No more typing reviews! Try our Samantha, our new voice AI agent.
Daniele  Brommer - PeerSpot reviewer
Commerical Manager at Network Service Providers Limited
Reseller
Top 10
Aug 21, 2024
Offers AI features that help improve detection and response capabilities
Pros and Cons
  • "The tool definitely saves money for our company's customers."
  • "I have heard that the tool doesn't go right to the endpoints."

What is our primary use case?

In my company, we have our own internal MDR as well. I am a salesperson, so I don't use the tool by myself.

I moved from telecom to IT earlier this year. I am very new to the tool, but it sounds great. For our company's clients, the tool increases visibility over the network. Arctic Wolf Managed Detection and Response plugs well into everything. Being able to have that sort of real-time, twenty-four-by-seven help desk that watches over your network and all your devices in case there is some attack or breach that it can contain is helpful.

How has it helped my organization?

Having or hiring someone locally to do all those things that Active Wolf and their team does would cost so much more for businesses. The tool definitely saves money for our company's customers. I think the tool saves time because the customers do not do much work, like doing certain things manually and going through logs.

What is most valuable?

The solution's most valuable feature is the certainty that someone is watching it, and that is the one key thing that I love about the product. Apart from the tool's own local team, somebody is always watching the tool and reducing any risks. The awareness training and all that stuff are good because Arctic Wolf Managed Detection and Response does it all by building such areas.

What needs improvement?

I have heard that the tool doesn't go right to the endpoints. With CrowdStrike, I don't think that it is a bad thing anymore.

Buyer's Guide
Arctic Wolf Managed Detection and Response
August 2026
Learn what your peers think about Arctic Wolf Managed Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
907,768 professionals have used our research since 2012.

For how long have I used the solution?

I have years of experience with Arctic Wolf Managed Detection and Response. As a salesperson, I am meant to sell it.

How are customer service and support?

I think the technical support for the solution is pretty good. I think it is all about setting expectations with your customers. Arctic Wolf is a global company, so you have to make sure that the customer knows that support will take as per whatever is mentioned in the SLA, which can take three days or whatever. I haven't heard any complaints from my customers about the tool's support team, but nobody is perfect. I rate the technical support an eight out of ten.

What was our ROI?

Considering the number of activities that customers have to indulge in, especially with the increase in attacks in New Zealand, I can say that the tool helps save a time frame of seven days.

What other advice do I have?

Speaking about the product's integration capabilities, I feel that I am probably not experienced enough to talk about it. Arctic Wolf Managed Detection and Response is still quite immature compared to other providers in the market. The tool sort of integrates with a few products, but it doesn't integrate with everything.

The AI-driven tool helps improve detection and response capabilities, but human beings also manage it. You need the best of both worlds because AI can't do everything. One can still get false positives with the tool, so you need a human being. You also need AI to protect yourself against attacks.

I probably haven't had enough experience to give a proper opinion, but with my experience this year, I think it is pretty good for its current market. It plays in both corporate and medium-sized companies and corporate-level businesses. The tool is not meant for an enterprise-sized business since there are other tools like CrowdStrike and Splunk, along with more mature solutions.

I rate the tool an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
PeerSpot user
Jared Kruger - PeerSpot reviewer
Buisness Developer Manager / Sales Executive at Troye
Reseller
Oct 15, 2023
Particularly valuable for smaller and mid-sized businesses without a dedicated cybersecurity team
Pros and Cons
  • "The most valuable aspect of this solution is the managed detection and response component."
  • "More integrations with various security tools to improve data ingestion would be beneficial."

What is our primary use case?

For anyone with an IT footprint in today's cybersecurity-aware landscape, considering solutions like Arctic Wolf (MDR is vital. It is not just for giants like banks; it is particularly valuable for smaller and mid-sized businesses without a dedicated cybersecurity team. When your IT environment surpasses about 50 users, that is when the real need for MDR arises. At that point, you start generating substantial security data, and MDR allows you to tap into expert skills to protect your organization effectively.

