• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • Loading categories...

      Browse All Categories

      Loading markets...

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Open XDR Platform
Logo of Open XDR Platform

Open XDR Platform

byStellar Cyber
in
4.7
Market Presence: Network Detection and Response, Security Information and Event Management

Overview

Product Information on Open XDR Platform

Updated 13th October 2025

What is Open XDR Platform?

Open XDR Platform is a software developed by Stellar Cyber designed to unify security operations by integrating various security tools and sources into a single interface. The software facilitates threat detection, investigation, and response by correlating data from endpoints, networks, cloud environments, and other security data streams. It automates workflows and consolidates alerts to reduce information silos and enhance analysis efficiency. The software aims to address challenges in managing multiple cybersecurity solutions and enables security teams to gain centralized visibility, streamline case management, and accelerate incident response within complex IT infrastructures.

Open XDR Platform Pricing

The Open XDR Platform software uses a subscription-based pricing model, charging according to the number of assets, endpoints or data volume ingested for detection and response capabilities. The software offers tiered packages with different features, and customers can select plans based on organizational needs and scale. Additional modules and services may be available for purchase to enhance platform functionality.

Overall experience with Open XDR Platform

IT Security & Risk Management Associate
<50M USD, IT Services
FAVORABLE

“Cloud and On-Premises Deployments Differ as Usability Remains a Work in Progress”

5.0
Feb 3, 2026
My company uses Stellar Cyber as part of the security services we deliver to various clients. The platform offers extensive capabilities and a high degree of customization. Its ability to integrate with a wide range of data sources provides broad and valuable visibility into an organization's security posture. The multi-tenant functionality allows for relatively easy management of multiple clients, enabling granular configurations for each tenant. Both cloud and on-premises deployments are viable options. However, for the cloud version, the experience depends on whether the solution is hosted by a third party or by your own organization. When hosted externally, the lack of root access restricts certain features that rely on elevated privileges. In terms of usability, this is where we encounter the biggest challenge. Much depends on the user's prior experience with similar tools. For users familiar with modern NDR solutions, the Stellar Cyber interface may feel somewhat cumbersome and not particularly intuitive. Personally, I find the interface a bit counterintuitive compared to other platforms, but it ultimately gets the job done. Over the past two years of using Stellar Cyber, I've seen consistent improvements with every update - or as I like to tell my colleagues, "It's a work in progress". On the support side, the Stellar Cyber team is highly responsive and attentive to customer needs. Their learning platform offers a wide range of courses to support investigation workflows, along with regular webinars that provide tips, best practices and updates on new features. Do I consider Stellar Cyber the best NDR on the market? No. Do I believe it has the potential to become the best? Absolutely. The progress I've observed over the years has convinced me that the solution is moving in the right direction.
IT Services Associate
<50M USD, IT Services
CRITICAL

“AI Foundation Brings Benefits and Challenges to Cybersecurity SIEM Platform”

3.0
Feb 3, 2026
Overall the product is solid but not without flaws, the most common of which are tied to its foundation of AI learning and correlation. As AI has become more prevalent, the uses in the cybersecurity space are rather straightforward, but not without growing pains, which I feel is a good way to describe some of the issues that have cropped up in my time with this product. The support teams seem to understand this and have definitely been helpful, quick, and understanding in this regard.

About Company

Company Description

Updated 8th February 2025

Stellar Cyber is a Silicon Valley-based organization specializing in providing a comprehensive and integrated Open XDR platform dedicated to simplifying security processes. The platform's prime focus is to aid lean security teams of varying skills in fortifying their environment securely. By utilizing Stellar Cyber's platform, organizations can minimize risk through early and accurate detection and remediation of threats. Moreover, the platform allows for reduction in costs and enhancement of analyst productivity, featuring significant improvements in mean time to detect (MTTD) and mean time to recover (MTTR).

Company Details

Updated 26th February 2025
Company type
Private
Year Founded
2017
Head office location
San Jose, United States
Number of employees
51 - 200
Website
https://stellarcyber.ai/

Do You Manage Peer Insights at Stellar Cyber?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

User Sentiment About Open XDR Platform
Reviewer Insights for: Open XDR Platform
Deciding Factors: Open XDR Platform Vs. Market Average
Performance of Open XDR Platform Across Market Features

Open XDR Platform Likes & Dislikes

Like

Multi-tenant management. Huge number of data sources integration. Highly customizable(alerts, automation)

Like

The product itself has a solid variety of features compared to its competition, and the correlation engine seems to work well when bringing together multiple different detections.

Like

Powerful detection capabilities using own sensors. Automatic correlation using all data sources. The graph screen that makes it easy to understand the status of attacks.

Dislike

The user interface and workflow is not very intuitive. Lack of sigma rules edit for default alerts (coming in a future update). Hardware requirements for the on-premises version.

Dislike

Being so heavily AI-based, this leaves some room for mistakes and miscalculations, which can occasionally be frustrating to manage. There have also been cases where significant changes were made to the platform, specifically alert logic, without ample attention being brought to them.

