No more typing reviews! Try our Samantha, our new voice AI agent.
Cortex XDR by Palo Alto Networks Logo

Cortex XDR by Palo Alto Networks Reviews

4.2 out of 5
Badge Ranked 1

What is Cortex XDR by Palo Alto Networks?

Featured Cortex XDR by Palo Alto Networks reviews

Cortex XDR by Palo Alto Networks mindshare

As of June 2026, the mindshare of Cortex XDR by Palo Alto Networks in the Extended Detection and Response (XDR) category stands at 4.6%, down from 5.1% compared to the previous year, according to calculations based on PeerSpot user engagement data.
Extended Detection and Response (XDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks4.6%
CrowdStrike Falcon9.2%
SentinelOne Singularity Endpoint6.0%
Other80.2%
Extended Detection and Response (XDR)

PeerResearch reports based on Cortex XDR by Palo Alto Networks reviews

TypeTitleDate
CategoryExtended Detection and Response (XDR)Jun 23, 2026Download
ProductReviews, tips, and advice from real usersJun 23, 2026Download
ComparisonCortex XDR by Palo Alto Networks vs CrowdStrike FalconJun 23, 2026Download
ComparisonCortex XDR by Palo Alto Networks vs SentinelOne Singularity EndpointJun 23, 2026Download
ComparisonCortex XDR by Palo Alto Networks vs TrendAI Vision OneJun 23, 2026Download
Suggested products
TitleRatingMindshareRecommending
CrowdStrike Falcon4.39.2%97%140 interviewsAdd to research
Microsoft Defender for Endpoint4.1N/A95%212 interviewsAdd to research
 
 
Key learnings from peers
Last updated Jun 7, 2026

Valuable Features

Room for Improvement

ROI

Pricing

Popular Use Cases

Service and Support

Deployment

Scalability

Stability

Review data by company size

By reviewers
Company SizeCount
Small Business44
Midsize Enterprise19
Large Enterprise42
By reviewers
By visitors reading reviews
Company SizeCount
Small Business2168
Midsize Enterprise1091
Large Enterprise1586
By visitors reading reviews

Top industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
9%
Outsourcing Company
7%
Computer Software Company
6%
Healthcare Company
5%
Government
4%
Retailer
4%
University
4%
Educational Organization
3%
Energy/Utilities Company
3%
Media Company
2%
Transportation Company
2%
Real Estate/Law Firm
2%
Insurance Company
2%
Wholesaler/Distributor
2%
Hospitality Company
2%
Performing Arts
1%
Marketing Services Firm
1%
Pharma/Biotech Company
1%
Recreational Facilities/Services Company
1%
Legal Firm
1%
Non Profit
1%
Religious Institution
1%

