---
title: Proofpoint Threat Response Auto-Pull Reviews
meta_title: 'Proofpoint Threat Response Auto-Pull Reviews 2026: Details, Pricing,
  & Features | G2'
meta_description: Filter 24 reviews by the users' company size, role or industry to
  find out how Proofpoint Threat Response Auto-Pull works for a business like yours.
aggregate_rating:
  rating_value: 4.5
  review_count: 24
  scale: '5'
date_modified: '2026-06-21'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---

# Proofpoint Threat Response Auto-Pull Reviews
**Vendor:** Proofpoint  
**Category:** [Incident Response Software](https://www.g2.com/categories/incident-response)  
**Average Rating:** 4.5/5.0  
**Total Reviews:** 24
## About Proofpoint Threat Response Auto-Pull
Proofpoint Threat Response Auto-Pull (TRAP) enables messaging and security administrators the ability to automatically retract threats delivered to employee inboxes and emails that turn malicious after delivery to quarantine. It is also a powerful solution to retract messages sent in error as well as inappropriate, malicious, or emails containing compliance violations and also follows forwarded mail and distribution lists and creates an auditable activity trail. With Proofpoint Threat Response Auto-Pull, you can protect your people, data, and brand from today’s threats by: • Automatically pulling malicious or unwanted messages from an end-users inbox. • Enriching each message by checking every domain and IP address against premium intelligence feeds. • Including built-in reporting, showing stats like: Email quarantine success or failures, email retraction read status, targeting by active directory attribute • Reducing the remediation time needed from hours to minutes.




## Proofpoint Threat Response Auto-Pull Reviews
  ### 1. TRAP has had a huge impact in reducing our exposure to malicious email

**Rating:** 5.0/5.0 stars

**Reviewed by:** Michael B. | Infrastructure and Systems Engineer, Enterprise (> 1000 emp.)

**Reviewed Date:** December 07, 2022

**What do you like best about Proofpoint Threat Response Auto-Pull?**

The most helpful thing about TRAP is automation. We don't need a team scouring potentially malicious emails. When TRAP is told to get to work, it does 24/7. We, being a global company find this invaluable

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

While TRAP is more or else a black box, it resides on-prem so it's another VM that needs to be taken care of etc. We will move tot he cloud edition when the time comes

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

TRAP allows us to manage email security on a minimal staff effective. This gives us peace of mind, enabling us to do other important things. No need to babysit.

  ### 2. TRAP USER EXPERIENCE

**Rating:** 5.0/5.0 stars

**Reviewed by:** louisa A. | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 06, 2023

**What do you like best about Proofpoint Threat Response Auto-Pull?**

I like the direct connection to TAP dashboard.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

I DISLIKE THE FACT THAT IT DOESNT CONNECT TO THREAT INTELLIGENCE AND  DOESNT LET YOU SEE THE REPUTATION OF A DOMAIN

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

I have the ability to see the systems dispositions and am able to manually review and analyse the email headers

  ### 3. Great feature

**Rating:** 4.0/5.0 stars

**Reviewed by:** Kyle S. | Senior Network Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 31, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

This system is pretty cool. It sits as an OVA in our environment and will pull a message out of our Exchange server if a message is later deemed malicious. Not only does it pull from the recipient but it will also pull from anyone that they forwarded the message to. You can also export message from SmartSearch in Proofpoint Protection and import that into TRAP and it will pull all the messages you exported...useful for message that may not be malicious but inadvertently sent. TRAP doesn't care if anyone read the messages, unlike Exchange's built-in retrieval system. It also will tell you if someone read the message or not.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

I don't like that this isn't controlled from Proofpoint's main interface. I have to log into a separate interface to use this. Also, updates are downloaded from Proofpoint's site and uploaded and run separatly. There's no built-in update agent. It does have two images loaded so if something goes wrong it can be switched back to the working version.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

You have to use Impersonation or a service account that has full access to you email users for this to work.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

We benefit from this as message can be pulled automatically or manually if we so choose.

  ### 4. Great product

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Banking | Enterprise (> 1000 emp.)

**Reviewed Date:** November 04, 2021

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Workes very well.  Easy to maneuver and excellent insight on each email.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

There tend to be issues from time to time with synching and manual csv pulls.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Malicious emails.

  ### 5. Taking email threat response to the next level.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Dana S. | Enterprise (> 1000 emp.)

