We use Binary Defense to secure our environment against cyber threats. The solution provides 24/7 live monitoring. The solution currently covers around 3,000 endpoints.
IT VP at a manufacturing company with 1,001-5,000 employees
It saves us a lot of time because we're not dealing with false alarms
Pros and Cons
- "The most valuable part of Binary Defense is its team of cybersecurity analysts. Their analysts filter out the noise and only forward the critical threats that require a response instead of false positives."
- "We should be able to isolate devices faster. They should shorten the time between clicking on a device to contain it and carrying out the action. That would be a welcome improvement."
What is our primary use case?
How has it helped my organization?
We take great pride in our brand, and Binary Defense helps us protect it. If we had a data breach, it would significantly affect our brand and ultimately our revenue.
Binary Defense helped us reduce our alerts. In the past, the tools we used were sending us thousands of extra alerts a month. We had to comb through those alerts, and 99 percent were false positives. Binary Defense is much smarter. It reduces the noise and our fatigue. Out of the thousands of alerts, there is always a chance that one of them is a genuine threat that you need to act on. You might miss that if you have all this other noise.
It saved us a lot of time because we're not dealing with all those false alarms. Binary Defense provides round-the-clock cybersecurity analysis. I can't imagine how much money we'd spend staffing an in-house team to monitor 24/7 365 days a year, covering holidays, vacation rotations, etc.
It's hard to quantify how many hours we save annually, but I know roughly how much time we spent responding to false alarms. It's around 500 hours annually.
The solution helped us improve our cybersecurity posture, especially in the detection and containment aspect. If a user triggers an alert, an employee in our organization can immediately isolate their computer.
What is most valuable?
The most valuable part of Binary Defense is its team of cybersecurity analysts. Their analysts filter out the noise and only forward the critical threats that require a response instead of false positives.
Binary Defense is somewhat customizable. We can do some whitelisting and tell them to ignore some alerts that are always false positives. They're flexible and can adjust their processes.
Their MDR tool runs across all our endpoints. Within that Open XDR strategy, we can ingest those alerts in various ways, but we tend to do things the old-fashioned way. However, we could bring that data into a SIEM if we wanted to. We haven't taken advantage of that feature, but we will soon. It would limit our ability to move forward with them if they didn't have that option.
What needs improvement?
We should be able to isolate devices faster. They should shorten the time between clicking on a device to contain it and carrying out the action. That would be a welcome improvement.
Buyer's Guide
Binary Defense MDR
June 2025

Learn what your peers think about Binary Defense MDR. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
859,687 professionals have used our research since 2012.
For how long have I used the solution?
We have used Binary Defense since January 2020, so it has been three years.
What do I think about the stability of the solution?
Binary Defense is highly stable. I can't think of a time when the cloud or management interface had gone down.
What do I think about the scalability of the solution?
Binary Defense scaled pretty well. We had a significant surge in our business a couple of years ago, and we had no problem scaling when we added tons of new endpoints and facilities.
How are customer service and support?
Binary Defense is in our backyard. They're based in Ohio, so we aren't limited to interacting with them through chatbots, and they don't make us do everything through a tech support ticket. We can call them, and they'll visit us on-site. They have periodic reviews to ensure they're delivering value. It feels like a real partnership instead of something transactional.
They become an extension of your team through their 24/7 SOC. The tool plugs into your environment, and you're getting alerts. It feels like they're in the trenches with you fighting the bad actors.
How was the initial setup?
The deployment was straightforward. They provided us with the agent and instructions on how to deploy it using our existing tools. It was a few days of work, but we spread it out over a couple of weeks.
Binary Defense helped us throughout the process. It was painless. We didn't need much help, but they were there to ensure the agents were correctly deployed and feeding data to the cloud. They also provided some training. It was a pleasant, positive engagement overall. Three people were involved: a project manager, a cybersecurity analyst, and a network administrator to deploy the agent.
After deployment, Binary Defense requires very little maintenance. The only thing we need to do on our end is update the agent when a new version is released.
What was our ROI?
The easy ROI for us to calculate is the savings we realized by not having to hire staff to monitor 24/7. We would need at least four full-time staff to cover that. That's around $300,000 annually. At the same time, it's hard to put a price on the cost of a data breach or ransomware incident that could potentially cost millions.
What's my experience with pricing, setup cost, and licensing?
Binary Defense charges by the endpoint, and the price was cheaper than competing products. Their pricing model is fair. If you exceed the number of licensed endpoints, they will let you upgrade without charging you a penalty.
If you're worried about the cost, I would recommend checking Binary Defense's prices. It's reasonable compared to what the other solutions are charging. It's hard to understand the value without trying an MDR solution. It's like not having a lock on your front door or your house. It's just necessary.
Which other solutions did I evaluate?
We also looked at solutions by AT&T and Cisco. We chose Binary Defense because it's a managed solution with 24/7 monitoring. Many other vendors only provide you with the product but don't manage it. It's only a tool that you install. You need to configure the solution to filter out the white noise. That was the deciding factor.
The price was another factor. Binary Defense brings good value. You get alerts about attacks minutes after they occur. I don't think the difference in response times between Binary Defense and competing solutions was huge. I don't remember precisely, but I believe Binary Defense was faster or at least competitive with the other products.
What other advice do I have?
I rate Binary Defense MDR a ten out of ten. If you're considering Binary Defense, I recommend looking at your cybersecurity program and deciding whether 24/7 endpoint monitoring will help you meet your objectives. Most people will find that Binary Defense fills the gaps in their cybersecurity and offers a better value than competing solutions.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.

Head of Cybersecurity at a sports company with 501-1,000 employees
Our security alerts have been reduced significantly due to the higher level of analysis we now receive
Pros and Cons
- "The biggest aspect for us is that they are able to conform to our environment and utilize our tools. That way, we still maintain ownership of all the data and access to the applications, and we never lose control of the ability to run the solution ourselves if we need to."
