No more typing reviews! Try our Samantha, our new voice AI agent.

Netsurion vs Secureworks Taegis Managed XDR / MDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Netsurion
Ranking in Managed Security Services Providers (MSSP)
19th
Ranking in Managed Detection and Response (MDR)
31st
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
24
Ranking in other categories
Security Information and Event Management (SIEM) (48th), SOC as a Service (7th), Extended Detection and Response (XDR) (43rd)
Secureworks Taegis Managed ...
Ranking in Managed Security Services Providers (MSSP)
2nd
Ranking in Managed Detection and Response (MDR)
18th
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
14
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Managed Security Services Providers (MSSP) category, the mindshare of Netsurion is 1.4%, up from 0.7% compared to the previous year. The mindshare of Secureworks Taegis Managed XDR / MDR is 6.3%, down from 6.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Security Services Providers (MSSP) Mindshare Distribution
ProductMindshare (%)
Secureworks Taegis Managed XDR / MDR6.3%
Netsurion1.4%
Other92.3%
Managed Security Services Providers (MSSP)
 

Featured Reviews

John-Berry - PeerSpot reviewer
Information Technology Manager at ProfitSolv
The SOC center monitors, hunts, and notifies us of threats around the clock
I know they are working to resolve this issue, but Netsurion is currently unable to retrieve logs from S3 buckets. We use WP Engine for a lot of web hosting as well as AWS, and both of these platforms use S3 buckets. I would like Netsurion to be able to pull logs from Linux devices. We have some of that capability, and I believe they can do it. However, the way it works with Amazon is strange and glitchy. Therefore, working something out with Amazon would be great. Netsurion's SOC can be a bit too aggressive at times. We have asked them to adjust their playbook because I am tired of being notified about the same issue multiple times a day. I am aware of the issue, and it is not a cause for concern. Let's only take action on this issue if we see an actual problem.
reviewer2396166 - PeerSpot reviewer
VP International Business and Alliances at a tech services company with 51-200 employees
Customers have found quick incident response and proactive security management through effective threat detection
Secureworks Taegis Managed XDR MDR is a great product that has not posed any challenges from my perspective. I am extremely happy with the quick response from the Secureworks team. After the Sophos merger, I look forward to seeing a better and more enhanced version of the product. The team does a phenomenal job with automatic maintenance.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution provides actionable threat intelligence, it is not a passive service, they go in and perform mitigations on whatever they find, it is timely, and they provide context so it is understood by anyone who receives these reports."
"Overall, we're really thrilled with them."
"Expediting incident response is really great."
"Their SOC team manages vulnerability management and IOC reviews. They stop bad processes when they happen. The best thing is their weekly reviews of what has been going on in the infrastructure as well as the things that they see and what we should look out for."
"The most important feature is keeping track of when accounts are created and deleted, when permission groups are changed, and memberships are changed in groups; and overall, how many errors are occurring on the various systems that we're monitoring."
"EventTracker is exactly that; it's giving me all of the features and functions that we need to do our jobs, and at a price point that's incredibly attractive."
"Netsurion's 24/7 monitoring has enhanced the overall security of the company."
"If we need to do a search for user lockouts, we can go, search, and find locations where they have been locked out, then keep track of those events, historically."
"We can easily isolate affected machines in the network."
"The pricing is flexible."
"The solution definitely made us way more aware of the possibilities out there."
"This solution gathers the information logs from all devices and correlates all the information. It notifies us of any critical events taking place across our networks which has been valuable."
"Solved a fundamental problem that lets us all sleep well at night!"
"There are some patent pending detectors within the platform that provides a lot of value."
"The most valuable feature is the support. The support chat. It's always connecting to people. And you open the chat, and it's not about that automated response. It's actually a human being that responds to you."
"The most valuable feature is the fast alerting and response time."
 

Cons

"The MITRE ATT&CK framework could be faster when identifying and understanding sophisticated threats. Whenever something happens, we usually get notified a couple hours later."
"Probably the biggest thing is just: Can I search for this and what's the best way to do it? If I'm looking for two events versus a singular event, I just throw it back at them. They're the experts on it."
"There are some issues with searches taking a long period of time, but they assured me that they have implemented a new search function that's available in version 9, but which requires a solid-state hard drive... Depending on how many logs you have it could take a long time to return the results if you're looking back prior to the last 30 days."
"Where there is an opportunity for improvement is in the interface used for performing the searches."
"Using Netsurion has not meant we have consolidated cybersecurity technologies."
"Their SOC team can't understand our network because they haven't worked in the actual company. This does negatively affect security posture, e.g., if you don't have knowledge about the network, then you will miss things."
"The weekly reporting could use some improvement. For example, when we handed them our landscape document, it took longer than I would have liked for those details to become noticeable within the reports."
"The hosted on-premise hardware that we were using was having issues. The performance of it was horrendous, but we weren't using it."
"GUI for resolving tickets is terrible. Non-intuitive, offering a dizzying array of options, often none of which made sense even for common problems."
"I would rate the scalability at 50%. We have been having a problem as we are shifting from a previous appliance to a virtual machine."
"In the next release of this solution, I would like to see file integrity monitoring."
"Tamper-proofing or tamper protection is still pending in Secureworks. Tamper protection will make it more secure. If I'm an admin of a device, I can uninstall an agent without the knowledge of the security or Secureworks admin. If someone gets hold of one endpoint with admin credentials, he can remove anything, and an organization will lose visibility. They need to work on providing more visibility across endpoints. A couple of times it has happened that the cloak agent is there, but it did not get activated, or there were some issues. The machine was restarted, but the cloak agent didn't run. In such cases, you have to troubleshoot. It is a big issue if a cyber attack is happening, and your machine is rebooted, but the events are not captured."
"Tamper-proofing or tamper protection is still pending in Secureworks."
"The deployment could definitely be improved."
"Dell Secureworks could improve its integration with other third-party solutions."
"The integration with the Carbon Black sensor could be better. ManagedXDR doesn't seem to know how to extract the forensic data from an endpoint that was quarantined by Carbon Black."
 