**Reviewed Date:** October 26, 2020

**What do you like best about Proofpoint Threat Response Auto-Pull?**

The addition of Proofpoint's TRAP has added another level of response to email security.  Feature additions such as the 'Search' function makes it quick and easy to extract malicious emails from ones inbox, reducing the time to act to a threat.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Yet another dashboard to access.  Would be nice to see this rolled into one view with TAP.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Proofpoint's TRAP great reduces the time in an email attack situation, no longer having to wait for the email team to respond to our requests.

  ### 6. Proofpoint TRAP helped our organization to automate reported phishing

**Rating:** 5.0/5.0 stars

**Reviewed by:** Amir T. | Small-Business (50 or fewer emp.)

**Reviewed Date:** May 05, 2020

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Remediation portion and capability to  analyze reported emails through TAP. This will allow us to automatically mitigate any risk in our environment. TRAP will provide detailed info on the attack and it will be able to auto pull emailed related to the attack

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

I like to see more integration possibilities. We do have other security tools that we would like to see more integration to them. also bidirectional access to SIEM would be nice also.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

If you have Proofpoint Trap is the must and it will help you with reported phish emails. It will make everything automated

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

it reduced the time it takes to review reported phish. each analyst used to spend about 2 hours per reported phish and now this is automated and we dont spend as much time

  ### 7. TRAP makes Proofpoint near perfect

**Rating:** 5.0/5.0 stars

**Reviewed by:** Michael H. | Lotus Notes Administrator, Computer Hardware, Enterprise (> 1000 emp.)

**Reviewed Date:** September 26, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

No email security product will ever be perfect. If you want true protection, you NEED a product like TRAP that can mitigate threats that may get through to your mailboxes. With TRAP, we have peace of mind that we're doing everything we can to protect our endpoints. 

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

I wouldn't say I dislike anything about TRAP, but there is definitely a learning curve to the product. I'm still feeling my way through the interface and incidents that are automatically created by TRAP and getting more comfortable on how to follow up on certain incident types.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

We've always just accepted the fact that our users will always be vulnerable to threats getting through in email. With TRAP, we have that added protection of pulling threats out of our users' inboxes and sending them to a quarantine mailbox. 

Also, we've found that we can also use it as a sort of message recall service. Microsoft's message recall feature is highly lacking and won't let you retrieve messages that were already ready. With TRAP, we can pull anything from the mailbox (if not deleted) and have actually had to use this a couple of times already.

  ### 8. A must have Tech!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Non-Profit Organization Management | Mid-Market (51-1000 emp.)

**Reviewed Date:** July 22, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Automated remediation for delivered mails.
Easy to setup and upgrade.
OVF appliance makes is easy.
AD integration.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Separate portal to manage from.
Not available as a Azure/AWS instance.
Requires local AD for SSO.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Great product and recommend getting TRAP with the email protection gateway.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Automated deletion of malicious email which no longer requires manual content search and deletes.

  ### 9. Auto-Pull Emails

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Mid-Market (51-1000 emp.)

**Reviewed Date:** September 10, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

When a threat comes in through our email system it aids in our process to remove potentially threatening emails from our user's email accounts before they do something that may hurt our network.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

There are not very many down falls for using PP Threat Response Auto-Pull. There are however a few things that we don't like.  There are times when some emails are pulled but others get through.  Also some emails get pulled which should not be pulled.  But of course that really cannot be avoided.  I don't expect PP to get it right all the time so overall I say my Likes out weigh the Dislikes.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

 The Auto-Pull is a very efficient 

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

The time it took us to manually pull Threat/Spam emails we encountered many user's opening the email and clicking on links.  We currently have 6 email servers so the time to pull emails takes forever.  With the Auto-Pull in Proof Point it has greatly improved our response time and saved our Network from being vulnerable.  

  ### 10. I don't know how we could move on without it

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Food & Beverages | Enterprise (> 1000 emp.)

**Reviewed Date:** September 08, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Proofpoint Threat Response Auto Pull is a great asset your company can have when it come to remediation. If you have deployed TAP and Report Alarm button to your users this is something you need to integrate using TRAP.   

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

It would be nice if we could have single sign on (SSO). I would like to have better breakdown report in order to analyse that type of threats people are reporting without seeing TAP data.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Try to automate as much as you can but if you end up with 5% is incidents you cant automate you should be fine. Some tasks you'll need an analyst to take a look

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

The biggest problem we are solving is quarantine emails report by TAP and automate the work we had with Report Phish button. Threat Response Auto Pull is something all organizations must have.

