No more typing reviews! Try our Samantha, our new voice AI agent.

Alert Logic MDR vs Palo Alto Networks Cortex XSOAR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.9
Users of Alert Logic MDR experience varied ROI, from increased security and insights to unused potential and dissatisfaction.
Sentiment score
4.9
Cortex XSOAR enhances ROI by automating SOC tasks, reducing manual effort, increasing efficiency, and decreasing response times.
I have seen a return on investment with Alert Logic MDR as it is very secure and has improved security in the organization.
Team Lead at Target
By implementing Palo Alto Networks Cortex XSOAR playbooks, I automated repetitive SOC tasks such as IOC enrichment, alert triggers, host isolation, and incident ticket creation.
Cybersecurity Senior Analyst
We are positioning Palo Alto Networks Cortex XSOAR, which can be used in the SOC and do a lot of automation for the customer.
Vice President, Technology at Cache Digitech Pvt Ltd.
Palo Alto Networks Cortex XSOAR is a pure and proven technology product and cybersecurity product, customers will get more ROI when compared with others.
Technical Consultant at Vertex Techno Solutions (B) Pvt Ltd
 

Customer Service

Sentiment score
8.0
Alert Logic MDR offers responsive, proactive customer support with high user satisfaction, despite some concerns in fast-paced environments.
Sentiment score
6.6
Cortex XSOAR support is responsive and knowledgeable, but some users face delays and service quality issues without premium support.
Customer support is very responsive and proactive.
Team Lead at Target
During the four-month duration, we did not face any such issues.
Security Analyst at a consultancy with 10,001+ employees
They help whenever we get stuck.
Soc Analyst at a media company with 501-1,000 employees
Eight out of ten times, they provide valuable help.
Lead Application Security Engineer Iv at a financial services firm with 5,001-10,000 employees
I would rate the customer support for Palo Alto Networks Cortex XSOAR as 9 out of 10.
Senior Cyber Defense Analyst at a manufacturing company with 10,001+ employees
Their support has been better than Anomali's and they are more responsive.
Enterprise Security Architect V at FirstEnergy
 

Scalability Issues

Sentiment score
7.8
Alert Logic MDR excels in scalability, integrating smoothly with diverse systems and meeting growth needs without performance issues.
Sentiment score
7.0
Palo Alto Networks Cortex XSOAR is highly scalable, integrating seamlessly with third-party APIs and supporting diverse tools effectively.
Alert Logic MDR is scalable.
Soc Analyst at a media company with 501-1,000 employees
Alert Logic MDR's scalability is highly scalable and can handle organizational growth efficiently.
Team Lead at Target
The scalability of Palo Alto Networks Cortex XSOAR supports our growth and security needs because we can integrate various tools and continuously add more capability.
Enterprise Security Architect V at FirstEnergy
Palo Alto Networks Cortex XSOAR has very good application capabilities and is highly scalable.
Assistant Security Architect at Cloudnomics
The issues with scalability arise from the speed of some integrations, as not all are perfectly tuned by Palo.
Lead Application Security Engineer Iv at a financial services firm with 5,001-10,000 employees
 

Stability Issues

Sentiment score
8.4
Alert Logic MDR is highly stable, reliable, and consistently performs without errors or downtime across global deployments.
Sentiment score
7.7
Palo Alto Networks Cortex XSOAR is stable, reliable, often rated highly, with manageable bugs, especially when cloud-hosted.
You will find no errors or glitches with Alert Logic MDR.
Soc Analyst at a media company with 501-1,000 employees
The system works smoothly even when I navigate deep into the playbook section.
Assistant Security Architect at Cloudnomics
As a leading partner, I do not anticipate any issues with stability or scalability.
Technical Consultant at Vertex Techno Solutions (B) Pvt Ltd
I would rate the stability and reliability of Palo Alto Networks Cortex XSOAR as a nine.
Lead Application Security Engineer Iv at a financial services firm with 5,001-10,000 employees
 

