


Cybereason Endpoint Detection & Response and Sangfor Endpoint Secure are both robust solutions in the endpoint security market. Cybereason is highly regarded for its advanced capabilities, whereas Sangfor's strengths lie in its comprehensive feature set.
Features: Users value Cybereason's detection accuracy, real-time threat analysis, and response automation. Sangfor is appreciated for its wide range of endpoint security features, including vulnerability assessment and real-time protection. While both products provide strong feature sets, users feel Sangfor offers a more comprehensive package overall.
Room for Improvement: Cybereason users suggest improving integration with other security tools and enhancing alert management features. Sangfor users report a need for better scalability options and more intuitive reporting capabilities. Each product has specific areas needing development, with Sangfor users highlighting scalability as a key focus.
Ease of Deployment and Customer Service: Cybereason is commended for its straightforward deployment process and responsive customer support. Sangfor's deployment is also well-regarded, though users report a steeper learning curve. Customer service for Sangfor is generally appreciated but noted as less flexible than Cybereason's. Cybereason is perceived as easier to deploy with superior customer support engagement.
Pricing and ROI: Users associate Cybereason with a higher initial setup cost but acknowledge significant ROI due to its advanced threat handling. In contrast, Sangfor is considered more budget-friendly, providing solid ROI through its extensive feature set at a lower cost. While Cybereason may have a higher price, users find it justified by the powerful functionalities it offers.
| Product | Mindshare (%) |
|---|---|
| Cortex XDR by Palo Alto Networks | 3.4% |
| Cybereason Endpoint Detection & Response | 1.2% |
| Sangfor Endpoint Secure | 0.8% |
| Other | 94.6% |


| Company Size | Count |
|---|---|
| Small Business | 45 |
| Midsize Enterprise | 21 |
| Large Enterprise | 48 |
| Company Size | Count |
|---|---|
| Small Business | 5 |
| Midsize Enterprise | 4 |
| Large Enterprise | 13 |
| Company Size | Count |
|---|---|
| Small Business | 5 |
| Midsize Enterprise | 3 |
| Large Enterprise | 3 |
Cortex XDR by Palo Alto Networks provides advanced threat detection with AI-driven endpoint protection and seamless integration, ensuring multi-layered security and automatic threat response.
Cortex XDR is designed to safeguard endpoints against malware and suspicious activities. It offers advanced threat detection and response capabilities using behavioral analysis, AI, and machine learning. It seamlessly integrates with security infrastructures, providing endpoint security, firewall integration, and enhanced visibility in both cloud-based and on-premises environments.
What are the key features of Cortex XDR?Organizations in diverse sectors deploy Cortex XDR to protect against malware, leveraging its advanced threat detection capabilities. Its integration with existing security infrastructures appeals to those seeking comprehensive protection in both cloud and on-premises environments, providing enhanced visibility and threat intelligence.
Cybereason Endpoint Detection & Response offers advanced threat hunting, investigation, and malicious operation visualization. Its intuitive interface and AI-driven Malop engine enhance threat detection efficiency across multiple platforms.
Focused on providing detailed real-time insights, Cybereason Endpoint Detection & Response is crucial for cybersecurity operations by offering comprehensive dashboards and managed detection and response services. It ensures efficient threat isolation, supports Windows, Linux, and Mac environments, and improves network activity visibility. While its AI engine enhances threat analysis clarity, technical support and deployment complexity can be improved, particularly for smaller organizations. Some challenges include integration with Microsoft, high CPU usage, minimal dashboards, and graphics. Additionally, deployment processes need refinement for stability with new OS versions.
What are the key features of Cybereason Endpoint Detection & Response?Cybereason Endpoint Detection & Response is widely implemented to safeguard endpoints, particularly in fields requiring rigorous security measures. Many employ it for its robust incident response capabilities in finance, healthcare, and government sectors to tackle malware, malicious operations, and unusual process detection, supporting security operations centers with powerful monitoring tools.
Organizations use Sangfor Endpoint Secure for endpoint protection and security management, managing devices, servers, and networks against malicious threats. It also assists in blocking websites, managing infrastructure, applications, antivirus needs, and aids in migrating to cloud environments.
Sangfor Endpoint Secure offers end-to-end protection, incorporating file protection, AI detection, behavior analysis, access control, and ISP load balancing. It facilitates VM migration with minimal downtime and includes a dual-end user interface for creating firewall rules, uploading images, and configuring VM settings. Enhancements such as Hyper-V capabilities, policy certificates, honeypot features, and next-generation firewall integrations are available. However, Sangfor Endpoint Secure could improve on console management, reporting functionalities, public cloud migration support, navigation, VPN system issues, licensing, update management, transitioning processes, and incorporating healing capabilities.
What are its most important features?Sangfor Endpoint Secure is implemented across various industries to ensure comprehensive security management and protection. IT departments leverage its VM migration capabilities for seamless transitions to cloud environments. Healthcare organizations use it to secure sensitive patient data, while educational institutions utilize it for safeguarding academic records and personal information. Financial services employ it to protect critical transactional data and adhere to stringent compliance requirements.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.