Dislike

For unsupported data sources, a request will be made and need to wait for support. Even if the log format of the linked product has been updated, there are cases where this has not been reflected. The SaaS version does not allow to import backed-up cold data myself but by support.

Top Open XDR Platform Alternatives

Logo of Splunk Enterprise
1. Splunk Enterprise
4.5
(1025 Ratings)
Logo of LogRhythm SIEM
2. LogRhythm SIEM
4.3
(715 Ratings)
Logo of IBM Security QRadar SIEM
3. IBM Security QRadar SIEM
4.3
(657 Ratings)
View All Alternatives

Peer Discussions

Open XDR Platform Reviews and Ratings

4.7

(175 Ratings)

Rating Distribution

5 Star
75%
4 Star
23%
3 Star
1%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.7

Integration & Deployment

4.6

Service & Support

4.7

Product Capabilities

4.7

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • IT Security & Risk Management Associate
    <50M USD
    IT Services
    Review Source

    Cloud and On-Premises Deployments Differ as Usability Remains a Work in Progress

    5.0
    Feb 3, 2026
    My company uses Stellar Cyber as part of the security services we deliver to various clients. The platform offers extensive capabilities and a high degree of customization. Its ability to integrate with a wide range of data sources provides broad and valuable visibility into an organization's security posture. The multi-tenant functionality allows for relatively easy management of multiple clients, enabling granular configurations for each tenant. Both cloud and on-premises deployments are viable options. However, for the cloud version, the experience depends on whether the solution is hosted by a third party or by your own organization. When hosted externally, the lack of root access restricts certain features that rely on elevated privileges. In terms of usability, this is where we encounter the biggest challenge. Much depends on the user's prior experience with similar tools. For users familiar with modern NDR solutions, the Stellar Cyber interface may feel somewhat cumbersome and not particularly intuitive. Personally, I find the interface a bit counterintuitive compared to other platforms, but it ultimately gets the job done. Over the past two years of using Stellar Cyber, I've seen consistent improvements with every update - or as I like to tell my colleagues, "It's a work in progress". On the support side, the Stellar Cyber team is highly responsive and attentive to customer needs. Their learning platform offers a wide range of courses to support investigation workflows, along with regular webinars that provide tips, best practices and updates on new features. Do I consider Stellar Cyber the best NDR on the market? No. Do I believe it has the potential to become the best? Absolutely. The progress I've observed over the years has convinced me that the solution is moving in the right direction.
  • Engineering Manager
    <50M USD
    IT Services
    Review Source

    Automatic Alert Correlation Highlights Suspicious Behavior Across Multiple Data Sources

    5.0
    Feb 5, 2026
    First of all, there are very few XDR vendors that offer their own in-house NDR and while it is significantly cheaper than dedicated NDR device. It also includes features such as Sandbox and IDS. Because it's built in-house, it can correlate alerts from other data sources, allowing to manage suspicious behavior, from intrusions to reconnaissance and lateral movement as a single incident case which is its greatest advantage. User of dedicated NDR device rarely correlate alerts with other data sources, so even in this respect, the benefits of using Stellar Cyber a regret. Sensors for servers are also available, allowing to detect threats that EDR is weak at and threat that require an ITDR product. Everything, including cloud integration is provided via GUI, so it can be installed in no time and with no complicated setup. The alerts detected after machine learning will likely reveal suspicious behavior that many companies had previously been unaware of.
  • IT Associate
    <50M USD
    IT Services
    Review Source

    Efficient Daily Operations Achievable After Overcoming Noisy Initial Configuration

    5.0
    Feb 3, 2026
    As a primary admin, I've found that Stellar Cyber really delivers on the "Open" part of XDR. To be fair, you have to put in the work early on; initial setup, agent installs, tuning of filtering rules, which all take some time to get right. Once everything is dialed in, the platform is very easy to live in daily. It's been a huge help for our team in terms of visibility without needing a massive SOC in the MSSP space.
  • Operations Manager
    50M-1B USD
    IT Services
    Review Source

    A Powerful, Case-Centric XDR Platform that Unifies Multi-Tenant SOC Operation

    5.0
    Feb 11, 2026
    As a SOC Manager operating in a multi-tenant enterprise environment, my experience with Stellar Cyber has been transformative. The platform has successfully shifted our operations from a traditional alert-centric model to a more efficient case-centric approach.
  • IT Services Associate
    <50M USD
    IT Services
    Review Source

    AI Foundation Brings Benefits and Challenges to Cybersecurity SIEM Platform

    3.0
    Feb 3, 2026
    Overall the product is solid but not without flaws, the most common of which are tied to its foundation of AI learning and correlation. As AI has become more prevalent, the uses in the cybersecurity space are rather straightforward, but not without growing pains, which I feel is a good way to describe some of the issues that have cropped up in my time with this product. The support teams seem to understand this and have definitely been helpful, quick, and understanding in this regard.
...
Showing Result 1-5 of 216

Recommended Gartner Research

  • Magic Quadrant for Network Detection and Response

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.