


Symantec Endpoint Security and Kaspersky Endpoint Detection and Response Optimum are competitors in the endpoint security category. Kaspersky seems to have the upper hand due to its advanced threat response capabilities and better customer service ratings.
Features: Symantec Endpoint Security offers antivirus, intrusion prevention, and device control, praised for its effective detection rates and broad OS compatibility. Kaspersky Endpoint Detection and Response Optimum is noted for advanced threat response tools and automated features, focusing on behavior analysis and automated malware detection.
Room for Improvement: Symantec faces issues with high resource consumption and complex management console usage, alongside a need for improved ransomware detection. Kaspersky could enhance its uninstallation process, simplify the user interface, and offer better threat visualization and control capabilities.
Ease of Deployment and Customer Service: Both offer on-premises, cloud, and hybrid deployment options. However, Symantec has inconsistent support quality, especially after the Broadcom acquisition, while Kaspersky is noted for higher-rated and more consistent technical support.
Pricing and ROI: Symantec tends to be more expensive but is seen as reliable. However, customers find it costly compared to other vendors like Trend Micro. Kaspersky is perceived as cost-effective, providing good value for budget-constrained markets and using strong threat intelligence to maintain competitive pricing.
They appreciate the rich telemetry data from the solution, as it provides in-depth threat identification.
Cortex XDR by Palo Alto Networks helps to reduce my total cost of ownership significantly.
In Cortex XDR by Palo Alto Networks, most of the remediation is automated and the accuracy is quite good.
I have observed value for money from Kaspersky Endpoint Detection and Response Optimum.
Symantec Endpoint Security filled gaps in our toolset, particularly with the ability to control network firewall on hosts remotely, which was greatly appreciated.
The technical support from Palo Alto deserves a mark of ten because they reach out within an hour whenever assistance is needed.
There is no back and forth, and they know what we are asking for and come up with the best resolution for a solution.
If any of these services are missed, it becomes a problem in terms of support tickets, follow-up, or special configuration that needs to be done in the system.
Compared to other solution providers, the responses are not very clear when we need support.
We usually solve issues ourselves due to our experience, as paid support is not used.
For technical support, Kaspersky provides two kinds: purchased support for real-time assistance and normal support during working hours.
In some cases, it rates as high as ten out of ten, while in others, it can be as low as eight.
There is no support in the German language, which is a problem for many public tenders.
You can onboard 10,000 endpoints in just hours, which demonstrates the excellent scalability of this product.
Cortex XDR by Palo Alto Networks can be expanded anytime by purchasing another license without any issues related to scalability.
I think scalability for Cortex XDR by Palo Alto Networks is good.
Kaspersky Endpoint Detection and Response Optimum can expand from Endpoint Detection and Response to Extended Detection and Response and then threat intelligence solutions.
It is very easy for me to scale.
Currently, I find it good and easily scalable.
Symantec Endpoint Security is quite scalable, and it is very important for large clients.
The scalability of the servers is good, as it requires computational powers.
Cortex remains fast and responsive, even with increasing data and alerts.
The thresholds we've seen on our firewall boxes at some instances reached 80% to 85%, but even at that level of utilization, we don't observe any latency or any issues reported with respect to accessing the application.
Cortex XDR is stable, offering high quality and reliable performance.
The solution is highly stable, scoring more than nine in terms of protection.
Kaspersky Endpoint Detection and Response Optimum is stable.
I would rate stability for Kaspersky Endpoint Detection and Response Optimum as nine; it is pretty stable, a very good, stable product.
I have encountered issues where I had to uninstall and reinstall the product on end users' computers to view the logs again.
Previously, we used to have multiple servers such as GUP servers and numerous servers for pushing updates, but we reduced it and transitioned almost 30,000 devices to CrowdStrike, which was easy to manage.
Improving reporting and dashboard customization, along with the addition of real-time and exportable reports, would help SOC teams greatly.
The inclusion of this feature would allow the application of DLP policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products.
If the per GB data could be provided at a certain level free of cost or at the same cost which the customer is taking for the entire bundle, that would be better.
To increase the benefits of the product, Managed Detection and Response (MDR) service from Kaspersky should be included.
The uninstallation needs better handling, specifically with automatic license deletions.
SonicWall can integrate with other products such as Sophos, SentinelOne, and several others, but not with Kaspersky.
Device management is not very good and I am not enabling it in my organization due to security reasons.
I would like to see improvements in the scanning part of the solution, specifically to enhance the CPU and hard disk usage during scanning and updates to prevent disruption during work hours.
