We performed a comparison between NetWitness XDR and SolarWinds NetFlow Traffic Analyzer based on real PeerSpot user reviews.
Find out what your peers are saying about CrowdStrike, SentinelOne, Wazuh and others in Extended Detection and Response (XDR)."The 'Incidents and Alerts' tab is a valuable feature where we can find triggered alerts."
"Microsoft Defender XDR is scalable."
"I like that it's stable. It's been stable for a long time, and Microsoft Defender has done a good job there."
"Its most significant advantage lies in its affordability."
"In Microsoft 365 vendor products, monitoring and connectivity across all Microsoft and third-party connectors enable viewing of all activity within those environments."
"Setting up Microsoft 365 Defender is easy. It's a user-friendly solution that provides threat protection. It has good stability and scalability."
"Microsoft 365 Defender is a good solution and easy to use."
"The advantage of Microsoft Defender XDR has over other XDRs in the market is that it's easy to use. You can quickly differentiate between alerts, incidents, devices, software, etc. It's easier to investigate an incident, and you have so many options. You can automate investigations and use playbooks. There's also the live response session, which is something you can't find in any other XDR."
"The most valuable feature of RSA NetWitness Network is the single unified dashboard from which you can manage all the different products of RSA. Additionally, the integration with native applications is good."
"It's a scalable solution. We have around five to eight customers using RSA NetWitness Endpoint, and we hope to increase the number of users."
"Ability to isolate the machine when there are malicious files."
"We've contacted technical support several times. They've been very good. They have been able to help us resolve our issues."
"The log correlation is good."
"It is stable. We have been using it for some time, without any issues."
"RSA NetWitness does market analysis in a more granular form. It gives you full visibility."
"It is very easy to use, and its usability is great. The use cases are also very easy. The visualizations of the use cases are magnificent. You cannot find this in any other solution. From my point of view, it is great."
"The most valuable feature is the ability to look for any increases in bandwidth over time so that we can plan before it becomes critical."
"NTA's most valuable feature is traffic analysis and visibility."
"The dashboard alerts me when a critical device goes off the network."
"What I like the most is the bandwidth assessment."
"It doesn't cost too much."
"The most helpful feature of SolarWinds NetFlow Traffic Analyzer is bandwidth analysis, which lets you see who's hogging your network."
"In terms of the implementation, we've actually used SAM, the server and application monitoring tools. The network configuration tools are very useful in terms of bulk upgrading switches and infrastructure. Also, the Network Traffic Analyzer was extremely useful to track down errant users soaking up bandwidth."
"The integration with other SolarWinds products is good."
"The interface could be improved. For example, if you want to do a phishing simulation for your employees, it can take a while to figure out what to do. The interface is a bit messy and could be updated. It isn't too bad, but doing some things can be a long process."
"The support could be more knowledgable to improve their offering."
"This solution could be improved if it included features such as those offered by Malwarebytes."
"The cost can be high if you want to build custom license packages. Another area for improvement is the policies. In Azure, we need to implement policies in JSON format, but in 365 Defender 365, it would be helpful to use a different format so we can customize the platform."
"When discussing the secure score, which includes overviews and recommended actions, some of these recommended actions are not applicable to us, particularly those related to Microsoft Internet Explorer, which we do not use in any of our environments."
"Automated playbooks and automated dashboards would be preferable to the way the data is currently being presented."
"There should be better information for experts on features in the solution. What I see when reading about features in Microsoft 365 Defender is that it is always general information. If Microsoft could go deeper into details for the experts about how to use the tools, usage of it would be more familiar and it would be easier to use."
"The management and automation of the cloud apps have room for improvement."
"We would like to see the hunting and investigation features of this solution improved, in order to provide better visibility of issues."
"The threat intelligence could improve in RSA NetWitness Endpoint."
"The solution is modular, for example you can buy the RSA ePack, which you buy as a module is not part of the conduit solution. They could include it and have it as an all-in-one solution."
"The initial setup requires a high level of skill."
"Threat detection could be better."
"When analyzing something, you have to click several times. It requires a lot of effort to find something."
"The contamination feature could be improved."
"The deployment process is complex. I don't know why, but this solution will suddenly stop working. Logs stop coming. Often, one thing or another stops working. Most of the time, one of my team members is working with troubleshooting and working with technical support. Log passing is also one of the biggest challenge."
"I would like to see better customization capabilities."
"It does not flow. It cannot do our metric performance monitoring. So it is very limited. They can do it but in a very limited fashion. It is only good for SNMP-based alerts."
"The problem is that SolarWinds is trying to bolt in too much and that can leave bugs, which you have to then sort out, leaving the product unstable. SolarWinds needs to try and slow down and improve the stability of the product, as opposed to bringing out more and more features."
"The Atlas module that is used for building the network map is very bad."
"I would like to see more training videos and additional material for learning how to use this solution."
"Technical support needs improvement."
"What needs improvement in SolarWinds NetFlow Traffic Analyzer is performance because sometimes, my team struggles too much for the solution to perform correctly for a specific deployment in my organization. Having a more detailed view in SolarWinds NetFlow Traffic Analyzer is another area for improvement, but that's more part of the protocol than the actual solution."
"There is room for improvement when it comes to the traffic generated by the analyzer and the analysis of that traffic."
More SolarWinds NetFlow Traffic Analyzer Pricing and Cost Advice →
NetWitness XDR is ranked 17th in Extended Detection and Response (XDR) with 15 reviews while SolarWinds NetFlow Traffic Analyzer is ranked 6th in Network Traffic Analysis (NTA) with 34 reviews. NetWitness XDR is rated 8.0, while SolarWinds NetFlow Traffic Analyzer is rated 7.6. The top reviewer of NetWitness XDR writes "Beneficial single unified dashboard, good native application integration, and high availability". On the other hand, the top reviewer of SolarWinds NetFlow Traffic Analyzer writes "Displays traffic visibility and efficient traffic flows". NetWitness XDR is most compared with Darktrace, ExtraHop Reveal(x), CrowdStrike Falcon, SentinelOne Singularity Complete and Microsoft Defender for Endpoint, whereas SolarWinds NetFlow Traffic Analyzer is most compared with Cisco Secure Network Analytics, Zabbix, ManageEngine NetFlow Analyzer, SolarWinds NPM and Darktrace.
We monitor all Extended Detection and Response (XDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.