Compare Cortex XDR by Palo Alto Networks with alternative products

Learn more about Cortex XDR by Palo Alto Networks

Cortex XDR by Palo Alto Networks customers

Related questions

 
Cortex XDR by Palo Alto Networks Reviews Summary
Author infoRatingReview Summary
Senior Process Expert at A.P. Moller - Maersk4.5I value Cortex XDR's AI detection and 360-degree security view. Initial false positives and feature gaps were resolved, making it stable, scalable, and well-supported. It now offers complete visibility and reduced operational overhead, justifying its cost.
Final Year Student at Gitam University4.5I found Cortex to be the best endpoint detection tool, extensively using its automation and playbooks for incident response and threat intelligence. While highly effective and stable, I suggest improvements like UI simplicity, faster sync, and better third-party integrations.
Cyber Security Engineer at Olacabs4.5I find Cortex XDR highly effective; its intuitive UI simplifies threat detection, investigation, and real-time threat blocking, saving me significant time. However, its cost might be prohibitive for smaller companies.
Network Security Engineer at Cyberwell Solution5.0I find Cortex XDR excellent for securing acquired clinics, preventing incidents effectively with its simple management, stability, and scalability. I value its strong ROI and excellent support, though I believe the end-device application viewing feature should be free.
Cyber Engineering Manager at a tech vendor with 10,001+ employees4.0Cortex XDR significantly improved my organization's network visibility and reduced threat dwell time through excellent telemetry and easy threat hunting. While powerful, its cost is high, and CrowdStrike offers better overall performance, though I still recommend it for its benefits.
Head of data centers at a non-profit with 10,001+ employees4.0I find Cortex XDR highly effective for AI-driven threat blocking and investigation, significantly reducing our risk and outperforming previous solutions. Its performance and support are excellent, but I consider its financial cost to be very high.
Business Development Manager For Palo Alto Networks at a tech services company with 1,001-5,000 employees4.0I rate Cortex XDR highly for its zero-day prevention and ecosystem. However, the 200-license minimum and missing MSSP model hinder adoption for smaller companies, despite its stability and scalability. Customer support needs improvement.
Principle Cloud Architect at a tech services company with 11-50 employees4.0I found Cortex XDR excellent for replacing traditional antivirus, significantly reducing staff, and improving threat detection. While expensive, it offers strong integration within the Palo Alto ecosystem, delivering great value. I hope for more non-Palo integrations and improved container security.
Network Security Administrator at Alethe Consulting Pvt. Ltd4.0I highly recommend Cortex XDR for its seamless Palo Alto firewall integration, comprehensive endpoint security, and reduced analyst workload. Its GUI and AI features are excellent. My main suggestion is for Palo Alto to lower its pricing for wider market scalability.
Chief of IT Architecture at a financial services firm with 10,001+ employees4.0I value Cortex XDR's deep Palo Alto ecosystem integration, comprehensive security, and automation. However, its high cost and reliance on existing Palo Alto products mean it's best for large, already integrated organizations, not as an independent solution.
ABHISHEK_SINGH - PeerSpot reviewer
ABHISHEK_SINGH
Senior Process Expert at A.P. Moller - Maersk
Nov 14, 2025
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Surya Kumar Gedala - PeerSpot reviewer
Surya Kumar Gedala
Final Year Student at Gitam University
Nov 9, 2025
Automation has transformed incident response workflows through faster playbook execution and threat investigation
Jagannath S - PeerSpot reviewer
Jagannath S
Cyber Security Engineer at Olacabs
Feb 19, 2026
Centralized monitoring has streamlined threat hunting and reduced daily alert triage time
Pasan Jayarathna - PeerSpot reviewer
Pasan Jayarathna
Network Security Engineer at Cyberwell Solution
Mar 18, 2026
Security has improved as we safely onboard clinics and automate endpoint threat remediation
NikhilSharma1 - PeerSpot reviewer
NikhilSharma1
Cyber Engineering Manager at a tech vendor with 10,001+ employees
May 18, 2026
Improved threat hunting has reduced dwell time and now unifies network and endpoint telemetry
AmjadKhan1 - PeerSpot reviewer
AmjadKhan1
Head of data centers at a non-profit with 10,001+ employees
Nov 10, 2025
Has blocked advanced threats in real time and improved investigation with behavior-based detection
reviewer1980216 - PeerSpot reviewer
reviewer1980216
Business Development Manager For Palo Alto Networks at a tech services company with 1,001-5,000 employees
May 21, 2026
Advanced exploit prevention has reduced zero-day risk and now supports SOC-led defense
TJ
Tejas Jain
Principle Cloud Architect at a tech services company with 11-50 employees
May 21, 2026
Endpoint protection has improved threat detection and reduced security team workload
Raj-Yadav - PeerSpot reviewer
Raj-Yadav
Network Security Administrator at Alethe Consulting Pvt. Ltd
Jan 13, 2026
Unified endpoint security has reduced alert triage time and simplified analyst investigations
reviewer1412415 - PeerSpot reviewer
reviewer1412415
Chief of IT Architecture at a financial services firm with 10,001+ employees
Nov 27, 2025
Integrated detection and automation have transformed our security operations and provide comprehensive visibility across endpoints, network, and cloud