TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Snort

    Score9 out of 10
    N/ASourcefire developed Snort, an open source intrusion prevention system capable of real-time traffic analysis and packet logging. Snort was acquired (and is now supported) by Cisco in 2013.N/A

    Cybereason Defense Platform

    Score9.1 out of 10
    N/ACybereason EDR consolidates intelligence about each attack into a Malop (malicious operation), a contextualized view of the full narrative of an attack. Each Malop organizes the relevant attack data into an easy-to-read, interactive graphical interface, providing a complete timeline, the flow of the attack in the network, and any malicious communications. Remediation actions can be automated or accomplished remotely with a click. The Cybereason Defense Platform empowers analysts of all…N/A
    Pricing
    SnortCybereason Defense Platform
    Editions & Modules
    No answers on this topic
    No answers on this topic
    Offerings
    Pricing Offerings
    SnortCybereason Defense Platform
    Free Trial
    NoNo
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details——
    More Pricing Information
    Features
    SnortCybereason Defense Platform
    Endpoint Security
    Comparison of Endpoint Security features of Snort and Cybereason Defense Platform
    Feature
    Snort
    -
    Ratings
    Cybereason Defense Platform
    9.1
    2 Ratings
    7% above category average
    Anti-Exploit Technology00 Ratings8.32 Ratings
    Endpoint Detection and Response (EDR)00 Ratings9.62 Ratings
    Centralized Management00 Ratings9.62 Ratings
    Hybrid Deployment Support00 Ratings6.01 Ratings
    Infection Remediation00 Ratings10.02 Ratings
    Vulnerability Management00 Ratings10.01 Ratings
    Malware Detection00 Ratings10.02 Ratings
    Best Alternatives
    SnortCybereason Defense Platform
    Small Businesses
    No answers on this topic
    SentinelOne Singularity
    Score9 out of 10
    Medium-sized Companies
    Palo Alto Networks Advanced Threat Prevention
    Score8.5 out of 10
    BlackBerry Protect (CylancePROTECT)
    Score9.1 out of 10
    Enterprises
    Proofpoint Advanced Threat Protection
    Score8.4 out of 10
    ESET PROTECT
    Score8.8 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    SnortCybereason Defense Platform
    Likelihood to Recommend
    8.1
    (5 ratings)
    8.7
    (2 ratings)
    User Testimonials
    SnortCybereason Defense Platform
    Likelihood to Recommend
    Cisco
    If a colleague was looking to tighten down their network I can easily recommend Snort to them. It gives you some more peace of mind knowing that its always scanning traffic for malicious looking code. Even things your major firewalls and security hardware might miss, Snort has picked up. Its an easy recommendation for me.
    Incentivized
    Read full review
    LevelBlue
    I'd recommend Cybereason due to it's efficacy, low TCO, low false/positive rate. The product was easy to implement and maintain. One of the major advantages of using Cybereason is that it requires minimal training for level 1 users to use the tool.
    Incentivized
    Read full review
    Pros
    Cisco
    • IPS detection.
    • DoS detection.
    • Packet logging.
    Incentivized
    Read full review
    LevelBlue
    • EDR
    • Forensics
    • Mitigation
    • Response
    Incentivized
    Read full review
    Cons
    Cisco
    • At times can be unstable with Cisco bugs, require frequent upgrading.
    • FTD images that are being pushed for ASAs are less efficient from an administration standpoint, no CLI.
    Incentivized
    Read full review
    LevelBlue
    • Slow support
    • Bugs on their interface
    • Log extraction
    Incentivized
    Read full review
    Alternatives Considered
    Cisco
    For our organization, the Cisco defense in depth concept works the best. While Cisco can be made to work with other vendors, we have found the best in depth protection by integrating Cisco products for maximum visibility. We had a Barracuda Web Filter, but it was difficult to maintain when you had limited scope on what you could block, so we created a whitelist only setup which required a lot of additional manpower. This wouldn't have covered new threats with DNS spoofing and the like. Sourcefire also integrated with our anti-malware platform (Cisco AMP) for even better visibility on what may be happening on the end users workstation. We are planning on adding in Cisco ISE to complete the approach and possibly stealthwatch to cover our bases in the future. The Palo Alto gear was interesting, but it was priced far out of our range.
    Incentivized
    Read full review
    LevelBlue
    Cybereason provides superior protection than either Microsoft or CrowdStrike and a better TCO. We receive less false positives than with Microsoft Defender and Cybereason is easier for level 1 users to use.
    Incentivized
    Read full review
    Return on Investment
    Cisco
    • Being open source, ROI on free is hard to beat for something that works.
    • I believe it greatly enhances the security of my network.
    Read full review
    LevelBlue
    • Helps on threat hunting
    • MalOps is very good
    • When we face a bug, it takes too much time for them to respond
    Incentivized
    Read full review
    ScreenShots