


Rapid7 InsightIDR and Microsoft Defender for Endpoint are leading security solutions. Reviews indicate Rapid7 InsightIDR is favored for pricing and support while Microsoft Defender for Endpoint is preferred for its comprehensive features, making users feel it is worth the investment.
Features: Rapid7 InsightIDR is user-friendly and known for strong threat detection. Microsoft Defender for Endpoint is known for integration with Microsoft tools and advanced threat protection. InsightIDR's incident detection is simpler, while Defender's integration capabilities are more versatile for larger ecosystems.
Room for Improvement: Rapid7 InsightIDR users desire enhanced analytics and deeper threat intelligence. Microsoft Defender for Endpoint users seek improvements in system performance and fewer false positives. Performance optimization in Defender is more frequently noted.
Ease of Deployment and Customer Service: Rapid7 InsightIDR has a quick deployment process and responsive support. Microsoft Defender for Endpoint provides efficient deployment but has some complexity due to integration. Customer services are well-regarded, with Rapid7's support slightly more praised for its promptness.
Pricing and ROI: Rapid7 InsightIDR is considered cost-effective with a favorable ROI due to lower setup costs and reliable performance. Microsoft Defender for Endpoint, although more expensive, offers a higher ROI through robust features and extensive security measures. Users feel the higher price is justified by its advanced capabilities.
| Product | Mindshare (%) |
|---|---|
| Microsoft Defender for Endpoint | 6.0% |
| Cortex XDR by Palo Alto Networks | 3.4% |
| Rapid7 InsightIDR | 1.2% |
| Other | 89.4% |



| Company Size | Count |
|---|---|
| Small Business | 46 |
| Midsize Enterprise | 20 |
| Large Enterprise | 49 |
| Company Size | Count |
|---|---|
| Small Business | 82 |
| Midsize Enterprise | 43 |
| Large Enterprise | 95 |
| Company Size | Count |
|---|---|
| Small Business | 21 |
| Midsize Enterprise | 5 |
| Large Enterprise | 6 |
Cortex XDR by Palo Alto Networks provides advanced threat detection with AI-driven endpoint protection and seamless integration, ensuring multi-layered security and automatic threat response.
Cortex XDR is designed to safeguard endpoints against malware and suspicious activities. It offers advanced threat detection and response capabilities using behavioral analysis, AI, and machine learning. It seamlessly integrates with security infrastructures, providing endpoint security, firewall integration, and enhanced visibility in both cloud-based and on-premises environments.
What are the key features of Cortex XDR?Organizations in diverse sectors deploy Cortex XDR to protect against malware, leveraging its advanced threat detection capabilities. Its integration with existing security infrastructures appeals to those seeking comprehensive protection in both cloud and on-premises environments, providing enhanced visibility and threat intelligence.
Microsoft Defender for Endpoint provides comprehensive threat protection that integrates well with current systems, offering proactive threat detection and automatic updates while reducing manual efforts.
The platform is designed for seamless integration with Microsoft products, facilitating efficient management and use. It offers proactive ransomware protection and valuable threat intelligence, crucial for timely response and increased visibility across devices. Users highlight its ability to secure endpoints from viruses and malware, integrating with Windows and Office 365 to enhance real-time detection capabilities in diverse environments, including hybrid and on-premises setups. However, enhancements are needed in Linux integration, detection accuracy, and policy implementations.
What are the key features of Microsoft Defender for Endpoint?Microsoft Defender for Endpoint is implemented across industries for securing endpoints, relying on its deep integration with Windows and Office 365 to protect against malware and viruses. Organizations benefit from its real-time detection and comprehensive management capabilities, particularly in hybrid environments where diverse digital infrastructures need safeguarding.
Rapid7 InsightIDR is a cloud-based security information and event management solution known for its user behavior analytics, offering rapid detection and response capabilities while facilitating seamless integration across systems.
Rapid7 InsightIDR is designed to enhance threat detection and investigation through its efficient user behavior analytics and advanced threat intelligence framework. The platform's cloud-based deployment ensures rapid setup and comprehensive event monitoring across diverse IT environments, including endpoints and Office 365. Its intuitive interface supports seamless data collection, honing in on threat detection through honeypot utilization and intelligent alerting. However, it is noted for lacking some customization features and better integration, especially with Microsoft and ITSMs.
What are the key features of Rapid7 InsightIDR?Rapid7 InsightIDR is prominently used in security operation centers to manage events, detect threats, and respond effectively. Industries apply it for network behavior monitoring, compliance, and vulnerability management. Companies integrate it with security tools to boost threat investigation, ensuring full SIEM functionalities and robust log management capacities. Its application spans behavioral and intrusion analytics, aiding in monitoring and addressing malicious activities.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.