Try our new research platform with insights from 80,000+ expert users

Sophos MDR vs Unit 42 Managed Detection and Response comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Sophos MDR
Ranking in Managed Detection and Response (MDR)
4th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
35
Ranking in other categories
No ranking in other categories
Unit 42 Managed Detection a...
Ranking in Managed Detection and Response (MDR)
30th
Average Rating
0.0
Reviews Sentiment
7.8
Number of Reviews
1
Ranking in other categories
Managed Security Services Providers (MSSP) (23rd)
 

Mindshare comparison

As of March 2026, in the Managed Detection and Response (MDR) category, the mindshare of Sophos MDR is 4.2%, down from 6.0% compared to the previous year. The mindshare of Unit 42 Managed Detection and Response is 1.1%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR) Mindshare Distribution
ProductMindshare (%)
Sophos MDR4.2%
Unit 42 Managed Detection and Response1.1%
Other94.7%
Managed Detection and Response (MDR)
 

Featured Reviews

Ahmed_Fahmy - PeerSpot reviewer
Operations Technical Lead at IT Supporters
Comprehensive management and support continuously enhance threat detection and response
Based on user feedback and reviews, here are some areas where Sophos MDR could be improved and suggestions for additional features that could be included in future releases: Areas for Improvement: ---------------------- * Resource Utilization: Some users have noted that Sophos MDR can be resource-intensive, which may impact system performance. Optimizing the software to be less demanding on system resources could enhance the overall user experience. * Support Responsiveness: While the dedicated MDR team is highly praised, the standard support has received mixed. Improving the responsiveness and effectiveness of the general support team could address this concern. * Integration with Other Tools: Enhancing integration capabilities with a wider range of third-party security tools and platforms could provide a more seamless experience for users who rely on multiple security. Suggested Additional Features: ------------------------------ * Advanced Reporting and Analytics: Introducing more detailed and customizable reporting and analytics features could help organizations better understand their security posture and the effectiveness of the MDR service. * Automated Incident Response Playbooks: Providing automated playbooks for common security incidents could help organizations respond more quickly and effectively to. * Enhanced Threat Intelligence: Incorporating more advanced threat intelligence capabilities, including real-time updates and predictive analytics, could help organizations stay ahead of emerging. * User Training and Awareness Programs: Offering integrated user training and awareness programs as part of the MDR service could help organizations improve their overall security culture and reduce the risk of human error
MohammedSirajuddin - PeerSpot reviewer
Lead Consultant at a computer software company with 1,001-5,000 employees
Flexible and reduces IT operations but requires local data sovereignty and competitive pricing
I prefer having local data sovereignty. It would be advantageous for Palo Alto to have local data centers across different countries to adhere to this requirement. I also have a concern regarding pricing, which is perceived as high compared to competitors. Improvements should focus on response times and reducing the time taken to reach solutions.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The automation feature in Sophos MDR provides reports and alerts."
"There are lots of benefits because it includes real-time network threat detection (RNT), IP spoofing prevention, and a 24/7 support system. There is also protection against ransomware attacks."
"There is a feature called XDR Central. With this, Sophos can connect to third-party security solutions."
"The initial setup is quick and simple. A couple of clicks, and you're up and running."
"My customers have seen a return on investment with Sophos MDR because it has stopped several real-time compromises, which would have had a significant financial impact."
"The solution is stable."
"Organizations using Sophos MDR have seen a significant reduction in the value of their cyber insurance claims, with these claims being 97.5% lower compared to those relying solely on endpoint protection, translating to substantial cost savings and improved financial resilience."
"Sophos MDR directly provides a service monitoring system 24/7 and can configure automatic responses even if the customer is not available."
"Unit 42 MDR provides us with managed detection and response functionalities, eliminating the need for capital expenditure since it is an operational expenditure-based service."
"Unit 42 MDR provides us with managed detection and response functionalities, eliminating the need for capital expenditure since it is an operational expenditure-based service."
 

Cons

"One of the areas for improvement in Sophos MDR is the amount of traffic and the VPN because when we have that much load, the hardware gets a little bit heated."
"The service could enhance its scope, particularly in managing firewalls."
"The solution's integration should be made easier because it is difficult."
"The solution is expensive for customers."
"Some users have mentioned that Sophos MDR can be quite resource-intensive, which might affect the system."
"They should improve XDR and threat protection capabilities for zero-day attacks."
"The product's pricing could be less expensive."
"One of the limitations that we have found is with communications and the languages in different countries."
"I also have a concern regarding pricing, which is perceived as high compared to competitors."
"I have a concern regarding pricing, which is perceived as high compared to competitors."
 

Pricing and Cost Advice

"Sophos MDR is not a cheap product. Compared with other solutions in the market, Sophos MDR is available at a good price, especially considering its performance."
"Sophos MDR is a cheap solution."
"Compared to other tools, Sophos has a pretty good price."
"The product is reasonably priced considering the cybersecurity features."
"The price falls somewhere in the middle range."
"The solution is expensive."
"The solution has subscription-based pricing plans."
"It is an expensive platform."
Information not available
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
884,933 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Manufacturing Company
11%
Comms Service Provider
6%
Government
5%
Manufacturing Company
10%
Marketing Services Firm
8%
Insurance Company
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business25
Midsize Enterprise4
Large Enterprise7
No data available
 

Questions from the Community

What do you like most about Sophos MDR?
The user doesn't need a technician; it offers 24/7 support to identify and manage your infrastructure and take complete care of any technological incidents.
What needs improvement with Sophos MDR?
I think Sophos MDR can be improved, but as of now, it is good, very useful and reliable. They could improve it by adding another solution such as CrowdStrike or Trend Micro. If they integrate those...
What advice do you have for others considering Sophos MDR?
My advice to others looking into using Sophos MDR is to purchase it because it is a very good and reliable solution. I give this review a rating of ten out of ten.
What is your experience regarding pricing and costs for Unit 42 Managed Detection and Response?
I find the pricing to be expensive, especially when compared with competitors who offer significant discounts. Palo Alto has room to become more competitive in its pricing.
What needs improvement with Unit 42 Managed Detection and Response?
I prefer having local data sovereignty. It would be advantageous for Palo Alto to have local data centers across different countries to adhere to this requirement. I also have a concern regarding p...
What is your primary use case for Unit 42 Managed Detection and Response?
Unit 42 is a Managed Detection and Response solution with MDR capabilities. I use it in a managed service context where my organization's security needs are catered to by Palo Alto. Generally, it i...
 

Also Known As

Sophos Managed Threat Response
No data available
 

Overview

Find out what your peers are saying about Huntress, CrowdStrike, Field Effect and others in Managed Detection and Response (MDR). Updated: February 2026.
884,933 professionals have used our research since 2012.