Try our new research platform with insights from 80,000+ expert users

Microsoft Defender for Business vs OpenText Core Endpoint Protection​ comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 28, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
108
Ranking in other categories
Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (6th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (2nd)
Microsoft Defender for Busi...
Ranking in Endpoint Protection Platform (EPP)
15th
Average Rating
7.8
Reviews Sentiment
6.6
Number of Reviews
20
Ranking in other categories
Microsoft Security Suite (16th)
OpenText Core Endpoint Prot...
Ranking in Endpoint Protection Platform (EPP)
47th
Average Rating
7.8
Reviews Sentiment
5.8
Number of Reviews
31
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of March 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.5%, down from 4.0% compared to the previous year. The mindshare of Microsoft Defender for Business is 1.9%, up from 1.9% compared to the previous year. The mindshare of OpenText Core Endpoint Protection​ is 1.3%, up from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.5%
Microsoft Defender for Business1.9%
OpenText Core Endpoint Protection​1.3%
Other93.3%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Takayuki-Umehara - PeerSpot reviewer
Public Cloud Engineer at Prudential
Product deployment protects assets but needs improvement in system support
I am doing maintenance for Microsoft Defender for Business, and I'm currently working with it. We don't need to use the latest version of Microsoft Defender for Business. We still use the latest virus definition file that Microsoft Defender for Business has automatically updated. We implement a basic update mechanism. Our compliance division manages how many servers and PCs we have and whether those servers have antivirus solutions. I am not certain about how Microsoft Defender for Business helps with AI-driven security strategies. I just use it normally and don't know if it uses AI technology. I rate Microsoft Defender for Business a six out of ten.
reviewer2584380 - PeerSpot reviewer
vCIO At Grove Networks Inc. at a computer software company with 11-50 employees
Improving threat detection is critical for enhanced protection
We use Webroot Business Endpoint Protection as a NextGen antivirus solution for our clients. It's included in the contract we have with our clients as a cost-effective option for antivirus protection Webroot Business Endpoint Protection is cost-effective for rolling it out to all of our clients,…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The multi-layered approach to the product gives you confidence that it will stop exploits, ransomware, worms, or viruses from compromising endpoints, essentially providing peace of mind."
"It collects and caches and the knowledge of machine learning from different customers to take to the cloud. It makes it better to use for everybody. It allows for quick learning and updates and can, therefore, offer zero-day malware security. This sharing of metadata helps make the solution very safe."
"The main benefit of using Cortex XDR by Palo Alto Networks while employing Palo Alto Firewall at the internet edge is that it improves security on our endpoint devices, integrating seamlessly with Palo Alto Firewalls to deliver comprehensive network, analyst, and security details all in a single dashboard, which allows us to manage everything from our network devices."
"One thing that I like about Cortex XDR by Palo Alto Networks, it is detecting all the suspicious or malicious binaries, and it has integration with Palo Alto Firewall."
"It's very stable. I've never experienced downtime for the ASM console or ASM core."
"The solution allows us to gain remote access without the user's knowledge and take the necessary actions on the device."
"The tool's use cases are relevant to security."
"The level of security I get for my endpoints and servers is extremely valuable."
"Everything is stable. There have been no technical errors or stability issues."
"If you're an Intune user, you can bring in certain capabilities like system-hardening policies, which further enhances the security."
"Microsoft Defender for Business stands out due to its ease of use, particularly due to the fact that many of my customers already use Microsoft and Azure."
"I haven't had any problems with the tool's stability."
"Using Microsoft Defender for Business is beneficial for my company."
"The interface is quite user-friendly."
"The best features of Microsoft Defender for Business include it coming as an XDR solution which provides automated investigations, remediations, and endpoint detection and response."
"I rate Microsoft Defender for Business a 10 out of 10."
"My advice about this product is that it is a very good solution and offers a stable and trusted software that runs smoothly and is easy to deploy."
"The most valuable aspect of the solution is the fact that it is a low profile environment as far as overhead on the machines."
"Valuable features include good scanning, very light footprint and management console that the client can access and (just as important) in which I can see status of groups of computers (I am a consultant, IT role)."
"It is excellent endpoint protection for mobiles that does everything it says it will."
"The feature we found most valuable is the AI functionality for maintaining endpoint security. This is very powerful."
"I like that Webroot is very lightweight. It didn't bog down the machine, and more importantly, it had heuristics artificial intelligence to some degree. It wasn't like full-blown artificial intelligence, but something where you have one endpoint recognizing issues because it maintains a cloud database. If one client recognizes a threat, it would add it to the database, and almost immediately, every agent in the world would also know about that threat. That was very appealing to us. However, now it's becoming commonplace, whereas ventures like Symantec and McAfee were based more on the traditional model of definition and updates, and we were always falling behind. Webroot also has pretty good technical support."
"The most valuable features of the solution include the endpoint navigation protection, the protection related to the EMS service, as well as the control and the cloud integration capabilities."
"The feature we found most valuable is the AI functionality for maintaining endpoint security, which is very powerful and has been useful over the last year."
 

