No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Defender for Business vs OpenText Core Endpoint Protection​ comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 29, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Detection and Response (EDR) (5th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Microsoft Defender for Busi...
Ranking in Endpoint Protection Platform (EPP)
14th
Average Rating
7.6
Reviews Sentiment
6.6
Number of Reviews
20
Ranking in other categories
Microsoft Security Suite (14th)
OpenText Core Endpoint Prot...
Ranking in Endpoint Protection Platform (EPP)
34th
Average Rating
7.8
Reviews Sentiment
5.8
Number of Reviews
31
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.8%, up from 3.8% compared to the previous year. The mindshare of Microsoft Defender for Business is 1.4%, down from 2.1% compared to the previous year. The mindshare of OpenText Core Endpoint Protection​ is 1.8%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.8%
Microsoft Defender for Business1.4%
OpenText Core Endpoint Protection​1.8%
Other93.0%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Paritosh Jani - PeerSpot reviewer
Associate VP (Managed Information Technology Services) at Dev Information Tech Pvt Ltd
Has delivered automated threat response and streamlined integration with advanced tools
The best features of Microsoft Defender for Business include it coming as an XDR solution which provides automated investigations, remediations, and endpoint detection and response. Moreover, it can be tightly integrated with vulnerability management or detecting vulnerabilities and pushing them to the SIEM solution. I utilize the advanced threat hunting feature of Microsoft Defender for Business and find it helpful; it's good and improving with every update. Microsoft Defender for Business integrates effectively with the Microsoft ecosystem as with Azure Sentinel, and it has a two-way natural integration. Apart from that, it also integrates with industry SIEM solutions such as Splunk.
reviewer2584380 - PeerSpot reviewer
vCIO At Grove Networks Inc. at a computer software company with 11-50 employees
Improving threat detection is critical for enhanced protection
We use Webroot Business Endpoint Protection as a NextGen antivirus solution for our clients. It's included in the contract we have with our clients as a cost-effective option for antivirus protection Webroot Business Endpoint Protection is cost-effective for rolling it out to all of our clients,…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is a new generation XDR that has a lot of artificial intelligence modules."
"Cortex XDR can integrate the firewalls and determine the tendencies of the attacks. It's a new generation antivirus, with protection endpoints and detection response. It is very easy to use and everybody can operate the solution."
"Being a cloud solution it is very flexible in serving internal and external connections and a broad range of devices."
"My advice for others looking into using Cortex is that it is very easy to use and very useful for the customer environment, whether it's a public or private one."
"We can use Cortex XDR to get the entire graph of the incidents from source to destination, and we can take remedial action."
"Cortex XDR is a simple platform that's easy for administrators and users. You have a lot of flexibility to change or customize the features."
"The solution allows control over the user and his machine through Cortex XDR security policies."
"Previously, we had to install endpoint protection per machine and then scan and update, but Cortex XDR basically does that centrally and predictably, so we have more time to do day-to-day work rather than spend time chasing those endpoints."
"I rate Microsoft Defender for Business a 10 out of 10."
"It is scalable."
"The most effective features of Microsoft Defender for Business include its threat detection and response capabilities in managing vulnerabilities and ransomware attacks."
"Microsoft Defender for Business is good for small and medium-sized businesses. It offers solid security flexibility and integration with tools like Microsoft Lighthouse and some other software. It takes some of the features of Defender for Endpoint EDR and provides those services for small and medium-sized business environments."
"The solution includes attack-savvy service and risk protection, part of data center management, and offers an effective single-dashboard view with Microsoft 365."
"Because Microsoft Defender for Business is a native solution to Microsoft 365, it has contributed to my organization's proactive defense strategies by saving time on integration."
"Everything is stable. There have been no technical errors or stability issues."
"A few things are valuable. One is the alerting we see when any kind of intrusion is happening, any kind of malware is being deployed across the endpoints, or any kind of suspicious activity is going on. We have a footprint across all of North America, Canada, and Mexico, so we want to make sure that all our endpoints are protected and we are able to look for any anomalous activity."
"Previously, we used a mix of Trend/Sophos/Symantec. Webroot has all their best bits combined into one solution."
"The ease of use of the centralized admin console is its best asset."
"Webroot pioneered integration of novel concepts in endpoint protection."
"The initial setup is not complex at all. It's very straightforward."
"It monitors traffic and keeps us from getting ransomware or other viruses."
"My advice about this product is that it is a very good solution and offers a stable and trusted software that runs smoothly and is easy to deploy."
"Valuable features include good scanning, very light footprint and management console that the client can access and (just as important) in which I can see status of groups of computers (I am a consultant, IT role)."
"The most valuable aspect of Webroot Business Endpoint Protection is that I have never gotten malware with it."
 

