Palo Alto Networks Cortex XDR a Winner (if you can overcome the management interface)
Updated March 18, 2025

Palo Alto Networks Cortex XDR a Winner (if you can overcome the management interface)

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with Palo Alto Networks Cortex XDR

Palo Alto Networks Cortex XDR is one of several layers we use to secure our endpoint devices. Harnessing the power of AI and machine learning, Palo Alto Networks Cortex XDR quickly recognizes and stops threats that may have otherwise gone unnoticed. It also offers the ability to remotely take systems offline while still giving you some level of access to perform forensics or repairs.

Pros

  • Endpoint Protection
  • Detect and Response
  • Antivirus

Cons

  • Interface can be confusing
  • An "Admin Bypass" feature to proceed with a false detection would be nice
  • Better out-of-the-box reporting
  • Saves IT time by blocking the installation of many apps that would have otherwise gone unnoticed
  • Multi-year contracts allow for more consistent budgeting
Cortex XDR does a very good job of blocking suspicious and threatening items. However, as with all software of this nature, it will sometimes block known-good items. The difficulty is in manually whitelisting these known-good items. The interface to whitelist is confusing even for a seasoned IT professional and has been the single most frustrating experience of using Cortex XDR.
SentinelOne was a close equal in capability. In the end, we decided to go with Palo Alto Networks Cortex XDR because we are already established using Palo Alto hardware and Cortex XDR is part of the same ecosystem. Now that we have experienced using Palo Alto Networks Cortex XDR, I see us re-evaluating SentinelOne again in the future to see if it would be easier to manage.

Do you think Palo Alto Networks Cortex XDR delivers good value for the price?

Yes

Are you happy with Palo Alto Networks Cortex XDR's feature set?

Yes

Did Palo Alto Networks Cortex XDR live up to sales and marketing promises?

Yes

Did implementation of Palo Alto Networks Cortex XDR go as expected?

Yes

Would you buy Palo Alto Networks Cortex XDR again?

Yes

In my opinion, Palo Alto Networks Cortex XDR is best suited for an enterprise environment that has a knowledgeable IT staff. The interface can be daunting and is easy to get lost under level after level. Although, they now offer "managed detection and response," where their experts monitor and report back 24/7, which could be a great choice for smaller businesses.

Comments

More Reviews of Palo Alto Networks Cortex XDR