• Categories

    • Loading categories...

      Loading markets...

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
All Categories
/
Extended Detection and Response

Extended Detection and Response (XDR) Reviews and Ratings

What is Extended Detection and Response?

Extended detection and response (XDR) delivers security incident detection and automated response capabilities for security infrastructure. XDR integrates threat intelligence and telemetry data from multiple sources with security analytics to provide contextualization and correlation of security alerts. XDR must include native sensors, and can be delivered on-premises or as a SaaS offering. Typically, it is deployed by organizations with smaller security teams.

Learn More About This Category
How Categories and Markets Are Defined
Highest Rated By Your Peers
For Willingness to Recommend
Logo of Cisco XDR
Cisco XDR
Logo of Cortex XDR
Cortex XDR
Logo of Sophos Endpoint
Sophos Endpoint
For 50M-1B USD Companies
Logo of Sophos Endpoint
Sophos Endpoint
Logo of CrowdStrike Falcon
CrowdStrike Falcon
Logo of Cisco XDR
Cisco XDR
For Asia/Pacific
Logo of Sophos Endpoint
Sophos Endpoint
Logo of SentinelOne Singularity Endpoint
SentinelOne Singularity Endpoint
Logo of Trend Vision One - Endpoint Security
Trend Vision One - Endpoint Security
Integration & Deployment
Logo of Sophos Endpoint
Sophos Endpoint
Logo of Trellix XDR Platform
Trellix XDR Platform
Logo of Cisco XDR
Cisco XDR

Product Listings

Filter by

Products 1 - 20 of 34
Sort by
Logo of Sophos Endpoint

Sophos Endpoint

By Sophos

4.8
(354 Ratings)
customers choice 2025

Sophos is a global provider of advanced cybersecurity solutions. Their main focus is the delivery of an extensive range of security technologies including Managed Detection and Response (MDR), incident response services, as well as endpoint, network, email, and cloud security systems. These products and services are designed to help organizations combat various cyber threats such as active adversaries, ransomware, phishing, and malware. The company offers fully-managed, turnkey security solutions, providing cybersecurity-as-a-service to organizations worldwide. Moreover, Sophos hosts a cloud-based management console, known as Sophos Central, and supports the Sophos X-Ops, a cross-domain threat intelligence unit. The unit enriches the Sophos Adaptive Cybersecurity Ecosystem by optimizing its centralized data lake with a powerful set of open APIs. Sophos' operations are globally distributed and the company's headquarters are in Oxford, U.K.

Show More Details
Logo of SentinelOne Singularity Endpoint

SentinelOne Singularity Endpoint

By SentinelOne

4.6
(228 Ratings)
customers choice 2025

SentinelOne provides autonomous security solutions for various IT environments. The company's main focus is on endpoint security, cloud security, and identity security. It operates on an AI-powered platform that brings prevention, detection, response, remediation, and forensics under one umbrella. The endpoint security product uses artificial intelligence to constantly adapt to new threats, offering real-time protection and automated response. The key principle of SentinelOne's security approach is to allow organizations to detect harmful behavior across multiple vectors, rapidly eliminate threats with an integrated response, and continuously adapt defenses against advanced cyber attacks. The company also provides a range of services such as threat hunting, incident response, and incident management.

Show More Details
Logo of CrowdStrike Falcon

CrowdStrike Falcon

By CrowdStrike

4.7
(128 Ratings)

CrowdStrike is a recognized entity in the cybersecurity space, specializing in enterprise risk management through the innovative application of technology. The company focuses primarily on protecting essential business risk areas such as endpoints, cloud workloads, identity, and data. Employing the state-of-the-art CrowdStrike Security Cloud and advanced AI technology, the firm provides effective solutions. Its CrowdStrike Falcon platform uses real-time indications of attack, threat intelligence, telemetry enhanced from diverse enterprise sources, and evolving adversary knowhow for high-grade detection, automated protection and healing, advanced threat tracking, and efficient vulnerability visibility. The Falcon platform, designed in the cloud with a singular lightweight-agent architecture, offers swift deployment, unique protection and performance, and reduced complexity. Therefore, CrowdStrike delivers a significant value proposition right from the beginning.

Show More Details
Logo of Microsoft Defender XDR

Microsoft Defender XDR

By Microsoft

4.5
(122 Ratings)

Microsoft enables digital transformation for the era of an intelligent cloud and an intelligent edge. Its mission is to empower every person and every organization on the planet to achieve more. Microsoft is dedicated to advancing human and organizational achievement.

Microsoft Security helps protect people and data against cyberthreats to give peace of mind.