It is cumbersome to use, particularly in handling firewall management.
The pricing on SentinelOne is far more reasonable and cheaper than Cortex XDR by Palo Alto Networks.
I would say it is definitely not a cheap product, considering how mature it is and how scalable all Palo Alto products are together.
Cortex XDR is perceived as expensive by some customers, yet offers dynamic pricing.
Kaspersky is very cheap compared to solutions like CrowdStrike or other vendors.
The value from Kaspersky is very good, especially since we recently got a special deal.
Kaspersky Endpoint Detection and Response Optimum is reasonably priced for the market.
It seems to be half the cost or more affordable than other solutions.
The pricing is very low compared to other companies like SentinelOne and others.
I rate the pricing, setup cost, and licensing around nine out of ten.
It incorporates AI for normal behavior detection, distinguishing unusual operations.
The product provides automation responses in case of a threat attack, severity assessments, centralized manageability, and comprehensive compliance features, resulting in reduced costs.
It includes machine learning to easily analyze data and detect complex threats across endpoints, networks, or clouds.
It fulfills security and protection requirements against newly discovered malware, especially ransomware attacks.
Threat Response Automation in Kaspersky Endpoint Detection and Response Optimum is quite effective for enhancing security.
In the past month, we encountered an unknown type of malware, but the behavior was sufficient for Kaspersky to isolate the network based on this behavior, which proved very efficient.
Symantec Endpoint Security offers great features such as reporting capabilities with a customized dashboard that pulls in EDR timelines, threat maps, and compliance metrics into one view.
Symantec Endpoint Security offers many valuable features, such as file explosion, application learning, DLP, injection detection, and EDR solutions for traffic control.
The incident response capabilities allow me to resolve authentication and support issues promptly, ensuring the system operates without downtime.
| Product | Mindshare (%) |
|---|---|
| Cortex XDR by Palo Alto Networks | 3.6% |
| Symantec Endpoint Security | 3.3% |
| Kaspersky Endpoint Detection and Response Optimum | 1.0% |
| Other | 92.1% |



| Company Size | Count |
|---|---|
| Small Business | 44 |
| Midsize Enterprise | 20 |
| Large Enterprise | 48 |
| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 6 |
| Large Enterprise | 6 |
| Company Size | Count |
|---|---|
| Small Business | 69 |
| Midsize Enterprise | 32 |
| Large Enterprise | 63 |
Cortex XDR by Palo Alto Networks provides advanced threat detection with AI-driven endpoint protection and seamless integration, ensuring multi-layered security and automatic threat response.
Cortex XDR is designed to safeguard endpoints against malware and suspicious activities. It offers advanced threat detection and response capabilities using behavioral analysis, AI, and machine learning. It seamlessly integrates with security infrastructures, providing endpoint security, firewall integration, and enhanced visibility in both cloud-based and on-premises environments.
What are the key features of Cortex XDR?Organizations in diverse sectors deploy Cortex XDR to protect against malware, leveraging its advanced threat detection capabilities. Its integration with existing security infrastructures appeals to those seeking comprehensive protection in both cloud and on-premises environments, providing enhanced visibility and threat intelligence.
Kaspersky Endpoint Detection and Response Optimum provides swift threat detection and response, enhancing device and vulnerability management via an intuitive dashboard.
With features like automated threat detection, advanced encryption, and centralized reporting, Kaspersky Endpoint Detection and Response Optimum elevates security management. Its cloud console supports incident analysis, while behavior analysis and machine learning offer robust network insights. Despite integration challenges with firewalls and setup complexities, it ensures endpoint protection through features like malware detection and zero-day attack monitoring, proven valuable in medium to small business environments.
What are the key features?Implementation of Kaspersky Endpoint Detection and Response Optimum in industries often focuses on protecting devices like laptops and servers against threats such as malware, utilizing features like USB protection and endpoint encryption. Organizations also leverage centralized management and patch management for improved efficiency and effectiveness.
Symantec Endpoint Security is a robust and reliable product that provides complete protection against viruses, malware, Trojans, and malicious files. It offers application and device control, ease of use in deploying and updating, a central control console, stability, scalability, auto-discovery capabilities, patch management, endpoint detection and response capabilities, intrusion detection module.
The Symantec Global Intelligence Network (GIN) provides threat intelligence and detection across endpoints, email, and web traffic. It has helped organizations reduce downtime, increase productivity, and improve security posture. Symantec Endpoint Security is easy to use, has a flexible administration, and offers more value than expected.
We monitor all Endpoint Protection Platform (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.