What is most valuable?

The most valuable aspect of this solution, both for me and my clients, is the managed detection and response component, which is a core feature of the service. However, what sets it apart is the "concierge security team" that provides customers with two dedicated resources for proactive security management. This personalized support, in addition to the 24/7 SOC service, is a significant added benefit.

What needs improvement?

In terms of areas for improvement, Arctic Wolf has been responsive to client feedback. They have addressed issues such as the lack of data exploration tools in the past by implementing solutions that enable clients to better understand the platform's actions. However, to further enhance the service, more integrations with various security tools to improve data ingestion would be beneficial. It is worth noting that I haven't received any negative feedback from clients, so there aren't any specific issues they are unhappy with at the moment.

For how long have I used the solution?

I have been a reseller of Arctic Wolf Managed Detection and Response for over a year.

What do I think about the stability of the solution?

The stability of this solution is robust. It is not a physical product but rather a service, so it doesn't have the potential to go down like a tool or device might. Agents and sensors deployed have failover mechanisms in place to ensure continuous monitoring. 24/7 services are reliable and uninterrupted. In that sense, it is highly stable, given its service-oriented nature.

What do I think about the scalability of the solution?

The scalability of this solution is great. It offers user-based licensing, so if there is an increase in the number of IT users, it can easily scale accordingly. In contrast to other solutions that base pricing on data ingestion, which can be challenging as data grows, user count tends to be more predictable, making this model highly scalable. Arctic Wolf is flexible and works with clients to ensure smooth scaling. Our clients for this solution come from a range of business sizes, primarily focusing on small and medium-sized enterprises. We generally don't cater to large enterprises, but instead, our clients typically fall within the medium-sized category, with user counts ranging from 50 to around 3,000.

How are customer service and support?

Our experience with technical support from Arctic Wolf is mostly handled by the Octopus technical team, who manage support as the reseller. As a result, our role in providing technical support is limited. The concierge security team, a part of the managed detection and response solution, actively engages with clients to offer technical support, identify vulnerabilities, and conduct proactive threat hunting. This means we are less involved in the technical support aspects of the solution. I would rate Arctic Wolf's technical support as a nine out of ten. Their 24/7 availability of highly skilled security engineers who are responsive to phone calls and emails is a significant strength, with room for minor improvements but very effective overall.

How would you rate customer service and support?

Positive

How was the initial setup?

In terms of the initial setup, our involvement is limited as Octopus Deploy handles it directly with the client for compliance and confidentiality reasons. However, the feedback we have received about the setup process has been remarkably positive. It is described as a quick and relatively painless process, typically taking around 30 to 40 days. Even for clients in South Africa, the shipment of sensors and equipment arrives within a month, which speaks to the efficiency of the setup. The choice between cloud or on-premises deployment depends on the client's preference. The solution offers virtual and on-premises sensor deployment options. The setup process is streamlined, with an off-site team collaborating with the client's team. The Security Operations Center is in Germany and works closely with clients for efficient implementation. Clients often install the sensors themselves, and the process is straightforward, making implementation easy.

What's my experience with pricing, setup cost, and licensing?

Arctic Wolf's pricing seems reasonable for the value it offers, and I would rate it at a six out of ten. It is not a low-cost solution, but it provides good value for the investment.

What other advice do I have?

Given the absence of complaints from our customers regarding the solution, I would rate Arctic Wolf MDR very highly, perhaps a ten out of ten. It seems to meet our clients' needs effectively.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
PeerSpot user
Buyer's Guide
Arctic Wolf Managed Detection and Response
August 2026
Learn what your peers think about Arctic Wolf Managed Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
907,768 professionals have used our research since 2012.
reviewer2041599 - PeerSpot reviewer
Group Manager, Information Technology Security at a manufacturing company with 1,001-5,000 employees
Real User
Nov 8, 2023
Helps eliminate the workload on security teams, but the implementation process could be a little more streamlined
Pros and Cons
  • "The product provides integrations with several different SaaS applications."
  • "The implementation process could be a little more streamlined."

