No more typing reviews! Try our Samantha, our new voice AI agent.

Rapid7 InsightIDR vs WithSecure Elements Endpoint Detection and Response comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Ranking in Extended Detection and Response (XDR)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Rapid7 InsightIDR
Ranking in Endpoint Detection and Response (EDR)
34th
Ranking in Extended Detection and Response (XDR)
19th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
33
Ranking in other categories
Security Information and Event Management (SIEM) (24th), User Entity Behavior Analytics (UEBA) (11th), Threat Deception Platforms (4th)
WithSecure Elements Endpoin...
Ranking in Endpoint Detection and Response (EDR)
44th
Ranking in Extended Detection and Response (XDR)
36th
Average Rating
8.0
Reviews Sentiment
5.6
Number of Reviews
7
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.8% compared to the previous year. The mindshare of Rapid7 InsightIDR is 1.3%, up from 1.1% compared to the previous year. The mindshare of WithSecure Elements Endpoint Detection and Response is 1.0%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
Rapid7 InsightIDR1.3%
WithSecure Elements Endpoint Detection and Response1.0%
Other94.0%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Prajwal Chougale - PeerSpot reviewer
System Analyst at a tech services company with 51-200 employees
Centralized threat hunting has improved alert accuracy and simplifies incident investigations
I would say there are two areas for improvement: the reporting dashboard that provides insights or reports weekly or monthly lacks detailed information about how logs are being ingested. While the details are there, they could be more concise and easier to understand for any level of authority. The second area is alert tuning; compared to Microsoft Sentinel, Rapid7 InsightIDR provides fewer alerts with more static alert functionality and lacks dynamic alerting exposures. There could be improvements to learn from past alert activities for more dynamic alert configurations. These two areas are the main areas for improvement; everything else is good.
Mark Feldman - PeerSpot reviewer
IT-Manager at MKF-Schimanski-ERGIS GmbH
Dashboard offers comprehensive views with efficient system updates and integration
There is one significant issue with WithSecure Elements Endpoint Detection and Response. For computers with limited RAM, such as 16 gigabytes, the software is not optimal as it requires between four to six gigabytes of RAM to run. I don't use the Threat Intelligence feature from WithSecure Elements Endpoint Detection and Response as it requires extra activation, which I have not implemented.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Monitoring is most valuable."
"The integrations are out-of-the-box, as are the playbooks."
"The normal protection was really effective, and we detected situations that if we didn't have Cortex XDR by Palo Alto Networks, it's highly likely that we would have been affected, but it protected the infrastructure."
"I have found the solution to be very easy in respect of the integration and configurable."
"The user interface of the solution is sophisticated and straightforward."
"We have a complete overview of all our PCs and it's very easy to handle and to use the interface. It has a lot of benefits for us."
"We can use Cortex XDR to get the entire graph of the incidents from source to destination, and we can take remedial action."
"There are a lot of lead solutions in this space, however, Palo Alto is number one."
"Rapid7 InsightIDR is budget-friendly and has a good market position because not everybody can afford to go for LogRhythm or Splunk or QRadar."
"Integration with threat modeling from the Metasploit and InsightIDR repositories."
"Rapid7's reporting is more robust than Tenable's."
"The solution is very stable and works very well for what I need it to do."
"The product works well. Stability-wise, I rate the solution a ten out of ten."
"We were able to identify criminals attempting to login from China and put a stop on their IP locations."
"Rapid7 InsightIDR has positively impacted my organization by capturing most logs and every minute detail, including endpoint logs, network logs, and any email-related logs if a malicious link has been clicked."
"The biggest reason why we chose Rapid7 was to gain value in a really quick time. Its deployment doesn't take months. It just takes a few days."
"The only issue that we have today is with false positives. We have too many false positives with the solution."
"The product is stable."
"WithSecure includes an encrypted drive that stores a key for accessing the encrypted data."
"We've been very pleased with its capabilities."
"The integration and user interface of WithSecure Elements Endpoint Detection and Response are effective, with a comprehensive dashboard that allows users to quickly identify and address problems, add computers, and send system updates."
"It offers good scalability."
"I use the solution to protect our infrastructure. The tool has special frames for banking. There is an additional secure filter for banking-related pages. It protects me from viruses, malware, and attacks."
"It is a scalable solution."
 

