No more typing reviews! Try our Samantha, our new voice AI agent.

ESET Inspect vs Red Canary comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
ESET Inspect
Ranking in Endpoint Detection and Response (EDR)
53rd
Average Rating
7.6
Reviews Sentiment
7.4
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Red Canary
Ranking in Endpoint Detection and Response (EDR)
38th
Average Rating
9.0
Reviews Sentiment
7.8
Number of Reviews
8
Ranking in other categories
Advanced Threat Protection (ATP) (23rd), Managed Detection and Response (MDR) (11th), Risk-Based Vulnerability Management (15th)
 

Mindshare comparison

As of August 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.8% compared to the previous year. The mindshare of ESET Inspect is 1.0%, down from 1.2% compared to the previous year. The mindshare of Red Canary is 0.7%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
Red Canary0.7%
ESET Inspect1.0%
Other94.6%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Cees Van Den Haak - PeerSpot reviewer
ICT Manager at Bouwbedrijf de Vries en Verburg BV
A product with an easy setup phase that helps manage attacks and vulnerabilities
The most valuable features of the solution stem from the fact that you can manage and react to vulnerabilities and attacks on all the workstations or laptops. You can put certain workstations and isolation. With ESET PROTECT, you see only one machine that is protected, but with ESET Inspect, you see all the machines that are protected in an environment.
Anthony Tuhame - PeerSpot reviewer
Information Technology Manager at Everseen
Continuous threat monitoring has strengthened our endpoint protection and reduced false positives
Key improvements I would like to see include fewer false positives. I understand that almost all EDR or cybersecurity platforms cannot be 100 percent accurate, but I need to see fewer false positives. Another thing I want to see is improved threat detection accuracy. I want them to improve their AI and investigations and implement a faster investigation process. I would recommend them to invest heavily in machine learning. I would also recommend introducing onboarding calls before someone purchases the software because we faced a challenge whereby we had no idea about how to install it in our system. We had to rely on documentation and support, but if they could offer onboarding calls, it would be great.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Automation and playbooks have helped me significantly, as Cortex Xnor's playbooks predefine the workflow of the automation, such as response processes, alert triggering, and enriching the context, efficiently detecting and blocking malicious attacks with firewalls while eliminating workload and speeding responses for next-generation operations."
"The interface is easy to use and it is more up to date than our previous solution."
"Previously, we had to install endpoint protection per machine and then scan and update, but Cortex XDR basically does that centrally and predictably, so we have more time to do day-to-day work rather than spend time chasing those endpoints."
"The solution allows us to make investigations. Other XDR solutions also provide similar capabilities but for investigation, Cortex XDR is better."
"The most valuable features of this product are the management capabilities, which allow an IT organization to get quite a good picture of attempted cyber attacks, and its out-of-the-box investigation capabilities."
"I generally believe that Cortex XDR by Palo Alto Networks is probably the best in the market right now."
"We have a complete overview of all our PCs and it's very easy to handle and to use the interface. It has a lot of benefits for us."
"The product is mostly automated, and we do not have to make decisions, because all the decisions are made by the product itself and we are not required to create any custom policies since the policies that are created are well defined in the product itself."
"ESET Enterprise Inspector's greatest asset lies in its user-friendly interface, which allows for easy navigation and thorough analysis of incidents."
"The product's most valuable features are its performance and stability."
"ESET Enterprise Inspector's most valuable feature is EDR."
"Rules are the most valuable feature of ESET Inspect. They are created through XML language, and they track and filter events from endpoints. If the event matches the rule, the rule is triggered. Exceptions are the second most valuable feature because it gives you the power to filter false positives in large numbers. The third most valuable feature is the Learning mode that facilitates making exceptions for known processes with a good reputation."
"The rules are the best and most useful features."
"This solution is easy to install, setup and monitor."
"I find the multilayered endpoint security the most valuable feature."
"Scalability-wise, it is a very good solution."
"Red Canary has impacted our organization positively by managing our security endpoints and being able to detect threats before they impact us negatively."
"Red Canary has positively impacted my organization because I don't have to spend and hire resources to look at logs, which has enabled us to do much more in terms of improving security across the organization."
"I am satisfied with this solution and it is very competitive with other similar EDR or MDR solutions because it provides very impressive information about the root cause of the threat, such as malware."
"Red Canary has impacted my organization positively because we treat any ticket triggered by them as high priority due to the fact that 99 percent of the time it is a true positive."
"The solution works well for what we use it for and the support and protection are good."
"The valuable features of this solution are it integrates well with different EDR software, such CrowdStrike, and Carbon Black, and the information it provides is helpful."
"I recommended Red Canary to my friends who work in other organizations."
"The near real-time review translates into near real-time action. So, in addition to alerting, Red Canary MDR has response playbooks built out."
 

