No more typing reviews! Try our Samantha, our new voice AI agent.

Palo Alto Networks AutoFocus vs SophosLabs Intelix comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 5, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Palo Alto Networks AutoFocus
Ranking in Threat Intelligence Platforms (TIP)
21st
Average Rating
7.4
Reviews Sentiment
6.8
Number of Reviews
7
Ranking in other categories
No ranking in other categories
SophosLabs Intelix
Ranking in Threat Intelligence Platforms (TIP)
20th
Average Rating
9.0
Reviews Sentiment
8.0
Number of Reviews
1
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Threat Intelligence Platforms (TIP) category, the mindshare of Palo Alto Networks AutoFocus is 1.3%, up from 1.1% compared to the previous year. The mindshare of SophosLabs Intelix is 0.7%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Threat Intelligence Platforms (TIP) Mindshare Distribution
ProductMindshare (%)
SophosLabs Intelix0.7%
Palo Alto Networks AutoFocus1.3%
Other98.0%
Threat Intelligence Platforms (TIP)
 

Featured Reviews

Tejas Jain - PeerSpot reviewer
Principle Cloud Architect at a tech services company with 11-50 employees
Seamless integration into existing ecosystem empowers effective threat detection
The most valuable feature of Palo Alto Networks AutoFocus is its seamless integration into the Palo Alto Networks ecosystem, allowing the threat intelligence feeds to be automatically consumed without manual effort. It uses the STIX format, which is automatically understood by the firewalls. AutoFocus also excels in behavioral analytics and reputation scoring, providing thorough threat analysis.
TV
Cloud Support at a security firm with 51-200 employees
Daily threat checks have reduced false alarms and have improved confidence in file approvals
One feature I would like to see improved in SophosLabs Intelix is deeper integration with endpoint tools so alerts flow more seamlessly. I also find the sandbox details very valuable since it shows exactly how a file behaves, which helps me explain risks clearly to my team. SophosLabs Intelix could be improved by offering deeper integration with SIEM tools, such as Sentinel, so alerts flow automatically into our dashboard. Another feature I would appreciate is more customization in reports to highlight the risks most relevant to our environment. One improvement in SophosLabs Intelix that would help my workflow is tighter automation with ticketing systems, so flagged files create cases automatically. It would also be useful if reports could be customized to highlight only the most critical behaviors, saving my team time when reviewing results. Another improvement I would still appreciate for SophosLabs Intelix is better dashboard customization so I can tailor the view to my team's priorities. It would also help if Intelix offered more granular API access, making automation smoother, as those changes would make daily workflows even easier.
report
Use our free recommendation engine to learn which Threat Intelligence Platforms (TIP) solutions are best for your needs.
908,800 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Performing Arts
14%
Outsourcing Company
10%
Manufacturing Company
10%
Energy/Utilities Company
6%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Large Enterprise4
No data available
 

Questions from the Community

What needs improvement with Palo Alto Networks AutoFocus?
I feel that Palo Alto Networks AutoFocus can improve, especially since most of the OEMs are implementing MDR, Managed Service feature, which is still not available with Palo Alto. The MDR feature i...
What is your primary use case for Palo Alto Networks AutoFocus?
I use Palo Alto Networks AutoFocus for threat monitoring, and it is provided by the OEM itself. I use the threat data correlation feature, which correlates with Cortex. We can use it for data corre...
What advice do you have for others considering Palo Alto Networks AutoFocus?
As a partner with Palo Alto Networks, my email is Sarvajit at bsrgroup.in. My job title is Technical Manager. I confirm that we will publish these reviews on peerspot.com in written or audio format...
What is your experience regarding pricing and costs for SophosLabs Intelix?
My experience with pricing, setup cost, and licensing for SophosLabs Intelix has been straightforward since we went through AWS Marketplace, and there were no extra setup costs beyond our subscript...
What needs improvement with SophosLabs Intelix?
One feature I would like to see improved in SophosLabs Intelix is deeper integration with endpoint tools so alerts flow more seamlessly. I also find the sandbox details very valuable since it shows...
What is your primary use case for SophosLabs Intelix?
My main use case for SophosLabs Intelix is analyzing suspicious files before they reach production systems. I use it almost daily because it gives quick verdicts and helps me decide whether to bloc...
 

Also Known As

Palo Alto Threat Intelligence Management
No data available
 

Overview

 

Sample Customers

Telkom Indonesia
Information Not Available
Find out what your peers are saying about Recorded Future, CrowdStrike, SOCRadar and others in Threat Intelligence Platforms (TIP). Updated: July 2026.
908,800 professionals have used our research since 2012.