What is our primary use case?

We use the solution for SOC and SIEM.

How has it helped my organization?

The product has helped me eliminate the workload on my security team.

What is most valuable?

The product provides integrations with several different SaaS applications.

What needs improvement?

The implementation process could be a little more streamlined.

For how long have I used the solution?

I have been using the solution for nine months. It is a SaaS-based service.

What do I think about the stability of the solution?

I rate the tool’s stability an eight or nine out of ten. I haven’t had any issues with the platform.

What do I think about the scalability of the solution?

I rate the tool’s scalability an eight or nine out of ten. It is pretty easy to scale it.

How are customer service and support?

The service team is responsive.

How would you rate customer service and support?

Positive

How was the initial setup?

The deployment process is not highly complex but could be more streamlined and transparent.

What was our ROI?

I am beginning to see the return on investment because the tool saves me resources. On average, we get a 50% return on investment. We can't completely do away with your SOC team. However, I don't have to hire more people as I scale up. The solution’s service runs 24/7. It definitely takes a load off of me. I do not need a team 24/7.

What's my experience with pricing, setup cost, and licensing?

The pricing is fair. It is not necessarily the most cost-effective, but it is not the worst.

Which other solutions did I evaluate?

We evaluated Red Canary and Rapid7. We chose Arctic Wolf because of its pricing and capabilities.

What other advice do I have?

The industry chooses tools that have EDR. People should strongly consider buying the product. Overall, I rate the tool a seven out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2114517 - PeerSpot reviewer
Director of IT Operations at Planalytics, Inc.
User
Top 20
Aug 27, 2024
Very good support, excellent visibility, and useful security bulletins
Pros and Cons
  • "The visibility into our endpoints is huge."
  • "While it isn't a regular occurrence, there have been some gaps in response to some support questions. Questions get answered, yet there are times it takes longer than I'm comfortable with."

What is our primary use case?

We partnered with Arctic Wolf to provide us with 24/7 monitoring of our mixed environment organization. 

Arctic Wolf provides coverage for our cloud servers and services, and remote workforce endpoints. 

As a relatively small organization with a lean IT staff, we do not have the bandwidth to dedicate ourselves to security 24/7. While our team is security aware, it is not the daily responsibility of any of our team members. We realized we needed a partner that could provide SOC services for our wide-ranging data sources.

How has it helped my organization?

Arctic Wolf's insight into our environment and notification when something needs our review are key. The Security Concierge Team (along with the rest of the AW team) truly are teammates and allow us to be more security conscious without the expense of adding more internal staff. 

Our prior security vendor added little to no value to our organization. The extent of the relationship was monthly reports that we emailed and tended to be inaccurate. Arctic Wolf absolutely provides value on a regular basis with useful reports and actionable recommendations.

What is most valuable?

The visibility into our endpoints is huge. 

The data collected is provided in a view that is understandable and approachable. 

The quarterly review with our account manager and Concierge Security Team provides good information and also provides a nice overview of the Arctic Wolf roadmap. 

The Security Bulletins that Arctic Wolf provides when there is a new threat or zero-day vulnerability are extremely helpful. They explain the issue and provide understandable recommendations with actionable steps.

What needs improvement?

While it isn't a regular occurrence, there have been some gaps in response to some support questions. Questions get answered, yet there are times it takes longer than I'm comfortable with. Having worked in growing organizations, I realize this is likely to staff training/onboarding. Ultimately, my issues are addressed and resolved. Regarding additional features, I'd like to see further refinement of the dashboards. We subscribe to additional services, and the look and feel vary amongst the solutions.

For how long have I used the solution?

I've used the solution 3+ years.

What do I think about the stability of the solution?

We have had very few outages or issues related to stability in the time we've been a customer.

