No more typing reviews! Try our Samantha, our new voice AI agent.

Uptycs vs WatchGuard EPDR comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Uptycs
Ranking in Endpoint Protection Platform (EPP)
44th
Ranking in Endpoint Detection and Response (EDR)
48th
Average Rating
7.6
Reviews Sentiment
6.9
Number of Reviews
2
Ranking in other categories
Container Security (36th), Cloud Workload Protection Platforms (CWPP) (23rd), Extended Detection and Response (XDR) (40th), Cloud Security Posture Management (CSPM) (32nd), Cloud-Native Application Protection Platforms (CNAPP) (23rd), Cloud Detection and Response (CDR) (12th)
WatchGuard EPDR
Ranking in Endpoint Protection Platform (EPP)
16th
Ranking in Endpoint Detection and Response (EDR)
19th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.8%, up from 3.8% compared to the previous year. The mindshare of Uptycs is 0.5%, up from 0.1% compared to the previous year. The mindshare of WatchGuard EPDR is 1.5%, down from 2.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.8%
WatchGuard EPDR1.5%
Uptycs0.5%
Other94.2%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
SangramGupta - PeerSpot reviewer
Security Consultant at Deloitte
Centralized visibility has improved risk-based vulnerability management but onboarding still needs simplification
From my perspective, the features of Uptycs that stand out more for my projects and organization are the vulnerability management, endpoint visibility, and asset inventory management features. I can share two specific outcomes that show this positive impact using Uptycs. First, it reduces significant time and effort from the asset inventory point of view because previously I needed to scan all of the assets which were in scope, but now I only scan those assets that are currently active and in scope, and the CMDB and asset inventory receive proper updates of those assets. Secondly, in vulnerability prioritization, I receive all the prioritized vulnerabilities so I can prioritize and mitigate or remediate them as soon as possible, which reduces the overall time of remediation as well.
Petri Alhainen - PeerSpot reviewer
Administrator at Sulbana Oy
Balanced endpoint protection has improved forensic visibility and speeds threat investigation
I think there's always something that needs to be improved about WatchGuard EPDR, but I don't have something specific to say that you should do this or that. They are listening to the users, so they are fixing things as they've been found. I don't have any example to give. The pricing is always a thing where you need to be in the line that the balance to get it right is a challenging thing with WatchGuard EPDR. If you have good features, then you can have a little bigger price, but if you just get the balance right, that's important. I haven't used automated incident response in WatchGuard EPDR.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"In one single alert, we are getting the network telemetry, endpoint telemetry, email security telemetry, and proxy telemetry all in one single ticket, making it very easy."
"The positive impacts I see from Cortex XDR by Palo Alto Networks include a complete 360-degree view of our security posture altogether, being a uniform platform where we are ingesting logs from multiple resources."
"It is easy to use."
"We can use Cortex XDR to get the entire graph of the incidents from source to destination, and we can take remedial action."
"Cortex XDR can integrate the firewalls and determine the tendencies of the attacks. It's a new generation antivirus, with protection endpoints and detection response. It is very easy to use and everybody can operate the solution."
"The most valuable aspect of Cortex XDR by Palo Alto Networks for me is its integration with AI detection, where we get to know the behavioral detection based on users, traffic patterns, and different services that we consume."
"I have found the solution to be very easy in respect of the integration and configurable."
"Based on my experience with Cortex XDR by Palo Alto Networks, I highly recommend it due to its quick response to zero-day attacks and low utilization from end-user devices."
"I have seen a return on investment from using Uptycs, saving almost 25 to 30 percent in terms of asset investigations or asset inventory management and vulnerability prioritization, which is significant."
"They have multiple great features."
"Great technical support staff."
"The most valuable features of the solution stem from the fact that I like the tool's UI, ease of management, ease of making reports, and the ability to export information easily."
"Reduced the number of malware/virus issue encounters and dashboard alerts providing better visibility."
"The interface is great."
"Technical support has always been top-notch when you can get through."
"What I appreciate the most about WatchGuard EPDR is that with the managed detection and response system, when there is an alert about the product running, the turnaround time for enabling it is less than two hours."
"The EDR has a high accuracy rate with only a few false positives."
"The detection capabilities for malicious activities are effective."
 

