR solutions attribute malicious behavior to specific IP addresses and perform forensic analyses through AI and ML to determine how threats have moved across a network environment. This leads to faster, more efficient incident response.&nbsp;

**Who Uses Network Detection and Response (NDR) Software?**

**Network IT and cybersecurity staff:** These workers use NDR software to observe network traffic and detect anomalies related to user behavior.

**Industries** : Organizations in all industries, especially technology or highly sensitive data-oriented sectors like financial services, seek NDR solutions to help protect their networks.

### What Are Alternatives to Network Detection and Response (NDR) Software?

Network traffic analysis (NTA) software and endpoint detection response (EDR) software are alternatives to NDR software.

[Network traffic analysis (NTA) software](https://www.g2.com/categories/network-traffic-analysis-nta): NTA software is similar to NDR tools in that it monitors network traffic and looks for suspicious activity while providing real-time analysis and alerting IT administrators. The main difference is that it also analyzes network performance and pinpoints reasons for slow downloads.&nbsp;

[Endpoint detection & response (EDR)](https://www.g2.com/categories/endpoint-detection-response-edr)[software](https://www.g2.com/categories/endpoint-detection-response-edr): EDR tools are similar to NDR solutions, focusing on network activity. It detects, investigates, and removes malicious software penetrating a network’s devices. These tools give greater visibility of a system’s overall health, including each specific device’s state. Companies use these tools to mitigate endpoint penetrations quickly and prevent data loss, theft, or system failures.&nbsp;

### Challenges with Network Detection and Response (NDR) Software

There are some challenges IT teams can encounter with NDR software.

**Sophisticated hackers:** With high volumes of data traveling across an organization’s network, hackers create more sophisticated threats that can hide their tracks and avoid detection by blending in with traffic patterns. Attackers can also make threats move in small and infrequent batches to avoid detection.

**Budget constraints:** As hackers become more sophisticated, organizations must keep their NDR solutions up-to-date to keep up with the latest threats. Budget constraints could prevent IT and security teams from doing so.

### How to Buy Network Detection and Response (NDR) Software

#### Requirements Gathering (RFI/RFP) for Network Detection and Response (NDR) Software&nbsp;

If an organization is just starting and looking to purchase NDR software, G2 can help.

The manual work necessary in security and compliance causes multiple pain points. If the company is large and has a lot of networks, data, or devices in its organization, it may need to shop for scalable NDR&nbsp; solutions. Users should think about the pain points in their security to help create a checklist of criteria. Additionally, the buyer must determine the number of employees who will need to use this software and if they currently have the skills to administer it.&nbsp;

Taking a holistic overview of the business and identifying pain points can help the team springboard into creating a checklist of criteria. The list is a detailed guide that includes necessary and nice-to-have features, including budget features, number of users, integrations, security staff skills, cloud or on-premises solutions, and more.

Depending on the deployment scope, producing an RFI, a one-page list with bullet points describing what is needed from NDR software, might be helpful.

#### Compare Network Detection and Response (NDR) Software Products

**Create a long list**

Vendor evaluations are essential to the software buying process, from meeting the business functionality needs to implementation. For ease of comparison, after all demos are complete, it helps to prepare a consistent list of questions regarding specific needs and concerns to ask each vendor.

**Create a short list**

From the long list of vendors, it is helpful to narrow the list of vendors and come up with a shorter list of contenders, preferably no more than three to five. With this list, businesses can produce a matrix to compare the features and pricing of the various solutions.

**Conduct demos**

To ensure a comprehensive comparison, the user should demo each solution on the short list with the same use cases. This allows the business to evaluate like for like and see how each vendor stacks up against the competition.&nbsp;

#### Selection of Network Detection and Response (NDR) Software

**Choose a selection team**

Before getting started, creating a winning team that will work together throughout the process, from identifying pain points to implementation, is crucial. The selection team should include organization members with the right interests, skills, and participation time.&nbsp;

A good starting point is to aim for three to five people who fill roles such as the primary decision maker, project manager, process owner, system owner, or staffing subject matter expert, as well as a technical lead, head administrator, or security administrator. The vendor selection team in smaller companies may have fewer participants who will multitask and take on more responsibilities.

**Compare notes**

The selection team should compare notes, facts, and figures noted during the process, such as costs, security capabilities, and alert and incident response times.

**Negotiation**

Just because something is written on a company’s pricing page does not mean it's final. It is crucial to open up a conversation regarding pricing and licensing. For example, the vendor may be willing to give a discount for multi-year contracts or for recommending the product to others.

**Final decision**

After this stage, and before going all in, it is recommended to roll out a test run or pilot program to test adoption with a small sample size of users. If the tool is well used and received, the buyer can be confident that the selection was correct. If not, it might be time to return to the drawing board.

### What Does Network Detection and Response (NDR) Software Cost?

NDR software is considered a long-term investment. This means there must be a careful evaluation of vendors, and the software should be tailored to each organization's specific requirements. Once NDR software is purchased, deployed, and integrated into an organization’s security system, the cost could be high, so the evaluation stage of selecting the right tool is crucial.&nbsp;

The chosen NDR vendor should continue to provide support for the platform with flexibility and open integration. Pricing can be pay-as-you-go, and costs may also vary depending on whether unified threat management is self-managed or fully managed.

#### Return on Investment (ROI)

As organizations consider recouping the money spent on the software, it is critical to understand the costs that will be saved in terms of efficiency. In the long run, the investment must be worth preventing downtime, loss of revenue, and any reputation damage that a security breach would cause.