What do I think about the scalability of the solution?

Our footprint is relatively small, however, it appears to scale well.

How are customer service and support?

Technical support is very good trending towards excellent.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We switched from Alert Logic. We didn't find value in the service provided.

How was the initial setup?

Onboarding was straightforward, and the support team was able to address any questions or issues with had during the process in a timely fashion.

What about the implementation team?

We handled the initial setup in-house.

What was our ROI?

Our ROI is good and certainly better than with our prior vendor.

What's my experience with pricing, setup cost, and licensing?

Costs are relatively transparent. Setup/onboarding is project-driven and the team responsible for that is good. The account management/sales team understands the licensing model well and provides good recommendations for your needs.

Which other solutions did I evaluate?

We evaluated Alert Logic's new offering and decided against it based on the cost and prior experience.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Aaron Bock - PeerSpot reviewer
Managing Partner at Opkalla
Real User
Sep 1, 2022
Helps companies cut IT costs and only one person is necessary for facilitating the deployment
Pros and Cons
  • "What's valuable about Arctic Wolf AWN CyberSOC is the cost savings it provides for companies that no longer have to hire a bunch of security people and pay for a SIM."
  • "With Arctic Wolf AWN CyberSOC, they can save, in a lot of cases, hundreds of thousands of dollars by not hiring a security team."
  • "I would like to see them build the ability to co-sell an EDR platform, manage an EDR or manage the actual response, potentially from the issues that are coming up from the security risks."
  • "However, their new licensing model has room for improvement because of the limited user SKU."

How has it helped my organization?

I've had a lot of customers use Arctic Wolf AWN CyberSOC and love it. With Arctic Wolf AWN CyberSOC, they can save, in a lot of cases, hundreds of thousands of dollars by not hiring a security team.

What is most valuable?

What's valuable about Arctic Wolf AWN CyberSOC is the cost savings it provides for companies that no longer have to hire a bunch of security people and pay for a SIM.

Overall, it's a pretty good product.

What needs improvement?

We don't have many customers who complain about Arctic Wolf AWN CyberSOC. However, their new licensing model has room for improvement because of the limited user SKU. Many users do not necessarily use telemetry so they should not be charged for it.

I would like to see them build the ability to co-sell an EDR platform, manage an EDR or manage the actual response, potentially from the issues that are coming up from the security risks.

For how long have I used the solution?

I have been using Arctic Wolf AWN CyberSOC for two to three years. 

What do I think about the stability of the solution?

Arctic Wolf AWN CyberSOC is very stable. 

What do I think about the scalability of the solution?

Arctic Wolf AWN CyberSOC scales well unless you have a lot of locations and you need a lot of physical sensors. This is because Arctic Wolf AWN CyberSOC is hybrid and organizations have to put sensors on big telemetry sites. If you have a lot of locations, then the costs can be kind of high. But it's scalable because they don't charge for ingestion and things like that.

We currently have some 20 customers using it. Specifically, within organizations, IT departments work with Arctic Wolf AWN CyberSOC, in addition to CIOs, CISOs, directors of IT, and CFOs.

How are customer service and support?

Our customers are happy with Arctic Wolf's tech support. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Many of our customers did not use a different solution before deploying Arctic Wolf AWN CyberSOC.  

How was the initial setup?

The initial setup is very easy. Their team helps you with it. 

Deployment usually takes about a week or two or a total of about 10 to 15 hours depending on the environment. 

It's one of the fastest growing technologies and services out there in the space. We will continue to use it.

What about the implementation team?

You just need one person from your team to facilitate deployment, but Arctic Wolf will set it up for you.

What's my experience with pricing, setup cost, and licensing?

Arctic Wolf AWN CyberSOC is not software, it's a service. How much it costs will depend on the number of users and the amount of data and servers. The price varies. For example, a 100-person shop might cost 40,000 a year.

What other advice do I have?

The advice I would give to others looking into implementing this service is to strongly consider deploying with a MDR provider instead of in-house.

