• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • Loading categories...

      Browse All Categories

      Loading markets...

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Cortex XDR
Logo of Cortex XDR

Cortex XDR

byPalo Alto Networks
in
4.6
2025
Market Presence: Endpoint Protection Platforms, Extended Detection and Response

Overview

Product Information on Cortex XDR

Updated 13th October 2025

What is Cortex XDR?

Cortex XDR is a software developed by Palo Alto Networks that integrates data from network, endpoint, and cloud sources to detect, investigate, and respond to cyber threats. The software enables security teams to identify suspicious behavior, conduct root cause analysis, and respond to incidents through automated response capabilities. It provides analytics-driven threat prevention and leverages behavioral analytics to correlate alerts across different environments, helping organizations reduce risks from advanced attacks. Cortex XDR addresses challenges of fragmented security data and manual threat investigations by consolidating security operations into a single platform, allowing for more efficient detection and response workflows.

Cortex XDR Pricing

Cortex XDR software utilizes a subscription-based pricing model, where charges are typically determined by factors such as number of endpoints, data ingestion volume, or user count. Pricing varies according to the chosen features, deployment scale, and support options, with additional costs for advanced capabilities and integrations. Licenses are available in different tiers to address varying organizational needs for threat detection and incident response.

Overall experience with Cortex XDR

MANAGER, IT SECURITY AND RISK MANAGEMENT
500M - 1B USD, Services (non-Government)
FAVORABLE

“Cortex XDR Offers Excellent Integration”

5.0
Jan 23, 2026
My overall experience with cortex XDR has been very positive, particularly in environments that already use other Palo Alto products. The platform offers excellent visibility into threats, strong endpoint protection and cross-data correlation that dramatically enhances detection and response capabilities. Main reason for rating 5 is Detection Accuracy Integration Capabilities Automation and response Scalability
Chief Security Engineer
500M - 1B USD, Banking
CRITICAL

“Implementation Poses Challenges Due to Complex Management and Limited Vendor Support”

2.0
Jun 19, 2025
Very hard to implement, complex management and poor support from vendor.

Badges

Gartner Peer Insights recognizes vendors who meet or exceed both the market average Overall Experience and the market average User Interest and Adoption score through a Customers’ Choice distinction.
2025
For Market:
Mobile Threat Defense

About Company

Company Description

Updated 7th December 2023

Palo Alto Networks is a global cybersecurity organization shaping the future of cloud-centric technology. The main business objective is to provide effective cybersecurity solutions, maintaining and valuing the digital way of life. It addresses the significant issue of maintaining digital security in an increasingly online-centric world. The company utilizes innovative approaches leveraging advancements in artificial intelligence, analytics, automation, and orchestration. Offering an integrated platform and bolstering a burgeoning ecosystem of collaborators, it assures protection across various platforms including clouds, networks, and mobile devices. The organization envisions a progressively safe and secure digital world each day.

Company Details

Updated 1st July 2025
Company type
Public
Year Founded
2005
Head office location
SANTA CLARA, United States
Number of employees
10001+
Website
http://www.paloaltonetworks.com

Do You Manage Peer Insights at Palo Alto Networks?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

User Sentiment About Cortex XDR
Reviewer Insights for: Cortex XDR
Deciding Factors: Cortex XDR Vs. Market Average
Performance of Cortex XDR Across Market Features

Cortex XDR Likes & Dislikes

Like

What I like most about Cortex XDR is Unified Data Correlation & Detection Capabilities. Behavioral threat detection with Machine learning Automated Investigation and Response Native integration with Palo Alto Ecosystem Strong EDR capabilities

Like

EDR terminal well developed.

Like

Ease of use, specifically handling host isolations to perform investigations on potential true positives. SIEM and SOAR integration works well for some of our automations/playbooks.

Dislike

While Cortex XDR is highly advanced and effective solution, like any product, Here are some of the main issues and weakness Steep learning curve for advanced features High cost and complex pricing software

Dislike

Product support and aggressive sales.

Dislike

Seldom performance impact, central management of the suite of services in the cloud console can sometimes be a pain. Customer support can also be improved, we have found that shifting support to different regions does have a substantial positive impact.

Top Cortex XDR Alternatives

Logo of CrowdStrike Falcon
1. CrowdStrike Falcon
4.7
(3199 Ratings)
Logo of SentinelOne Singularity Endpoint
2. SentinelOne Singularity Endpoint
4.7
(3083 Ratings)
Logo of Sophos Endpoint
3. Sophos Endpoint
4.8
(2406 Ratings)
View All Alternatives

Peer Discussions

Cortex XDR Reviews and Ratings

4.6

(738 Ratings)

Rating Distribution

5 Star
61%
4 Star
36%
3 Star
2%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.6

Integration & Deployment

4.6

Service & Support

4.5

Product Capabilities

4.7

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • MANAGER, IT SECURITY AND RISK MANAGEMENT
    50M-1B USD
    Services (non-Government)
    Review Source

    Cortex XDR Offers Excellent Integration

    5.0
    Jan 23, 2026
    My overall experience with cortex XDR has been very positive, particularly in environments that already use other Palo Alto products. The platform offers excellent visibility into threats, strong endpoint protection and cross-data correlation that dramatically enhances detection and response capabilities. Main reason for rating 5 is Detection Accuracy Integration Capabilities Automation and response Scalability
  • Security Engineer
    50M-1B USD
    Services (non-Government)
    Review Source

    Low False Positives and Straightforward SIEM Integration Highlight EDR Solution Experience

    4.0
    Jan 23, 2026
    Clear leader in EDR solutions on the market currently from what we have evaluated, noise-ratio on false positives are fairly low. Fairly straightforward integration with our SIEM solution. Only noticeable issue is the seldom performance issues caused by the agents themselves, however these are not frequent.
  • Bdm
    50M-1B USD
    IT Services
    Review Source

    Strong Protection Features Balanced by Expensive Cost and Performance Drawbacks

    5.0
    Jan 26, 2026
    Overall experience is very good because they provide strong threat detection, prevention, automation, and SOC support. They also provide centralized visibility and analytics.
  • Information Technology Supervisor
    50M-1B USD
    IT Services
    Review Source

    Detailed Reporting and Automated Protection in Cortex XDR Challenged by Usability Issues

    4.0
    Feb 9, 2026
    Cortex XDR ensures that security can be high and it also reduces the manual steps by automating the response. The reports are pretty deep and contain every single detail so I can understand things more clearly.
  • Senior Security Architect
    50M-1B USD
    Energy and Utilities
    Review Source

    Detect faster. Respond smarter

    5.0
    Feb 3, 2026
    Excellent capacity of detection and continuous improvement
...
Showing Result 1-5 of 792

Recommended Gartner Research

  • Critical Capabilities for Endpoint Protection Platforms
  • Magic Quadrant for Endpoint Protection Platforms

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.