Extended Detection and Response (XDR) Reviews and Ratings

What is Extended Detection and Response?

Extended detection and response (XDR) delivers security incident detection and automated response capabilities for security infrastructure. XDR integrates threat intelligence and telemetry data from multiple sources with security analytics to provide contextualization and correlation of security alerts. XDR must include native sensors, and can be delivered on-premises or as a SaaS offering. Typically, it is deployed by organizations with smaller security teams.

Highest Rated By Your Peers

Product Listings

Filter by

Products 1 - 20 of 28

Sophos is a global provider of advanced cybersecurity solutions. Their main focus is the delivery of an extensive range of security technologies including Managed Detection and Response (MDR), incident response services, as well as endpoint, network, email, and cloud security systems. These products and services are designed to help organizations combat various cyber threats such as active adversaries, ransomware, phishing, and malware. The company offers fully-managed, turnkey security solutions, providing cybersecurity-as-a-service to organizations worldwide. Moreover, Sophos hosts a cloud-based management console, known as Sophos Central, and supports the Sophos X-Ops, a cross-domain threat intelligence unit. The unit enriches the Sophos Adaptive Cybersecurity Ecosystem by optimizing its centralized data lake with a powerful set of open APIs. Sophos' operations are globally distributed and the company's headquarters are in Oxford, U.K.

Show More Details

SentinelOne provides autonomous security solutions for various IT environments. The company's main focus is on endpoint security, cloud security, and identity security. It operates on an AI-powered platform that brings prevention, detection, response, remediation, and forensics under one umbrella. The endpoint security product uses artificial intelligence to constantly adapt to new threats, offering real-time protection and automated response. The key principle of SentinelOne's security approach is to allow organizations to detect harmful behavior across multiple vectors, rapidly eliminate threats with an integrated response, and continuously adapt defenses against advanced cyber attacks. The company also provides a range of services such as threat hunting, incident response, and incident management.

Show More Details

Microsoft enables digital transformation for the era of an intelligent cloud and an intelligent edge. Its mission is to empower every person and every organization on the planet to achieve more. Microsoft is dedicated to advancing human and organizational achievement.

Microsoft Security helps protect people and data against cyberthreats to give peace of mind.

Show More Details

Trend Micro is a global company specializing in cybersecurity. With comprehensive experience and global threat research, the principal business issue the company addresses is digital safety. Its cybersecurity platform is designed to protect numerous organizations and individuals across diverse clouds, networks, devices, and endpoints. The primary area of operation is in cloud and enterprise cybersecurity distinctive for providing advanced threat defense techniques suitable for various platforms. Additionally, the company offers central visibility for swift and improved detection and response. The threat research team of the company supplies essential intelligence and insights, thereby augmenting the effectiveness of the cybersecurity platform and assisting worldwide organizations in combating cyber threats. With a team of 7,000 employees spread across 65 countries, the primary aim of the company is to assist organizations in securing their connected world.

Show More Details

CrowdStrike is a recognized entity in the cybersecurity space, specializing in enterprise risk management through the innovative application of technology. The company focuses primarily on protecting essential business risk areas such as endpoints, cloud workloads, identity, and data. Employing the state-of-the-art CrowdStrike Security Cloud and advanced AI technology, the firm provides effective solutions. Its CrowdStrike Falcon platform uses real-time indications of attack, threat intelligence, telemetry enhanced from diverse enterprise sources, and evolving adversary knowhow for high-grade detection, automated protection and healing, advanced threat tracking, and efficient vulnerability visibility. The Falcon platform, designed in the cloud with a singular lightweight-agent architecture, offers swift deployment, unique protection and performance, and reduced complexity. Therefore, CrowdStrike delivers a significant value proposition right from the beginning.

Show More Details

Palo Alto Networks is a global cybersecurity organization shaping the future of cloud-centric technology. The main business objective is to provide effective cybersecurity solutions, maintaining and valuing the digital way of life. It addresses the significant issue of maintaining digital security in an increasingly online-centric world. The company utilizes innovative approaches leveraging advancements in artificial intelligence, analytics, automation, and orchestration. Offering an integrated platform and bolstering a burgeoning ecosystem of collaborators, it assures protection across various platforms including clouds, networks, and mobile devices. The organization envisions a progressively safe and secure digital world each day.