Overall, I would give Arctic Wolf AWN CyberSOC a nine out of 10. It is a good product. 

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2352813 - PeerSpot reviewer
Service Security Analyst at a government with 11-50 employees
Real User
Mar 11, 2024
Provides visibility into the environment, responds to threats quickly, and the documentation is pretty good
Pros and Cons
  • "The agents give pretty good visibility into what is happening at the endpoint."
  • "It will be helpful if the dashboard is more granular."

What is our primary use case?

The solution helps monitor our endpoints and network traffic. It alerts us whenever something's going down. It has been pretty helpful.

How has it helped my organization?

The product helps with visibility.

What is most valuable?

The agents that are installed help detect threats. The agents give pretty good visibility into what is happening at the endpoint. The response to threats is pretty quick. Depending on the severity, the team sends an email or gives us a direct call. The weekly and monthly reports through the dashboard are helpful.

What needs improvement?

It will be helpful if the dashboard is more granular. The vendor must allow us to see what they see on their end.

For how long have I used the solution?

I have been using the solution for three months.

What do I think about the stability of the solution?

I rate the tool’s stability a nine out of ten. The product hasn’t gone down since we have had it.

What do I think about the scalability of the solution?

We have around 1000 users.

How are customer service and support?

We have 24/7 support. It’s like an extension of the department. The technical support is pretty helpful. Someone's always there to help us.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is pretty straightforward. The documentation is pretty good. I rate the ease of setup an eight out of ten. It is a SaaS solution. Two network engineers can deploy the product. We have network engineers and analysts on our team. We make sure the agents are not degraded. Most of the maintenance is done by the vendor.

What's my experience with pricing, setup cost, and licensing?

The pricing is pretty competitive.

What other advice do I have?

I will recommend the solution to others. It provides more visibility into the environment. If the staff is pretty short-handed, it helps out. Overall, I rate the product a nine out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Vice President of Technology at Hallmark Building Supplies, Inc.
Real User
Apr 2, 2023
Good security response management, helpful technical support, and competitive pricing
Pros and Cons
  • "We can effectively manage the massive amounts of security data that we receive from various sources such as firewalls, switches, endpoints, and other log sources."
  • "I can't think of any specific features that they need to add at the moment. As long as they continue to develop new solutions to support different operating systems and technologies, we are satisfied with their service. We appreciate the effort they put into adding new features and functionality to their service and believe they are doing a great job in providing us with all the necessary tools and resources to stay secure."

What is our primary use case?

They function as our CISO, providing guidance and assistance in establishing our security practices as our Chief Security Officer.

How has it helped my organization?

They have been instrumental in setting up our security response, managing our firewalls, switches, cloud environments, and endpoints, and guiding us to ensure our users' safety with login and other security practices. Their expertise and support make them a valuable resource for all things related to security.

What is most valuable?

We can effectively manage the massive amounts of security data that we receive from various sources such as firewalls, switches, endpoints, and other log sources. They help us filter out the noise and extract meaningful insights that lead us to the necessary action points.

What needs improvement?

In the security industry, there is always room for improvement, and Arctic Wolf ensures that we are continuously updated on areas that require improvement.

They keep us informed about the latest security developments and suggest ways to enhance our security posture. 

It's challenging to identify areas where they could improve as they already do an excellent job of staying up to date with the latest security trends. However, the security landscape is constantly evolving, requiring significant energy and effort to keep pace with.

I can't think of any specific features that they need to add at the moment. As long as they continue to develop new solutions to support different operating systems and technologies, we are satisfied with their service. 

We appreciate the effort they put into adding new features and functionality to their service and believe they are doing a great job in providing us with all the necessary tools and resources to stay secure.

For how long have I used the solution?

We are in our third year of using Artic Wolf Managed Detection and Response.

It is a Software as a Service (SaaS) that is constantly updated, and there is no versioning since it is the only solution we use.