Pricing and Cost Advice

"EventTracker's subscription-based model is interesting as far as yearly license type stuff. It's nice because you know what it's going to be next year. We haven't really looked at any other solutions. The pricing at the time compared to the other solutions was a lot less. A couple of years ago, we actually looked at Splunk. The amount in Splunk's licensing model is based on 20 gigs a day, or something like that. Based on our number of logs and stuff that we were already generating, the costs would be substantially more for the amount of logs that we would be getting."
"When we first got the EventTracker product, we were using SIEM Simplified. At the time they didn't call it that, but it was more of a service thing. So, there was a bit more hand-holding and getting stuff set up, along with failure reports, that they did during the first one to two years. Then, we decided that the the additional money to have someone do these daily reports wasn't terribly useful, so we discontinued that service."
"We have seen time and cost savings. It prevents us from having to hire specialized people for this type of work. We would need to hire six staff members to accommodate the same service."
"The pricing and licensing seem very reasonable. The managed service part of it feels like it gives me the equivalent of a full-time engineer for a lot less money. So, I feel it's a good value."
"You are paying for different levels, especially as far as the monitoring goes and how often you review it with the team. The other factor that figures in is how many nodes are on your network, such as clients, network equipment, servers, etc. There are some additional pieces on top of that, but it's laid out pretty simply, as far as how much you're going to pay for a node."
"Netsurion's pricing is competitive. At the same time, they're the only ones who do what we want to do the way we want it. I can't say we would've paid more, but we would've had to have come up with our own solution if they weren't providing that."
"I don't know if the pricing is by the seat but we're paying about $20,000 to 25,000 a year. On top of that, we pay for the managed support services. That runs us about another $35,000 or $40,000 a year."
"Netsurion's pricing is extremely fair and flexible. The price of their SIEM product is reasonable, and you can pay for those services you want on top of that. It wasn't cheap, but it's competitive, and we intend to renew our contract."
"The pricing for this solution is reasonable. One agent costs approximately 270 dirhams/70 USD for one year. There is a reduction in cost per licence as the number of licences used increases."
"Initially, the cost was going to be something around $160 or $170. And eventually, I think they brought it down to $110 and they also threw in some endpoint protection platforms."
"The pricing of Dell Secureworks is very reasonable."
"It is expensive but there is no better product than this."
"The price is kind of on par. The licensing was comparable to other solutions. It's not particularly high or low."
"Secureworks Taegis ManagedXDR is very expensive and could be more cost-effective."
"The Red Cloak agent is free."
report
Use our free recommendation engine to learn which Managed Security Services Providers (MSSP) solutions are best for your needs.
908,858 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Outsourcing Company
13%
Performing Arts
9%
Manufacturing Company
8%
Construction Company
11%
Financial Services Firm
10%
Comms Service Provider
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise7
Large Enterprise7
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise5
Large Enterprise5
 

Questions from the Community

Ask a question
Earn 20 points
What needs improvement with Secureworks Taegis ManagedXDR?
I would not say there is a potential area of improvement. I am also waiting to see what Sophos will bring in terms of enhancement. There is room for AI integration as the industry evolves, and more...
What is your primary use case for Secureworks Taegis ManagedXDR?
The solution is used for threat detection and response. We generally use it for quick responses during incidents and to secure our systems.
What advice do you have for others considering Secureworks Taegis ManagedXDR?
I would rate Secureworks Taegis Managed XDR MDR at ten out of ten. This solution provides excellent support and response.
 

Also Known As

Netsurion Managed Threat Protection, Netsurion EventTracker
Secureworks Red Cloak Managed Detection and Response, Dell Secureworks, SecureWorks Taegis Managed TDR
 

Overview

 

Sample Customers

The Salvation Army, The FRESH Market, Pacific Western Bank, NASA, American Academy of Orthopaedic Surgeons (AAOS), and Talbot’s Stores
RICOH, Owens and Minor
Find out what your peers are saying about Netsurion vs. Secureworks Taegis Managed XDR / MDR and other solutions. Updated: August 2026.
908,858 professionals have used our research since 2012.