- "It's sometimes difficult to know when to engage Binary Defense or TrustedSec, their sister company. TrustedSec is more focused on offensive security, as opposed to the defensive security that the MDR solution provides. It would be awesome if there were a better bridge between that relationship for when we need to get more proactive services or when we need to do a penetration test."
What is our primary use case?
We're using it for dark web monitoring and alerting for our executive staff and our organization, and we're also utilizing them to actually manage and run our security operations center.
How has it helped my organization?
So far, with Binary Defense MDR, we've gotten a lot fewer false positives. And when we actually have an issue and go to them for additional analysis, we're receiving quality. They're not just kicking it back to us for us to figure out.
It has also helped reduce our security alerts by between 30 and 40 percent, due to the analysis being at a higher level. Even if there is an alert, the work that has already been done is reducing what we have to do after the fact. We get a very clear picture of what's going on and some options to remediate.
Overall, Binary Defense has been a net positive on our security posture. And even though we're still working through tuning, on the whole, it has helped reduce many tasks for us, things that we no longer have to directly manage. The amount of time they save us is hard to quantify, as it depends on what is going on, but I would estimate it at 20 to 30 percent.
What is most valuable?
The biggest aspect for us is that they are able to conform to our environment and utilize our tools. That way, we still maintain ownership of all the data and access to the applications, and we never lose control of the ability to run the solution ourselves if we need to.
They're also very flexible in terms of what they're willing to bring to the table as well as having their own solutions that they provide if you don't have anything that you're using yourself. In terms of threat intelligence, as we make recommendations and suggestions to them for modifications to the reports so that they work better in our environment, they're working on putting them into place. And they're giving us feedback on what they can and can't do, meaning they're being very transparent.
Binary Defense has also been great, so far, with integrating all the different things that we're trying to put together. They're also even helping guide us regarding some other tools that we're looking to implement. And those tools will have additional integrations into our main SIEM platform that we're using.
They definitely have the knowledge and the insight to accomplish an open XDR strategy for securing infrastructure. With some of their own agents and tools that they are able to deploy into the environment, they're able to determine what's happening and put into effect the kill chain at the earliest possible point to help protect the overall network.
What needs improvement?
It's sometimes difficult to know when to engage Binary Defense or TrustedSec, their sister company. TrustedSec is more focused on offensive security, as opposed to the defensive security that the MDR solution provides. It would be awesome if there were a better bridge between that relationship for when we need to get more proactive services or when we need to do a penetration test. If that entire account team was managed together, that might make it a little bit easier. It's because they are two separate companies that there's any difficulty whatsoever.
For how long have I used the solution?
I've been using Binary Defense MDR for about six months, including their threat intelligence group.
What do I think about the stability of the solution?
The stability is a 10 out of 10.
What do I think about the scalability of the solution?
The scalability is a nine out of 10. The service is protecting over 1,800 systems and users.
How are customer service and support?
The tech support is fine. They are responsive and have been able to address the issues that we had.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used Quadrant Security as an MDR/SOC provider. We're currently in the process of migrating away from them.
We switched because we had too many false alerts. Also, when we would ask for more detail or analysis to be conducted on an alert, it was sent back to us with no additional information. When we had incidents that we needed to investigate, they would have to reload data into their logging solution, which led to delays and frustration in trying to get the information that we needed to be able to act on an incident.
How was the initial setup?
It's a managed service provider model. They utilize our tool sets to handle all of the work for us.
The initial deployment was only as complex as we made it. From their side, it was very straightforward. They have been very clear on what they need from us. And when we have questions, they are responsive and help us address them.
Maintenance on our side is minimal. It's mostly a matter of providing them with more data for the various systems that they're watching.
What about the implementation team?
We worked with Binary Defense to implement the system and that experience has been very positive. From our side, about four people were involved, and on their side, the number of people involved that I'm aware of was six.
What was our ROI?
We haven't seen ROI yet, but only because of the cost that we're still incurring to keep the other solution in place. From a time perspective, we've seen a return on investment, but not yet from a financial perspective. We should see that change in the next couple of months.
What's my experience with pricing, setup cost, and licensing?
The pricing isn't that bad, it's very competitive. I don't feel that it's over-priced and I don't feel that it's under-priced.
I have regular meetings with their sales team about any offerings that might benefit us. But if nothing is going on, they don't bother me.
Which other solutions did I evaluate?
We looked at Arctic Wolf, CrowdStrike, and a few others. The big issue that we faced was that everybody wanted us to use their tools, while we really wanted to have complete control of our data so that in the event that it wasn't working out with the solution provider, we would still be able to maintain our data and find somebody else to manage it for us.
Binary Defense is also very reactive and timely when it comes to response times. If an alert fires, they perform an analysis very quickly and come to a conclusion about whether to escalate or not very, very quickly.
What other advice do I have?
If you're looking at purchasing Binary Defense but concerned about the cost, my advice would be to consider the fact that the leadership at Binary Defense is committed to making sure that the teams that are working on all of their accounts are well-trained and that they understand the fundamental principles of the task at hand. They continue to invest in their teams to make sure that their product is more the team, rather than just the tooling that is used by the teams. You're not really purchasing a tool as much as you're purchasing a real security team.
Reach out to Binary Defense and explain what you're trying to solve. And, if you have a toolset in mind, let them know what you're coming to the table with. And if you want to change that, Binary Defense will help you do it. They'll also provide you with recommendations on other directions that you could go. Go in with an open mind and explain what your use cases are and they'll be more than happy to help create a solution.
We're still at the stage of getting our own tooling into a better place, but everything that we've dealt with them on has been very transparent and reactive. They come to us with suggestions for how we can do things better. We're still early enough in the relationship that everything is proactive. We're getting what we're looking for and the help that we need.
