No more typing reviews! Try our Samantha, our new voice AI agent.

Symantec Endpoint Security Enterprise vs Tanium comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
112
Ranking in other categories
Endpoint Detection and Response (EDR) (6th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Symantec Endpoint Security ...
Ranking in Endpoint Protection Platform (EPP)
38th
Average Rating
8.0
Reviews Sentiment
6.3
Number of Reviews
32
Ranking in other categories
No ranking in other categories
Tanium
Ranking in Endpoint Protection Platform (EPP)
17th
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
22
Ranking in other categories
Server Monitoring (4th), Vulnerability Management (26th), Endpoint Detection and Response (EDR) (22nd), Unified Endpoint Management (UEM) (7th)
 

Mindshare comparison

As of June 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.8% compared to the previous year. The mindshare of Symantec Endpoint Security Enterprise is 0.6%, up from 0.4% compared to the previous year. The mindshare of Tanium is 2.4%, down from 2.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
Tanium2.4%
Symantec Endpoint Security Enterprise0.6%
Other93.3%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
reviewer2162541 - PeerSpot reviewer
IT Consultant at a tech services company with 11-50 employees
Provides stable and resource-efficient protection but lacks clear modern security features
Symantec Endpoint Security Enterprise is highly compatible and rarely causes disruptions in production. It operates transparently and is easy to maintain. The automated response feature helps to mitigate breaches effectively. When comparing with ThreatDown agent, I have noticed that ThreatDown detects behaviors more readily and flags suspicious user activities more clearly. While Symantec Endpoint Security Enterprise remains effective, ThreatDown's user interface is more manageable and provides a clearer system overview. The management interface is crucial for maintaining Symantec Endpoint Security Enterprise effectively. A significant advantage of Symantec Endpoint Security Enterprise is its lightweight resource usage. It consumes less memory, CPU, and IO compared to alternatives such as ThreatDown and Bitdefender.
MA
Division Manager, Information Technology at a legal firm with 51-200 employees
Centralized policies have improved remote endpoint control and have simplified data visibility
The integration is not simple and easy. It requires experienced users or people who have done the implementation. When certain policies are applied, they do not immediately push the policies. For example, we manage endpoint device USB access. We set a policy to block it, but it does not come into effect immediately. Sometimes it takes three or four days for it to reflect. That is a pain point. I have raised this issue with support as well, but they said that I need to limit the number of devices in the policy. In terms of application deployment, for us, it was seamless.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The user interface of the solution is sophisticated and straightforward."
"The stability of the solution is very good. We have about 100 users on it right now, and we use it twice a week."
"Palo Alto is the core of the security infrastructure in the environment."
"We use Cortex XDR by Palo Alto Networks for its ability to detect based on behavior rather than simple virus scan to prevent malicious activities."
"Cortex XDR is a very capable solution for protecting large networks and a lot of endpoints. It's very useful because the automation is very high, and if you combine it with the features on Palo Alto firewalls, it provides very strong protection."
"Cortex XDR lets us manage several clients from the same console, and its endpoint defense is more advanced than traditional antivirus."
"The product is very good, it has caught a lot of exploits that most products would not."
"We think that this product will help us grow, as it meets our needs currently and we can grow with it over time."
"The monitoring and reporting features are pretty awesome."
"It doesn't require an on-premises server to manage it. It allows us to monitor the machine to check if it is up-to-date and not lagging."
"Managing the dashboard is straightforward and efficient. I appreciate the convenience of accessing all alerts in one place and find configuring policies to be a simple process. Creating and deploying policies to agents is easily accomplished, and the communication between agents and servers is effectively implemented. These aspects are what I find favorable about Symantec Endpoint Security Enterprise."
"The solution is useful for endpoint protection."
"The solution works well overall."
"The most valuable features of Symantec Endpoint Security Enterprise are the proactive threat protection and the normal spyware protection which they offer in addition to catching standard threats. It all works well for us even without an EDR."
"Since I joined the company and implemented Symantec and other products, we've had stability on our network and no security incidents or breaches."
"The best feature is the firewall that lets us allow or block ports. That's a great tool because we can limit specific types of traffic on user devices and apply granular security controls to IPs and ports."
"Tanium is highly scalable."
"The product is granular and can build complex roles compared to other EDR vendors."
"Tanium has made the process of detecting threats more proactive with its detection. So, the process is easier and more efficient."
"The solution is scalable and helps to understand how infrastructure works. It helps to improve the health of the organization."
"I like the tool's incident response and security patching."
"When I push a quick update, it's done right away, and I can rescan immediately to confirm completion within minutes."
"The interrogation piece was the most valuable feature because it was very detailed."
"I would say Tanium is the best tool for vulnerability management."
 