Show More Details

Cynet is a cybersecurity company focused on advanced threat detection and response. Cynet aims to abridge the period from threat detection to resolution, decreasing the possible damage to organizations. This objective is realized through a broad platform that facilitates threat detection, prevention, and automatic response. Comprehensive monitoring of files, users, network traffic, and endpoints is key to Cynet's method, unmasking behavioral patterns and interactions throughout an attack, thereby providing a detailed overview of the breach. The firm includes a team of adept cyber threat analysts and investigators, known as CyOps, who deliver constant threat expertise, insights, and intelligence. Cynet's strategy integrates high-precision detection, deceptive interactions, network analysis, and expert analysis. This approach aims to accurately detect threats and their associated risks sans unwarranted intricacy, empowering security teams to prioritize and respond efficiently.

Show More Details

Cisco is a company that specializes in networking technologies, particularly Internet Protocol (IP)-based solutions. It was established in 1984 by a group of computer scientists from Stanford University. As of today, Cisco has a global workforce, continuing to innovate in various fields, notably in routing and switching. Adding to its core business, the company also delves into emerging technologies including home networking, IP telephony, optical networking, security features, storage area networking, and wireless technology. Moreover, Cisco extends its expertise to offer a sweeping range of services such as technical support and advanced services. The company sells its products and services on an enterprise level, to commercial businesses, service providers, and end-users.

Show More Details

Trellix operates as an international entity devoted to reshaping the cybersecurity landscape. The key business issue the company addresses revolves around the escalation of sophisticated threats challenging organizations today. To combat this, Trellix offers an open and native detection and response platform, building a secure and resilient operational structure. The company embraces machine learning and automation, drawing upon the proficiency of its security professionals and an expansive partner ecosystem to deliver technological advancements. The application of their expertise serves to benefit an extensive user base comprising numerous business and government organizations.

Show More Details

Founded more than 20 years ago in Sunnyvale, California, Fortinet continues to be a driving force in the evolution of cybersecurity and the convergence of networking and security. Securing people, devices, and data everywhere is our mission. To that end, our portfolio of over 50 enterprise-grade products is the largest integrated offering available, delivering proven cybersecurity everywhere you need it. More than 680,000 customers trust Fortinet solutions, which are among the most deployed, most patented, and most validated in the industry.

Show More Details

Sekoia.io is a European SaaS cybersecurity firm established in France. The company focuses on providing of innovative cybersecurity solutions for defender teams, specializing in threat detection and response. Its primary solution is a SOC platform leveraging proprietary threat intelligence and artificial intelligence technologies to empower businesses of all sizes to safeguard their digital assets and maintain resilience against evolving cyber threats. This platform effectively assist cybersecurity teams and service providers in anticipating and neutralizing potential cyber attacks prior to any significant impact.

Show More Details

Stellar Cyber is a Silicon Valley-based organization specializing in providing a comprehensive and integrated Open XDR platform dedicated to simplifying security processes. The platform's prime focus is to aid lean security teams of varying skills in fortifying their environment securely. By utilizing Stellar Cyber's platform, organizations can minimize risk through early and accurate detection and remediation of threats. Moreover, the platform allows for reduction in costs and enhancement of analyst productivity, featuring significant improvements in mean time to detect (MTTD) and mean time to recover (MTTR).

Show More Details

Sequretek is a global cybersecurity organization that centers around delivering cutting-edge security resolutions. The principal business problem it addresses is the broad spectrum of enterprise security which includes threat monitoring, incident response, device security, and identity and access governance. This is principally achieved through its AI-powered Percept Cloud Security Platform (PCSP). Sequretek's line of products includes Percept Endpoint Detection and Response, a tool developed to combat potential threats in files and constantly updates to fix security weaknesses. The Percept Identity Governance and Administration program is also provided, which is aimed at managing access of end-users. Additionally, Percept Extended Detection and Response product features predictive threat detection using deep learning algorithms. Sequretek's security solutions cater to various industries such as manufacturing, finance, pharmaceuticals, IT, retail, and logistics.

