We compared Cisco Secure Network Analytics and ExtraHop Reveal(x) across 5 parameters based on our user reviews. After reading the collected data, you can find our conclusion below:
Cisco Secure Network Analytics users highly value its advanced threat detection capabilities, extensive visibility and control over network traffic, and proactive alerting system. They appreciate the commendable customer service and support provided by Cisco Secure Network Analytics. ExtraHop Reveal(x) also offers robust network visibility and real-time threat detection.
Initial Setup and Support: Cisco Secure Network Analytics has a relatively quick and simple setup process that typically takes one to two weeks for deployment. ExtraHop Reveal(x) setup can be more complex and time-consuming, often taking about a week to complete due to the involvement of network taps and packet brokers. Cisco Secure Network Analytics provides a range of management options and support services, including workshops for a better understanding of solutions. They also experience stability issues in new versions. ExtraHop Reveal(x) excels in efficiency and troubleshooting capabilities of their support team, although there are occasional sporadic support feedback.
Valuable Features: Cisco Secure Network Analytics is praised for its advanced threat detection capabilities, proactive alerting system, and effective security incident response. ExtraHop Reveal(x) stands out for its robust network visibility, comprehensive analytics capabilities, and data-driven decision-making features.
Room For Improvement: Cisco Secure Network Analytics could benefit from improvements in data processing speed, better visualization features, and advanced threat detection capabilities. ExtraHop Reveal(x) needs enhancements in user interface, accuracy, responsiveness, documentation, and customer support.
Setup Cost: Cisco Secure Network Analytics has been considered reasonable and competitive, yet with a potentially higher initial setup cost. ExtraHop Reveal(x) is praised for its relatively low setup cost, making implementation easy and cost-effective.
ROI: The ROI from Cisco Secure Network Analytics has been significant, providing improved network security, reduced risks, advanced analytics capabilities, and reliable support. ExtraHop Reveal(x) excels in network visibility, anomaly detection, and user-friendly interface.
The summary above is based on interviews we conducted recently with Cisco Secure Network Analytics and ExtraHop Reveal(x) users. To access the review's full transcripts, download our report.
"The solution has increased our threat detection rate. Cisco Stealthwatch has not reduced our incident response times. It has not reduced the amount of time it takes us to detect immediate threats. It has reduced false positives."
"From a security standpoint, it is just seeing pockets as well. Visibility is very key for us."
"The most valuable feature of Cisco Secure Network Analytics is the Threat Intelligence integration."
"The most valuable feature is its alerts and dashboard."
"The solution's analytics and thrust detection capabilities are good. We're still adjusting it. It's a little hypersensitive, but it is working right now."
"Ease of deployment, once you get your ducks in a row."
"This product alleviates the day-to-day headaches for us, in regards to metrics."
"Being able to identify specific date closed across the network is invaluable."
"ExtraHop Reveal(x) is one of the tools that works out of the box when it comes to threat hunting."
"Setting up the solution is relatively easy."
"Reveal X integrates seamlessly with CrowdStrike. If you see something sketchy on the network, you can quarantine devices through ExtraHop and it'll push to the CrowdStrike server."
"We had useful information within the hour of deployment. The ability to trace back for historical analysis, as well as the behavioral analysis done with the security information, puts the user in a position to make an informed decision to mitigate the performance or security incidents. Regarding the security incidents, Reveal (x) is able to create incident cards that guide your teams through the incidents and gives you the option to delve into the transaction detail to potentially view payloads as well."
"When there are performance issues with an HTTP app, ExtraHop enables us to identify the causes within a few minutes. We can see what transactions are being impacted by something that may be happening within the server environment."
"The solution's ability to decrypt SSL traffic is its most valuable feature."
"It's a wire analytics tool. We use it for isolating and determining issues on our network or applications. It does a lot for crediting the network as opposed to discrediting the network. A lot of people come along and say that it's a network issue. It's always considered to be a network issue, but by using ExtraHop, we can quickly tell them that it's not a networking issue. It's something to do with your application or something at the other end. It could be a database issue. This tool gives us the ability to pinpoint with great accuracy the comings and goings on our network."
"The most valuable features of ExtraHop Reveal(x) are the detection and alerting of network behavior and anomalies."
"Some of our customers find this solution to be a little bit tough because they don't understand how to configure and use it."
"I would like the search page available with Cisco Stealthwatch to be more intuitive. The previous release was better than the current one for the UI."
"We've had problems with element licensing costs so scalability is a concern."
"The overall visibility into the actual device itself would be helpful. I don't just want support-specific data, but also to be able to see information such as CPU and other internal components or usage of the devices."
"The initial setup was complex."
"We had some trouble with the installation as we migrated from our previous solution."
"The configuration of the solution was quite complex."
"It's a good solid solution but integration with Network Access Control products with Cisco ISE would be good."
"Agent management could certainly use some focus. It should also be a little bit easier to work with collections. We should be able to nest collections within collections. There should be better nesting."
"The solution is expensive and gets more expensive if a company needs to scale it."
"ExtraHop Reveal(x) could improve by allowing a longer look back in the feature. Right now you have a limit of 30 days to look back on your activity. I've used Darktrace before, and they allow you the ability to play back events. This would be a good feature to have in ExtraHop Reveal(x)."
"Netflow - Processing Netflow can be cumbersome as it requires triggers to truly gain value and insight. This in turn can add a bit of load to the hardware. The focus of ExtraHop Reveal (x) is live packet data."
"It needs integration with more security vendors."
"The solution's reporting part and GUI are areas with certain shortcomings where improvements are required."
"The solution’s pricing could be improved."
"They used to have the ability to decode Citrix sign-on, setup, and tear down. Unfortunately, Citrix has stopped sharing that knowledge. Citrix has continued to change its model of processing, making it harder and harder to troubleshoot."
More Cisco Secure Network Analytics Pricing and Cost Advice →
Cisco Secure Network Analytics is ranked 4th in Network Traffic Analysis (NTA) with 57 reviews while ExtraHop Reveal(x) is ranked 5th in Network Traffic Analysis (NTA) with 12 reviews. Cisco Secure Network Analytics is rated 8.2, while ExtraHop Reveal(x) is rated 8.6. The top reviewer of Cisco Secure Network Analytics writes "Increased the visibility of what is happening in our network". On the other hand, the top reviewer of ExtraHop Reveal(x) writes "It helps you visualize how data moves across your network". Cisco Secure Network Analytics is most compared with Darktrace, Cisco Secure Cloud Analytics, ThousandEyes, Vectra AI and Corelight, whereas ExtraHop Reveal(x) is most compared with Darktrace, Vectra AI, Corelight, Arista NDR and ExtraHop Reveal(x) 360. See our Cisco Secure Network Analytics vs. ExtraHop Reveal(x) report.
See our list of best Network Traffic Analysis (NTA) vendors and best Network Detection and Response (NDR) vendors.
We monitor all Network Traffic Analysis (NTA) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.