Show More Details
Logo of Trend Vision One - Endpoint Security

Trend Vision One - Endpoint Security

By Trend Micro

4.6
(107 Ratings)

Trend Micro is a global company specializing in cybersecurity. With comprehensive experience and global threat research, the principal business issue the company addresses is digital safety. Its cybersecurity platform is designed to protect numerous organizations and individuals across diverse clouds, networks, devices, and endpoints. The primary area of operation is in cloud and enterprise cybersecurity distinctive for providing advanced threat defense techniques suitable for various platforms. Additionally, the company offers central visibility for swift and improved detection and response. The threat research team of the company supplies essential intelligence and insights, thereby augmenting the effectiveness of the cybersecurity platform and assisting worldwide organizations in combating cyber threats. With a team of 7,000 employees spread across 65 countries, the primary aim of the company is to assist organizations in securing their connected world.

Show More Details
Logo of Cynet

Cynet

By Cynet

4.8
(75 Ratings)

Cynet is an AI-powered, All-in-One cybersecurity platform designed specifically for lean teams and delivered through a global partner ecosystem. Its unified platform consolidates essential security capabilities—including endpoint protection, email security, network detection, user, identity, deception technology, mobile, SaaS and cloud security, and automated response—into a single, intuitive solution. Powered by CyAI and backed 24x7 by CyOps security experts, Cynet drastically reduces time to detect and respond, lowers total cost of ownership, and eliminates complexity. With fewer tools to manage, fewer alerts to chase, and more threats stopped automatically, Cynet provides organizations with cybersecurity peace of mind so they can focus on what matters most.

Show More Details
Logo of Cortex XDR

Cortex XDR

By Palo Alto Networks

4.5
(71 Ratings)

Palo Alto Networks is a global cybersecurity organization shaping the future of cloud-centric technology. The main business objective is to provide effective cybersecurity solutions, maintaining and valuing the digital way of life. It addresses the significant issue of maintaining digital security in an increasingly online-centric world. The company utilizes innovative approaches leveraging advancements in artificial intelligence, analytics, automation, and orchestration. Offering an integrated platform and bolstering a burgeoning ecosystem of collaborators, it assures protection across various platforms including clouds, networks, and mobile devices. The organization envisions a progressively safe and secure digital world each day.

Show More Details
Logo of Cisco XDR

Cisco XDR

By Cisco Systems

4.6
(42 Ratings)

Cisco is a company that specializes in networking technologies, particularly Internet Protocol (IP)-based solutions. It was established in 1984 by a group of computer scientists from Stanford University. As of today, Cisco has a global workforce, continuing to innovate in various fields, notably in routing and switching. Adding to its core business, the company also delves into emerging technologies including home networking, IP telephony, optical networking, security features, storage area networking, and wireless technology. Moreover, Cisco extends its expertise to offer a sweeping range of services such as technical support and advanced services. The company sells its products and services on an enterprise level, to commercial businesses, service providers, and end-users.

Show More Details
Logo of Trellix XDR Platform

Trellix XDR Platform

By Trellix

4.5
(19 Ratings)

Trellix operates as an international entity devoted to reshaping the cybersecurity landscape. The key business issue the company addresses revolves around the escalation of sophisticated threats challenging organizations today. To combat this, Trellix offers an open and native detection and response platform, building a secure and resilient operational structure. The company embraces machine learning and automation, drawing upon the proficiency of its security professionals and an expansive partner ecosystem to deliver technological advancements. The application of their expertise serves to benefit an extensive user base comprising numerous business and government organizations.

Show More Details
Logo of FortiEDR

FortiEDR

By Fortinet

4.6
(12 Ratings)

Founded more than 20 years ago in Sunnyvale, California, Fortinet continues to be a driving force in the evolution of cybersecurity and the convergence of networking and security. Securing people, devices, and data everywhere is our mission. To that end, our portfolio of over 50 enterprise-grade products is the largest integrated offering available, delivering proven cybersecurity everywhere you need it. More than 680,000 customers trust Fortinet solutions, which are among the most deployed, most patented, and most validated in the industry.

Show More Details
Logo of Sangfor Athena XDR

Sangfor Athena XDR

By Sangfor Technologies

5
(12 Ratings)

Founded in 2000, Sangfor Technologies is a multinational vendor of cybersecurity, IT infrastructure, and cloud computing solutions. The company invests at least 20% of annual revenue in R&D and has a corporate mission to Make Digital Transformation Simpler and Secure. Sangfor serves over 100,000 customers and operates more than 60 branches across APAC, EMEA, and LATAM.