What do I think about the stability of the solution?

I would rate the stability of Artice Wolf Managed Detection and Response a nine out of ten.

What do I think about the scalability of the solution?

I would rate the scalability a nine out of ten. I never give anything a ten.

Their solution helps protect our entire company, which includes about 130 employees. However, only three of us directly interact with Arctic Wolf.

Although the IT team may expand in the future, the use of Arctic Wolf's solution is widespread across our company and protects everyone. 

While everyone in the company benefits from the protection it provides, only the three of us directly communicate with Arctic Wolf. 

However, the rest of the company uses the software and the protection without necessarily knowing it.

How are customer service and support?

I would rate the technical support a nine out of ten.

Which solution did I use previously and why did I switch?

We use both Artic Wolf Managed Detection and Response and Artic Wolf Managed Risk.

I have been using Artic Wolf Managed Risk for a little over a year.

We are working with the latest version.

We offer two products: one specifically designed for managing network security, and the other for providing training to your associates.

How was the initial setup?

The initial setup was very straightforward.

They provided us with a seamless onboarding experience, and their team guided us through the process of setting up both cloud and on-premise equipment. 

They ensured that we had everything set up correctly and even conducted tests to confirm its efficacy. 

Their onboarding team did an excellent job of helping us move the project forward from its initial stages to where we are now in our security journey.

What was our ROI?

Calculating the return on investment can be challenging in this type of scenario because ideally, you don't want to experience any security incidents that would require the use of the service. It's similar to insurance in that it's something you pay for but hope to never have to use.

What's my experience with pricing, setup cost, and licensing?

I find their pricing to be reasonable and competitive. While it may not be the cheapest option available, it is fair when compared to other solutions in the market.

What other advice do I have?

Arctic Wolf is a partner of ours.

I highly recommend Arctic Wolf if you are searching for a partner to assist you in securing your network and if your company is not large enough to afford a full-time CISO on its own.

I would rate Arctic Wolf Managed Detection and Response a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2132559 - PeerSpot reviewer
CIO at Professional Services Organization in Washington DC Area
User
Mar 21, 2023
Accessible with good reporting and helpful quarterly meetings
Pros and Cons
  • "Having quarterly meetings with the team to review the last 90 days and determine what if any changes need to be made."
  • "We need an easier way to audit and act on agents."

What is our primary use case?

We use ArcticWolf as our security operations center (SOC) and managed detect and response (MDR) provider. The primary use case for us was to augment our existing team with additional resources. We did not have the tools or skillsets available, and outsourcing to someone who does makes the most sense. 

Our current environment consists of offices/staff around the globe, a few servers, lots of cloud applications, and devices always on the move. We rely heavily on Office 365 and various communication tools to keep our staff connected.

How has it helped my organization?

Before bringing on ArcticWolf, it was a guessing game as to the risks we were actually facing. Everyone knows it's a matter of when - not if. However, you can never be sure how it's going to happen. With a small internal team, you cannot be everywhere. We knew we had to do something. 

Bringing on AW allowed us to:

  • Augment our existing staff without having to hire internally
  • Gain insight into areas of the environment we didn't have before
  • Identify areas for improvement in our processes/cybersecurity
  • Add to our toolkit without having to acquire/support the technology (e.g. SIEM)
  • Reduced our risk

What is most valuable?

The most valuable features for our organization and team are:

  • System Information and Event Manager (SIEM) - we didn't have to research, select, or implement this unwieldy technology. 
  • Security Operations Center (SOC) (helps us not to have to hire)
  • Having quarterly meetings with the team to review the last 90 days and determine what if any changes need to be made
  • Having regular reporting for the various systems that integrate with ArcticWolf systems
  • Easily accessible/digestible dashboard that displays all of there pertinent information

What needs improvement?