Cons

"Currently, if you use Palo Alto endpoint protection as the only solution it's very complicated to remove pre-existing threats."
"Technology evolves every day, so it would be nice if it gets more secure. It can also have more integration with other platforms."
"This is a very costly product."
"The solution eats memory of the computer, unlike anything I've ever seen."
"In an upcoming release, the solution could improve by proving hard disk encryption. If it could support this it would be a complete solution."
"There are some false positives. What our guys would have liked is that it would have been easier to manipulate as soon as they found a false positive that they knew was a false positive. How to do so was not obvious. Some people complained about it. The interface, the ESM, is not user-friendly."
"Data privacy is a matter of concern. You have to be careful with data privacy, it can be sensitive and Cortex can have most of your access."
"Previously, the endpoint would leave the environment, not being on our VPN, essentially unable to interact with the server to upload files. It was unable to retrieve new file verdicts. It was using a thing called "local analysis" to determine if something was a malicious file or not. There was no dynamic analysis."
"It may be difficult for a first-time customer to understand all of the functions that are available to him."
"One area that needs improvement for the product is ransomware protection, which does not offer complete security."
"The solution could improve the consumption of resources. The RAM and CPU usage increases during usage which can cause issues. We have three separate services and it would be beneficial if all were executed from one agent limiting the over usage of system resources."
"Every vendor is working on making the job of SOC analysts easier, with fewer false positives and more precise detections. ESET uses LiveGrid technology that provides feedback on the reputation of files and operations. It's hard to eliminate all of the false positives, but hopefully, we'll see some improvement with the advances in AI."
"The platform's price could be better."
"The product is complex to configure, and there are too many errors that are not errors, making it an area that can be considered for improvement."
"It is not a stable product. We were disappointed in the stability of this product in comparison to McAffee."
"The price could always be better."
"I would like there to be an on-premise version of this solution for our data centers because of the proliferation of online threats."
"I wish Red Canary could have a graph that shows the endpoint, user, and how it spreads, providing a visual representation to easily identify what happened."
"Key improvements I would like to see include fewer false positives. I want them to improve their AI and investigations and implement a faster investigation process."
"Red Canary can be improved by continuing to add new features and capabilities to what they are looking at, including the types of data they're looking at and the types of systems that they're integrating with."
"The most valuable feature of Red Canary MDR is the overall threat protection it provides."
"Red Canary's pricing spectrum may not be ideal for smaller financial institutions."
"In general, the solution currently fails to provide a summary to its users."
 

Pricing and Cost Advice

"It's about $55 per license on a yearly basis."
"I don't recall what the cost was, but it wasn't really that expensive."
"The pricing is a little high. It is per user per year."
"It is cost-effective compared to similar solutions. It fits for the small businesses through to the big businesses."
"The price of the solution is high for the license and in general."
"The price is on the higher side, but it's okay."
"The cost of Cortex XDR by Palo Alto Networks is $55 to $90 USD per endpoint per month."
"This is an expensive solution."
"The platform is expensive; it could be cheaper."
"The pricing and licensing are the big issue now, in my opinion. If the price was less than other companies, or a one-time charge for service was available, I think there would be more users of this solution."
"This is true in the case of licensing, we do not have the most expensive products, and we don't have the cheapest product, it's somewhere in the middle. Perhaps a little higher from the middle, but we are known for what we provide to our customers, and they are pleased."
"I feel it is a very expensive product."
"The platform's licensing is affordable and straightforward."
"The solution could vary in price depending on how many endpoints a company has."
"Red Canary MDR I use is an open-source tool."
"I have not compared Red Canary to other solutions to know if the price is high or low. However, I have found the price of this solution fair and reasonable, it cost approximately $100 per year, per device. If they could provide the solution for $50 per year, per device, it would be better."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
10%
Comms Service Provider
14%
Financial Services Firm
9%
Manufacturing Company
8%
Construction Company
8%
Financial Services Firm
9%
Construction Company
8%
Manufacturing Company
8%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business5
Large Enterprise2
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise1
Large Enterprise3
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
Ask a question
Earn 20 points
What needs improvement with Red Canary MDR?
I wish Red Canary could have a graph that shows the endpoint, user, and how it spreads, providing a visual representa...
What is your primary use case for Red Canary MDR?
My main use case for Red Canary is that a Red Canary analyst monitors our logs, and if they see any abnormality, they...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
ESET Enterprise Inspector
Red Canary Managed Detection and Response (MDR)
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Mitsubishi Motors, Allianz Suisse, Cannon, T-Mobile
DuPont, Quanta Services, Microchip Technology, Hopkins Public Schools, Henny Penny, Schumacher Homes
Find out what your peers are saying about ESET Inspect vs. Red Canary and other solutions. Updated: June 2026.
908,834 professionals have used our research since 2012.