We performed a comparison between Cortex XDR by Palo Alto Networks vs Trend Micro Apex One based on our users’ reviews in four categories. After reading all of the collected data, you can find our conclusion below.
Comparison Results: Users of both solutions were satisfied with deployments, features, and technical support. However, users seem to favor Cortex XDR due to its affordable price.
"Fortinet is very user-friendly for customers."
"The solution was relatively easy to deploy."
"Additionally, when it comes to EDR, there are more tools available to assist with client work."
"he solution is an anti-malware product that integrates well with other vendor products such as firewalls, SIEM, etc. It captures threat intelligence and gives you better visibility. The product also has sandboxing features."
"Exceptions are easy to create and the interface is easy to follow with a nice appearance."
"Forensics is a valuable feature of Fortinet FortiEDR."
"Fortinet FortiEDR's firewalling, rule creation, monitoring, and inspection profiles are great."
"I like FortiClient EMS. FortiEDR has a lot of great features like lockdown mode, remote wipes, and encryption. I can set malware outbreak policies and controls for detecting abnormalities. You can also simulate phishing attacks."
"I like the centralized console and the predictive analysis it does of malware. It is very stable and also scalable."
"The most valuable feature is that you can select remote access of any machine for sandboxing."
"Cortex XDR is a simple platform that's easy for administrators and users. You have a lot of flexibility to change or customize the features."
"The initial setup is easy."
"Its ability to react to cyber data attacks is awesome. That is pretty much the use of it. What blows your mind is the ability to access your assets remotely and see what is actually going on with them. You can not only see them in a console. You can also react very rapidly to your assets that are compromised."
"Provides behavior-based detection which offers many benefits over signature-based detection."
"Cortex XDR lets us manage several clients from the same console, and its endpoint defense is more advanced than traditional antivirus."
"Cortex XDR is a very capable solution for protecting large networks and a lot of endpoints. It's very useful because the automation is very high, and if you combine it with the features on Palo Alto firewalls, it provides very strong protection."
"I like Apex One's USB port blocking. We implement different policies for each client. For example, a client might ask us to block certain USB devices or require us to restart a desktop on the network."
"The features I found most valuable in this solution are the micro apps. I also value the dashboard that offers better visibility and helps protect machines from attacks."
"The general anti-virus on offer is the solution's most valuable aspect."
"The AI and machine learning feature is the most valuable because it helps mitigate threats based on an organization's behavioral patterns."
"The end user perspective is very good because the solution isn't complex to learn and support is readily available."
"Its threat-hunting capabilities and the information about the known threats are the most available features. It can easily catch any threat in our environment."
"We've found the technical support to be very helpful overall."
"I like Apex Central. We can manage all the Trend Micro products from one console."
"The solution should address emerging threats like SQL injection."
"They can include the automation for the realtime updates. We have a network infrastructure with remote sites. Whenever they send updates, they are not automated. We have to go into the console and push those updates. I wish it was more automated. The update file is currently around 31 MB. It could be smaller."
"It takes about two business days for initial support, which is too slow in urgent situations."
"The support needs improvement."
"Making the portal mobile friendly would be helpful when I am out of office."
"I would like the solution to extend beyond endpoint protection and include other attack surfaces such as other network components."
"The dashboard isn't easy to access and manage."
"I think cloud security and SASE are areas of concern in the product where improvements are required. The tool's cloud version has to be improved in terms of the security it offers."
"It's very time-consuming to log support issues and the people that answer the tickets aren't very knowledgeable."
"It automatically detects security issues. It should be able to protect our network devices while operating autonomously."
"Impact on system performance is horrible, adding a lot of delays for users."
"It's more focused on network communication. If a customer wants to increase the level of protection and start working with documents, it's impossible to integrate these features into the system. It's more of a communication-oriented system than a content security-oriented system."
"Being able to filter the events to see those that are related to the actual alert would save time spent by the engineer."
"Managing the product should be easier."
"Previously, the endpoint would leave the environment, not being on our VPN, essentially unable to interact with the server to upload files. It was unable to retrieve new file verdicts. It was using a thing called "local analysis" to determine if something was a malicious file or not. There was no dynamic analysis."
"Traps doesn't work with McAfee. You need to remove McAfee to install Traps. This is very common, and its nothing that should be an issue. Some antivirus engines recognize Traps as an threat component, so maybe they need to shake hands somewhere."
"I think the one place where we like where they lacking is in a unified style dashboard."
"It has good signature-based capabilities, but features like “shape detection” can be improved upon."
"The portal is a little bit slow in loading. The cloud portal or management control should be a little faster. There seems to be a lot of load on their servers over there. Maybe they are using one server for multiple customers. It would be great if they can increase server performance in the cloud. Its technical support and reporting can be improved. There is no proper reporting, and there is no PDF or things like that. They should include detailed reporting. An attack happened at a client's site, but we couldn't get the report on the same day. We were unable to provide a detailed report to our client. We approached the technical support, and even they didn't give proper answers. They need to improve the reporting capabilities, or the technical team should support us in providing these reports. They should include reporting in the solution. They should also insert sandbox analysis in Apex One."
"The solution could use signatureless detection."
"We're actually looking to upgrade to more sophisticated ADL products. We need a more sophisticated endpoint. We need to have the ability to automate those instant response processes."
"I would like to see behavior analysis capabilities included."
"Lacking features, not yet fully mature."
"It is weak in terms of intelligence. By implementing Trend Micro Apex One, I wanted to see real-life scenarios. I deployed it on 50 clients to check if I could do lateral moments and zero-day exploits. I wanted to check how the zero-day protection works with Trend Micro. It fails with most of them because it is signature-based. They are not looking at the MITRE ATT&CK framework, so with zero-day attacks, it mostly fails."
More Cortex XDR by Palo Alto Networks Pricing and Cost Advice →
Cortex XDR by Palo Alto Networks is ranked 4th in Endpoint Protection Platform (EPP) with 80 reviews while Trend Micro Apex One is ranked 6th in Endpoint Protection Platform (EPP) with 124 reviews. Cortex XDR by Palo Alto Networks is rated 8.4, while Trend Micro Apex One is rated 8.2. The top reviewer of Cortex XDR by Palo Alto Networks writes "It provides a whole new level of visibility and integrates with most other vendors". On the other hand, the top reviewer of Trend Micro Apex One writes "Good monitoring and server protection with helpful machine learning". Cortex XDR by Palo Alto Networks is most compared with Microsoft Defender for Endpoint, CrowdStrike Falcon, Darktrace, Symantec Endpoint Security and SentinelOne Singularity Complete, whereas Trend Micro Apex One is most compared with Trend Micro Deep Security, Microsoft Defender for Endpoint, Trend Micro Smart Protection, CrowdStrike Falcon and SentinelOne Singularity Complete. See our Cortex XDR by Palo Alto Networks vs. Trend Micro Apex One report.
See our list of best Endpoint Protection Platform (EPP) vendors and best Endpoint Detection and Response (EDR) vendors.
We monitor all Endpoint Protection Platform (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.