Try our new research platform with insights from 80,000+ expert users

Netsurion vs Secureworks Taegis Managed XDR / MDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 3, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Netsurion
Ranking in Managed Security Services Providers (MSSP)
33rd
Ranking in Managed Detection and Response (MDR)
39th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
24
Ranking in other categories
Security Information and Event Management (SIEM) (54th), SOC as a Service (15th), Extended Detection and Response (XDR) (43rd)
Secureworks Taegis Managed ...
Ranking in Managed Security Services Providers (MSSP)
2nd
Ranking in Managed Detection and Response (MDR)
14th
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
14
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of March 2026, in the Managed Security Services Providers (MSSP) category, the mindshare of Netsurion is 1.1%, up from 0.8% compared to the previous year. The mindshare of Secureworks Taegis Managed XDR / MDR is 5.2%, down from 7.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Security Services Providers (MSSP) Mindshare Distribution
ProductMindshare (%)
Secureworks Taegis Managed XDR / MDR5.2%
Netsurion1.1%
Other93.7%
Managed Security Services Providers (MSSP)
 

Featured Reviews

John-Berry - PeerSpot reviewer
Information Technology Manager at ProfitSolv
The SOC center monitors, hunts, and notifies us of threats around the clock
I know they are working to resolve this issue, but Netsurion is currently unable to retrieve logs from S3 buckets. We use WP Engine for a lot of web hosting as well as AWS, and both of these platforms use S3 buckets. I would like Netsurion to be able to pull logs from Linux devices. We have some of that capability, and I believe they can do it. However, the way it works with Amazon is strange and glitchy. Therefore, working something out with Amazon would be great. Netsurion's SOC can be a bit too aggressive at times. We have asked them to adjust their playbook because I am tired of being notified about the same issue multiple times a day. I am aware of the issue, and it is not a cause for concern. Let's only take action on this issue if we see an actual problem.
reviewer2396166 - PeerSpot reviewer
VP International Business and Alliances at a tech services company with 51-200 employees
Customers have found quick incident response and proactive security management through effective threat detection
Secureworks Taegis Managed XDR MDR is a great product that has not posed any challenges from my perspective. I am extremely happy with the quick response from the Secureworks team. After the Sophos merger, I look forward to seeing a better and more enhanced version of the product. The team does a phenomenal job with automatic maintenance.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use those standard reports every day and monitor them, and it probably saves us three hours a day because the solution is doing the consolidation of the log files for us."
"I like EventTracker's dashboard. I see it every time I log in because it's the first thing you get to. We have our own widgets that we use. For the sake of transparency, there are a few widgets that we look at there and then we move out from there... Among the particularly helpful widgets, the not-reporting widget is a big one. The number-of-logs-processed is also a good one."
"The SIEMs and managed service are its most valuable features. We get a weekly report from them which provides a culmination of them combing through millions of events which are triggered across our network every day and minute. Their information security experts basically boil that down to a report which I get emailed once a week. It identifies potential threats and the remediation that I should take to be able to quell those threats."
"What I like most about Netsurion is the level of visibility and reporting."
"If I were to look at logs manually, there's no way I could do that; as an example, there are 48 million logs processed a day, so it gives me a good structure to be able to look at the different incidents which are created and do different searches."
"The most valuable feature is definitely real-time alerting, especially in situations where someone might attempt to exploit or hack into our network."
"They have what they call Elasticsearch which is very quick, although that's only available for the last seven days' worth of data. It used to be that, if I wanted to do a search from three days ago, it might take me 10 to 15 minutes because it had to actually unzip some archive files. So I really like that feature. It's almost instantaneous for anything within the last seven days."
"Their SOC team manages vulnerability management and IOC reviews. They stop bad processes when they happen. The best thing is their weekly reviews of what has been going on in the infrastructure as well as the things that they see and what we should look out for."
"The knowledge base is up to date and easy to use."
"The pricing is flexible."
"Secureworks Taegis Managed XDR MDR is a great product that has not posed any challenges from my perspective."
"The initial setup was very straight forward."
"The most valuable features are IDS and IPS."
"Solved a fundamental problem that lets us all sleep well at night!"
"We can easily isolate affected machines in the network."
"We don't have a full SOC, so it's helpful to have them sifting through our alerts and only bringing actionable items to us."
 

