--- title: Carbon Black EDR Reviews meta\_title: 'Carbon Black EDR Reviews 2026: Details, Pricing, & Features | G2' meta\_description: Filter 87 reviews by the users' company size, role or industry to find out how Carbon Black EDR works for a business like yours. aggregate\_rating: rating\_value: 4.4 review\_count: 87 scale: '5' date\_modified: '2026-08-07' parent\_category: name: Endpoint Protection url: https://www.g2.com/categories/endpoint-protection ---

# Carbon Black EDR Reviews & Product Details

Claimed

###### Profile Status

This profile is currently managed by Carbon Black EDR but has limited features.  
  
Are you part of the Carbon Black EDR team? [Upgrade your plan](https://sell.g2.com) to enhance your branding and engage with visitors to your profile!

Carbon Black EDR is a market-leading incident response and threat hunting solution designed to provide responders with the most information possible, accompanied by expert threat analysis and armed with real-time response capabilities to stop attacks, minimize damage and close security gaps. Carbon Black EDR makes these teams more efficient, reducing investigations from days to hours, and more effective, enabling them to discover threats before attacks can exploit them. Carbon Black EDR also allows teams to connect to and isolate infected machines to prevent lateral movement and remediate devices without costly IT involvement. Continuous and Centralized Recording Centralized access to continuously recorded endpoint data means that security professionals have the information they need to hunt threats in real time as well as conduct in-depth investigations after a breach has occurred. Live Response for Remote Remediation With Live Response, incident responders can create a secure connection to infected hosts to pull or push files, kill processes, perform memory dumps and quickly remediate from anywhere in the world. Attack Chain Visualization and Search Carbon Black EDR provides intuitive attack chain visualization to make identifying root cause fast and easy. Analysts can quickly jump through each stage of an attack to gain insight into the attacker’s behavior, close security gaps and learn from every new attack technique to avoid falling victim to the same attack twice. Automation via Integrations and Open APIs Carbon Black boasts a robust partner ecosystem and open platform that allows security teams to integrate products like Carbon Black EDR into their existing security stack.

* * *

Seller
[Broadcom](https://www.g2.com/sellers/broadcom-ab3091cd-4724-46a8-ac89-219d6bc8e166)
Discussions
[Carbon Black EDR Community](https://www.g2.com/products/carbon-black-edr/discuss)
Languages Supported

English

Solution Type

Best-of-Breed

Overview by
Hope Boyer

Show More

## Value at a Glance

Averages based on real user reviews.

### Time to Implement

3 months

### Return on Investment

16 months

[
View More Pricing Information
](https://www.g2.com/products/carbon-black-edr/pricing)

## Top-Rated Alternatives

[

 ![Microsoft Defender for Endpoint](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Microsoft Defender for Endpoint")

Microsoft Defender for Endpoint

4.4/5(312)

](https://www.g2.com/products/microsoft-defender-for-endpoint/reviews)

[

 ![SentinelOne Singularity Endpoint](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "SentinelOne Singularity Endpoint")

SentinelOne Singularity Endpoint

4.7/5(211)

](https://www.g2.com/products/sentinelone-singularity-endpoint/reviews)

[

 ![Sophos Endpoint](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Sophos Endpoint")

Sophos Endpoint

4.7/5(837)

](https://www.g2.com/products/sophos-endpoint/reviews)

[
View All Alternatives
](https://www.g2.com/products/carbon-black-edr/competitors/alternatives)

## User Insights

Average based on 87 real user reviews.

Implementation Time

3 months

Perceived Cost

$$$$$

[Log in to unlock pricing and user insights](/login)

## Carbon Black EDR Integrations
(2)

What do users say about integrations?

Integration information sourced from real user reviews.

[

 ![Product Avatar Image](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Product Avatar Image")

Proofpoint Threat Response Auto-Pull

](https://www.g2.com/products/proofpoint-threat-response-auto-pull/reviews)[

 ![Product Avatar Image](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Product Avatar Image")

Splunk Enterprise

](https://www.g2.com/products/splunk-enterprise/reviews)

Show More

 ![Verified User in Information Technology and Services](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Information Technology and Services")
UI

Verified User in Information Technology and Services

Small-Business (50 or fewer emp.)

7/24/2019

"ADVANCED THREAT HUNTING AND INCIDENT RESPONSE IN THE CLOUD"

5/5

What do you like best about Carbon Black EDR?

