No more typing reviews! Try our Samantha, our new voice AI agent.

LevelBlue Managed Detection and Response Valuable Features

reviewer2865402 - PeerSpot reviewer
reviewer2865402
Soc Analyst at a media company with 501-1,000 employees

The best features that Alert Logic MDR offers include AI and behavior analysis, which I find most valuable.

AI and behavior analysis mean that within AI there is static AI analysis and behavior analysis with subtypes. For example, if there is any file or a certain subtype, or if ransomware is happening, or any tool or app is being used, there are subtypes of AI. I appreciate that Alert Logic MDR has a separate AI for each type.

Alert Logic MDR has positively impacted our organization by minimizing the alert SLA timing. When we used our other endpoint detection and response solution, we required at least fifteen minutes to raise one alert. After using Alert Logic MDR, we integrated it with SOAR technology, so within five minutes, the alert is raised to the client.

Efficiency-wise, reducing the alert SLA timing to five minutes has been very beneficial. Whenever we receive an alert from endpoint detection and response from an endpoint to the Alert Logic MDR console, the system directly has the protect mode, conducting the kill and quarantine process itself. We only have to perform static analysis, and we have the playbooks, so they conduct some static analysis from there and directly raise the alert to the respective team.

View full review »
TD
Tanuja Dhyani
Solutions Architect at a tech vendor with 10,001+ employees

The best features Alert Logic MDR offers include not only detecting incidents but also providing details about where any incident is coming from. You can integrate those with your ticketing tools, such as ITSM or ServiceNow, which is a good feature.

The integration with ticketing tools such as ServiceNow helped my workflow by automatically creating a ticket and sharing it with the required team as soon as a critical alert is generated. Alert Logic MDR has a feature for critical and high-level incidents where a ticket is automatically created and shared with the required team for investigation. This helped in achieving a faster response before any major incident happened.

Alert Logic MDR has positively impacted my organization as it has helped in detection of incidents and responding through our security team, who work around the clock. Alert Logic MDR has reduced security response time for us and helped in detection. When we need to deep dive for any incident, Alert Logic also provides many helpful areas which assist in deep-dive investigation. That is beneficial.

View full review »
Peter Nowak - PeerSpot reviewer
Peter Nowak
Business Development Manager for Cybereason at Bechtle

The quick reaction and the ability to restore the state before within a short time are significant. It is quick to detect, quick to react, and able to bring back the state to get rid of the damage. It's very reliable. When something happens, they see it.

View full review »
Buyer's Guide
LevelBlue Managed Detection and Response
October 2026
Learn what your peers think about LevelBlue Managed Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: October 2026.
916,212 professionals have used our research since 2012.
VR
Vinayaka R
Security Analyst at a consultancy with 10,001+ employees

The standout features of Alert Logic included the topology feature, which was helpful for mapping assets on the network, giving a clear understanding of all connected devices. It also performed real-time scanning of assets. Furthermore, Alert Logic was up to date with new vulnerabilities, quickly adding them to the database.

View full review »
JA
Jerome Arockiam
Senior Security Specialist at Wipro Limited
The most valuable features of Cybereason Managed Detection & Response are its ability to categorize low-priority alerts as PUP alerts and its capability to trigger alerts for PowerShell execution and ransomware. It provides alerts for canary files and shadow volume activities, enabling us to validate whether they are performed by the admin team or are suspicious. The anti-ransomware and exploit prevention features are highly beneficial. View full review »
reviewer2561799 - PeerSpot reviewer
reviewer2561799
System Analyst at a tech services company with 11-50 employees

The pricing is valuable because we do not need to have our own data center and software licensing for monitoring. The response from the service provider is quick and responsive. They inform us of threats even before we are aware, through reports. Automated information on zero-day threats is provided without us needing to ask. Another feature we like is that they can detect threats and alert us even when we are not at work.

View full review »
Ivan Burke - PeerSpot reviewer
Ivan Burke
Head of Research Development and Innovation at CSIR

The most valuable feature of the solution is endpoint management. Though I can't remember what it is exactly called, it is the isolation feature that allows you to isolate malware as soon as the tool detects it, especially when it doesn't respond to quarantine. The investigation feature allows you to search and see what has happened in the logs.

View full review »
reviewer2191746 - PeerSpot reviewer
reviewer2191746
President at a tech services company with 11-50 employees

The most valuable aspect of Alert Logic is its optimized technology platform. They have SOCs in the US and Europe, giving them global visibility of the threat landscape. They detect and respond to threats in an average of 6 minutes. Their biggest value is human expertise. You're being attacked by a human, and you cannot respond to it unless you have a human on the other side. They have the human and technological resources to respond.

View full review »
reviewer2158422 - PeerSpot reviewer
reviewer2158422
Software Security Architect

Alert Logic provided value by offering a single dashboard that amalgamated various sources for performing specific activities.

View full review »
GP
George Pate
Facility Manager at a tech services company with 10,001+ employees

When I was using it, I think the valuable feature was the ability to monitor the Ada environment and detect heuristic threats such as brute-force attacks. It could differentiate between legitimate user behavior, such as a user forgetting their password and repeatedly trying to log in.

View full review »
Alex Alexandre - PeerSpot reviewer
Alex Alexandre
System Administrator at INSIGHT CREDIT UNION

The value of Alert Logic is that everything is in one dashboard; I'm notified when there's an incident, kept up to date and advised on what steps to take. The solution has good intrusion detection. 

View full review »
reviewer1525833 - PeerSpot reviewer
reviewer1525833
Site Reliability Engineer at a retailer with 10,001+ employees

The searching aspects of the solution are very valuable for our organization.

The reporting on the solution is quite useful for us.

The log messages and session logic are excellent. As an engineer, it's very useful to get the logs immediately if any production issues arise. We have everything we need to troubleshoot at our fingertips.

The initial setup is pretty straightforward.

View full review »
AC
Alaina Callahan
Information Technology Manager at Alaina M Callahan Consultant LLC

Notifications and the detail of notifications are most valuable. It is a user-friendly solution.

View full review »
AwsAdminb048 - PeerSpot reviewer
AwsAdminb048
AWS Admin at a marketing services firm with 501-1,000 employees

We receive infrastructure security warnings from it. So, we know what is going on and what needs to be addressed, e.g., things that we didn't have somebody looking for. It shows us these automatically, using things like automated scanning.

View full review »
SS
Sujaiy Shivakumar
Solutions Architect at Provo IT

It has the ability to install agents. It is pretty straightforward. You can automate the process pretty easily.

View full review »
CT
Chauncey Taylor
Network Security Engineer at Modec Inc

I like that it is physical hardware. With virtual, the processing can go bad and can get hung up. However, if it is physical, it's its own box. E.g., there is no noisy neighbor issue.

View full review »
MS
Mark Summers
DevOps Engineer at Upland Software
  • Easy to use, nice interface. 
  • It is quick set up.
View full review »
RC
Riyad Chowdhury
Senior Systems Engineer at Turner Broadcasting System

It scans correctly and quickly. For example, we had an issue where we had Bitcoin mined and sold in some of our containers, and Alert Logic was able to find it and alert us about it. Then, we were able to find out why the containers were being hacked and killed it.

View full review »
Buyer's Guide
LevelBlue Managed Detection and Response
October 2026
Learn what your peers think about LevelBlue Managed Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: October 2026.
916,212 professionals have used our research since 2012.