Room For Improvement

Users seek improved functionality for Alert Logic MDR, including smarter analytics, intuitive interfaces, and enhanced security features and documentation.
Cortex XSOAR needs improved documentation, UI, integration speed, and customization; users want easier setup, better support, and advanced features.
One major missing feature was the ability to see if vulnerabilities were exploitable, which required extra effort for us.
Security Analyst at a consultancy with 10,001+ employees
If Alert Logic MDR not only detected incidents but also allowed us to block those incidents or isolate any affected asset, that would be beneficial.
Solutions Architect at a tech vendor with 10,001+ employees
Alert Logic MDR could be improved by adding voice assistance when creating new configurations for the environment.
Team Lead at Target
The biggest area for improvement is simplifying playbook development and debugging.
Cybersecurity Senior Analyst
The deployment requires integration and the development of integration modules.
Presale Engineer at Westcon-Comstor
One of the significant issues we encounter is system slowdown when we receive an influx of alerts, which inhibits how quickly we can access the information needed for investigation.
Enterprise Security Architect V at FirstEnergy
 

Setup Cost

Alert Logic MDR provides cost-effective licensing and competitive pricing, favored by medium to large organizations for its quality and value.
Palo Alto Networks Cortex XSOAR is costly but valued for efficiency and comprehensive security event management, with potential discounts.
Alert Logic MDR is one of the most cost-effective tools to use regarding pricing, setup cost, and licensing.
Team Lead at Target
The price, which is per endpoint around ten to twelve dollars, and it is a good setup cost.
Soc Analyst at a media company with 501-1,000 employees
For customers, it is zero versus $20 million, which is why they have to make a decision.
Vice President, Technology at Cache Digitech Pvt Ltd.
Being among the market leaders, it is worth the money, though still a bit pricey.
Security Engineer at a financial services firm with 51-200 employees
The price will be high, but the solution is absolutely superb.
VP Of Digital Transformation at Netsys Solutions (Pvt) Ltd
 

Valuable Features

Alert Logic MDR offers AI-driven analysis, 24/7 monitoring, intuitive interface, efficient incident management, and comprehensive security without impacting systems.
Cortex XSOAR excels in automation, playbooks, and integrations, enhancing incident management and collaboration for security teams.
The alert system improved from potentially 24 hours to one hour response time.
Team Lead at Target
The standout features of Alert Logic included the topology feature, which was helpful for mapping assets on the network, giving a clear understanding of all connected devices.
Security Analyst at a consultancy with 10,001+ employees
The integration with ticketing tools such as ServiceNow helped my workflow by automatically creating a ticket and sharing it with the required team as soon as a critical alert is generated.
Solutions Architect at a tech vendor with 10,001+ employees
Execution of automatic tasks for collecting, enriching, and correlating security events from hundreds of different technologies.
Presale Engineer at Westcon-Comstor
If I already have an established process, I do not have to change my process to fit into the tool. I can modify the tool to fit into my process, which makes things considerably easier.
Enterprise Security Architect V at FirstEnergy
We have implemented automation features, such as automated responses to email threats and automatic configuration of target devices for blocking specific IPs.
Vice President, Technology at Cache Digitech Pvt Ltd.
 

Categories and Ranking

Alert Logic MDR
Ranking in SOC as a Service
3rd
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
15
Ranking in other categories
Vulnerability Management (34th), Managed Detection and Response (MDR) (10th)
Palo Alto Networks Cortex X...
Ranking in SOC as a Service
2nd
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
61
Ranking in other categories
Security Orchestration Automation and Response (SOAR) (2nd)
 

Mindshare comparison

As of August 2026, in the SOC as a Service category, the mindshare of Alert Logic MDR is 6.3%, down from 6.8% compared to the previous year. The mindshare of Palo Alto Networks Cortex XSOAR is 5.9%, down from 17.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
SOC as a Service Mindshare Distribution
ProductMindshare (%)
Palo Alto Networks Cortex XSOAR5.9%
Alert Logic MDR6.3%
Other87.8%
SOC as a Service
 