Cons

"Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth."
"I would like to see them include NDR (Network Detection Response). Then it would work well with SIEM Response."
"Currently, we are monitoring all USB drives and ports but we would like to improve our device control capabilities."
"It is not very strong in terms of endpoint management. It should have additional features like DLP, encryption, or advanced device control. Currently, Cortex is good in terms of the security of the endpoints, but it is not as good as other vendors in terms of the management of the endpoint."
"I don't like that they have different types of licenses. For example, if users select a license, they think they will have all the platforms they need to improve their network or security. But after some time, Palo Alto Networks changed their licensing, and some of the features that, for example, were free at the beginning now have a cost. I think the integration can be improved. For example, a lot of tools are just integrated through APIs."
"The price could be a little lower."
"There's an overall lack of features."
"Product might have some bugs."
"The solution could always be more stable and more user-friendly."
"I believe an improvement could be made in Symantec Endpoint Security Enterprise by incorporating a URL blocking feature within the same product. Currently, it requires a separate subscription and agent installation, which I think could be more streamlined for unified management from a single agent."
"When we asked the support team to relicense the original piece, the team ghosted us."
"Symantec Endpoint Security Enterprise should focus on cloud security with Microsoft Azure or Amazon AWS rather than having their standard solution."
"We are currently looking at CrowdStrike as a replacement option because on-prem support is going away under Symantec."
"Symantec Endpoint Security Enterprise needs to improve its manageability. It is not easy to manage."
"Symantec is selling Endpoint Detection Response as a different solution. If it was incorporated in this solution it would be a good thing. This is what the other vendors are doing, such as CrowdStrike. They offer Endpoint Protection(EPP) and Endpoint Detection and Response(EDR) in the same product. If Symantec had something similar, it would be good for customers, they would not need to purchase two different products and then integrate them. They can have a single agent doing two tasks."
"I have contacted support and the speed of resolution could be faster."
"Tanium's limitations should be improved because although it is a great tool, it is limited to only a few classes during a session."
"They could improve the UI."
"The problem or challenge is a pre-sales and go-to strategy for the SMB market delivered through a channel or model. It's very convoluted and vague, which leads to some confusion about the various types of modules, and the device-to-seat cost is extremely difficult to calculate."
"When working with Tanium, there are some older devices that haven't been patched for a long time, and certain patches are not included in Tanium. I have to search outside to download patches, create bundles, and then perform the task."
"Tanium required local admin or root rights on Mac devices, which did not comply with our security policies. This made the solution less suitable for our restrictive environment."
"Any movement into a SaaS solution has challenges since the processes and data flows are not well defined. Hence, you need to build it at the same time."
"Tanium’s scalability could be improved."
"I would like to have more integrations and custom plugins to input. Integration is always a big deal in a lot of different environments."
 

Pricing and Cost Advice

"The tool's price is moderate."
"Cortex XDR by Palo Alto Networks is quite an expensive solution."
"The price of the solution is high for the license and in general."
"It's the most expensive solution, but features-wise, it's quite strong. It's very good for protection, so the results are very good in the case of protection. I would rate it a two out of ten in terms of pricing."
"It's about $55 per license on a yearly basis."
"The pricing seems fair, and I do like the licensing model. You use wherever they are, and it is elastic."
"Cortex XDR by Palo Alto Networks is an expensive solution."
"If one wishes to work with another team or large number of users at a future point, he must purchase a license for them."
"I rate the tool's pricing a six out of ten."
"The license for Symantec Endpoint Security Enterprise is paid, but there is a trial for 60 days."
"I rate Symantec Endpoint Security Enterprise's pricing a two out of ten."
"It's not the cheapest, but it's reasonably priced, around a five on a scale from one to ten. It's suitable for small, medium, and enterprise businesses and offers competitive pricing. There are no additional costs; it's a renewable purchase, either annually or as needed."
"The product is neither cheap nor expensive, meaning it is an average-priced solution."
"The price of Symantec Endpoint Security Enterprise is expensive. When compared to other solutions they should reduce the price."
"The cost of the solution is reasonable."
"If you have a variety of different endpoints, including heavily protected endpoints and some endpoints that are in the field, Symantec allows you to apply different licensing so you don't have to put everything under Endpoint Complete."
"The solution is expensive but it's a good investment."
"There is an annual license required to use this solution."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"It is higher than some competitors in the market."
"The solution offers value for money."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"It's an expensive solution. It would be nice if the cost were lower."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
9%
Financial Services Firm
13%
Comms Service Provider
12%
Marketing Services Firm
9%
Manufacturing Company
9%
Financial Services Firm
14%
Government
10%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise20
Large Enterprise52
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise7
Large Enterprise9
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise3
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with Symantec Endpoint Security Enterprise?
I have not experienced integrated threat intelligence benefits with Symantec Endpoint Security Enterprise. Many custo...
What is your primary use case for Symantec Endpoint Security Enterprise?
The primary use case for Symantec Endpoint Security Enterprise for my clients is basic antivirus protection.
What advice do you have for others considering Symantec Endpoint Security Enterprise?
Several of my customers continue to use Symantec Endpoint Security Enterprise. As a system consultant, I recommend an...
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Symantec Endpoint Security Enterprise vs. Tanium and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.