No more typing reviews! Try our Samantha, our new voice AI agent.

Symantec Endpoint Security Enterprise vs Tanium comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
110
Ranking in other categories
Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (6th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Symantec Endpoint Security ...
Ranking in Endpoint Protection Platform (EPP)
30th
Average Rating
8.0
Reviews Sentiment
6.3
Number of Reviews
32
Ranking in other categories
No ranking in other categories
Tanium
Ranking in Endpoint Protection Platform (EPP)
19th
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
22
Ranking in other categories
Server Monitoring (4th), Vulnerability Management (24th), Endpoint Detection and Response (EDR) (21st), Unified Endpoint Management (UEM) (7th)
 

Mindshare comparison

As of April 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.6%, down from 4.0% compared to the previous year. The mindshare of Symantec Endpoint Security Enterprise is 0.6%, up from 0.4% compared to the previous year. The mindshare of Tanium is 2.2%, down from 2.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.6%
Tanium2.2%
Symantec Endpoint Security Enterprise0.6%
Other93.6%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
reviewer2162541 - PeerSpot reviewer
IT Consultant at a tech services company with 11-50 employees
Provides stable and resource-efficient protection but lacks clear modern security features
Symantec Endpoint Security Enterprise is highly compatible and rarely causes disruptions in production. It operates transparently and is easy to maintain. The automated response feature helps to mitigate breaches effectively. When comparing with ThreatDown agent, I have noticed that ThreatDown detects behaviors more readily and flags suspicious user activities more clearly. While Symantec Endpoint Security Enterprise remains effective, ThreatDown's user interface is more manageable and provides a clearer system overview. The management interface is crucial for maintaining Symantec Endpoint Security Enterprise effectively. A significant advantage of Symantec Endpoint Security Enterprise is its lightweight resource usage. It consumes less memory, CPU, and IO compared to alternatives such as ThreatDown and Bitdefender.
MA
Division Manager, Information Technology at a legal firm with 51-200 employees
Centralized policies have improved remote endpoint control and have simplified data visibility
The integration is not simple and easy. It requires experienced users or people who have done the implementation. When certain policies are applied, they do not immediately push the policies. For example, we manage endpoint device USB access. We set a policy to block it, but it does not come into effect immediately. Sometimes it takes three or four days for it to reflect. That is a pain point. I have raised this issue with support as well, but they said that I need to limit the number of devices in the policy. In terms of application deployment, for us, it was seamless.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The user interface of the solution is sophisticated and straightforward."
"The solution allows us to gain remote access without the user's knowledge and take the necessary actions on the device."
"Cortex XDR's most valuable feature is its intelligence-based dashboards."
"WildFire AI is the best option for this product."
"Traps is quite a stable product. Once it was properly deployed and configured, you have nothing to be worried about."
"Cortex is the best tool for endpoint detection, with playbooks that automate and gather endpoint logs, block malicious processes, and update incident tickets, showcasing end-to-end processes with automation in investigation and reducing the analysis workflow."
"They have a new GUI which is just fantastic."
"Stability is a primary factor, and then there's the ease of distribution and policy management."
"The solution is very cheap; it's the cheapest option and delivers the most basic protection we need."
"It is very easy to use. The user interface is friendly."
"Since I joined the company and implemented Symantec and other products, we've had stability on our network and no security incidents or breaches."
"The overall solution is good, particularly the detection engine. It performs well in identifying malware and conducting regular network scans. The product is easy to use."
"Symantec Endpoint Security Enterprise is a hassle-free solution and people are looking for a quick, traditional AV this solution is a good option."
"The solution has integrated some AI tools for the automation of tasks."
"We rely on Symantec Endpoint Security Enterprise to safeguard our computer systems from malware. Occasionally, we have encountered issues related to antivirus or malware, but overall, the application has been instrumental in addressing these concerns."
"The most valuable feature of Symantec Endpoint Security Enterprise is the application, and they are adding features frequently."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first."
"When I push a quick update, it's done right away, and I can rescan immediately to confirm completion within minutes."
"Tanium is used for endpoint management, specifically patching and configuration management."
"I would say Tanium is the best tool for vulnerability management."
"Tanium is a very good product and I would rate it eight or nine out of ten."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first. I like the ability it has to make several campaigns that work in parallel."
"The most valuable features of this solution are the consolidation of all historical data on device endpoints, security drivers, firmware, and Software version gaps."
"Tanium has made the process of detecting threats more proactive with its detection. So, the process is easier and more efficient."
 