  ### 11. TRAP has been valuable in a short amount of time

**Rating:** 2.5/5.0 stars

**Reviewed by:** Fraser C. | Network Engineer, Information Technology and Services, Mid-Market (51-1000 emp.)

**Reviewed Date:** August 07, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

TRAP is a great product and has helped us hugely in a very short period of time.
It completely mitigated several attack vectors in our annual pen-test, which is great for us.
The reports I find particularly useful as our management team find these particularly useful and it is also easy to show the worth of a product if there is good reporting available!
Specifically in the reporting I like the top 10 of internal/external hosts, this gives a good starting point in investigations.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

The UI looks very dated compared to TAP and even PPS.
It is hard to read, navigate and use. It's quite disappointing I will admit. I would like to see a complete UI overhaul for the product before I would rate it higher. 
One thing that annoys me is there are clickable menus that do nothing, the mouse cursor changes to a clicker and nothing can happen. The bar graphs can not be drilled down into so I find it hard to find more information on things.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Do not let the UI put you off, this is an extremely valuable product.
Very useful in mitigating threats even after these threats have landed, extremely impressive in this respect.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

It has shown us that sometimes threats do get delivered and that even when this happens proofpoint can mitigate those threats.
This product has allowed us to protect users even when threat emails have been delivered, I find this very impressive personally. 

  ### 12. Proofpoint TRAP - excellent add-on to Proofpoint TAP

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Higher Education | Enterprise (> 1000 emp.)

**Reviewed Date:** June 11, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Automatically identifies email that passed initial scan which has later been identified as a new threat and pulls it from recipient mailboxes. 
Lifesaver!

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Resource heavy appliance,latest version requires 8 CPU cores and 16GB RAM, luckily it can be a virtual appliance

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Also ask Proofpoint or your 3rd party vendor about CLEAR, it integrates TRAP with Phish Alarm and Phish Alarm Analyzer. These add a button to mail clients that allow end users to report messages they are unsure of and send them back through for a second scan. If it is found to be dangerous it will then look for all copies of the message and pull them, even ones forwarded by original recipients. Very useful tool

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Previous email gateway was a one time scan and done. Proofpoint TAP, with the addition of TRAP provides a more robust protection model. TAP does the one time scan, TRAP sits and watches for updates to the filters and acts on items originally seen as safe that are now seen as a threat. I see it pull messages out of user mailboxes regularly where our previous system would have left them there and allowed users to open the message and attachments

  ### 13. TRAP is the missing piece of the phishing response puzzle

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Management Consulting | Enterprise (> 1000 emp.)

**Reviewed Date:** April 15, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

I like the fact that it automatically pulls bad mail from the inbox.  Whether from TAP, or from PhishAlarm Analyzer, the identified threats can be quickly removed from users inboxes.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

I don't like the duct-tape and bailing wire feel to the products.  However, the front-end is really slick and makes up for it.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

When configuring the product, be sure to allocate a couple of extra mailbox licenses up front.  Also, be sure you know how to define the proper mailbox permissions to impersonate other mailboxes.  This is crucial for the quarantine functions.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

If you need to rely on a messaging team to remove mail from users inboxes as part of your Phishing Response plan, then you may have a minimum 1 hour wait time, and usually a couple of day response time.  This allows identified phishing or malware emails to automatically be removed.

  ### 14. Does mostly what is has to do

**Rating:** 4.0/5.0 stars

**Reviewed by:** Daniel R. | Technical Security Officer, Gambling & Casinos, Enterprise (> 1000 emp.)

**Reviewed Date:** August 07, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

It autopulls the malicious email from the mailbox. 

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Well, there still is a bug where occasionally TRAP gets the recipient address incorrect (MD5 hashed, but not "unhashed") so TRAP cannot autopull.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Does what is has to do.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

removing malicious email after it is in the user mailbox

  ### 15. An excellent product! Dont know what we would do without it.

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Utilities | Mid-Market (51-1000 emp.)

**Reviewed Date:** June 14, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

TRAP is a fantastic product that integrated well with our incident response processes.  The interface is simple to use and shows some valuable statistics that help management view our Threat Landscape.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Not sure there are any from my experience.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Consider the time it takes to act on a phishing or potentially malicious email.  Then add the fact that a product which addresses just these areas will do it for you automatically or within a reasonable amount of time.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Threat response has reduced the amount of time it takes to respond because its done automatically or through a handful of manual steps that have been extremely simple.