Cons

"With version 8, there are quite a few things. The query tool was one of the big ones, and the query speed was one of the big ones, but they've made some great strides between versions 8 and 9. There were also issues in version 8 around the ability to get the data back out. It's one thing to collect data, but it's a whole other thing to be able to present it or run it in a timely manner. The old tool, depending on how far back I was looking, might even time out and I would have to run it again."
"Netsurion's SOC can be a bit too aggressive at times."
"Everything that I've wanted has been added in. EDR was added, and MITRE was added. Those were two big ones that we didn't even have to push for."
"I'd like to see improvement in the ease of generating reports. It seems fairly cumbersome whenever you decide to start tracking new categories of events. It seems a little kludgy when trying to generate those reports."
"Probably the biggest thing is just: Can I search for this and what's the best way to do it? If I'm looking for two events versus a singular event, I just throw it back at them."
"It would be great if they had a client for phones by which they could push a notification to us, as opposed to via email."
"We get a report generated on a particular day of the week and we go through it, trying to mitigate problems and make sure we're seeing everything that's happening. It would be helpful if the SOC spent a little more time with us going through some of those reports."
"Where there is an opportunity for improvement is in the interface used for performing the searches."
"Dell Secureworks is for higher-end customers and it's not quite as straightforward to implement or to get up and running as some of the other solutions."
"The deployment could definitely be improved."
"The integration would look better with other products, with other EDRs, with other firewalls, with other older versions of firewalls, and the versions of software and hardware."
"I would rate the scalability at 50%. We have been having a problem as we are shifting from a previous appliance to a virtual machine."
"Dell Secureworks is for higher-end customers and it's not quite as straightforward to implement or to get up and running as some of the other solutions."
"Tamper-proofing or tamper protection is still pending in Secureworks. Tamper protection will make it more secure. If I'm an admin of a device, I can uninstall an agent without the knowledge of the security or Secureworks admin. If someone gets hold of one endpoint with admin credentials, he can remove anything, and an organization will lose visibility. They need to work on providing more visibility across endpoints. A couple of times it has happened that the cloak agent is there, but it did not get activated, or there were some issues. The machine was restarted, but the cloak agent didn't run. In such cases, you have to troubleshoot. It is a big issue if a cyber attack is happening, and your machine is rebooted, but the events are not captured."
"This solution could be improved with a higher degree of automation such as automated emails, triggers and defining the severity of the cases."
"It would be nice if the solution were a little more affordable."
 

Pricing and Cost Advice

"When we first got the EventTracker product, we were using SIEM Simplified. At the time they didn't call it that, but it was more of a service thing. So, there was a bit more hand-holding and getting stuff set up, along with failure reports, that they did during the first one to two years. Then, we decided that the the additional money to have someone do these daily reports wasn't terribly useful, so we discontinued that service."
"You are paying for different levels, especially as far as the monitoring goes and how often you review it with the team. The other factor that figures in is how many nodes are on your network, such as clients, network equipment, servers, etc. There are some additional pieces on top of that, but it's laid out pretty simply, as far as how much you're going to pay for a node."
"The upfront costs have increased, and we have been locked into this contract. The cost of changing over from it is way too high."
"Netsurion's pricing is extremely fair and flexible. The price of their SIEM product is reasonable, and you can pay for those services you want on top of that. It wasn't cheap, but it's competitive, and we intend to renew our contract."
"We have seen time and cost savings. It prevents us from having to hire specialized people for this type of work. We would need to hire six staff members to accommodate the same service."
"Our budget follows the calendar year. We just started a new budget year at the beginning of the month. We did budget for an increase in our threat management system selection. Therefore, we have the budget to implement and accommodate a threat management system change, including an increase for the quoted actions that we received to improve EventTracker. We are just waiting on our council to approve that budget, which might not be for a little while. Hopefully, when they do, we will be able to jump on doing something."
"The solution is fairly expensive, but in my experience, all of the SIEM applications that I've evaluated or looked at cost about the same."
"I don't know if the pricing is by the seat but we're paying about $20,000 to 25,000 a year. On top of that, we pay for the managed support services. That runs us about another $35,000 or $40,000 a year."
"It is expensive but there is no better product than this."
"The pricing of Dell Secureworks is very reasonable."
"The Red Cloak agent is free."
"Secureworks Taegis ManagedXDR is very expensive and could be more cost-effective."
"The price is kind of on par. The licensing was comparable to other solutions. It's not particularly high or low."
"The pricing for this solution is reasonable. One agent costs approximately 270 dirhams/70 USD for one year. There is a reduction in cost per licence as the number of licences used increases."
"Initially, the cost was going to be something around $160 or $170. And eventually, I think they brought it down to $110 and they also threw in some endpoint protection platforms."
report
Use our free recommendation engine to learn which Managed Security Services Providers (MSSP) solutions are best for your needs.
884,933 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Performing Arts
14%
Manufacturing Company
10%
Outsourcing Company
8%
Retailer
6%
Financial Services Firm
9%
Computer Software Company
9%
Manufacturing Company
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise7
Large Enterprise7
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise5
Large Enterprise4
 

Questions from the Community

Ask a question
Earn 20 points
What needs improvement with Secureworks Taegis ManagedXDR?
I would not say there is a potential area of improvement. I am also waiting to see what Sophos will bring in terms of enhancement. There is room for AI integration as the industry evolves, and more...
What is your primary use case for Secureworks Taegis ManagedXDR?
The solution is used for threat detection and response. We generally use it for quick responses during incidents and to secure our systems.
What advice do you have for others considering Secureworks Taegis ManagedXDR?
I would rate Secureworks Taegis Managed XDR MDR at ten out of ten. This solution provides excellent support and response.
 

Also Known As

Netsurion Managed Threat Protection, Netsurion EventTracker
Secureworks Red Cloak Managed Detection and Response, Dell Secureworks, SecureWorks Taegis Managed TDR
 

Overview

 

Sample Customers

The Salvation Army, The FRESH Market, Pacific Western Bank, NASA, American Academy of Orthopaedic Surgeons (AAOS), and Talbot’s Stores
RICOH, Owens and Minor
Find out what your peers are saying about Netsurion vs. Secureworks Taegis Managed XDR / MDR and other solutions. Updated: March 2026.
884,933 professionals have used our research since 2012.