I like this platform because it detects and responds to advanced attacks with unfiltered visibility Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

The software works on well enabled networks and Android devices Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

This is the best platform that enhances ability to deliver rapid incidents detection and response to our global customers Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

I have been using this in my systems to detect any threats and attacks that may affect my systems.investigations that typically take days or weeks can be completed in just minutes Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Oil & Energy](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Oil & Energy")
AO

Verified User in Oil & Energy

Enterprise (\> 1000 emp.)

9/6/2019

"Good product. Great support. "

4/5

What do you like best about Carbon Black EDR?

Lots of process information, providing for very in-depth investigations. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

On-premesis setup is a bit finicky for large Enterprise environments. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

Investigations and root cause analysis are much easier. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: Seller invite

 ![Verified User in Computer & Network Security](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Computer & Network Security")
UC

Verified User in Computer & Network Security

Enterprise (\> 1000 emp.)

12/31/2018

"Great Enterprise Product, But Learning Curve Is Steep."

4.5/5

What do you like best about Carbon Black EDR?

The Logs are very granular. Visibility is great and deployment is a breeze. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

The Learning curve is a little steeper than other tools Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

This is a very powerful tool and will require a lot of learning. I would recommend hiring some one with a lot of experience you getting plenty of training. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

Added Layers to Endpoint Security. Gets very granular with the with current processes and new spawned processes. to allow for deep inspection for Indications of compromise. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerSource: Seller invite

 ![Shaun H.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Shaun H.")
SH

Shaun H.

System Administrator

Sports

Mid-Market (51-1000 emp.)

10/9/2017

"Carbon Black for Threat Response"

4.5/5

What do you like best about Carbon Black EDR?

While most companies just use a typical anti-virus we use the Carbon Black Defense combined with Carbon Black Response. It's good because it gives you a play by play of every action on a particular node. Using the built in alerts or creating your own you'll find that it's easy to go through and work an issue! Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

The only thing I really dislike about Cb Response is the layout and the lack of documentation displayed as you do things (ie. searching, although documentation does exist you just have to look elsewhere.) Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

I would highly recommend this product in order to keep track of everything that happens on your computer, from an application running, to it reaching out to China, or even just one app starting another. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

When using Cb Response we feel better equipped to handle any issues such as ransomware and other malicious content reaching out to external sites. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Oil & Energy](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Oil & Energy")
AO

Verified User in Oil & Energy

Mid-Market (51-1000 emp.)

1/15/2018

"Highly effective for forensics, but not for small teams."

2/5

What do you like best about Carbon Black EDR?

Very detailed information on the time(s) surrounding a supposed incident. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

Seems to really shine only in internet-accessible networks; not very great at isolated networks like mine. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

Consider CB Defense, as many of the features of CB Response are being placed there, and it includes a true antimalware component. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

We needed a way to determine what circumstances surrounded a breach, so we can better learn to close them. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Information Technology and Services](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Information Technology and Services")
AI

Verified User in Information Technology and Services

Mid-Market (51-1000 emp.)

3/30/2018

"works well"

4/5

What do you like best about Carbon Black EDR?

the ability to search all stated events from the one problem event

how if one thing start it show all that spawned off that one item Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

we have not come across much yet we do not like Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

ISM controls Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Publishing](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Publishing")
EP

Verified User in Publishing

Mid-Market (51-1000 emp.)

10/24/2017

"really good product that could be better if it didn't break stuff"

2.5/5

What do you like best about Carbon Black EDR?

in theory it should work great. It seems to be a great tool. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

their updates that they push out, don't seem to be thoroughly tested as they have recalled them a few times.

We lost the ability to sandbox an infected endpoint because the update they pushed out broke our servers so we had to dial back. They have not been able to fix that yet. Review collected by and hosted on G2.com.

Recommendations to others considering Carbon Black EDR:

due proper testing to make sure the current version can do exactly what you want. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

security remediation Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Everett H.](/assets/transparent-ad5be28fbcd25b7b08d2cebe1d957125437fb5407d75ee717965ad22c8808791.gif "Everett H.")
EH

Everett H.

Cyber Security Tool Analyst

Computer Software

Enterprise (\> 1000 emp.)

5/2/2017

"Good model/framework could use some tweaking(which might be done in the upcoming version)"

3.5/5

What do you like best about Carbon Black EDR?

The ability see/analyze every process can give a huge insight into a potential threat, which makes hunting a good deal more efficient. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

The biggest problem seems to be that the complexity of the inner workings makes it very difficult to identify the root cause of an issue, which I think has in turn made the whole thing a bit temperamental. Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

Cb Response is used as an endpoint threat detection and response(shockingly) tool.The biggest benefit is the ability to determine where and how an attacker was able to compromise the network. Review collected by and hosted on G2.com.