I really struggle to come up with something where they could do better. They're doing really well for everything that they're doing for us. I would typically have a list of issues with a given vendor, but I don't really have that list with Binary Defense. They've been extremely responsive and supportive in helping us build what we're trying to build. This has been one of the better vendor engagements that I've ever had. They even went out and partnered with our SIEM solution so they could get better access to and understanding of the product.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Buyer's Guide
Binary Defense MDR
June 2025

Learn what your peers think about Binary Defense MDR. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
859,687 professionals have used our research since 2012.
CIO at Anaqua
Fully dedicated team looking at security saves us time and, potentially, wins business for us
Pros and Cons
- "The customization has been the most valuable aspect and was really the reason we ended up selecting Binary Defense. They worked with us to provide exactly the level of support, features, response, and collaboration we needed."
- "We found that an earlier version of the agent had high memory usage and that was a bit concerning, but we raised the concern with their support team and they immediately replied that they had noticed the same thing and had a candidate fix already available... it totally fixed the issue."
What is our primary use case?
We're using it as a security operations center. Our main product is an Intellectual Asset Management system hosted in a SaaS environment. We have two hosting facilities, one at IBM Cloud and one at Microsoft Azure. We wanted an external provider to watch those servers for any indications of compromise and to immediately intervene if there was anything of concern.
As we have been growing, we wanted to ensure there are extra measures put in place, and therefore involved an organization that had the security knowledge and the capabilities to work with us in a customized fashion.
How has it helped my organization?
When our clients talk with us about storing their data in our servers, because ours is a SaaS model, they need validation that it is secure. Having this outsourced SOC, Binary Defense, ensures that we can look our clients in the eye and say, "Your data is secure. It is being monitored 24/7/365 by a dedicated team of security professionals." That's huge. We're buying peace of mind and the ability to tell our clients that their data is secure (and we know it's secure because we have a team of experts watching it all the time).
It has certainly improved our security posture. We were a secure organization six months ago but even more so now because of our relationship with Binary Defense. They give us that second set of detection and are looking at everything because that's their job. They're not doing security in addition to other things. They're doing security, period. That laser focus on security adds to our internal security posture. It's now the sum total of the experts within our organization plus Binary Defense.
Another benefit has been the time savings in client security assessments. When we tell a prospect or a client that we're using a managed, outsourced SOC, that saves the back-and-forth of having to justify our internal security operations. They know there's a fully dedicated team looking at security, and that saves us time and, potentially, wins us business that we might not have been able to previously.
What is most valuable?
The customization has been the most valuable aspect and was really the reason we ended up selecting Binary Defense. They worked with us to provide exactly the level of support, features, response, and collaboration we needed. We didn't have to force-fit anything. They were able to customize their offerings specifically for our needs.
The most important thing for us is that, internally, Binary Defense has a toolbox they can use in any way needed and they were able to layer onto the systems we already had in place. They didn't come in and say, "Oh, you have to scrap everything that you already have." Instead, what they said was, "Great, here's what you have and here's what we're going to layer on. We'll combine it all together and give you a unified impression." That was really important to us. We already had a fair number of security tools in place that we like and trust. The fact that Binary Defense could work with them and layer on top of them was huge.
I have been very impressed with the level of partnership, and I don't use that word lightly. They really are a partner. They're not a vendor, they're a partner. Their staff has just been superlative.
Another valuable aspect is that they have an excellent ability to integrate with other applications and tools. We have all the external servers that support our SaaS operations already complete and we're now rolling it out on internal servers, like engineering and development and support servers. I don't think we've had a single issue with compatibility. It just drops in. It's seamless. We don't need to reboot the system when we deploy the agent. The integration is outstanding.
They also bring a solid XDR strategy to the table. Another important aspect of our partnership is that we’re putting our trust in Binary Defense. I trust them, and that's really what this whole thing is based on. They need to earn that trust—and they have. In terms of the threat landscape and looking at issues that come up, they're very solid.
When implementing a system like this, one would expect false positives. It's going to raise issues from normal business operations that are actually fine but just look bad. There are two things to note here. First, the rate of false positives has been quite low and has actually been decreasing over time as Binary Defense learns our operations, which is great. Second, and more importantly, the things they were raising were completely reasonable. For example, we added an administrator to the server and received an alert, which was great, because if a bad actor were to get into the system, it would be detected.
The alerts we've received have been spot-on and we have had zero real alerts, which is a good thing.
For how long have I used the solution?
We have been using Binary Defense MDR for about six months.
What do I think about the stability of the solution?
The stability of the solution has been perfect, other than one issue where an agent had high memory usage, but that has not come back. It's been reliable.
What do I think about the scalability of the solution?
The scalability is fine. We're licensed for 1,400 seats and we're using about three-quarters of them so far, and we're continuing to roll out. There have been no issues with scalability.
I can't speak to a scenario where you're deploying higher amounts of seats, but certainly, in the hundreds or low thousands, we've had no issues at all.
How are customer service and support?
The technical support is excellent. We found that an earlier version of the agent had high memory usage and that was a bit concerning, but we raised the concern with their support team and they immediately replied that they had noticed the same thing and had a candidate fix already available. Other clients were already testing the fix and found it resolved the issue, and they asked if we would like to test it as well. We said yes and deployed it, and it totally fixed the issue. It then rolled out automatically to the rest of our suite with the next available update. It was seamless.
All software has issues and it's a question of how the provider addresses those issues, and Binary Defense was outstanding.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
This is our first MDR SOC.
One of the reasons we considered Binary Defense MDR in the first place is that we have a several-year relationship with their sister company, TrustedSec. They do things like penetration tests and we have them on retainer for incident response. We envisioned that it would be—and it has actually been—a benefit having our MDR provider related to our security consultants. The relationship between Binary Defense and TrustedSec has been valuable for us.