Cons

"There's room for improvement with Mac device installations, which can be challenging."
"The downside to the solution is that there are a large number of false positives."
"One thing that was missing was the integration part. Currently, they don't have out-of-box integration with IBM QRadar, or if they have the integration, the integration doesn't work well."
"There is also no recovery feature; if some endpoint is under attack there must be the possibility of recovering it or restoring it to a normal state."
"The solution eats memory of the computer, unlike anything I've ever seen."
"It takes time to scan the servers and devices."
"Cortex XDR by Palo Alto Networks could improve by adding a sandbox feature to better compete with their competitors which have it."
"A better pricing plan would make this product more competitive."
"The tool's support is an area of concern where improvements are needed."
"Defender's threat protection should be fine-tuned to reduce false positives. It could be more targeted, reflecting a continuous evolution in detecting. Also, it could be easier to integrate into other environments."
"Microsoft should provide batch management solutions with the application, integrating pass management with roles."
"The threat detection capabilities require significant customization for multistage threat detection."
"Defender's reporting is rather scattered, and its URL filtering mechanism doesn't really work."
"The user interface has a lot of features which can make it complex and hard to adapt to for some users."
"I have an open case for close to two months with no responses or updates, except for an email response, and I've made four or five phone calls regarding the Microsoft Interconnect for AD and cloud tenant."
"The areas where Microsoft Defender for Business could improve include the support, installation process, and wiki. I should be able to find solutions to issues quickly without having to delve too deep."
"We need more control over when upgrades to the app are rolled out."
"Reporting system could be improved."
"Since they're dealing with multi-core environments now, the best option would be for them to enhance the product so that the product can automatically do an assessment on the machine."
"One of the biggest pain points is that it's not really ransomware-oriented. They will be able to catch some, but that's where Sentinel One is a better player compared to Webroot."
"Webroot Business Endpoint Protection needs to improve its ability to detect threats."
"The platform is mostly stable, however there are hiccups with the cloud from time-to-time that impact the ability to get to the portal."
"Webroot Business Endpoint Protection needs to focus on how they can widen their area of scope by not just being an antivirus tool anymore. The shortcoming in the customization area of the tool needs improvement."
"Webroot used to be really good when they first came out, but now they've completely fallen behind, sadly."
 

Pricing and Cost Advice

"I don't recall what the cost was, but it wasn't really that expensive."
"The pricing is a little bit on the expensive side."
"Cortex XDR's pricing is ok."
"Our customers have expressed that the price is high."
"The cost depends on your chosen license type, like Pro or other licenses."
"In terms of the cost Cortex XDR by Palo Alto Networks is very expensive because we are a Mexican company and when you translate dollars to pesos the cost is very high. The solution is very expensive for Mexican companies. I understand that they have international prices, but I do not think it offsets the price enough for many companies in countries, such as Mexico. The amount it is reduced is not a massive percentage."
"I did PoCs on products called Cylance and CrowdStrike. Although, I consider these products and they were also good, when it come to cost and budgetary factors, Traps has been proven to be better than the other two products. It is quite cost-effective and delivers all the entire solution which we require."
"Licensing for Palo Alto Networks Cortex XDR can be costly, especially when it comes to a hundred users. A license is required for each user, and the subscription must be renewed on a yearly basis."
"The tool's cost has been a little high, but I do not think it was terrible."
"It has to get more competitive because we are starting to see some of the competitors providing better pricing, and some of it, of course, is to gain market share. The Defender product pricing is probably a little higher than the competitors."
"The tool is cheap, while some other solutions are more expensive. I remember the tool cost about five euros for a workstation or for a user on a monthly basis."
"Since we're a nonprofit, we get pretty good discounts on the tool."
"Defender for Business is included by default with an Office 365 premium subscription."
"If you purchase for clients, then you are the managing billing entity. It's better to either get a monthly subscription check from your clients, or to prepay for the year (so as to not keep cash in reserve to pay the bill each month) IMHO."
"The solution doesn't cost too much. It's about 30 Euros a year for each endpoint. It's pretty affordable for us and for many other companies."
"With Webroot Business Endpoint Protection, I can select a yearly billing cycle."
"Get a trial, then a multi-year license."
"It is relatively cheap."
"We are on an annual subscription for the use of Webroot Business Endpoint Protection."
"Webroot is less expensive than SentinelOne."
"From a pricing standpoint, I would rate it a four out of five."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
913,924 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Financial Services Firm
9%
Computer Software Company
14%
Comms Service Provider
10%
Outsourcing Company
10%
Financial Services Firm
8%
Construction Company
12%
Outsourcing Company
11%
Comms Service Provider
9%
Financial Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise2
Large Enterprise4
By reviewers
Company SizeCount
Small Business35
Midsize Enterprise2
Large Enterprise2
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Microsoft Defender for Business?
Our thoughts on the pricing for Microsoft Defender for Business are that we wish it could be better. If the pricing w...
What needs improvement with Microsoft Defender for Business?
I see room for improvement in Microsoft Defender for Business, particularly regarding the consolidation of all securi...
What is your experience regarding pricing and costs for Webroot Business Endpoint Protection?
Webroot Business Endpoint Protection is probably on the cheaper side, so I would rate their pricing a one or a two ou...
What needs improvement with Webroot Business Endpoint Protection?
Webroot Business Endpoint Protection needs to improve its ability to detect threats. It does not do what it's adverti...
What is your primary use case for Webroot Business Endpoint Protection?
We use Webroot Business Endpoint Protection as a NextGen antivirus solution for our clients. It's included in the con...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Webroot SecureAnywhere Business Endpoint Protection
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
Mytech Partners
Find out what your peers are saying about Microsoft Defender for Business vs. OpenText Core Endpoint Protection​ and other solutions. Updated: September 2026.
913,924 professionals have used our research since 2012.