Cons

"It is a complex solution to implement."
"Traps doesn't work with McAfee. You need to remove McAfee to install Traps. This is very common, and its nothing that should be an issue. Some antivirus engines recognize Traps as an threat component, so maybe they need to shake hands somewhere."
"The downsides of Cortex XDR by Palo Alto Networks are that in many incidents, when I enter the causality chain, there are numerous logs."
"Cortex XDR by Palo Alto Networks is a very good product, but financially, it is very expensive, so the company should look into that area."
"It takes time to scan the servers and devices."
"For working with the solution, you only really need a web browser, however, we've found that working on Chrome, for example, is horrible."
"Cortex XDR could improve its sales support team, including better commission structures and referral programs."
"The solution should add unwanted malicious hash values to a block list so that whenever the action is triggered, it will automatically prevent the malicious content."
"The APIs can be further improved in Rapid7."
"Personally, I feel it would greatly benefit from more supported log sources."
"I'd like to see a mobile application included and some feature related to the generality of segregation for internal users that access the application."
"The integration capabilities of the solution have certain shortcomings where improvements are required."
"Inability to get access to compliance reports within the solution."
"If we pitch Rapid7 InsightIDR against solutions such as SIEMs from Splunk or LogRhythm, it is not as customizable as a SIEM solution is."
"The searching feature in Rapid7 InsightIDR needs to evolve"
"I'd like to be able to get the compliance report within the solution which is currently not possible."
"The initial setup is very straightforward."
"Its automated functionality could be better."
"There is one significant issue with WithSecure Elements Endpoint Detection and Response: for computers with limited RAM, such as 16 gigabytes, the software is not optimal as it requires between four to six gigabytes of RAM to run."
"The monthly reporting feature of WithSecure can be improved."
"The tool’s mobile version needs to be improved."
"WithSecure Elements Endpoint Detection and Response is scalable. My company has 800-1000 customers."
"The website rules are too complicated."
 

Pricing and Cost Advice

"I don't like that they have different types of licenses."
"Compared to CrowdStrike, Cortex XDR is an expensive solution."
"Cortex XDR’s pricing is very reasonable."
"Cortex XDR's pricing is ok."
"We pay about $50,000 USD per year for a bundle that includes Cortex XDR."
"The tool's price is moderate."
"Cortex XDR by Palo Alto Networks is quite an expensive solution."
"Our license will require renewal in August, after which the maintenance will continue as usual."
"I rate Rapid7 InsightIDR's price a four on a scale of one to ten, where one is cheap, and ten is expensive."
"The pricing of the solution depends on the user. But there is a yearly licensing cost."
"The pricing and licensing are competitive."
"​I am sure that there are cheaper products out there, but none that meet so many of our needs whilst maintaining stability and usability.​"
"The solution has a mid-range price point in the market"
"Rapid7 InsightIDR's pricing is reasonable but we have challenges with the Minimum Order Quantity. It is not reasonable for customers who have less than one hundred devices. If they can reduce Minimum Order Quantity, it is good. You have to pay around 5000-6000 dollars per year for the product. The pricing includes maintenance and support costs."
"Licensing is straightforward. If, for some reason, you don’t meet the minimum licensing requirements, there is a third-party managed service that can help."
"Rapid7 InsightIDR charges us based on the endpoints we connect to."
"The solution's price is moderate."
"I rate WithSecure a four out of ten because it's quite economical."
"I would rate the tool’s pricing a three out of ten. Its pricing is competitive."
"WithSecure Elements Endpoint Detection and Response's licensing costs are yearly."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
10%
Manufacturing Company
9%
Financial Services Firm
9%
Comms Service Provider
7%
Computer Software Company
7%
Construction Company
13%
Comms Service Provider
13%
Financial Services Firm
8%
Outsourcing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business22
Midsize Enterprise5
Large Enterprise6
By reviewers
Company SizeCount
Small Business6
Large Enterprise1
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
What is your experience regarding pricing and costs for Rapid7 InsightIDR?
My experience with pricing, setup costs, and licensing has been very positive; it is cost-effective and offers great ...
What needs improvement with Rapid7 InsightIDR?
I would say there are two areas for improvement: the reporting dashboard that provides insights or reports weekly or ...
What needs improvement with F-Secure Elements Endpoint Detection and Response?
There is one significant issue with WithSecure Elements Endpoint Detection and Response. For computers with limited R...
What is your primary use case for F-Secure Elements Endpoint Detection and Response?
We work with WithSecure Elements Endpoint Detection and Response EDR products. We use the EDR products from WithSecur...
What advice do you have for others considering F-Secure Elements Endpoint Detection and Response?
The system is simple to use with WithSecure Elements Endpoint Detection and Response. The automated reporting feature...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
InsightIDR
F-Secure Elements Endpoint Detection and Response, F-Secure Rapid Detection and Response, F-Secure RDR
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Liberty Wines, Pioneer Telephone, Visier
Information Not Available
Find out what your peers are saying about Rapid7 InsightIDR vs. WithSecure Elements Endpoint Detection and Response and other solutions. Updated: June 2026.
908,834 professionals have used our research since 2012.