The company offers a range of cybersecurity products, solutions, and services, including a next-generation firewall (NGFW), endpoint protection platform (EPP), secure web gateway (SWG), network detection & response (NDR), secure access service edge (SASE), anti-ransomware, extended detection & response (XDR), and managed detection & response (MDR).

Its IT infrastructure and cloud computing products, solutions, and services include hyperconverged infrastructure (HCI), virtual desktop infrastructure (VDI), software-defined storage (SDS), hybrid cloud, disaster recovery (DR), and managed cloud services (MCS).

Show More Details
Logo of METRAS

METRAS

By SITE

5
(10 Ratings)

Saudi Information Technology Company (SITE) is a Saudi-based technology company that provides solutions and services in cybersecurity, cloud computing, systems integration, and digital workforce development. Established in 2017, SITE supports organizations in addressing key business challenges related to digital transformation, secure system operations, and scalable infrastructure development.

SITE works across multiple sectors, including digital health, smart cities, e-commerce, and digital government, with a focus on ensuring secure and resilient technology adoption. The company also contributes to national initiatives by supporting the development of local technical capabilities and advancing the digital ecosystem in alignment with broader transformation goals such as Saudi Arabia’s Vision 2030.

Show More Details
Logo of Sekoia Defend

Sekoia Defend

By SEKOIA.IO

4.6
(9 Ratings)

Sekoia.io is a European SaaS cybersecurity firm established in France. The company focuses on providing of innovative cybersecurity solutions for defender teams, specializing in threat detection and response. Its primary solution is a SOC platform leveraging proprietary threat intelligence and artificial intelligence technologies to empower businesses of all sizes to safeguard their digital assets and maintain resilience against evolving cyber threats. This platform effectively assist cybersecurity teams and service providers in anticipating and neutralizing potential cyber attacks prior to any significant impact.

Show More Details
Logo of ESET PROTECT

ESET PROTECT

By ESET

4.3
(6 Ratings)

ESET® is a global, science-driven digital security company based in the European Union that has been researching malware and innovating technology for more than 30 years. ESET’s proven, multi-layered approach to cybersecurity combines long pioneered machine learning, a cloud-powered reputation system and human expertise to power the prevention, detection and response ESET PROTECT Platform.

From modern endpoint and mobile security to extended detection and response, encryption and authentication, cloud-based threat defense, preventing unknown threats as well as comprehensive security services, ESET’s solutions unobtrusively protect and monitor 24/7. This allows defenses to be updated in real time to keep businesses and users safe – all managed via cloud-based or on-premises security management.

Show More Details
Logo of Secureworks Taegis

Secureworks Taegis

By Sophos

4.6
(6 Ratings)
customers choice 2025

Sophos is a global provider of advanced cybersecurity solutions. Their main focus is the delivery of an extensive range of security technologies including Managed Detection and Response (MDR), incident response services, as well as endpoint, network, email, and cloud security systems. These products and services are designed to help organizations combat various cyber threats such as active adversaries, ransomware, phishing, and malware. The company offers fully-managed, turnkey security solutions, providing cybersecurity-as-a-service to organizations worldwide. Moreover, Sophos hosts a cloud-based management console, known as Sophos Central, and supports the Sophos X-Ops, a cross-domain threat intelligence unit. The unit enriches the Sophos Adaptive Cybersecurity Ecosystem by optimizing its centralized data lake with a powerful set of open APIs. Sophos' operations are globally distributed and the company's headquarters are in Oxford, U.K.

Show More Details
Logo of Open XDR Platform

Open XDR Platform

By Stellar Cyber

4.3
(5 Ratings)

Stellar Cyber is a Silicon Valley-based organization specializing in providing a comprehensive and integrated Open XDR platform dedicated to simplifying security processes. The platform's prime focus is to aid lean security teams of varying skills in fortifying their environment securely. By utilizing Stellar Cyber's platform, organizations can minimize risk through early and accurate detection and remediation of threats. Moreover, the platform allows for reduction in costs and enhancement of analyst productivity, featuring significant improvements in mean time to detect (MTTD) and mean time to recover (MTTR).