Cons

"When it comes to core analysis, and security analysis, Cortex needs to provide more information."
"Basically, they don't provide customer support tools just to investigate the logs."
"There is a severe gap in functionality between Windows, Linux, and Mac versions. For example all folder restriction settings are Windows only. Traps 5.0+ does not have SAML / LDAP integration."
"Cortex XDR should have a lightweight agent, and the agent size should not be heavy."
"Data privacy is a matter of concern. You have to be careful with data privacy, it can be sensitive and Cortex can have most of your access."
"Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth."
"The connection to the internet has not performed as expected."
"The tool needs to be improved in terms of integration and interface."
"Additionally, the pricing policy poses a challenge, particularly in multi-year contracts, where other solutions like Trend Micro offer more affordable options."
"We face a licensing issue with Windows 11 Enterprise not reflecting in our portal, which affects activation. Microsoft's support did not resolve this issue, even after sharing remote desktop and screen details."
"Threat protection could be improved even though it is already a built-in feature."
"The pricing of Microsoft Defender for Business has a long way to go since people are still preferring solutions such as CrowdStrike and Palo Alto."
"If I need logs and don't have local storage bundled with Defender, I need to add workspace and log analytics, which is costly for storing logs of 2 GB, 5 GB, 10 GB."
"Defender's threat protection should be fine-tuned to reduce false positives. It could be more targeted, reflecting a continuous evolution in detecting. Also, it could be easier to integrate into other environments."
"I have an open case for close to two months with no responses or updates, except for an email response, and I've made four or five phone calls regarding the Microsoft Interconnect for AD and cloud tenant."
"The security could always be improved."
"We were attacked by CryptoLock. It didn't protect us in the way we needed to and an attack was able to get through their defenses."
"Usually, when it comes to reliability, McAfee and Norton are at 99 percent. Webroot's percentage is lower. It is 94% reliable in terms of what it catches, but you're trading that percentage for customer satisfaction because your computer isn't being constantly told that it just blocked something, or it just did something."
"I'm not happy with Webroot Business Endpoint Protection, for only one reason. It seems that it slows down my interface when I'm doing programming in Microsoft Access, tremendously."
"We need to know more details about how the virus interacted with the computer."
"There needs to be more advanced analytics. It would make it a more powerful antivirus solution within the marketplace."
"There needs to be more advanced analytics. It would make it a more powerful antivirus solution within the marketplace."
"I think the one bad point about this product is that we did not find a way for Webroot to generate reports or schedule automatic reports to be sent to clients."
"Webroot Business Endpoint Protection needs to improve its ability to detect threats."
 

Pricing and Cost Advice

"Our customers have expressed that the price is high."
"Cortex XDR's pricing is ok."
"The price is on the higher side, but it's okay."
"We pay about $50,000 USD per year for a bundle that includes Cortex XDR."
"This is an expensive solution."
"Traps pays for itself within the first 16 months of a three-year subscription. This is attributed to OPEX savings, as security teams spent less time trying to identify and isolate malware for analysis as a result of a reduction in malware incidents, false positives, and breach avoidance."
"I don't recall what the cost was, but it wasn't really that expensive."
"If one wishes to work with another team or large number of users at a future point, he must purchase a license for them."
"Defender for Business is included by default with an Office 365 premium subscription."
"It has to get more competitive because we are starting to see some of the competitors providing better pricing, and some of it, of course, is to gain market share. The Defender product pricing is probably a little higher than the competitors."
"The tool's cost has been a little high, but I do not think it was terrible."
"The tool is cheap, while some other solutions are more expensive. I remember the tool cost about five euros for a workstation or for a user on a monthly basis."
"Since we're a nonprofit, we get pretty good discounts on the tool."
"Get a trial, then a multi-year license."
"The solution is pretty cheap, actually. At our level, which is at 2,500 endpoints, we're paying 87 cents an agent per month."
"I think the price is fairly reasonable. I was really prepared to pay more, but the price is fine."
"Work on a price tier plan."
"We are on an annual subscription for the use of Webroot Business Endpoint Protection."
"Webroot Business Endpoint Protection is not too expensive. My licenses cost me between $300 and $400. It is really good price wise."
"The solution is very cost-effective."
"If you purchase for clients, then you are the managing billing entity. It's better to either get a monthly subscription check from your clients, or to prepay for the year (so as to not keep cash in reserve to pay the bill each month) IMHO."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
884,933 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
9%
Manufacturing Company
9%
Financial Services Firm
9%
Comms Service Provider
7%
Computer Software Company
16%
Comms Service Provider
9%
Government
6%
Financial Services Firm
6%
Computer Software Company
9%
Performing Arts
8%
Manufacturing Company
7%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise47
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise2
Large Enterprise4
By reviewers
Company SizeCount
Small Business35
Midsize Enterprise2
Large Enterprise2
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Microsoft Defender for Business?
Our thoughts on the pricing for Microsoft Defender for Business are that we wish it could be better. If the pricing w...
What needs improvement with Microsoft Defender for Business?
I see room for improvement in Microsoft Defender for Business, particularly regarding the consolidation of all securi...
What is your experience regarding pricing and costs for Webroot Business Endpoint Protection?
Webroot Business Endpoint Protection is probably on the cheaper side, so I would rate their pricing a one or a two ou...
What needs improvement with Webroot Business Endpoint Protection?
Webroot Business Endpoint Protection needs to improve its ability to detect threats. It does not do what it's adverti...
What is your primary use case for Webroot Business Endpoint Protection?
We use Webroot Business Endpoint Protection as a NextGen antivirus solution for our clients. It's included in the con...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Webroot SecureAnywhere Business Endpoint Protection
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
Mytech Partners
Find out what your peers are saying about Microsoft Defender for Business vs. OpenText Core Endpoint Protection​ and other solutions. Updated: March 2026.
884,933 professionals have used our research since 2012.