13 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>
Score 7.7 out of 100
15 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener'>trScore algorithm: Learn more.</a>
Score 9 out of 100

Likelihood to Recommend

Cisco Secure Network Analytics (Stealthwatch)

Cisco Secure Network Analytics is required for every organization in the current world. If your organization deals with critical client information and you want to secure your organization from external attack then this is the best product for your organization. It can [easily] detect and analyze your network traffic, conversions, and protect your organization from internal and external threats and cyber attacks.
Vipin Sharma | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

In a scenario where EDR is a requirement or necessity XDR performs well with or without a SIEM. There are millions of events and logs to parse through and XDR is capable of handling the large load. On top of the large data that is being parsed, features such as Live Terminal, File Retrieval, OS support, and general Metrics, the tool has room to grow and provide a lot for a Security team or organization. Incident Response is a great example of how XDR can shine
Anonymous | TrustRadius Reviewer

Feature Rating Comparison

Incident Response Platforms

Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
8.9
Company-wide Incident Reporting
Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
8.7
Integration with Other Security Systems
Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
8.1
Attack Chain Visualization
Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
7.8
Centralized Dashboard
Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
9.3
Machine Learning to Prevent Incidents
Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
9.3
Live Response for Rapid Remediation
Cisco Secure Network Analytics (Stealthwatch)
Palo Alto Networks Cortex XDR
10.0

Pros

Cisco Secure Network Analytics (Stealthwatch)

  • Using predefined signatures and scripts to capture and alert us to problems.
  • Built-in tools that automatically watch for suspicious behaviors
  • Integration with our already implemented IPAM services
  • Interfaces with Splunk for our IT security to easy review
Anonymous | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

  • Malware prevention
  • Exploit prevention
  • EDR and XDR
  • Ransomware protection
  • Disk encryption (with Bit Locker and File Vault)
  • Device control features
  • Analytics
  • Investigation
  • Incident management
  • Forensics
  • NTA--network traffic analysis
  • UBA/UEBA--user entity behavior analysis
Darshil Sanghvi | TrustRadius Reviewer

Cons

Cisco Secure Network Analytics (Stealthwatch)

  • As with new technologies, learning curves are a given. On this one, there is a slight curve before you fully grasp it.
  • User interface can be improved to better user experience.
Ericson Aragoza | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

  • Showing the significance of behavior based alerts. It is hard to understand what is implicated by these alerts.
  • Rollout to Macs was a challenge for us because of the permissions that have to be allowed. Endpoint management could have helped with this.
  • Still waiting for support in the Palo Alto Splunk app for logs from Cortex.
Allan Crittenden Edwards | TrustRadius Reviewer

Usability

Cisco Secure Network Analytics (Stealthwatch)

Cisco Secure Network Analytics (Stealthwatch) 7.3
Based on 1 answer
Strong and complete tool which gives comprehensive methods to discover cyber security incidents and prevent data leakage. In case of common use of Cisco StealthWatch and Cisco ISE, you will receive [the] ability [to] not just discover cyber security incidents but also dynamically respond to them. This makes StealthWatch one of most valuable products through[out] [the] whole Cisco Security product portfolio.
Oleksandr Tsapenko | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

Palo Alto Networks Cortex XDR 9.0
Based on 1 answer
Cortex has a beautiful dashboard that is fairly easy to configure once you understand how policies work. My suggestion would be to definitely watch some of their training videos on copying and modifying the default policies before attempting to set anything up. But once you know, it is easy. Using endpoint management software (SCCM/JAMF/etc) for deployment is a must.
Allan Crittenden Edwards | TrustRadius Reviewer

Support Rating

Cisco Secure Network Analytics (Stealthwatch)

Cisco Secure Network Analytics (Stealthwatch) 7.9
Based on 3 answers
Overall winner because it exceeds our expectations by answering all our requirements and at the same time empowers our operations thru other built-in capabilities it has. Visibility is a key to security operations and Cisco StealthWatch really gives us a magnifying glass to check all logs in the network for threat intelligence and threat hunting.
John Patrick Duro | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

Palo Alto Networks Cortex XDR 8.0
Based on 1 answer
Cortex XDR ranks high for its abilities in prevention. We do see malware that Cortex is able to stop that is undetected by Microsoft's endpoint protection. But it seems comparable products such as Crowdstrike may do better in providing details around alerts. Without this context we can't mount a more thorough response to alerts because we don't have the appropriate information to do so.
Allan Crittenden Edwards | TrustRadius Reviewer

Alternatives Considered

Cisco Secure Network Analytics (Stealthwatch)

NTOP is the only thing out there, in my opinion, that provides similar type of visibility. But StealthWatch is the product all vendors should strive to emulate. It is easy to install; it is easy to configure; it works as advertised (and then some). I do recommend the three-day work shop they occasionally run - or some onsite training. The product is feature rich and the training will help you get the most out of it.
Matthew Frederickson | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

XDR is a solid tool against other security suites. Since XDR goes beyond a EDR tool it's possible to say it can be a replacement for other EndPoint Tools. Although there is a lack of sandboxing binaries the capabilities to customize and tune the tool are vast. XDR is considered a Next Gen product and along with it's Incident Response Features and integration Palo Alto XDR was selected for these reasons and it's ability to work well across many devices
Anonymous | TrustRadius Reviewer

Return on Investment

Cisco Secure Network Analytics (Stealthwatch)

  • StealthWatch helps other departments make decisions quickly based on NetFlow data.
  • StealthWatch can bring a lot of reporting to the table that can be used to advance project necessities and prove data necessities to management.
Anonymous | TrustRadius Reviewer

Palo Alto Networks Cortex XDR

  • After putting Palo Alto Networks Cortex XDR on a user's system, users came back with a positive response that there are no performance issues now.
  • We are able to track and control granular suspicious and malicious activities.
  • Web controls are missing, which if they would have been there would have been very helpful.
Darshil Sanghvi | TrustRadius Reviewer

Pricing Details

Cisco Secure Network Analytics (Stealthwatch)

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Palo Alto Networks Cortex XDR

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Rating Summary

Likelihood to Recommend

Cisco Secure Network Analytics (Stealthwatch)
7.5
Palo Alto Networks Cortex XDR
8.1

Usability

Cisco Secure Network Analytics (Stealthwatch)
7.3
Palo Alto Networks Cortex XDR
9.0

Support Rating

Cisco Secure Network Analytics (Stealthwatch)
7.9
Palo Alto Networks Cortex XDR
8.0

Add comparison