Compare DFLabs IncMan SOAR vs. Palo Alto Networks Cortex XSOAR

Cancel
You must select at least 2 products to compare!
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
"The vendors themselves will actually help with any customizations a client may require"

More DFLabs IncMan SOAR Pros »

"The most valuable features are simplicity and ease of integration.""The automation part and the playbook creation part are awesome. The way it is responding to the customers and incidents is also very good. In the SOC environment, I guess it will carry out around 50% of the work.""The pricing is very good.""The automation is excellent.""The most valuable features are the orchestration because of the way in which it coordinates the loss from all the devices and it provides us with a high-level overview of the critical log information."

More Palo Alto Networks Cortex XSOAR Pros »

Cons
"The support is not 24/7."

More DFLabs IncMan SOAR Cons »

"Implementing this solution requires a lot of involvement from the vendor and it should be made easier for the partners.""For building automation, there is not a lot of good documentation. The documentation is there, but it is not very good from my perspective. There should be an improvement in this area. I don't see issues with anything else. In terms of new features, I have heard that other products have EBA functionality. It would be good if this functionality could be added.""The user interface could be a bit better.""When Palo Alto bought the solution, the pricing increased by 1.5 times. There's been a 50% increase, which is a lot.""There should be an on-premise version available for customers to have different choices."

More Palo Alto Networks Cortex XSOAR Cons »

Pricing and Cost Advice
Information Not Available
"There is a perception that it is priced very high compared to other solutions.""From the cost perspective, I have heard that its price is a bit high as compared to other similar products.""There is a yearly license required for this solution and it is expensive."

More Palo Alto Networks Cortex XSOAR Pricing and Cost Advice »

report
Use our free recommendation engine to learn which Security Orchestration Automation and Response (SOAR) solutions are best for your needs.
509,570 professionals have used our research since 2012.
Questions from the Community
Top Answer: The vendors themselves will actually help with any customizations a client may require
Top Answer: We are the distributor for DFLabs.
Top Answer: If your organization has its own specific workflow and a set of procedures to follow when a specific incident occurs, then I would recommend this solution. It can be very specific when issuing… more »
Top Answer: I think Swimlane is a better cost. It's small and doesn't focus on only integrating with it's own products like other XSoar competitors. 
Top Answer: The licensing is paid on a yearly basis. It is quite expensive. When Palo Alto bought the solution, the pricing increased by 1.5 times. There's been a 50% increase, which is a lot.
Ranking
Views
859
Comparisons
685
Reviews
0
Average Words per Review
399
Rating
N/A
Views
10,758
Comparisons
8,583
Reviews
3
Average Words per Review
459
Rating
8.3
Popular Comparisons
Also Known As
DFLabs IncMan Incident Response
Demisto Enterprise, Cortex XSOAR, Demisto
Learn More
Overview

DFLabs' Security Orchestration, Automation and Response (SOAR) platform, IncMan SOAR, is designed for SOCs, CSIRTs and MSSPs to automate, orchestrate and measure security operations and incident response processes and tasks, all from within one single, intuitive platform. By integrating security tools, fusing intelligence, sharing knowledge and implementing seamless workflows, IncMan SOAR enables every security incident to be detected, responded to, and remediated in the fastest possible time frame.

DFLabs IncMan SOAR is the only Security Orchestration, Automation and Response (SOAR) platform capable of full incident lifecycle automation, that includes built-in, automated threat intelligence gathering, risk assessment, triage and notification, context enrichment, hunting and investigating, threat containment and more. This feature rich, unique and scalable SOAR platform provides context to security incidents, automates actions, orchestrates response to activities, while enabling full reporting and measurement functionality across all stakeholders.

DFLabs covers the entire spectrum of security orchestration, automation and response components as outlined by Gartner, with a unique combination of features and capabilities, driven through continuous improvement and innovation. IncMan SOAR is the only platform to offer full incident response lifecycle management with machine learning and threat hunting. Acting as a force multiplier, it enables security teams to do more with less, empowering security analysts, while ensuring organizations stay one step ahead of any potential threat.

Automate. Orchestrate. Measure.

IncMan SOAR provides three critical functions as an enabler to your security program. Automation and orchestration which in turn enables response, as well as measurement.

Automate

Augment analysts by automating common, repetitive and menial tasks driven by machine learning for faster response to all alerts.

Orchestrate

Establish repeatable, enforceable, measurable and effective incident response workflows, orchestrating your security tool set into one seamless response process.

Measure

Measure, benchmark and optimize security operations and incident response activities and performance from one intuitive and collaborative platform.

Seamlessly Integrate and Orchestrate Your Tools Together as One.

Improve efficiencies by enabling your security analysts to access and manage all tools, technologies and processes from one intuitive platform. IncMan SOAR supports hundreds of 3rd party security technologies via QIC, API, CEF, Syslog and Email, with a constantly growing list of certified bidirectional integrations and Open Integration Framework for custom integrations.

Dramatically reduce the mean time to detection, response and remediation of all potential security incidents, ensuring no alert goes untouched.

See IncMan SOAR in Action.

Demisto Enterprise delivers a complete solution that helps Tier-1 through Tier-3 analysts and SOC managers to optimize the entire incident life cycle while auto documenting and journaling all the evidence. More than 100+ integrations enable security orchestration workflows for incident management and other critical security operation tasks.

Offer
Learn more about DFLabs IncMan SOAR
Learn more about Palo Alto Networks Cortex XSOAR
Sample Customers
University of Advancing Technology, Cybersecurity Ventures
Cellcom Israel, Blue Cross and Blue Shield of Kansas City, esri, Cylance, Flatiron Health, Veeva, ADT Cybersecurity
Top Industries
VISITORS READING REVIEWS
Comms Service Provider33%
Computer Software Company28%
Financial Services Firm9%
Manufacturing Company6%
VISITORS READING REVIEWS
Computer Software Company31%
Comms Service Provider18%
Media Company6%
Government6%
Find out what your peers are saying about Critical Start, Splunk, Palo Alto Networks and others in Security Orchestration Automation and Response (SOAR). Updated: June 2021.
509,570 professionals have used our research since 2012.

DFLabs IncMan SOAR is ranked 15th in Security Orchestration Automation and Response (SOAR) with 1 review while Palo Alto Networks Cortex XSOAR is ranked 3rd in Security Orchestration Automation and Response (SOAR) with 5 reviews. DFLabs IncMan SOAR is rated 0.0, while Palo Alto Networks Cortex XSOAR is rated 8.2. The top reviewer of DFLabs IncMan SOAR writes "Protects an organization from the threat of a data breach or cyberattack". On the other hand, the top reviewer of Palo Alto Networks Cortex XSOAR writes "User-friendly and robust with good technical support". DFLabs IncMan SOAR is most compared with Splunk Phantom, Siemplify, IBM Resilient, Fortinet FortiSOAR and Exabeam Fusion SIEM, whereas Palo Alto Networks Cortex XSOAR is most compared with Splunk Phantom, Fortinet FortiSOAR, IBM Resilient, ServiceNow Security Operations and Securonix SOAR.

See our list of best Security Orchestration Automation and Response (SOAR) vendors.

We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.