No more typing reviews! Try our Samantha, our new voice AI agent.

D3 Security vs VMware Carbon Black Endpoint comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 2, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

D3 Security
Ranking in Security Incident Response
7th
Average Rating
9.0
Reviews Sentiment
7.5
Number of Reviews
2
Ranking in other categories
Security Orchestration Automation and Response (SOAR) (17th), AI-Powered Security Automation (5th)
VMware Carbon Black Endpoint
Ranking in Security Incident Response
8th
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
64
Ranking in other categories
Endpoint Protection Platform (EPP) (34th), Endpoint Detection and Response (EDR) (37th), Ransomware Protection (8th)
 

Mindshare comparison

As of May 2026, in the Security Incident Response category, the mindshare of D3 Security is 6.4%, up from 2.6% compared to the previous year. The mindshare of VMware Carbon Black Endpoint is 5.8%, down from 7.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Incident Response Mindshare Distribution
ProductMindshare (%)
D3 Security6.4%
VMware Carbon Black Endpoint5.8%
Other87.8%
Security Incident Response
 

Featured Reviews

Muhammad Aamir Riaz - PeerSpot reviewer
Senior Manager Security Operation Center at The Bank of Punjab
Useful for automation and reporting and has open API for seamless integration
It was easy to integrate the tool with our infrastructure because all the APIs are pre-built. We just created a drag-and-drop prompt to integrate the solution with our infrastructure. I rate the overall solution a ten out of ten. Everyone needs to evaluate this solution according to their organization's needs because it can integrate well, but this depends on the technology you already have in your organization. It is an automation tool for detection and response, and while integration is possible, using legacy products could create issues. Some legacy products are closed systems and do not expose their APIs to other vendors. In such cases, you could run into problems. If you are considering this solution, check which APIs are available before you proceed. Otherwise, you may get the solution, but you must spend time on integrations. They provide integration support, but it's not automatic; it will take time.
reviewer2689206 - PeerSpot reviewer
Senior VP, Technology & Leading Technology Office at a outsourcing company with 1,001-5,000 employees
Behavior analytics has strengthened threat prediction yet still needs to improve overall standing
Regarding the real-time monitoring feature with VMware Carbon Black Endpoint, it is helpful in addressing unseen threats. I find the behavior analysis feature beneficial. I assess VMware Carbon Black Endpoint's machine learning capabilities in detecting unknown threats as fantastic. The behavior and analytics feature employs machine learning, and these are features which make the product and give that distinguishing, differentiating factor. The intelligent threat hunting capabilities have impacted my customers' cybersecurity efforts by giving them the edge to be prepared well in advance. Whenever this feature provides prediction, you know what action to take. You are aware of a possible attack and what kind of attack it may be, so you are much better prepared.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution's valuable feature is its GUI. It has more than 450 connectors, which are excellent for connecting devices and automating integration. The solution has all the features we need. We deployed it in our environment, and it's fully integrated. Thanks to their open APIs, the seamless integration makes everything work well together."
"It is an out-of-the-box automated integration with our 20 departments. We perform L1 LiveOps automatically through the portal."
"The biggest feature out of CarbonBlack is its ability to dive in with more depth. You can look at the entire kill chain and understand, not only if an alarm or identified incident is truly a true security issue versus a false positive, and it allows us to backtrack and figure out why it actually happened and how it got into the environment."
"It has intelligent learning behind it and we have been very successful in preventing attacks."
"The initial setup was fairly easy."
"From a business perspective, we've been able to virtually eliminate cyber attacks from spyware, malware, and virus perspectives."
"I like the historical features, interface, and integration."
"Behavioral Monitoring stops known malicious events before they even begin."
"The product enables device controls, helping us protect the devices and prevent data leakages."
"The feature I found most valuable in Carbon Black CB Defense is the ongoing monitoring feature that works by emailing updates about any detections found."
 

Cons

"The reporting, especially custom reporting, needs to be improved. Additionally, it would be better if it could be hosted on Linux."
"Reporting needs improvement. MTTR and MTTD metrics aren't directly available in playbooks and require manual effort to achieve."
"I would personally give the tech support a rating of seven out of ten."
"CB Defense could be more compatible with Linux, and its cloud provision could be improved."
"There could be more knowledge. I think they made a mistake when they took away the Check Point integration, because it provides more automation and also more threat intelligence."
"This solution could have greater granular control on how certain applications work."
"The Mac support needs improvement, as it had next to none."
"The directions for Splunk are spot on, but it is difficult to find anything on integration with AlienVault,"
"The support is poor."
"The local technical support is very poor, but the support from headquarters is very nice."
 

Pricing and Cost Advice

Information not available
"Overall, it was cost-effective too."
"The license is annual. It's a standard license."
"CB Defense is available on a yearly subscription and is priced by the number of endpoints."
"The cost is a considerable factor, but the benefit factor is the most important. When you compare it with other products, the price is high. Carbon Black will negotiate the price."
"The pricing is annually based and operates through another department than mine."
"It is more expensive, but it's worth it. There are no additional costs beyond the standard licensing fee."
"The solution has almost the same price as other different kinds of infrastructures, but it offers a lot of different features."
"This is a really expensive product and we pay licensing fees on a yearly basis."
report
Use our free recommendation engine to learn which Security Incident Response solutions are best for your needs.
892,678 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
22%
Computer Software Company
16%
Outsourcing Company
10%
Construction Company
9%
Financial Services Firm
10%
Manufacturing Company
9%
Government
8%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business31
Midsize Enterprise9
Large Enterprise31
 

Questions from the Community

What needs improvement with D3 Security?
The reporting, especially custom reporting, needs to be improved. Additionally, it would be better if it could be hosted on Linux.
What is your primary use case for D3 Security?
We use the tool for automation and reporting. It helps to automate our playbooks.
What advice do you have for others considering D3 Security?
It was easy to integrate the tool with our infrastructure because all the APIs are pre-built. We just created a drag-and-drop prompt to integrate the solution with our infrastructure. I rate the ov...
What to choose: an endpoint antivirus, an EDR solution or both?
I can recommend Carbon Black, an award-winning next-gen anti-virus (NGAV) and endpoint detection and response (EDR) security solution. The CB Predictive Security Cloud platform combines multiple hi...
What's the difference between Carbon Black CB Response and Carbon Black CB Defense?
Carbon Black offers two different levels of Endpoint Detection and Response. One is the VM Carbon Black Cloud Endpoint Standard (CB Defense), and the other is the Carbon Black Endpoint Detection an...
 

Also Known As

No data available
Carbon Black CB Defense, Bit9, Confer
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

S&P Global, Scotiabank, Cybereason, Cummins
Netflix, Progress Residential, Indeed, Hologic, Gentle Giant, Samsung Research America
Find out what your peers are saying about D3 Security vs. VMware Carbon Black Endpoint and other solutions. Updated: April 2026.
892,678 professionals have used our research since 2012.