Cons

"In reporting they should have a customizable dashboard due to the fact that C-level people don't like reporting to the IT department. They prefer to have a real-time dashboard. That kind of dashboard needs to have various customizations."
"The solution needs better reports. I think they should let the customer go in and customize the reports."
"Every 30 or 40 days, there's a new version and we need to go and make sure our customer's laptops are upgraded."
"There are some false positives. What our guys would have liked is that it would have been easier to manipulate as soon as they found a false positive that they knew was a false positive. How to do so was not obvious. Some people complained about it. The interface, the ESM, is not user-friendly."
"It is not easy to sell Cortex XDR, not because it isn't a good tool. Its marketing needs to be improved."
"There is a severe gap in functionality between Windows, Linux, and Mac versions. For example all folder restriction settings are Windows only. Traps 5.0+ does not have SAML / LDAP integration."
"Cortex XDR by Palo Alto Networks could improve by offering remote management. It would be useful to look at the client's issue to fix it."
"In an upcoming release, the solution could improve by proving hard disk encryption. If it could support this it would be a complete solution."
"The tool needs to improve its dashboard."
"The solution needs to be marketed to more consumers so that they will use it."
"The product's security features could be improved - it is still possible for hackers to penetrate your servers even when using it."
"There could be a pop-up notification at the users' end whenever the software expires."
"In the past, I experienced companies that protected themselves with Symantec, suffering some attacks."
"Symantec Endpoint Security Enterprise needs to improve its manageability. It is not easy to manage."
"The product's security features could be improved - it is still possible for hackers to penetrate your servers even when using it."
"In the future, Symantec Endpoint Security Enterprise should improve the firewall and documentation."
"Any movement into a SaaS solution has challenges since the processes and data flows are not well defined. Hence, you need to build it at the same time."
"We set a policy to block USB access. The moment a device is being set up on the network, I apply the policy, but it does not come into effect immediately."
"The solution can give a lot of false positives."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
"The main issues are the network connection because different customers have issues with their networks."
"The solution can give a lot of false positives."
"The solution needs to improve the reporting and tracking capabilities."
"Most of the time, agent-relative issues have to be more equipped with self-healing features."
 

Pricing and Cost Advice

"The price of the solution is high for the license and in general."
"It is present, but when compared to other competitive products, I would say it is not less expensive; however, when all of the other added values are considered, the price is reasonable."
"This is an expensive solution."
"Cortex XDR is a costly solution."
"It is "expensive" and flexible."
"Every customer has to pay for a license because it doesn't work with what you get from a managed services provider."
"Compared to CrowdStrike, Cortex XDR is an expensive solution."
"The solution has one subscription for endpoint protection and one subscription for detection and response. The two licenses combined give you the BRO version."
"The price of Symantec Endpoint Security Enterprise is expensive. When compared to other solutions they should reduce the price."
"It's not the cheapest, but it's reasonably priced, around a five on a scale from one to ten. It's suitable for small, medium, and enterprise businesses and offers competitive pricing. There are no additional costs; it's a renewable purchase, either annually or as needed."
"The tool fits within our budget. It is not expensive."
"The solution's license is very expensive."
"The cost of the solution is reasonable."
"The price of the solution is very low. There is an annual subscription to use the solution."
"The product is neither cheap nor expensive, meaning it is an average-priced solution."
"I would rate it a seven, indicating a satisfactory and moderate level. Despite being somewhat on the expensive side, it aligns with our long-standing relationship with Symantec, and we find it acceptable."
"It is higher than some competitors in the market."
"It's an expensive solution. It would be nice if the cost were lower."
"The solution is expensive but it's a good investment."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"The solution offers value for money."
"There is an annual license required to use this solution."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
887,041 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
12%
Comms Service Provider
8%
Manufacturing Company
7%
Comms Service Provider
11%
Marketing Services Firm
10%
Financial Services Firm
10%
Manufacturing Company
9%
Financial Services Firm
15%
Government
11%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business45
Midsize Enterprise20
Large Enterprise48
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise7
Large Enterprise9
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise3
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What do you like most about Symantec Endpoint Security Enterprise?
The tool is a secure and stable workstation for checking antivirus. The alerting feature helps us see alerts and is e...
What needs improvement with Symantec Endpoint Security Enterprise?
I have not experienced integrated threat intelligence benefits with Symantec Endpoint Security Enterprise. Many custo...
What is your primary use case for Symantec Endpoint Security Enterprise?
The primary use case for Symantec Endpoint Security Enterprise for my clients is basic antivirus protection.
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Symantec Endpoint Security Enterprise vs. Tanium and other solutions. Updated: April 2026.
887,041 professionals have used our research since 2012.