We performed a comparison between IBM Resilient, Palo Alto Networks Cortex XSOAR, and VMware Carbon Black Cloud based on real PeerSpot user reviews.
Find out what your peers are saying about VMware, ServiceNow, IBM and others in Security Incident Response."As a whole, the product is stable...Technical support is very good."
"The most valuable thing about it is how easy it is to navigate the user interface."
"The solution is very easy to use."
"Its flexibility is the most valuable."
"The most valuable features of IBM Resilient are its flexibility and customization options for incident response."
"This is a good solution that we recommend for customers."
"Stability-wise, I rate the solution a ten out of ten...Scalability-wise, I rate the solution a ten out of ten."
"The solution is reliable in our usage."
"I am satisfied with the product overall."
"The solution is easy to deploy."
"The Palo Alto ecosystem has a marketplace offering integration with Sentinel or other products."
"It is a scalable solution."
"The solution is user-friendly and easy to configure."
"Palo Alto has gotten the investigators more presence to actually go in the report because being that the platform will email the investigator that it's been assigned to, now the investigators will jump in there and start going through the review process a lot quicker."
"It is a scalable solution."
"For organizations that are stable with their security operations, like those with around 50 members in their security team running full-phased operations 24/7, Cortex is necessary."
"Probably the most valuable feature of CB Response is its ability to isolate a host and take it off the network, so it's not spreading anything. We have two security operations centers around the globe. When an SOC analyst sees something on an endpoint, they can use Carbon Black Response to isolate that host from the customer's environment and prevent any kind of lateral spread."
"The market information they gather from the community is really good. Their configuration capabilities are good."
"Threat hunting is the most valuable feature of VMware Carbon Black Cloud."
"It is nice when you're in a situation where you think someone's device is compromised and that there's some malware getting into your fleet."
"VMware Carbon Black Cloud is a user-friendly solution that can isolate machines from the rest of the network."
"The most valuable feature of VMware Carbon Black Cloud is the possibility of securing any PC worldwide."
"The most valuable features are its lightweight design, ensuring minimal impact on end-users, and its real-time protection."
"We also took full advantage of its incident response reporting capabilities to act as a “black box” for our infrastructure around strings of suspicious activity. The reporting and incident response capabilities were incredibly helpful during active security concerns."
"What could make IBM Resilient better is if IBM increased the number of built-in integrations with different products from other vendors or third-party products."
"The product must provide more integration with other tools."
"IBM Resilient is quite complex, including its configuration."
"The tool needs to improve its documentation on license scripts."
"The initial setup is complex."
"IBM Resilient could integrate better with my tools."
"Its price needs improvement."
"One thing to improve is how it handles data formats, which currently might require scripting for conversion to CSV before uploading."
"The solution’s price and technical support could be improved."
"Previously, when Demisto was, there was a community edition; we could use it, reinstall it, and customize it. Since Palo Alto took over, it has become more financially oriented. It's business, but they could offer a pro model and a lighter model for different needs."
"We need a little hands-on experience to install the solution."
"Palo Alto Networks Cortex XSOAR lacks to offer SIEM functionalities currently."
"I think they should increase their collaboration base."
"Its dashboard features need improvement."
"The solution's technical support could be better."
"The solution is complicated to learn."
"The solution's support could be improved."
"They need to improve the batch console. It needs more capabilities. We are limited by the ones it provides..."
"The product detects too many false positives initially and it could integrate better with other security solutions."
"It's not simple."
"Training and education for both partner and customer, including product marketing need to be improved."
"The support team of Carbon Black CB Response needs improvement. At present, they need a lot of information. Then they give you an answer that they already gave you. You tell them it didn't work, and then they take a long time."
"The solution needs to simplify the process of adding custom watchlists, as well as embrace YARA for rule creation."
"Additionally, it is complex to use, and the pricing should be improved."
More Palo Alto Networks Cortex XSOAR Pricing and Cost Advice →