How was the initial setup?
Our deployment model for the solution is all Azure and IBM Cloud and we use an IaaS model. We have hundreds of virtual machines and we have rolled out the agent to each of them. We're fully a Windows organization, so we've only deployed the Windows agent. We've deployed it to virtual machines in Azure, Azure Government, and IBM Cloud, in various locations around the world.
I directed the team that did the initial setup. It was very straightforward. You run an installer and it's there and you don't have to reboot. It just works. I did this as part of the proof of concept and you're able to see it reporting into the master console within a few minutes. It's very easy. It's very well documented.
The solution doesn't require any active maintenance. It automatically updates. Every month or so I receive an email that says, "There's a new version of the agent. Here are the new features. Yours will auto-update within the next couple of weeks unless you've disabled auto-update." It's basically set-and-forget.
What about the implementation team?
We received the information from Binary Defense but we did the work ourselves, but we did work with them to ensure we were going down the right path. They conducted checks on everything and reported back to us on effectiveness. We validated the approach with the team, but we did the work.
We had two people working on the implementation, but it wasn't full-time. We used an automated tool to push it out. We didn't deploy to hundreds of VMs manually.
What was our ROI?
We haven't yet seen ROI because we haven't had an issue, but these expenditures were approved by our board. It is known that this is money needed to protect the organization and reliably stay in business.
There is a "peace of mind ROI", that can't be quantified. Do I think we're getting good value for the money? Yes, I do.
What's my experience with pricing, setup cost, and licensing?
The pricing is on target. Working with their sales team on pricing negotiations was a pleasant process. They were very respectful of the constraints we had and I feel that we're paying a fair price.
If you're considering a managed detection and response solution but the cost is an issue, you can pay a fixed amount now or, potentially, a catastrophically larger amount later. There is a saying that there are two types of people in the world: those who have had a hard drive failure and those who will have a hard drive failure. The same is true in cybersecurity. It's not a question of if, but a question of when a security issue will arise. It is incumbent on every IT professional to have as many arrows in their quiver as possible for handling those situations. Ideally, we prevent it from happening, but if something gets through, we must be able to detect it and respond.
What you're buying is peace of mind. You know that even at 3:00 AM on Christmas Eve if something happens, it's going to be taken care of quickly, and that counts for a lot.
Which other solutions did I evaluate?
We evaluated other options but the key reason we chose Binary Defense was the customization. The MDR industry is fairly robust at this point and everyone has pretty similar capabilities. In fact, some of the capabilities of their competitors were actually a little ahead of what Binary Defense has, but the customization and the ability to work with us to fit into our existing environment was what catapulted the company to the top of the pack.
Most, if not all, of the providers we looked at, would work and have the base features we needed, but for our particular environment and the customizations we needed, Binary Defense was by far the best.
What other advice do I have?
We still monitor internally so it hasn't reduced our workload, but it has made us more efficient. It's like putting on a pair of glasses. The world is sharper as a result of the information they're providing us.
With the last six months under our belt, I've been very impressed with the operations, both from a technical perspective as well as from management and executive perspectives.
The most important advice I can give is to make sure you're comfortable with the company and the staff. All of the products that Binary Defense competes with basically do the same thing. They're all good and they're all going to help you. So the top consideration is whether you are comfortable with the people you're interacting with.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
System Administrator at a recreational facilities/services company with 51-200 employees
It monitors the latest threats and gives me a broader perspective of what's hitting us
Pros and Cons
- "Binary Defense's most valuable feature is the 24/7 monitoring and threat hunting. Their team checks the latest breaches and how they're done."
- "I would like to get more reports from Binary Defense about what they're blocking."
What is our primary use case?
The Binary Defense MDR agent is deployed to all our endpoints. They monitor our environment and contact us if anything unusual happens. We haven't had anything yet, but the extra layer of protection helps everyone, especially me, sleep at night knowing that they're checking in 24/7.
How has it helped my organization?
We already have Microsoft security, which does a great job, but Binary Defense provides an additional layer of protection. I like having a third party in case something happens. I can use it as a framework to base my other decisions on. I can see how others reacted when hit with the same attack so that I can do the same thing.
We're in a transitional period where we're trying to keep all our Apple devices protected. Some are covered by 365, but it doesn't work quite well. We can install the Binary Defense agent on an Apple device to take our time getting Defender for Endpoint to work with Apple. It isn't as secure as Windows, but having two solutions on there makes me feel more secure.
I still have security alerts from 365 that I need to check daily, so I can compare two layers to see what's happening. It gives me a broader perspective of what's hitting us.
It hasn't reduced our workload, but I feel more confident that it's reporting on any kinds of breaches or threats in our environment. It helps confirm and reinforce what I think I should be doing. It saves me some time. If I notice a threat or something that doesn't seem quite right, I can check the results from 365 against Binary Defense. I save a few hours per week.
What is most valuable?
Binary Defense's most valuable feature is the 24/7 monitoring and threat hunting. Their team checks the latest breaches and how they're done. The MDR team contains all their clients' accounts for this type of behavior.
Their interface is customizable, but I don't need to tweak it much because it's already fairly intuitive. The dashboard shows all of our endpoints and threat hunting. You can see the false positives on the dashboard, showing the systems getting hit the most. Everything the solution protects is there so I can check everything in about 10 minutes.
Integrating Binary Defense doesn't cause a noticeable slowdown in performance. It doesn't interfere with any programs that I've seen so far. Our environment is cloud-based, so no local servers are involved in our everyday endpoint activity. A few servers are in the stadium, and we put agents on them to monitor them. It works great. Binary Defense doesn't interfere with any of it.
What needs improvement?