Show More Details
Logo of Percept XDR & NG SIEM

Percept XDR & NG SIEM

By Sequretek

4.3
(5 Ratings)

Sequretek is a global cybersecurity organization that centers around delivering cutting-edge security resolutions. The principal business problem it addresses is the broad spectrum of enterprise security which includes threat monitoring, incident response, device security, and identity and access governance. This is principally achieved through its AI-powered Percept Cloud Security Platform (PCSP). Sequretek's line of products includes Percept Endpoint Detection and Response, a tool developed to combat potential threats in files and constantly updates to fix security weaknesses. The Percept Identity Governance and Administration program is also provided, which is aimed at managing access of end-users. Additionally, Percept Extended Detection and Response product features predictive threat detection using deep learning algorithms. Sequretek's security solutions cater to various industries such as manufacturing, finance, pharmaceuticals, IT, retail, and logistics.

Show More Details
Logo of Adlumin

Adlumin

By N-able

4.3
(4 Ratings)

At N‑able, our mission is to protect businesses against evolving cyberthreats with a unified cyber resiliency platform to manage, secure, and recover. Our scalable technology infrastructure includes AI-powered capabilities, third-party integrations, and the flexibility to employ technologies of choice—to transform workflows and deliver critical security outcomes. Our partner-first approach combines our products with experts, training, and peer-led events that empower our customers to be secure, resilient, and successful.

Show More Details
Logo of Trend Vision One

Trend Vision One

By Trend Micro

5
(4 Ratings)

Trend Micro is a global company specializing in cybersecurity. With comprehensive experience and global threat research, the principal business issue the company addresses is digital safety. Its cybersecurity platform is designed to protect numerous organizations and individuals across diverse clouds, networks, devices, and endpoints. The primary area of operation is in cloud and enterprise cybersecurity distinctive for providing advanced threat defense techniques suitable for various platforms. Additionally, the company offers central visibility for swift and improved detection and response. The threat research team of the company supplies essential intelligence and insights, thereby augmenting the effectiveness of the cybersecurity platform and assisting worldwide organizations in combating cyber threats. With a team of 7,000 employees spread across 65 countries, the primary aim of the company is to assist organizations in securing their connected world.

Show More Details
Logo of COGNNA Nexus

COGNNA Nexus

By COGNNA

4.3
(3 Ratings)

COGNNA is an AI-driven, autonomous Security Operations Center platform that leverages Agentic AI to transform cybersecurity operations. Its flagship product, COGNNA Nexus, predicts, detects, investigates, and responds to threats in real-time. The platform automates security tasks to reduce alert fatigue and provides context-rich investigations by unifying telemetry from an organization's entire tech stack. Based in Saudi Arabia, COGNNA provides local data residency to ensure full compliance with NCA ECC and SAMA regulations. The company's offerings are designed to empower lean security teams, improve operational efficiency, and provide a strong return on investment. COGNNA also offers 24/7 Managed Detection and Response services through its Guardians Team.

Show More Details

Features of Extended Detection and Response

Updated November 2024

Mandatory Features:

  • Security analytics with machine learning (ML), correlation, enrichment and contextualization

  • A workspace that provides situational awareness of all integrated security technology outputs, and performs investigations and native automated responses

  • Minimum of two native security sensors with one being endpoint plus log ingestion

Peer Lessons Learned for Extended Detection and Response

Published June 2025

These lessons focuses on the responses to the questions: “If you could start over, what would your organization do differently?” and “What one piece of advice would you give other prospective customers?”

Peer Lessons Learned for Extended Detection and ResponseLessons learned by your peers shared on Gartner Peer Insights for Extended Detection and ResponsePeer Lessons Learned for Extended Detection and ResponseLesson 1LESSON1Scope Out Organizational XDR Requirements;Obtain Stakeholder Buy-InLesson 2LESSON2Run POCs on XDR Products; Evaluate Licensesand Check API Integration Before CommitmentLesson 3LESSON3Adopt Change Management; Conduct RobustXDR Training for the Users for Quick ProductAdoptionLesson 4LESSON4Design Governance Policies, StandardizeWorkflows and Allocate Resources Before theDeploymentLesson 5LESSON5Seek Internal and External Aid; Implement theXDR Product by Using a Cloud Strategyn = 267Source: Reviews (267) submitted to Gartner Peer InsightsID: 6598702Gartner ®
Read Full Insights

Gartner Research

Market Guide for Extended Detection and Response
Gartner Peer Insights 'Voice of the Customer': Extended Detection and Response

Top Trending Products

Cisco XDRCOGNNA NexusTrend Vision One - Endpoint SecuritySentinelOne Singularity EndpointMicrosoft Defender XDRAdlumin

Popular Product Comparisons

Cortex XDR vs Microsoft Defender XDRCortex XDR vs Trellix XDR PlatformCisco XDR vs Microsoft Defender XDRMicrosoft Defender XDR vs Sophos Endpoint

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.