TrustRadius: an HG Insights company

Cisco SecureX

Score7 out of 10

18 Reviews and Ratings

What is Cisco SecureX?

Cisco Threat Response automates integrations across select Cisco Security products and accelerates key security operations functions: detection, investigation, and remediation. Threat Response integrates threat intelligence from Cisco Talos and third-party sources, which adds context from integrated Cisco Security products automatically so you know instantly which of your systems was targeted and how.

Cisco Review

Use Cases and Deployment Scope

So how we use it in our organization is we mainly demonstrate the product. We do have it integrated with other products, be it Cisco or other third parties. My main thing with this product is I demonstrate it to other partners and I demonstrate to other end users of those partners showing them the value that it can add to the Cisco and third-party security environments.

Pros

  • So the product enables end users to get visibility into their security environment, not only across the Cisco products but across the third-party products as well. The product also automates detection and response. So the product really offers end-user efficiency in the security operations center.

Cons

  • More third-party integration. It's got quite a bit, but more is always better. I know that the product is being superseded by the new Cisco XDR R and XDR has a lot more integration out of the box. So it's really hard to talk about enrichment for this product because the enrichment is coming with a new product in Cisco XDR, which they're promoting quite a bit here at Cisco Live.

Return on Investment

  • The product is free so it's really a return on investment. There is no investment, but it certainly has enhanced sales, so it enhances sales with other related products. So when customers see that they can get a product like this platform for free, it certainly them more to buy one of the Cisco products that are associated with it.

Great XDR with Some Hidden Gems!

Use Cases and Deployment Scope

We use Cisco SecureX as a key system both internally and for our MSSP customers. The entire platform, especially with its Threat Response and Orbital modules, helps us get a grip on threats faster and has really helped us reduce response times. Getting everything up and running needs a bit of planning, and you need to familiarise yourself with the different modules, but once you do, you really get the most out of the platform. For example, we can detect a threat in one customer environment and then query our other environments for the same threat.

The real hidden gem in the platform, however, is the orchestration element. We use it to not only alert our engineers of threats but also inform our customers via integrations with collaboration tools such as Webex that we are responding to it. Our integrations with Secure Endpoint, Duo, Umbrella, etc., also make our response actions more streamlined. One example is blocking a user in Duo if we detect a threat on their endpoint as part of our Zero Trust setup.

The platform is constantly evolving, and hopefully, the new ‘Cisco Secure’ branding will help with messaging about their XDR offering.

Pros

  • Orchestration
  • Response
  • Visibility
  • Automation
  • Third party integrations

Cons

  • Better messaging from Cisco
  • Easier movement into the Orbital and Threat Response modules
  • Sort out the Cisco SecureX SSO process

Most Important Features

  • Orchestration
  • Open API and automation capabilities
  • Threat response
  • Orbital
  • New insights capabilities
  • Threat intelligence from Talos

Return on Investment

  • Reduction in response and dwell times
  • Integrating multiple security systems
  • Streamlined monthly costs for our MSSP clients

Alternatives Considered

Sophos Intercept X, CrowdStrike Falcon Endpoint Protection and Palo Alto Networks Cortex XDR (Traps)

Other Software Used

Cisco Secure Endpoint (formerly Cisco AMP), Cisco Secure Access by Duo, Cisco Umbrella

Ideal solution to strengthen security and quickly remedy any incident

Use Cases and Deployment Scope

Cisco SecureX is a valuable solution for our company because since we use it it is easier to visualize all our infrastructure and its security, that is why we use said software at the level of all our infrastructure because it not only helps us to have better visibility of its security, but it also guarantees us analysis and automation in the presence of suspicious movements, giving us the advantage of high detection and quick and precise responses in the event of a threat.

Pros

  • It provides high visibility of the entire business infrastructure, thus being able to maintain a more enhanced security.
  • It makes the workflow much less burdensome for the enterprise security team, as it performs analytics that help detect known and unknown threats.
  • It allows the automation of the workflow, which gives us the advantage of responding and detecting threats faster.
  • It quickly and accurately identifies what caused the attack and what its scope has been so that carrying out a remediation is simpler.

Cons

  • Of course, many companies prefer to obtain security from the cloud; however, not all of them prefer it, which is why having a local implementation would allow these companies to also use said software as their ally for their security.
  • Working with this software can be simple, that is, any threat can be visualized with greater precision, but when it comes to managing its orchestration, it is a bit complex.
  • Its integration with other software can be simple but with others it is not, that is why it would be ideal if all of them could be carried out in the same way.
  • Integrating with a larger number of third party software would be of great help, to further enhance the analysis and detection of threats.

Return on Investment

  • It is a solution that is of great help to reduce threats and their powerful damage, thanks to its high threat identification.
  • Its workflow automation saves time and money, that is, it makes possible a better performance in the team that handles corporate security because it helps them with the tasks.
  • By unifying security solutions, it gives the advantage of reducing operating costs and greatly improving responses to threats.
  • Their analyzes are vital to carry out a quick remediation and thus reduce the time in which the company is under threat.

Alternatives Considered

Palo Alto Networks Cortex XDR (Traps)

Other Software Used

Cisco Umbrella, Cisco Cloud Email Security, Cisco Secure Email, Cisco Secure Endpoint

Cisco SecureX Review

Use Cases and Deployment Scope

Currently the people security market it’s suffering from a lack of trained people. On the other side, we’re seeing robots hacking globally. Cisco SecureX came to resolve some of those issues by helping the automatization of many playbooks, which are daily activities that used to consume a lot of hours from analysts. The product has also a single pane of glass to bring visibility for the team, so they don’t need to look into multiple sources to have the information from each Security product. Recently in Cisco SecureX, we’re using device insights and now we know what computers are compliant or not and it’s helping more and more visibility. The analysts share cases using the Cisco SecureX ribbon, so they can contribute to each other all incidents and cases.

Pros

  • Management
  • Automation
  • Visibility
  • Control

Cons

  • Monitor the orchestrations runs health
  • Courses
  • Cerifications

Most Important Features

  • Orchestration
  • Device Insights
  • Ribbon

Return on Investment

  • Less People for repetitive tasks
  • Process more well aligned
  • We increased the time to investigate

Alternatives Considered

Splunk SOAR, Exabeam Fusion, IBM Resilient Security Orchestration, Automation and Response (SOAR) and Microsoft Sentinel

Other Software Used

Cisco Secure Endpoint, Cisco Secure Network Analytics (Stealthwatch), Cisco Umbrella, Cisco Secure Firewall

Cisco SecureX makes your work happier

Use Cases and Deployment Scope

In our company, we have been using Cisco SecureX to manage and protect each site in Argentina and Brazil (+160 locations) for more than 2 years and in more than 2500 roaming clients. The management of this environment (more than one thousand devices) is so complex and we need a tool to unify the observability.

Pros

  • Unified visibility
  • Managed threat hunting

Cons

  • User interface could be more intuitive

Most Important Features

  • Visibility
  • Orchestration

Return on Investment

  • Simplified management
  • KPI

Alternatives Considered

FortiManager

Other Software Used

Cisco DNA Center, Microsoft 365