  ### 16. TRAP Works!

**Rating:** 4.0/5.0 stars

**Reviewed by:** Verified User in Hospital & Health Care | Enterprise (> 1000 emp.)

**Reviewed Date:** September 09, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

If there is an urgent issue you can count on TRAP to pull the email

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Honestly? There are none that I can think of!

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Try it, you won't be sorry as its quick and efficient! If you need to pull more than 50 emails this is your solution!

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Pulling mass spams message with bad malicious links in them.

  ### 17. TRAP is the coolest thing in the history of email security

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Insurance | Enterprise (> 1000 emp.)

**Reviewed Date:** April 24, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Brand new threat snuck by your security appliance? No worries. As soon as that bad message starts getting detected elsewhere, TRAP will go get it from your users' mailboxes. POOF, it never happened.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

TRAP makes my life so much easier as an incident responder it could literally punch me in the face and I still wouldn't dislike anything about it.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Gone are the days of having to beg the Exchange team to run a Powershell script that takes three days to remove messages from mailboxes and still isn't able to report on what got removed. TRAP streamlines our IR workflow like waow and for a small team (like most IR teams!) that's a big thing.

  ### 18. Proofpoint TRAP is a must have tool for Network Admins

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Construction | Mid-Market (51-1000 emp.)

**Reviewed Date:** December 10, 2018

**What do you like best about Proofpoint Threat Response Auto-Pull?**

Anyone who is a network admin or tasked with managing email protection knows that one of the hardest tasks is mitigating potential phishing/malware 0-day attack emails after they have been delivered. Proofpoint TRAP (in conjunction with TAP) automatically removes emails that have been discovered to be malicious after they were initially deemed safe. It's the automation of this process that is the best feature of this tool. In addition, the ability to go into Proofpoint Email and Security and generate a CSV of emails, upload this to TRAP, and have TRAP automatically pull these emails from all sources is fantastic. TAP is great, but TAP without TRAP is like pasta without sauce. 

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Not much to dislike really. It is easy to setup and maintain. I guess my only complaint would be that the web app interface could be updated a little to make drilling down into the incidents a little easier (i.e. how the threat levels change over time changes the order incidents are viewed). Otherwise, I find the product to be pretty much as advertised, which is fantastic.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Unless you enjoy manually going into your email environment and managing 0-day malware and phishing campaigns that were not detected at the time of delivery, I'd suggest looking into this product.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

The problem this solves is the issue of how to quarantine and/or delete emails that have already been delivered. Several use cases are possible to solve with TRAP because of the ability to automate the pulling of emails based on threats post delivery. Because this is automated, there is less time spend by IT resources managing this issue manually. And because we use TRAP, emails are usually pulled before the user has a chance to follow a malicious link, or even answer a phishing attempt. This means less chance for a malware outbreak, resulting in potential network downtime and expensive mitigating solutions.

  ### 19. Love Proofpoint TRAP!

**Rating:** 5.0/5.0 stars

**Reviewed by:** Jennifer P. | Sr. Systems Engineer, Information Technology and Services, Enterprise (> 1000 emp.)

**Reviewed Date:** April 16, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

The auto-pull makes any admin's life so much easier, it even pulls any forwarded messages from mailbox!

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

I don't really have any downsides, you have to setup a service account that has access to your mailboxes but I don't really think that is a negative

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Do it!

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Malicious emails sent in the environment are pulled within minutes, even your helpdesk can have rights to do this 

  ### 20. TRAP is used by us for post malware quarantining.

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Photography | Enterprise (> 1000 emp.)

**Reviewed Date:** April 15, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

The way that TRAP enables us to quarantine TAP, and user reported malware has saved us countless hours from manually quarantining these emails.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

When navigating "incidents" in TRAP, you cannot save customized views for later use of default use.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Be aware it is only available on VMWare, not Hyper-V.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Saves us time by not having to manually quarantine malware email.

  ### 21. TRAP is a key piece in our response process dealing with delivered malicious emails

**Rating:** 4.5/5.0 stars

**Reviewed by:** Verified User in Defense & Space | Enterprise (> 1000 emp.)

**Reviewed Date:** December 06, 2018

**What do you like best about Proofpoint Threat Response Auto-Pull?**

It effortlessly does it's job and allows our cyber and IT groups to focus on other more involved incidents.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

The reporting capabilities of the TRAP need to be enhanced so that custom reports can be created based on more than one attribute or criteria.  

