RSA NetWitness Endpoint Competitors and Alternatives

The top RSA NetWitness Endpoint competitors are
  • Carbon Black Cb Defense
  • McAfee Complete Endpoint Protection
  • CrowdStrike
Read reviews of RSA NetWitness Endpoint competitors and alternatives
Enterpri7a3f
Real User
Enterprise Information Security Engineer at a tech services company with 201-500 employees
Jul 17 2017

What is most valuable?

I would have said the VirusScan, but with the advent of ransomware, the VirusScan hasn’t been that impressive.

How has it helped my organization?

Initially, the DLP was very valuable for disabling access to USB drives -- but the need to get a code before granting... more»

What needs improvement?

The VirusScan needs to improve in order to detect ransomware and other advanced threats.

What's my experience with pricing, setup cost, and licensing?

Pricing is fair.

Which other solutions did I evaluate?

Started with McAfee, actually, but now we have switched to another solution.

What other advice do I have?

I would advise to compare it with other players and ensure it can deliver, especially on the detection of ransomware... more»
CrowdStrike Logo
CrowdStrike
SnrFin3443
Real User
Senior Financial Analyst - Data Analytics at a energy/utilities company with 1,001-5,000 employees
May 30 2018

What is most valuable?

Visibility into the endpoint rate. Understanding what processes are running on the system, what registry keys have been enabled. Pretty much understanding the whole frantic side of... more»

How has it helped my organization?

It allows us to determine root cause, do the analysis, a lot quicker.

What needs improvement?

It would be nice if we could extrapolate indicators of compromise and write them within sandboxes.

What other advice do I have?

The most important criteria when selecting a vendor come down to the capability of the technology, the cost, the support, how it fits into our overall architecture strategy, and... more»
Brody Wright
Real User
System Analyst at a hospitality company with 1,001-5,000 employees
May 07 2018

What is most valuable?

* The software uses very few resources; it is almost invisible to the end user. * Behavioral Monitoring stops known malicious events before they even begin. * The whitelist: Being a Casino, we have some odd software packages. Being able to... more»

How has it helped my organization?

During the company’s transition, we had a memory scraper infiltrate our network, and with the help of Carbon Black, we isolated the outbreak to a few point of sale machines.. We saw a step-by-step account of how the software was introduced... more»

What needs improvement?

It works the way we want and how we want. For one improvement, an easier integration with an AlienVault USM appliance would be good. The directions for Splunk are spot on, but it is difficult to find anything on integration with AlienVault,

Sign Up with Email