Show More

Current UserValidated ReviewerIncentivizedSource: Seller invite

 ![Verified User in Computer Networking](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Computer Networking")
UC

Verified User in Computer Networking

Mid-Market (51-1000 emp.)

10/26/2017

"CB Response- Proactive Threat Hunting"

4.5/5

What do you like best about Carbon Black EDR?

Its Highly scalable, real-time EDR with unparalleled visibility for top security operations centers. Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

The only thing I really dislike about Cb Response is the layout and the lack of documentation Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

Carbon Black offers endpoint detection and blocking granularity like never before! We were able to detect and block things that wasn't even detected by previous software. Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

 ![Verified User in Telecommunications](/assets/icons/anonymous-avatar-purple-4ae1032bdb50ee5682003170c8184aee790d25958bd397abbd384ba52c596a7b.svg "Verified User in Telecommunications")
AT

Verified User in Telecommunications

Enterprise (\> 1000 emp.)

10/19/2017

"Intelligent detection and fast response"

4/5

What do you like best about Carbon Black EDR?

The flexibility to create complex queries.to match malicious or non standard behavior Review collected by and hosted on G2.com.

What do you dislike about Carbon Black EDR?

False positives is a problem because there is not an easy way of dealing with them Review collected by and hosted on G2.com.

What problems is Carbon Black EDR solving and how is that benefiting you?

Incident response of remote sites, using live response. Malicious behavior is easily catched even before user realized she opened a malicious PDF or word, for example Review collected by and hosted on G2.com.

Show More

Validated ReviewerIncentivizedSource: G2 invite

## Questions about Carbon Black EDR? Ask real users or explore answers from the community

Get practical answers, real workflows, and honest pros and cons from the G2 community or share your insights.

[
Ask about Carbon Black EDR
](https://www.g2.com/products/carbon-black-edr/discussions/new)

GU

Guest User
•
Last activity over 3 years ago

What does carbon black software do?

0 Upvotes

1

[
Join the conversation
](https://www.g2.com/discussions/what-does-carbon-black-software-do)

[
View all Discussions
](https://www.g2.com/products/carbon-black-edr/discuss)

## Pricing Insights

Averages based on real user reviews.

### Time to Implement

3 months

### Return on Investment

16 months

### Average Discount

19%

[
View More Pricing Information
](https://www.g2.com/products/carbon-black-edr/pricing)

Carbon Black EDR Comparisons

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_4e2b08dd17397bdc99a5658447cbc589/microsoft-defender-for-endpoint.jpg "Product Avatar Image")

Microsoft Defender for...

4.4/5(312)

[
Compare Now
](https://www.g2.com/compare/carbon-black-edr-vs-microsoft-defender-for-endpoint)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_14c966aee92aa8713f0bf6eb7b139afa/carbon-black-cloud.png "Product Avatar Image")

Carbon Black Cloud

4.1/5(39)

[
Compare Now
](https://www.g2.com/compare/carbon-black-cloud-vs-carbon-black-edr)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_5292562d6a2cb01ab3d34a4e57a3225a/sentinelone-singularity-endpoint.png "Product Avatar Image")

SentinelOne Singularity...

4.7/5(211)

[
Compare Now
](https://www.g2.com/compare/carbon-black-edr-vs-sentinelone-singularity-endpoint)

##### Categories on G2

[Endpoint Detection & Response (EDR)](https://www.g2.com/categories/endpoint-detection-response-edr)

##### Explore More

[Which Contact Center AI Observability platforms are most trusted by compliance officers in regulated industries based on user reviews?](https://www.g2.com/discussions/which-contact-center-ai-observability-platforms-are-most-trusted-by-compliance-officers-in-regulated-industries-based-on-user-reviews)[What is the best recruitment marketing tool for employer branding?](https://www.g2.com/discussions/what-is-the-best-recruitment-marketing-tool-for-employer-branding)[Top AWS Marketplace solutions for DevOps workflows](https://www.g2.com/discussions/which-aws-marketplace-solutions-are-best-for-devops-workflows)

[Which cloud directory provider has the best security and compliance features for a healthcare organization that has strict access control requirements?](https://www.g2.com/discussions/which-cloud-directory-provider-has-the-best-security-and-compliance-features-for-a-healthcare-organization-that-has-strict-access-control-requirements)[Which AI content tool offers the most natural language output?](https://www.g2.com/discussions/which-ai-content-tool-offers-the-most-natural-language-output)[Pros and Cons Details](https://www.g2.com/products/carbon-black-edr/reviews?qs=pros-and-cons)

[Show MoreShow Less](javascript:void(0);)