No more typing reviews! Try our Samantha, our new voice AI agent.

LMNTRIX Active Defense vs Rapid7 InsightIDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 4, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

LMNTRIX Active Defense
Ranking in Threat Deception Platforms
14th
Average Rating
9.8
Reviews Sentiment
8.0
Number of Reviews
5
Ranking in other categories
Managed Detection and Response (MDR) (33rd)
Rapid7 InsightIDR
Ranking in Threat Deception Platforms
6th
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
32
Ranking in other categories
Security Information and Event Management (SIEM) (25th), User Entity Behavior Analytics (UEBA) (12th), Endpoint Detection and Response (EDR) (47th), Extended Detection and Response (XDR) (28th)
 

Mindshare comparison

As of June 2026, in the Threat Deception Platforms category, the mindshare of LMNTRIX Active Defense is 2.9%, down from 4.6% compared to the previous year. The mindshare of Rapid7 InsightIDR is 7.9%, down from 13.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Threat Deception Platforms Mindshare Distribution
ProductMindshare (%)
Rapid7 InsightIDR7.9%
LMNTRIX Active Defense2.9%
Other89.2%
Threat Deception Platforms
 

Featured Reviews

EQ
Chief Information Officer at The C&S Companies
It gives us fantastic information about the security of our environment
The dashboard can seem overwhelming at times. It's fairly simple for the end user, and we don't need to do much to make it work, but the dashboard makes it seem a little more complicated than it actually is. There could also be more guidance on how to set up playbooks.
SohailHyder - PeerSpot reviewer
Head Of Cyber Security at Super Secure
Has supported compliance needs for mid-sized organizations but lacks customization and advanced integration
If we pitch Rapid7 InsightIDR against solutions such as SIEMs from Splunk or LogRhythm, it is not as customizable as a SIEM solution is. This is where it can improve if we keep in front the feature sets of a complete SIEM solution. Most common in the market is QRadar, but it is depleting now. It has been taken over by some other products such as Splunk and LogRhythm. If we compare these things with Rapid7 InsightIDR, then there are definitely some gaps that need to be filled. Data retention is also one concern because Rapid7 InsightIDR is cloud-based and operates on a subscription model. Whatever data you want to retain, it has to be paid for separately or it has a cost. Other solutions that are on-premises can have their own infrastructure or they provide some data retention for a month or in some capacity-wise, they provide that solution to them which makes them more attractive.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"LMNTRIX first validates incidents before alerting us of the activity, so we're not inundated with false positives."
"The fact that it's constantly hunting, looking for anomalies, and can evict without any intervention is really incredible."
"LMNTRIX gives us fantastic information about the security of our environment. It tells us about possible threats and how to fix any issues."
"We have a dedicated technical representative that is very responsive."
"Customer service is stellar and they really care about their customers."
"I sleep better at night knowing that LMNTRIX is monitoring our systems and has the ability to respond to threats as they happen."
"I have no regrets about standardizing on LMNTRIX as our endpoint protection agent."
"Automatic alerts from staying current with the threat landscape have helped us stay safe."
"Another very important part of insightIDR is the ability to collect data from endpoint devices via agent software. With a large remote workforce, this allows visibility into the endpoints that are connected to the internet, but not to the corporate network."
"It improved my organization by building a security alerting program."
"We were able to identify criminals attempting to login from China and put a stop on their IP locations."
"The solution's initial setup is easy."
"The most valuable features have to do with ease-of-use, as it is easy to check the events, investigate suspicious activities, and do forensic analysis, and the web interface is great — very useful and user-friendly."
"Simple configuration and automatically syncs to the cloud platform."
"The solution is easy to use, and the interface is intuitive."
"The solution is very intuitive, it's easy to set up, is absolutely stable, and has a lot of integration with other security products."
 

Cons

"The only multifactor authentication that is available is Google Authenticator."
"The portal is still a bit buggy, although it's new and still being refined."
"In the beginning, we were having issues with the LMNTRIX respond agent not playing nice with Cisco AMP."
"The next release might include a monthly newsletter."
"The only multifactor authentication that is available is Google Authenticator. I would love to see other multifactor applications added to this list as well as physical devices such as Yubikey."
"The dashboard can seem overwhelming at times."
"The dashboard can seem overwhelming at times. It's fairly simple for the end user, and we don't need to do much to make it work, but the dashboard makes it seem a little more complicated than it actually is. There could also be more guidance on how to set up playbooks."
"I'd like to be able to get the compliance report within the solution which is currently not possible."
"InsightIDR is only available in a cloud version. Some of our customers prefer an on-prem solution because they want to manage the security within their environment."
"It takes time for the product's support team to resolve issues, making it an area of concern where improvements are required."
"Rapid7's customer support is awful. They didn't respond at all."
"The ability to tune the collector for custom logs would greatly help."
"The integration capabilities of the solution have certain shortcomings where improvements are required."
"Personally, I feel it would greatly benefit from more supported log sources."
"Tenable Nessus is easier to deal with. It's more efficient and accurate. InsightIDR is heavier than Tenable in terms of performance and scanning. Rapid7 would be much easier to use if it had a network connector like Tenable. Tenable's connector allows continuous monitoring over the B caps."
 

Pricing and Cost Advice

"It's not the cheapest solution, but you certainly get what you paid for."
"The cost is going to be a little higher than traditional endpoint protection, but you are getting the 24/7 monitoring and validation by highly skilled analysts and that makes it worth it."
"The pricing and ease of install are great!"
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"It is on a yearly basis. For our own company, for about 250 users, it was 16,000 euros a year."
"​Accurately predict your licensing counts as this is a subscription based product.​"
"Rapid7 InsightIDR's pricing is reasonable but we have challenges with the Minimum Order Quantity. It is not reasonable for customers who have less than one hundred devices. If they can reduce Minimum Order Quantity, it is good. You have to pay around 5000-6000 dollars per year for the product. The pricing includes maintenance and support costs."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"The solution has a mid-range price point in the market"
"The pricing of the solution depends on the user. But there is a yearly licensing cost."
"Rapid7 InsightIDR is priced very well and is cost-effective."
report
Use our free recommendation engine to learn which Threat Deception Platforms solutions are best for your needs.
900,838 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
30%
Construction Company
14%
Non Profit
6%
Comms Service Provider
5%
Manufacturing Company
9%
Financial Services Firm
9%
Computer Software Company
8%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise5
Large Enterprise6
 

Questions from the Community

Ask a question
Earn 20 points
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What needs improvement with Rapid7 InsightIDR?
If we pitch Rapid7 InsightIDR against solutions such as SIEMs from Splunk or LogRhythm, it is not as customizable as a SIEM solution is. This is where it can improve if we keep in front the feature...
What is your primary use case for Rapid7 InsightIDR?
I am working with Rapid7 InsightOps and Rapid7 InsightIDR because the requirement is as such from the customer side, particularly the banks. Whatever the requirement is, these are the products that...
 

Also Known As

No data available
InsightIDR
 

Overview

 

Sample Customers

Alliance Funding Group (AFG) - USA Kestrel Coal - Australia Success Resources - Malaysia
Liberty Wines, Pioneer Telephone, Visier
Find out what your peers are saying about LMNTRIX Active Defense vs. Rapid7 InsightIDR and other solutions. Updated: June 2026.
900,838 professionals have used our research since 2012.