Featured Reviews

Alice Walter - PeerSpot reviewer
Team Lead at Target
Cloud monitoring has reduced threats and has improved response times and team productivity
Alert Logic MDR's best features are the cloud-managed service, the cost benefit, and 24/7 monitoring. The alert system improved from potentially 24 hours to one hour response time. The benefit of not having to write custom queries has been significant.The features are very lightweight, with small installations that leave almost no footprint on systems. System resource utilization is minimal. Alert Logic MDR has positively impacted my organization through its decentralized pricing approach, which has protected against several viruses. Any virus stopped represents money saved. There is low impact on users, so they do not experience slowness on their computers when scanning. Alert Logic MDR has improved security in my organization from 50 to 65%.
Sricharan R - PeerSpot reviewer
Lead Application Security Engineer Iv at a financial services firm with 5,001-10,000 employees
Security automation has transformed incident workflows and now reduces response time dramatically
I think the areas of Palo Alto Networks Cortex XSOAR that could be improved are mainly in UX. We have communicated with the vendor team about this, but they are prioritizing product functionality over usability because most target customers are technical and understand a primitive UI. They face difficulties in implementing UI changes as their team is stretched. Thus, the UI/UX of the tool needs significant improvement. There are plans on their roadmap, but a lot remains to be done. Parts of the tool run on an older framework, causing slowness. Usability is a broader issue than features alone. This usability problem is common in many cybersecurity tools, unlike customer-facing applications. Some integrations have speed issues and might not function seamlessly with different upstream configurations, requiring manual updates. These are the main pain points we encountered, particularly with UI/UX, integration speed, and the usability of certain inbuilt playbooks.
report
Use our free recommendation engine to learn which SOC as a Service solutions are best for your needs.
908,800 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
11%
Computer Software Company
11%
Financial Services Firm
10%
Manufacturing Company
9%
Financial Services Firm
13%
Manufacturing Company
8%
Computer Software Company
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise3
Large Enterprise15
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise9
Large Enterprise32
 

Questions from the Community

What is your experience regarding pricing and costs for Alert Logic?
Regarding my experience with pricing, setup cost, and licensing, the sales and management teams discuss the price, which is per endpoint around ten to twelve dollars, and it is a good setup cost.
What needs improvement with Alert Logic?
I think Alert Logic MDR could be improved. If Alert Logic MDR not only detected incidents but also allowed us to block those incidents or isolate any affected asset, that would be beneficial.
What is your primary use case for Alert Logic?
My main use case for Alert Logic MDR was investigating all cloud assets and generating alerts when issues or attacks were detected, whether DDoS attacks or other kinds of security attacks. Alert Lo...
What is your experience regarding pricing and costs for Palo Alto Networks Cortex XSOAR?
My experience with pricing, setup cost, and licensing for Palo Alto Networks Cortex XSOAR is that I was just a consumer as an analyst. I was not part of deploying cost, license, procurement, or pro...
What needs improvement with Palo Alto Networks Cortex XSOAR?
Palo Alto Networks Cortex XSOAR can be improved if it can include AI modules within Palo Alto Networks Cortex XSOAR as a product or at least as a summarizing feature. If that is there, I think it w...
What is your primary use case for Palo Alto Networks Cortex XSOAR?
My main use case for Palo Alto Networks Cortex XSOAR is that we use it as a SOAR platform, Security Orchestration and Response tool for our security incidents. I can give you a quick specific examp...
 

Also Known As

Alert Logic Managed Detection and Response, Alert Logic Threat Manager, Alert Logic Cloud Defender, Critical Watch FusionVM
Demisto Enterprise, Cortex XSOAR, Demisto
 

Overview

 

Sample Customers

Information Not Available
Cellcom Israel, Blue Cross and Blue Shield of Kansas City, esri, Cylance, Flatiron Health, Veeva, ADT Cybersecurity
Find out what your peers are saying about Alert Logic MDR vs. Palo Alto Networks Cortex XSOAR and other solutions. Updated: June 2026.
908,800 professionals have used our research since 2012.