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

Investigate other internal systems that may be able to hook into TRAP to get even more value out of the solution.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

The process of removing malicious emails that were condemned after delivery can now be effortlessly handled with little to no intervention.  This same time on IT and Cyber resources.  TRAP has also given us the capability to selectively remove other emails without the need to involve IT allowing Cyber to have more autonomy,.

  ### 22. Threat Response Auto-Pull has given peace of mind

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Railroad Manufacture | Enterprise (> 1000 emp.)

**Reviewed Date:** December 06, 2018

**What do you like best about Proofpoint Threat Response Auto-Pull?**

It automatically pulls the message from users mailboxes when it determines a message contained a malicious URL or attachment.  I can also issue a manual pull, which has been very helpful when an occasional spam message makes it way to a large number of users.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

The reporting features via .pdf could be improved.  The .pdf reports don't have as much detail as the .csv file does and executives like to see graphs and charts versus numbers in a spreadsheet.

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

This product is a must-have.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

It's prevented multiple phishing attacks.  Saved business time by taking automatic corrective action.  And it takes corrective action at night, on the weekend, holidays, with no user intervention.

  ### 23. ProofPoint Response survey

**Rating:** 3.5/5.0 stars

**Reviewed by:** Verified User in Wireless | Mid-Market (51-1000 emp.)

**Reviewed Date:** November 20, 2018

**What do you like best about Proofpoint Threat Response Auto-Pull?**

In depth analysis of threat locationForensic analysis is excellent. Provides a ton of information.

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

Does not always catch the threat before someone clicks on it. Phishing attacks are rampid

**Recommendations to others considering Proofpoint Threat Response Auto-Pull:**

It pretty much runs by it's self. A quick steps guide would be helpful. The documentation is long and a lot to digest.

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

It notifies me so we can watch and notify the user. That has helped with training our users what to look for and what not to do. We are hit hard with Phishing attacks trying to get user credentials

  ### 24. Solid product

**Rating:** 2.5/5.0 stars

**Reviewed by:** Verified User in Accounting | Enterprise (> 1000 emp.)

**Reviewed Date:** April 16, 2019

**What do you like best about Proofpoint Threat Response Auto-Pull?**

It is a product/solution which is nice to use 

**What do you dislike about Proofpoint Threat Response Auto-Pull?**

There is nothing that I can think of as to why I would not like it

**What problems is Proofpoint Threat Response Auto-Pull solving and how is that benefiting you?**

Helps with threat response 


## Proofpoint Threat Response Auto-Pull Discussions
  - [What is Proofpoint Threat Response Auto-Pull used for?](https://www.g2.com/discussions/what-is-proofpoint-threat-response-auto-pull-used-for)
  - [As we know many campaign going on where adversary tried to spoofed VIP users and sent mails.
Gow proofpoint detect these mails.](https://www.g2.com/discussions/as-we-know-many-campaign-going-on-where-adversary-tried-to-spoofed-vip-users-and-sent-mails-gow-proofpoint-detect-these-mails) - 1 upvote

- [View Proofpoint Threat Response Auto-Pull pricing details and edition comparison](https://www.g2.com/products/proofpoint-threat-response-auto-pull/reviews?section=pricing&secure%5Bexpires_at%5D=2026-06-25+07%3A41%3A49+-0500&secure%5Bsession_id%5D=05bafe03-2efd-4274-97d8-ac63662364f8&secure%5Btoken%5D=8f0759f64ef984b6d0bc7e8f2e9c532e8b73e5b32afa8bd9b3c6613422313987&format=llm_user)

## Proofpoint Threat Response Auto-Pull Features
**Response**
- Resolution Automation
- Resolution Guidance
- System Isolation
- Threat Intelligence
- Incident Investigation

**Records**
- Incident Logs
- Incident Reports

**Management**
- Incident Alerts
- Incident Case Management
- Workflow Management

**Generative AI**
- AI Text Generation
- AI Text Summarization

## Top Proofpoint Threat Response Auto-Pull Alternatives
  - [KnowBe4 PhishER/PhishER Plus](https://www.g2.com/products/knowbe4-phisher-phisher-plus/reviews) - 4.5/5.0 (563 reviews)
  - [Sumo Logic](https://www.g2.com/products/sumo-logic/reviews) - 4.3/5.0 (390 reviews)
  - [IBM QRadar SIEM](https://www.g2.com/products/ibm-ibm-qradar-siem/reviews) - 4.4/5.0 (281 reviews)