While we truly enjoy working with ArcticWolf and have gained peace of mind from doing so, as with anything, there can be some improvements, such as:

  • An easier way to audit and act on agents
  • You shouldn't have to pay extra to view the logs you're storing (we can raise tickets to have them reviewed. That said, we would like both options without paying extra)
  • Quicker responses when questions are asked
  • Additional help with digging into alerts to resolve them

For how long have I used the solution?

I've used the solution for two years.

What do I think about the stability of the solution?

It's stable. We haven't had any issues. 

What do I think about the scalability of the solution?

The solution will scale as it's up to them to make sure they have the resources available. Keep in mind, since you need resources to "own" this part of your IT, you may need to scale as well (albeit on a much smaller scale).

How are customer service and support?

We haven't had to work with technical support very much (a testament to the product). However, when we have, it's been good, responsive service. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We did not have another solution in place. 

How was the initial setup?

It was straightforward to set up. That said, we had someone who knew networking and was diligent in making sure things were done properly. Also, they knew enough to ask the right questions during deployment. 

What about the implementation team?

We handled the setup in-house.

What was our ROI?

It is hard to calculate the ROI when dealing with most cyber security items as if threats don't get you, you don't really know about them. They've been there when we needed them. As far as I'm concerned, this is money well spent. Plus, we didn't have to go out and get our own SIEM and find someone to manage it. 

What's my experience with pricing, setup cost, and licensing?

They've been pretty reasonable about pricing/licensing. I do advise, like any project, that new companies assign a dedicated resource and make sure to properly plan the deployment. There is a lot to do, and they cannot do it all for you. 

Which other solutions did I evaluate?

We looked at various SIEM solutions (e.g., Splunk) and a Crowdstrike partner. 

What other advice do I have?

This is not a set-and-forget solution. You do need to make sure to pay attention to alerts and reports, and you will need to adjust things as you go along. They are an extension of your team, not one that stays on an island. 

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2125125 - PeerSpot reviewer
Director, IT Systems and Security at Union Mutual Fire Insurance Company
User
Mar 13, 2023
Great support, detailed reports, and excellent real-time monitoring
Pros and Cons
  • "This service makes answering audits much easier since it covers so many security best practices."
  • "I would actually be interested in having fewer features at a lower price."

What is our primary use case?

Having Arctic Wolf sensors and the stand-alone traffic-mirroring appliance within our network provides secure copies of critical logs as well as rapid analysis and response when there is unusual behavior within our network. 

This service is our primary anomaly detection tool. In concert with our endpoint security and our frequent vulnerability scans, Arctic Wolf provides an active review of threat signatures and unexpected events that allows our operations and security team to sleep better at night. 

How has it helped my organization?

This service makes answering audits much easier since it covers so many security best practices. Therefore, any of the popular frameworks are covered by this managed detection and response service.

The real-time monitoring is very real-time. We usually get an alert from Arctic Wolf just as someone on our team says 'oops, I locked my admin account' or 'I just created the new admin account on our device'.

The customer service is excellent. They offer very quick responses to active tickets, and we get great responses from the account reps as well. In a world with thousands of startup security vendors offering various flavors of 'AI-enhanced' snake oil, Arctic Wolf provides an obvious security service well. 

What is most valuable?

The quarterly reviews provide an excellent cadence to help organize our security priorities and help set thresholds to improve our signal/noise ratio, as well as provide a quick overview of the entire threat landscape to our full team. 

The default emailed reports are great for building our audit defense and helping us to meet the requirements of both state and independent auditors. 

The ticketing system is adequate, although the formatting of the auto-generated ticket emails could be updated to a more modern and cleaner style. 

What needs improvement?

This product is very feature-rich. I would actually be interested in having fewer features at a lower price. The problem is that the active responses require a high level of technical staffing and I expect it's hard to scale that down.

I am also interested in the new features which allow the customer access to the raw log repositories and the analysis tools provided by AW, however, I cannot justify the expense or time of adding those features at this time. Overall it is a very appropriately sized product that does not try to do everything. 

For how long have I used the solution?