I would like to get more reports from Binary Defense about what they're blocking. It would be nice to get something like a newsletter about the big threats they're seeing every week or month, so I don't have to search for newsletters. I can never have too many frames of reference to compare.
For how long have I used the solution?
I have used Binary Defense for a couple of years.
What do I think about the stability of the solution?
They seem to be stable to me.
What do I think about the scalability of the solution?
Binary Defense can scale up if you buy the licenses. I bought so many endpoints, and then I just deploy them out, and I can always buy more. I could probably do thousands of endpoints, but we're relatively conservative. I only have about 180 employees, nearly 80 of which are part-time. I only need licenses for around 100 full-time employees and 10-15 servers.
How are customer service and support?
I rate Binary Defense's customer service a nine out of ten. They respond pretty quickly when I open a ticket or ask a question. I don't expect an instantaneous response. Their service is great. I have no complaints. We recently renewed our support contract. I try to handle issues myself unless I don't know something, but I needed them to check a few things for me.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
The company didn't have anything similar to Binary Defense before they installed it. It's a startup that has been around since 2015. They only had 30 employees when I started here in 2020, and the 365 environment wasn't set up. They had no protection. While I was getting the 365 environment up to par, they had a third-party cybersecurity provider called TrustedSec on retainer in case we got breached.
How was the initial setup?
When I joined the company, 365 was deployed but wasn't set up correctly. I had to finish setting it. I had to switch licensing and finish setting it all up. There was nothing before. After configuring Microsoft's endpoint protection, we purchased Binary Defense about six months later. I've been tweaking the settings ever since.
Binary Defense is deployed to Azure Active Directory in the cloud. Our stadium is a separate entity that we connect to when we're on-site. It isn't a hybrid environment. It's a cloud environment with one Tenant.
It doesn't require much maintenance. I deploy the agent and update the app periodically. I can opt to update automatically. When a new laptop is brought in, I have 365 configured to load Binary Defense automatically. I can also do it through the Binary Defense interface.
What was our ROI?
We had a couple of breaches when we didn't have endpoint security, but we haven't had any since we installed Binary Defense. The attackers thankfully didn't get any data in the last breach. They were trying to get money and failed because we did not have that, so they wasted their time.
If we had Binary Defense, it would have blocked the user from going to a bogus site. They didn't have Microsoft 365 or any other endpoint protection on it. That is a huge problem we're correcting now. Anyone with a company device has Microsoft endpoint protection and Binary Defense. I estimate that addressing that breach cost us about 96 hours. If we had protection in place, we would've saved a lot of time.
What's my experience with pricing, setup cost, and licensing?
Binary Defense is fairly priced, and it's an excellent value. Our cybersecurity adviser recommended them, and having a second layer of security is worth the money. I use the information they provide every day. You have to compare the cost with what Binary Defense does. You can't put a price on security. A breach could cost you millions, depending on the size of your company.
What other advice do I have?
I rate Binary Defense MDR a nine out of ten. I like the product. It's easy to use, and it works. It's an extension of the team. It helps me save time and makes me feel more secure. It's well worth the money. You can't skimp on security if you want to keep your environment protected.
If you plan to implement Binary Defense, you need to know how many endpoints you have so you can get the correct licensing. You should know how many endpoints use Windows, Linux, Apple, etc. I think they have an agent for iOS systems too. You will learn how many licenses you need if you have an accurate inventory of your endpoints. They can help you estimate how many, but it's faster if you have that information ready.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Infrastructure and Security Services Director at a manufacturing company with 1,001-5,000 employees
Gives us visibility into current critical security events and improves our time to respond
Pros and Cons
- "Among the valuable features are the agent, continuous reporting, and dashboard. It has all the features we need and we haven't had to customize it, other than turning on certain features that we wanted."
- "It's hard to think of anything that they need to improve on, but just to point out something, I would like to see them provide advanced XDR."
What is our primary use case?
We use it to get security notifications. There are only two security people on my team, and monitoring things 24/7 would take a team of 10 or 12. We use Binary Defense to help monitor things for us so that my team can work on the day-to-day security tasks.
How has it helped my organization?
They send us alerts and have done a really good job of eliminating the false positives. Early on, there were quite a few. But as they learned about our organization and the roles of individuals within it, that has drastically gone down. For example, initially, they would say so-and-so ran a script. Now, they know who our sys admins are and that running that script is typical for them.
The benefits are the visibility into current critical security events and the effect on our time to respond. Binary Defense has helped reduce our security alerts because we know where our trouble points are, or if we're missing things, and what we need to deploy. It has given us visibility into what to put in and that is how it has helped us the most. I would estimate it has reduced our security alerts by 60 to 70 percent. It has improved our security posture significantly.
And because they do a lot of the management for us, it has reduced our team's workload. We only have to work on the stuff that's identified as something we need to work on, so it has definitely helped performance.
What is most valuable?
Among the valuable features are the
- agent and continuous reporting
- dashboard.
It has all the features we need and we haven't had to customize it, other than turning on certain features that we wanted.
What needs improvement?
It's hard to think of anything that they need to improve on, but just to point out something, I would like to see them provide advanced XDR.
For how long have I used the solution?
I've been using Binary Defense MDR for a little over three years.
What do I think about the stability of the solution?
It's very stable.
What do I think about the scalability of the solution?
We have just under 2,300 agents deployed. I don't know how much it scales. I don't think we rank among the larger sizes of companies, but they thought we were a pretty big organization.
How are customer service and support?
Their support is great. Our experience with them has been very good every time we've had to contact them. They are responsive.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We did not have a previous solution.
How was the initial setup?
The initial deployment of MDR was straightforward and very easy. It installs automatically and we were pretty impressed with that. They had the right tools to give us to deploy it.
There were three of us involved in the deployment, and that includes me as director of our team, but I didn't do much. It was mostly one technician with some help from another, and it really was done mostly by that one.