Cons

"I am facing issues with customer support for Cortex XDR by Palo Alto Networks, so I am not satisfied with customer support."
"The solution could improve by providing better integration with their own products and others."
"If you compare it to SentinelOne, which has more functionalities and detection capabilities on an open platform, the pricing on SentinelOne is far more reasonable and cheaper than Cortex XDR by Palo Alto Networks."
"Cortex XDR should have a lightweight agent, and the agent size should not be heavy."
"The solution needs better reports. I think they should let the customer go in and customize the reports."
"I recommend adding a data loss prevention (DLP) solution to Cortex XDR by Palo Alto Networks. The inclusion of this feature would allow the application of DLP policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products."
"The solution should force customers to integrate with network traffic to see the full benefits of XDR."
"I would like to see some additional features related to email protection included."
"Regarding improvements for Uptycs, I suggest simplified onboarding for complex cloud environments because the current onboarding method is complex and requires checks with the support team."
"We end up facing a lot of issues after upgrades."
"It needs some improvements in the DNS security feature. Currently, it does not have full DNS security."
"Only the DNS filtering part could be improved, and nothing else apart from this needs correction."
"The Linux installation is performed on the command line and they need a package installer for that operating system."
"t would help if it would monitor the network better."
"I'd like to integrate it into my main services."
"The implementation was difficult."
"The only part I really don't use as much is their firewall. It's a bit superfluous. Most people have their own firewall in place, so they don't really need that part portion of the solution."
"Needs a service desk system to link up with endpoint protection and email protection."
 

Pricing and Cost Advice

"We pay about $50,000 USD per year for a bundle that includes Cortex XDR."
"It is "expensive" and flexible."
"Its pricing is kind of in line with its competitors and everybody else out there."
"Cortex XDR by Palo Alto Networks is an expensive solution."
"The tool's price is moderate."
"The price of the product is not very economical."
"The pricing is a little bit on the expensive side."
"The cost depends on your chosen license type, like Pro or other licenses."
Information not available
"The price is excellent."
"Panda is cloud-only and comes at a reasonable cost. It is a set price per seat."
"Our licensing fee is 1M Euro per month, so it is about 80 Euro's per user."
"Customers need to pay monthly licensing costs for Panda Security Adaptive Defense, which is not expensive."
"The solution is priced well for what features it provides."
"The solution's pricing is better compared to other products."
"The licensing is subscription-based and priced well compared to other endpoint security solutions."
"The licensing costs are not too high. We pay about 20 Euros a year. It's a reasonable amount to pay."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Financial Services Firm
9%
Computer Software Company
14%
Financial Services Firm
12%
Construction Company
12%
Comms Service Provider
11%
Comms Service Provider
11%
Computer Software Company
9%
Outsourcing Company
9%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
No data available
By reviewers
Company SizeCount
Small Business28
Midsize Enterprise8
Large Enterprise2
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with Uptycs?
Regarding improvements for Uptycs, I suggest simplified onboarding for complex cloud environments because the current...
What is your primary use case for Uptycs?
I use Uptycs as part of cloud security threat detection, vulnerability management, and security operations initiative...
What advice do you have for others considering Uptycs?
My advice for others looking into using Uptycs is that if you are looking for a centralized solution for all security...
What needs improvement with WatchGuard EPDR?
I think there's always something that needs to be improved about WatchGuard EPDR, but I don't have something specific...
What is your primary use case for WatchGuard EPDR?
I'm talking about WatchGuard EPDR, which is endpoint protection. I try to remember if we have them in our system, and...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Panda Adaptive Defense 360
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Comcast, Crossbeam, Flexport, Greenlight Financial, Lookout Security, PayNearMe
Indra, Valea AB, Fineit, Aemcom, Data Solutions INC., Gloucestershire NHS, Golden Star Resources Ltd, Hispania Racing Team, Instituto Dos Museus e da ConserÊo, Escuelas Pias Provincia Emaus, Axiom Housing Association, Municipality of Bjuv, Lesedi Nuclear, Mullsj_ municipality, Eng. skolan Norr AB, Dalakraft AB, Peter Green Haulage Ltd
Find out what your peers are saying about Uptycs vs. WatchGuard EPDR and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.