AM
Ashley M.
System Administrator
Enterprise (> 1000 emp.)
"Cortext XDR - Good AV"
4.5/5
What do you like best about Cortex XDR?

Centralised management interface and stability of client Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

Agent was unstable once or twice on inital update Review collected by and hosted on G2.com.

TI
Tony I.
Snr Security analyst
Enterprise (> 1000 emp.)
"Cortex XDR best in Endpoint Protection and also provides Wealth of information from Endpoint"
5/5
What do you like best about Cortex XDR?

Ease of use and details information provided from Endpoints. Cortex XDR also detects threats with behavioral analytics more accurately and allows you to contain and isolate endpoints quickly before any damage is done. Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

Cortex XDR does not currently allow us to download Policies, thereby making it difficult to audit applied policies Easily. Review collected by and hosted on G2.com.

Verified User in Computer Software
UC
Verified User in Computer Software
Mid-Market (51-1000 emp.)
"Best tool to avoid security attacks like DDOS"
4.5/5
What do you like best about Cortex XDR?

speed up the RCA investivation of unwanted security attacks with analytics

Easy to use

Nominal charges

Offers endpoint management Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

Nothing to be disliked about this product Review collected by and hosted on G2.com.

Billy S.
BS
Billy S.
IT Specialist
Information Technology and Services
Mid-Market (51-1000 emp.)
"Execute network-wide information security"
4.5/5
What do you like best about Cortex XDR?

It is very helpful to handle the various operational requirements of firewalls with Palo Alto. It allows you to build shared laws which can be enforced in many proxy servers. It also utilizes software actions to spot hostility and prevent our system. As each category of firewalls has different uses, Palo Alto helps to detect if there are unidentified devices that generate unwanted traffic and what sort of traffic it is. Also, filters introduced between organizational sessions in several areas are able to remain permanent. Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

It is very helpful to handle the various operational requirements of firewalls with Palo Alto. It allows you to build shared laws which can be enforced in many proxy servers. It also utilizes software actions to spot hostility and prevent our system. As each category of firewalls has different uses, Palo Alto helps to detect if there are unidentified devices that generate unwanted traffic and what sort of traffic it is. Also, filters introduced between organizational sessions in several areas are able to remain permanent. Review collected by and hosted on G2.com.

Pedro C.
PC
Pedro C.
IT Specialist
Information Technology and Services
Mid-Market (51-1000 emp.)
"Handle all of our settings at all of our distinct locations"
4.5/5
What do you like best about Cortex XDR?

Palo Alto Traps is very helpful for updating the majority of the software by a single tap. The Control Panel and the ACC provide helpful data to display all firewalls or to be able to select which one we want to work with. Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

We switch from local to the cloud variant of Traps, as in the cloud version's there were almost no training alternatives, which have changed over time. Also, sometimes the PANOS extension to the firewalls merely stops working with no particular reason. In general, I think the system does not have a big customer environment. Also, it appears to be too severe (so much that’s unnecessary) when any small threat is detected. Review collected by and hosted on G2.com.

Verified User in Fund-Raising
AF
Verified User in Fund-Raising
Mid-Market (51-1000 emp.)
"One of the better endpoint security products"
4.5/5
What do you like best about Cortex XDR?

Traps has prevented anomalous behavior in our environment a couple of times. This has saved us a lot of trouble. The management interface is intuitive and easy to comprehend. Agent impact on performance in negligible. Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

At the moment the rollout on MacOS Cataline gave us a little headache, but as of today Traps supports Cataline. Just make sure you update Traps first to the newest version. Otherwise you have to uninstall Traps and reinstall the new version.

I don't like to way to create Agent Installations. For every new version you create a new installation "package". You should never delete it as long as machines make use of that installation.Just hide them. But it feels this could be done easier. Review collected by and hosted on G2.com.

JW
Joe W.
Mid-Market (51-1000 emp.)
"Great Next Gen Antivirus"
5/5
What do you like best about Cortex XDR?

The ability to configure it and know that it will auto update without needing regular input. Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

If a piece of software gets updated that you have whitelisted by hash control, it can re trigger after each update. This only happens with smaller oneoff software the system hasnt seen before, Review collected by and hosted on G2.com.

Verified User in Computer & Network Security
AC
Verified User in Computer & Network Security
Mid-Market (51-1000 emp.)
"Excellent threat hunting capabilities "
5/5
What do you like best about Cortex XDR?

that with secdo our security team is really able to be proactive and not just handle alerts in a reactive way. Because we handle alerts faster, we have time to threat hunt – based on leads, IOCs or even behavioral IOCs we created in secdo.

And because they record all endpoint activity and store it for months – we can really hunt. We can find advanced, fileless, and in-memory attacks, and go deep into suspicious activity to identify anomalies that could lead to silent threats. Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

I am waiting for them to add some features we asked for, but other than that - none. Review collected by and hosted on G2.com.

Verified User in Consumer Goods
AC
Verified User in Consumer Goods
Mid-Market (51-1000 emp.)
"EDR with focus on SOC problems, very good "
5/5
What do you like best about Cortex XDR?

Most EDR vendors focus on the detection and prevention part. But our security team focuses on the part of collecting endpoint information, investigating alerts, responding to threats and hunt for new ones. Secdo is one of the only vendors who focuses on solving the real problems that SOC teams are facing. We have enough alerts coming in from all of our detection and prevention systems – the problem we have is dealing with them - and SECDO is very good at that. I really recommend Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

It’s not that I dislike, but Secdo is meant to be used by matured SOC teams. If you are a “one man show” doing security operations – Secdo is probably not for you. Review collected by and hosted on G2.com.

Verified User in Consumer Goods
UC
Verified User in Consumer Goods
Small-Business (50 or fewer emp.)
"Great combination of EDR with security automation"
4.5/5
What do you like best about Cortex XDR?

We're aware of some of the top EDRs - None of them gives an automation layer that would allow insight to investigate incidents and alerts automatically.

That’s a game changer for us – instead of drilling into each alert and trying to match it with the relevant endpoint data – Secdo does that automatically for us (they call the algorithm that does that ‘causality analysis engine’). Review collected by and hosted on G2.com.

What do you dislike about Cortex XDR?

Orchestration would be a great add on for such a product Review collected by and hosted on G2.com.