There is no maintenance on our side. They automatically update the agents.
What was our ROI?
The return on investment is the amount of time that we're saving and the fact that we're getting a security analyst. Without Binary Defense, we would only have a team of two security analysts. We would need 10 to 12 analysts to do what they're doing and give us 24/7 coverage. Without them, we only have nine-to-five coverage.
What's my experience with pricing, setup cost, and licensing?
The pricing is very good. They are definitely competitive and they were lower at the time that we went with them. That's not why we chose them, but it's always something you have to consider.
You need the right security tool. Cost doesn't matter if it's a little bit higher but it's the right solution for your business. You shouldn't skip on security for costs.
Which other solutions did I evaluate?
We did what we call a "battle card" and compared Binary Defense to CrowdStrike, Sophos, and other leaders. Our team's consensus was that they were the best fit for our organization. Compared to competing solutions, the response times from Binary Defense were equal or better.
What other advice do I have?
We have not done an integration of Binary Defense with other tools. We're looking at integrating it with our help desk, but we don't use ServiceNow. We use BMC Remedy and that's what we have to look into. I don't think any issues with the integration would be limitations of Binary Defense, but there might be with our older ticketing system. Binary Defense can work with many open APIs, if I recall correctly.
They also have a great open XDR strategy for securing infrastructure, although we haven't started using it. Early on, I talked about it with the owner of the company who was part of the technical team. It was definitely on their road map and something they knew they had to do and they were working on it.
Overall, our partnership with Binary Defense is excellent. If someone at another company that is using MDR doesn't think that their provider is an extension of their team, they have the wrong provider. Maybe they don't have Binary Defense, because it shouldn't be that way.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Senior Manager, Cybersecurity at a energy/utilities company with 501-1,000 employees
Assisted us in decreasing the number of security alerts we receive, but the integration can be improved
Pros and Cons
- "One of the main benefits of Binary Defense MDR is the ability to easily meet with their support team to discuss any issues we encounter."
- "The current reporting system could benefit from improvement."
What is our primary use case?
We use Binary Defense MDR to monitor our security alerts and network traffic continuously. The solution provides a monitoring service that includes initial triage of alerts and escalation to my team for further action.
How has it helped my organization?
Binary Defense MDR is willing to customize its services to meet its customers' needs. Although they have standard service level agreements and escalation pathways, they are flexible and open to adopting solutions or practices that work better for their customers. They are committed to working closely with their customers and customizing their services to ensure their satisfaction.
Binary Defense MDR has improved our visibility through the implementation of some best practices in tuning and helping us establish our security solutions. These areas have provided the most benefit for us.
Binary Defense MDR has assisted us in decreasing the number of security alerts we receive. This has been achieved through the tuning aspect, where a significant amount of noise is generated, and they continuously collaborate with my team to reduce this noise, enabling us to concentrate on the critical components.
Binary Defense MDR has enhanced our security posture in terms of visibility and detection. The improvement is a result of the combination of their service and the technology implemented by my team. As a result of this project, we have significantly increased our ability to detect and respond to threats. Overall, the project and the service have minimized our threat landscape and enhanced our security posture.
Initially, there was a lot of noise and not much value in the alerts we received. We worked closely with Binary Defense to improve the process and specify our requirements. Through this partnership, they have improved their processes and quality checks to provide a better service. In the beginning, the influx of false positives increased my team's workload, but we worked to reduce the noise and focus only on what mattered. This took time, but overall, there have been improvements in reducing the additional workload for my team. However, we still want to be alerted when additional work is needed. Binary Defense's initial triaging has eliminated the need for my team to analyze every single alarm and alert.
What is most valuable?
One of Binary Defense MDR's main benefits is the ability to easily meet with their support team to discuss any issues we encounter. The team works with us to develop a plan to mitigate the issue and then implements a solution going forward to resolve it. Their responsiveness and willingness to adapt to our needs as a customer has been the greatest benefit.
What needs improvement?
Historically, Binary Defense MDR did not have a strong ability to integrate with other applications or solutions. However, they are currently undergoing a transformation driven by previous issues, where there was a need for capabilities to streamline operations. As a result, they are in the process of implementing additional solutions that will enable integrations with other platforms and applications.
The current reporting system could benefit from improvement. It would be helpful to have regular reports that provide value and clearly demonstrate the team's accomplishments over the past month. This should include information on resolved issues, metrics, and any additional details that highlight the team's contributions.
For how long have I used the solution?
I have been using Binary Defense MDR for six months.
What do I think about the stability of the solution?
Binary Defense MDR is a stable solution with a commitment to ongoing improvement. Without their continued efforts to get better and implement changes based on our feedback, this review would be quite different. The organization has also brought in a new leadership team, which has brought fresh ideas and a clear vision for improvement. This partnership, combined with the leadership team's efforts, has led to increased stability and sustainability for the company.
What do I think about the scalability of the solution?
Binary Defense MDR is scalable.
How are customer service and support?
The Binary Defense support team is a great team to collaborate with. They hold regular meetings with the project team, offer suggestions, and establish rules within the system. Once completed, they transfer these responsibilities to their production team that handles MDR services in a steady-state manner.
Which solution did I use previously and why did I switch?
I changed to a specialized provider from our previous solution. I aimed to look for a smaller organization that I could potentially partner with more effectively. Large companies often treat their clients as just another component of their operations. Therefore, I sought a smaller niche firm to work with closely and create something together, resulting in a better relationship and improved work outcomes. Consequently, we decided to partner with Binary Defense.
How was the initial setup?
The setup process is complicated. I am uncertain whether this is due to our own internal issues, or if it is partly a result of my environment and our own processes. While it was easy to initially set up the platform, the integration, and tuning required a significant amount of time. The deployment also took a lot of time, and it took us around six to eight months to achieve a steady state where we were satisfied with everything. Fifteen to twenty people were required for the deployment.