Show More Details

Sophos is a global provider of advanced cybersecurity solutions. Their main focus is the delivery of an extensive range of security technologies including Managed Detection and Response (MDR), incident response services, as well as endpoint, network, email, and cloud security systems. These products and services are designed to help organizations combat various cyber threats such as active adversaries, ransomware, phishing, and malware. The company offers fully-managed, turnkey security solutions, providing cybersecurity-as-a-service to organizations worldwide. Moreover, Sophos hosts a cloud-based management console, known as Sophos Central, and supports the Sophos X-Ops, a cross-domain threat intelligence unit. The unit enriches the Sophos Adaptive Cybersecurity Ecosystem by optimizing its centralized data lake with a powerful set of open APIs. Sophos' operations are globally distributed and the company's headquarters are in Oxford, U.K.

Show More Details

ESET® is a global, science-driven digital security company based in the European Union that has been researching malware and innovating technology for more than 30 years. ESET’s proven, multi-layered approach to cybersecurity combines long pioneered machine learning, a cloud-powered reputation system and human expertise to power the prevention, detection and response ESET PROTECT Platform.

From modern endpoint and mobile security to extended detection and response, encryption and authentication, cloud-based threat defense, preventing unknown threats as well as comprehensive security services, ESET’s solutions unobtrusively protect and monitor 24/7. This allows defenses to be updated in real time to keep businesses and users safe – all managed via cloud-based or on-premises security management.

Show More Details
Show More Details

For over 20 years, NTT has provided proactive cyber defense and services that make use of gathered human resources and intelligence to protect our customers and society. Based in Japan, NTT works with partners around the world to help create a safe and secure digital society.

Show More Details

Trend Micro is a global company specializing in cybersecurity. With comprehensive experience and global threat research, the principal business issue the company addresses is digital safety. Its cybersecurity platform is designed to protect numerous organizations and individuals across diverse clouds, networks, devices, and endpoints. The primary area of operation is in cloud and enterprise cybersecurity distinctive for providing advanced threat defense techniques suitable for various platforms. Additionally, the company offers central visibility for swift and improved detection and response. The threat research team of the company supplies essential intelligence and insights, thereby augmenting the effectiveness of the cybersecurity platform and assisting worldwide organizations in combating cyber threats. With a team of 7,000 employees spread across 65 countries, the primary aim of the company is to assist organizations in securing their connected world.

Show More Details

WithSecure, formerly F-Secure Business. IT service providers, MSSPs and businesses trust us for outcome-based cyber security that protects and enables their operations.

WithSecure’s AI-driven protection secures endpoints and cloud collaboration, and intelligent detection and response capabilities are powered by experts who identify business risks by proactively hunting for threats and confronting live attacks. WithSecure’s consultants partner with enterprises and tech challengers to build resilience through evidence-based security advice. With more than 30 years of experience in building technology that meets business objectives, WithSecure has built its portfolio to grow with our partners through flexible commercial models.

Show More Details

BluSapphire is a product-oriented enterprise that aims to address the escalating cybersecurity issues faced by corporations from various industries. The advent of digital technologies has significantly expanded the cybersecurity threat environment, thus posing a major business risk. The company counters this challenge with the launch of a novel, cloud-native, Hybrid XDR platform, which leverages artificial intelligence and analytics. BluSapphire's platform aims to improve organizations' cybersecurity stance rapidly, ensuring swifter cyber breach detection and mitigation, and thereby lowering the business risk. The use of this platform boosts the effectiveness of security operations and reduces the necessity for human involvement in the resolution of complex cybersecurity matters. It is designed to provide a significant return on investment while decreasing operating costs and the total cost of ownership.

Show More Details

Features of Extended Detection and Response

Mandatory Features:

  • Security analytics with machine learning (ML), correlation, enrichment and contextualization

  • A workspace that provides situational awareness of all integrated security technology outputs, and performs investigations and native automated responses

  • Minimum of two native security sensors with one being endpoint plus log ingestion