My company has been using this for several years. However, I have only been here using it for one year. 

What do I think about the stability of the solution?

The solution is very stable. 

What do I think about the scalability of the solution?

It's great for a company our size (~100 employees in total, some on-site IT services, and ~5 network/systems/helpdesk staff). 

How are customer service and support?

Customer support and service are basically what you are paying for. The technical pieces of the solution are great, however, the ticket response and the quarterly reviews are where the real value is. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I am not sure if something was used previously as I've only been in this role with this company for one year. 

How was the initial setup?

I wasn't part of the setup. The maintenance and reconfiguration (from in-line to mirrored traffic capture of the hardware device) have been simple and well-supported. 

What was our ROI?

We would require around 0.75 technical FTE to do the work of this solution, which we could not do for the price. 

What's my experience with pricing, setup cost, and licensing?

In general, it's worth it. If you have any regulatory compliance requirements or other external requirements on your information security approach and you do not have a massive internal team to handle log analysis and similar tasks, this is a great solution. 

Which other solutions did I evaluate?

I did not choose this solution. I came into the company and this product was already here. I will say that I have removed a number of products from our vendor list during my first year, and have not considered removing Arctic Wolf - despite it being one of our costlier contracts. 

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2119422 - PeerSpot reviewer
Head of Cyber Security at ISDA
User
Mar 6, 2023
Reduces workloads, offers exceptional customer service, and provides suggestions for improved security
Pros and Cons
  • "Arctic Wolf is laser-focused on providing top-notch customer service."
  • "It would be great if the whole process of determining vendor risk could be simplified by Arctic Wolf."

What is our primary use case?

For a company with one sole dedicated cybersecurity professional, Arctic Wolf provides invaluable managed detection and response plus cyber awareness services with a strong focus on customer support.  

I've worked at other companies and have experience dealing with other vendors.  Unlike those other vendors, Arctic Wolf engineers go above and beyond what is expected of them, from generating custom reports to providing guidance on a variety of security issues.  

I know of three other firms who've migrated their managed detection and response from other vendors to Arctic Wolf and are really happy with Arctic Wolf.

How has it helped my organization?

Arctic Wolf unburdened me from day-to-day alert monitoring.  

In addition to that, the regularly scheduled quarterly update meetings are invaluable. They provide a good review of events at my firm, provide suggestions for improving security and alert me of the latest trends and attack vectors and how best to mitigate them. This allowed me to focus on building and improving our cyber security program rather than spend my time troubleshooting endless alerts and ticket hunting. Arctic Wolf is also a key pillar in our risk reduction strategy.

What is most valuable?

Arctic Wolf is laser-focused on providing top-notch customer service. For a company with one dedicated cybersecurity professional, Arctic Wolf provides invaluable managed detection and response plus cyber awareness services. 

They have a strong focus on customer support. I've worked at other companies and have experience dealing with other vendors. Unlike those other vendors, Arctic Wolf engineers go above and beyond what is expected of them, from generating custom reports to providing guidance on various security issues.

What needs improvement?

Third-party vendor management is an ever-increasing risk vector. We hate sending these out, and we hate when other vendors send them to us. Companies spend a lot of time and effort reaching out to their vendors with time-consuming questionnaires and endless follow-ups. For a small company like ours, it's a challenge dedicating resources to ensure this gets done. It would be great if that burden could be offloaded and/or the whole process of determining vendor risk could be simplified by Arctic Wolf.

For how long have I used the solution?

I've used the solution for four years.

Which solution did I use previously and why did I switch?

We previously dealt with Secureworks.

What's my experience with pricing, setup cost, and licensing?

I would advise others to negotiate and don't underestimate the quality of support, especially for smaller teams.

Which other solutions did I evaluate?

We also evaluated eSentire.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Arctic Wolf Managed Detection and Response Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2026
Buyer's Guide
Download our free Arctic Wolf Managed Detection and Response Report and get advice and tips from experienced pros sharing their opinions.