What about the implementation team?
The implementation was completed by Binary Defense's professional services.
What was our ROI?
The primary return on investment has been in risk reduction, which has allowed us to gain better visibility of our environment. We can now identify our biggest threats and tailor our defense strategies to protect against them. This also helps when communicating with regulatory commissions and government entities, as we can demonstrate our 24/7 monitoring capability and provide additional assurance. Risk reduction and improved communication with stakeholders are our two most significant ROIs.
What's my experience with pricing, setup cost, and licensing?
Binary Defense has changed its pricing model from being primarily based on the volume of data to one based on escalations and incidents they handle. This change is positive because it encourages clients to provide as much data as possible to assist the Binary Defense team in triaging and identifying true positives. However, they also aim to keep costs within a set parameter. This allows for better management of costs and higher accuracy in detecting true positives while minimizing false alerts.
What other advice do I have?
I give Binary Defense MDR a seven out of ten.
For someone who wants to purchase a managed detection response solution but is concerned about the cost, I would like to understand the primary concern, whether it's related solely to cost or to the cost model. Depending on the company and its requirements, the reason for cost concerns can vary greatly. If the concern is cost, I may not have much to say. However, if I ask questions to better understand their concerns and where they should focus their security monitoring, perhaps they can reduce the volume they send and focus on a smaller solution, such as an EDR, instead of sending their firewall logs.
The maintenance is performed by either Binary Defense or their technology provider.
Binary Defense MDR has demonstrated a willingness to invest in our relationship to the same extent as we do. As a result of our ongoing collaboration, they have reciprocated our efforts. Although having a third party as an extension of our team can be challenging, we believe that frequent communication and nurturing this partnership will lead to better outcomes. Our experience with Binary Defense has been positive overall.
To evaluate the solution, individuals should consider running a proof of value or a proof of concept, if possible. It would be beneficial to have Binary Defense demonstrate the value and services they can offer to gain an understanding of the type of service provided by their MDR solution.
Which deployment model are you using for this solution?
On-premises
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
IT Director at a venture capital & private equity firm with 51-200 employees
Has excellent integration with other applications and tools and is very customizable
Pros and Cons
- "Binary Defense has a human service department that provides live monitoring for our systems."
- "I would like to see more frequent check-ins with our security status."
What is our primary use case?
We use Binary Defense MDR as a third-party managed malware protection service. It has visibility into all of our company's devices, and it can automatically report malware events.
Binary Defense has a cloud dashboard, but each of our network devices also has a piece of software that needs to be deployed. We can deploy this software using an executable file or through group policy. Each deployment takes about two or three minutes, so it is a relatively quick process.
How has it helped my organization?
The solution is highly customizable, with a variety of options for deployment and reporting. For deployment, there are a few different options, including on-premises, cloud-based, and hybrid deployment. For reporting, there are also a variety of options, including a dashboard, email reports, and more.
Binary Defense MDR has excellent integration with other applications and tools. We have not experienced any compatibility issues with our many different operating systems and custom software. Binary Defense MDR seamlessly integrated with all of our systems and provided us with accurate and timely reporting.
Binary Defense MDR's Open XDR strategy is a great way to secure our infrastructure from end to end. It allows us to detect and remediate threats without having to do much work ourselves. In the past, we had to manually check and update our security software. Now, Binary Defense takes care of all of that for us. We can simply check reports and dashboards to make sure everything is running smoothly.
The biggest benefit of Binary Defense MDR is that it has freed up my time. As a one-man IT department, I have a lot on my plate. MDR takes care of a lot of the day-to-day security tasks, so I can focus on other things. This has been a huge relief, and it has allowed me to be more productive.
The number of security alerts has not changed, but I am now more confident in the security system, so I don't check them as often.
Binary Defense greatly improved its handling of our organization's security posture. We conducted a cybersecurity audit and went through a cyber insurance process. These measures were a significant part of improving our insurability and overall security score. As a result, we are now better protected from cyberattacks.
Binary Defense MDR helped our IT team save approximately three hours per week.
What is most valuable?
Binary Defense has a human service department that provides live monitoring for our systems. This is probably the most valuable aspect of their service, as it gives us peace of mind knowing that there are people actively watching over our systems and keeping them protected.
What needs improvement?
It would be helpful to have more personal interaction with Binary Defense. Currently, we rely on the system to run in the background and only speak with our security account manager quarterly. I would like to see more frequent check-ins with our security status.
For how long have I used the solution?
I have been using Binary Defense MDR for one year.
What do I think about the stability of the solution?
Binary Defense MDR is stable and reliable in my experience. I have never experienced any downtime or unavailability of the service. Alerts have been consistent and timely.
What do I think about the scalability of the solution?
We do not have much experience with the scalability of this solution. While they do offer other products, we are primarily focused on managed detection and response and security specialist services. As such, we have not yet had the need to scale.
We have three physical locations, and our Salesforce team is spread out across the country. Our company has 80 employees who use Binary Defense MDR.
Which solution did I use previously and why did I switch?
We previously used traditional antivirus solutions but switched to Binary Defense MDR because it was competitively priced and had a good reputation. Binary Defense is a local company to us in Ohio, and we had heard positive things about them from a former company of mine. We decided to switch to Binary Defense MDR based on a combination of factors, including price, reputation, and local ties.
How was the initial setup?
The initial setup is straightforward. We deployed Binary Defense's end-user software to all of our machines, including our computers and servers. We have a number of IUI group policies, which allow us to distribute software to certain machines at once. We also have remote users, who we can connect to and install the software on their computers. This process takes only two or three minutes. Once the software is installed, it is reported to Binary Defense's security center, where it is monitored immediately. The entire process is very seamless.
