Mandiant Advantage (discontinued) vs. Picus Security

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Mandiant Advantage (discontinued)
Score 8.2 out of 10
Enterprise companies (1,001+ employees)
Mandiant Advantage was a security validation solution used to test the efficacy of security controls with authentic, relevant and active attacks. Mandiant was acquired by Google in late 2022, and since, the product line has been discontinued.N/A
Picus Security
Score 8.2 out of 10
N/A
Picus Security, headquartered in San Francisco, offers Continuous Security Validation and Mitigation as the most proactive approach to ensure cyber-resilience. The Picus Platform measures the effectiveness of defenses by using emerging threat samples in production environments, providing the insight required to build the right security strategy to better manage complex operations.N/A
Pricing
Mandiant Advantage (discontinued)Picus Security
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Mandiant Advantage (discontinued)Picus Security
Free Trial
YesNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Mandiant Advantage (discontinued)Picus Security
Considered Both Products
Mandiant Advantage (discontinued)
Chose Mandiant Advantage (discontinued)
There are many parameters which are the differentiator between mandiant and cymulate but some of the key differentitors are listed below:
1) Manpower costs are less and justified as compared to cymulate
2) Better technologies innovation
Chose Mandiant Advantage (discontinued)
I decided to go with Mandiant Advantage Attack Surface Management because it offers a range of features performs excellently and is easy to use. What I really appreciate about Mandiant is their commitment, to innovation and their proven track record, in ensuring security.
Chose Mandiant Advantage (discontinued)
Mandiant is focused on a clear view of the environment, vulnerabilities, and threats. Palo Alto is a great tool for some of this, but was not mature enough at the time of our initial eval. The new version of Palo Alto looks much more robust and capable and we will definitely …
Chose Mandiant Advantage (discontinued)
Haven't done a direct comparison for Verodin and other similar products. But I compared Verodin port scanning with NMAP. Verodin provides an intuitive result.
Picus Security
Chose Picus Security
We use other vendors Verodin, AttackIQ, SafeBreach, Cymulate etc. All of them have their advantages and disadvantages. Please take a look at TrustRadius reviews of each product. I don’t want to go head to head for each product in this review. I select Picus because it's local …
Best Alternatives
Mandiant Advantage (discontinued)Picus Security
Small Businesses

No answers on this topic

No answers on this topic

Medium-sized Companies
Microsoft Defender for Cloud
Microsoft Defender for Cloud
Score 8.5 out of 10
Microsoft Defender for Cloud
Microsoft Defender for Cloud
Score 8.5 out of 10
Enterprises
Microsoft Defender for Cloud
Microsoft Defender for Cloud
Score 8.5 out of 10
Microsoft Defender for Cloud
Microsoft Defender for Cloud
Score 8.5 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Mandiant Advantage (discontinued)Picus Security
Likelihood to Recommend
8.2
(0 ratings)
9.0
(0 ratings)
Usability
8.2
(0 ratings)
-
(0 ratings)
Ease of integration
9.1
(0 ratings)
-
(0 ratings)
User Testimonials
Mandiant Advantage (discontinued)Picus Security
Likelihood to Recommend
Many companies that have an presence can benefit from using Mandiant ASM to identify and manage their internet facing assets, like web servers, email servers and DNS servers. This helps reduce the risk of cyberattacks targeting these assets.However smaller organizations with exposure might not always need the extensive attack surface monitoring provided by Mandiant ASM. For example a small company with one website may not require much monitoring, as a larger corporation.
Read full review
If you want to analyze the full path focusing on the signatures it’s the best product in the market. If you want to test phishing, data exfiltration/DLP, DNS I don’t recommend Picus. Scenario based attacks also lacking. However Picus support is awesome and I like the development team. When we open a case, they’ll always return with the right answer
Read full review
Pros
  • The product's simulated attack tests helped identify security gaps in company networks.
  • Helped finding drifts in security controls and IT environment.
  • Provided actual data to support decision making.
Read full review
  • It has thousands of signatures and up-to-date attack vectors (It's the largest set in the market)
  • Attack vectors are mapped with existing vendors like Checkpoint and Mcafee, where you don't spend time finding out which cve mapped to which protection
  • Ability to focus/highlght solely new threats, it's superb for 0days and up-to-date protections. As there are always timing issue between updates and apply the updates on the products.
  • Blocked vs not blocked ratios on the dashboard with drill down menu specifiying the set of protections or signatures on the defensive measures
  • Already mapped mitre att&ck framework on the dasboard. SOC and analyst team using the Mitre framework.
  • Detection analytics enhance the analytics capabilities with pinpoint accuracy where to focus and how to prevent
  • Timeline and scheduled reports from the dashboard in flexible format
Read full review
Cons
  • Manpower Cost
  • More emphasis on automated testing comparison to manual testing
  • Need more emphasis on simulation of real world attacks
Read full review
  • Visualization of network and the products
  • Complex/Scenario based attacks
  • Phishing tests
  • DNS and Data exfiltration attacks
  • Automatic action through the apis for the products on the path
  • Strategical and tactical reports for Cisos
  • Automatic SOAR entegration with already builtin playbooks
Read full review
Usability
Being able to get a lot of detailed information about different attacks and different tactics for specific attack types and threat actors is very helpful. Mandiant Support was a bit of a struggle - they need to increase support staffing and capabilities without having to wait for escalations. Overall a good tool, but could be better.
Read full review
No answers on this topic
Alternatives Considered
There are many parameters which are the differentiator between mandiant and Cymulate but some of the key differentitors are listed below: 1) Manpower costs are less and justified as compared to Cymulate 2) Better technologies innovation 3) Good reputation in market 4) Good cummulative man hour experience Also, they are in the market from last 20 years and they have a huge client base.
Read full review
We use other vendors Verodin, AttackIQ, SafeBreach, Cymulate etc. All of them have their advantages and disadvantages. Please take a look at TrustRadius reviews of each product. I don’t want to go head to head for each product in this
review. I select Picus because it's local startup company in our region. I like their support and engineering team. Support is marvelous. Product is giving what we expected from the product. Price is adequate. Reporting and dashboard is superb.
Read full review
Return on Investment
  • High ROI
  • Great visibility
  • Resource Intensive
Read full review
  • With Picus we have the tangible KPIs for the security
  • Detetcion and Prevention rates for the latest attacks are significantly increased
  • We work with many security vendors. We use picus scores and share specific outputs with the company in case of decreasing score rates where the development and product team analyzes their updates or product engines to increase the rates.
  • It helps our strategic plans where to focus and invest for the following years and planning/prioritizing the security budgets to specific highlighted areas
Read full review
ScreenShots

Mandiant Advantage (discontinued) Screenshots

Screenshot of SECURITY VALIDATION PLATFORM - Visualize and generate performance data on how security controls across  people, process and technologies respond to active adversary attacksScreenshot of Threat Actor Assurance Dashboard- Visualize how your security controls perform against real threat actor TTPs by operationalizing threat intelligence source.