A total of five people were involved in the deployment. In addition to myself, there were four people from Binary Defense: an account manager, a security specialist, a software engineer, and a trainer.
What about the implementation team?
The implementation was completed with the assistance of Binary Defense. The software was quick to install, so most of the experience was spent training on Binary Defense's process for responding to alarms and alerts. This included what would happen if they detected malware, who our contact people were at different times of day, and the kind of reports we would receive. In essence, it was an introduction to their overall security strategy. The actual software installation was a very small part of the process, as it went very quickly.
What was our ROI?
We have definitely seen a return on investment. We were able to get rid of our traditional antivirus, which saved us quite a bit on our cyber insurance. We qualified for a lower rate because we had a higher security posture using Binary Defense MDR. It's also saving me hours per week. So, in the end, we have a better, more secure environment for roughly the same cost.
What's my experience with pricing, setup cost, and licensing?
Binary Defense MDR is priced competitively and may be slightly lower than CrowdStrike.
What other advice do I have?
I give Binary Defense MDR a ten out of ten.
Binary Defense MDR is a worthwhile investment for small IT departments, especially for those with limited resources. Larger departments may have a different evaluation process, but for small departments, the benefits are clear.
Binary Defense MDR automatically updates and has not required any maintenance from our team.
Our partnership with Binary Defense has been positive so far. We have not had any security threats, so I cannot yet evaluate their response to a security incident. However, the reporting and accessibility through the dashboard have been excellent. I have a granular view of all activities on our network, which has been very helpful.
People who don't feel that their current MDR provider is an extension of their team would be happy with Binary Defense MDR. It's a security solution that can be used to offload IT security tasks. For companies with dedicated security professionals, Binary Defense MDR would be a great tool. And even if they don't have dedicated security professionals, Binary Defense MDR would still be a great addition to their security team.
Organizations evaluating Binary Defense MDR should be familiar with using group policy tools to deploy the solution rapidly. This can save a significant amount of time compared to installing the solution one endpoint at a time. The size of the organization will affect the amount of time it takes to deploy the solution, as larger organizations will have more endpoints. Overall, using group policy to deploy Binary Defense MDR is a standard practice in IT.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Senior Manager of Information Technology and Security at a comms service provider with 51-200 employees
Offers stability, quick response times, and great tech support
Pros and Cons
- "The best part about Binary Defense MDR is that it runs on everything, and they keep an eye on things 24/7."
- "Binary Defense MDR could be even better with additional features, like automatic scans and file quarantine."
What is our primary use case?
We rely on Binary Defense MDR to protect our servers and employee computers from malware. It keeps a constant watch and lets us know quickly if there is any suspicious activity.
How has it helped my organization?
I like Binary Defense MDR's customizability. They have been great with technical support, customer service, and our account managers. Always happy with their overall support.
Using Binary Defense has brought our organization more peace of mind and excellent security.
Fortunately, we haven't faced major cybersecurity issues, but I trust that if we did, Binary Defense would catch them before things got out of hand. It has significantly improved our security posture compared to before we had them and it has greatly reduced my IT team's workload.
It also saves me time, at least an hour a day or more.
I love our partnership with Binary Defense. Bringing it to the board has made my life much easier and provides me with significant peace of mind. If you don't see your enterprise MDR provider as an extension of your team, you probably have a strong team. However, Binary Defense is so focused on security that they are top-notch in our view. They are a trusted partner for us.
What is most valuable?
The best part about Binary Defense MDR is that it runs on everything, and they keep an eye on things 24/7. As a one-man IT security team, I can't handle it all alone. Knowing we have a solid product and a reliable partner watching over everything allows me to sleep soundly at night.
What needs improvement?
In terms of improvement, Binary Defense MDR could be even better with additional features, like automatic scans and file quarantine.
For how long have I used the solution?
I have been using Binary Defense MDR for almost four years.
What do I think about the stability of the solution?
I haven't experienced any issues with stability. There is no lagging, crashing, or downtime. Everything runs smoothly.
What do I think about the scalability of the solution?
It is highly scalable.
How are customer service and support?
The technical support is very quick and helpful. I would rate them as a nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Before Binary Defense, we used Webroot antivirus. We switched because Webroot missed a serious security incident. After a demo and comparing it with other options, I found Binary Defense to be the best all-around solution.
How was the initial setup?
The initial setup was straightforward and it took about a week to deploy the solution. I worked with the Binary Defense team for guidance, but I handled the actual implementation myself. It was straightforward, and I had helpful interactions, including discussions with their head of software development.
What's my experience with pricing, setup cost, and licensing?
Binary Defense's pricing and licensing are standard compared to others offering similar products. I would say it is worth the cost because it significantly improves your security and can save you more in the long run by preventing major cybersecurity incidents.
What other advice do I have?
Binary Defense hasn't necessarily reduced the number of security alerts, but the fact that they handle it means I don't have to sift through them. Most of the time, they spot serious issues, saving me a lot of time and providing a sense of security. It has been great. I would say Binary Defense is at the top in terms of response times. As soon as something happens, I'm hearing about it.
My advice to others is that if you choose Binary Defense, you will be in good hands. They are thorough, attentive, and always ready to help. Overall, I would rate Binary Defense MDR as a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.

Buyer's Guide
Download our free Binary Defense MDR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Managed Detection and Response (MDR)Popular Comparisons
Arctic Wolf Managed Detection and Response
Red Canary
ReliaQuest GreyMatter
Buyer's Guide
Download our free Binary Defense MDR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- How do you estimate ROI of a Managed Detection and Response (MDR) solution?
- When evaluating Managed Detection and Response (MDR), what aspect do you think is the most important to look for?
- Which solution do you prefer: Optiv Managed Security Services or eSentire?
- Why is Managed Detection and Response (MDR) important for companies?