No more typing reviews! Try our Samantha, our new voice AI agent.

Abnormal Security vs Cisco Secure Email Threat Defense comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 3, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare One
Sponsored
Ranking in Email Security
20th
Average Rating
8.6
Reviews Sentiment
6.5
Number of Reviews
23
Ranking in other categories
Secure Web Gateways (SWG) (12th), Data Loss Prevention (DLP) (22nd), Cloud Access Security Brokers (CASB) (12th), Distributed Denial-of-Service (DDoS) Protection (8th), Software Defined WAN (SD-WAN) Solutions (13th), Access Management (12th), Bot Management (3rd), ZTNA as a Service (8th), ZTNA (4th), Secure Access Service Edge (SASE) (9th), Remote Browser Isolation (RBI) (2nd)
Abnormal Security
Ranking in Email Security
11th
Average Rating
9.4
Reviews Sentiment
7.5
Number of Reviews
11
Ranking in other categories
Secure Email Gateway (SEG) (5th)
Cisco Secure Email Threat D...
Ranking in Email Security
23rd
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
16
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Email Security category, the mindshare of Cloudflare One is 1.7%, up from 1.4% compared to the previous year. The mindshare of Abnormal Security is 3.6%, down from 7.1% compared to the previous year. The mindshare of Cisco Secure Email Threat Defense is 1.1%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Email Security Mindshare Distribution
ProductMindshare (%)
Abnormal Security3.6%
Cloudflare One1.7%
Cisco Secure Email Threat Defense1.1%
Other93.6%
Email Security
 

Featured Reviews

CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.
reviewer2251509 - PeerSpot reviewer
Senior Director, Information Technology at a insurance company with 51-200 employees
AI has helped classify threat types more accurately but product ownership can improve
Ease of use is important, and Abnormal Security's responsiveness and ability to deliver solutions when issues arise are crucial. However, there is always room for improvement, as achieving a perfect 10 means there is no more room for enhancement. For Abnormal Security, it's about leveraging AI even more, which they are already working on in their roadmap.
NM
Enginner at Millennium Information Technologies
Has faced challenges with configuration, taking actions, and learning curve but benefits from centralized management and good technical support
We have deployed Cisco Secure Email Threat Defense in two customer environments. It is still in development as a new product. Some customer requirements, such as sending logs to a Syslog server, are limited as ETD only supports sending audit logs. Customers have requirements for other system logs as well, which should be developed from their side. Another customer request is to restrict the IPs that can log in, which cannot be done from Cisco Secure Email Threat Defense yet. Any user with login details can log in. We can restrict the IPs in Cloud Mail Gateways, but not from Cisco Secure Email Threat Defense. It would be beneficial to improve this feature. Cisco Secure Email Threat Defense can take actions, such as requesting O365 to quarantine mail. In that case, the customer requires notification to the recipient from Cisco Secure Email Threat Defense. This option would be valuable if available. The real-time threat intelligence of Cisco Secure Email Threat Defense is an AI-based classification. It took one to two months to optimize the classification, but we still experience some false positives. Reducing the learning period would be beneficial. The learning curve shows that in the beginning, there are numerous false positives. For one month, we had to reclassify the false positives manually until the system learned. Reducing the learning time would be much better. Additional features desired in the next release include IP restrictions and user logging IP restrictions, ensuring only the customer environment can log in to Cisco Secure Email Threat Defense. Logs forwarding needs improvement as currently it only has audit logs. In Cloud Mail Gateway, we can create an IPsec tunnel to forward logs. However, in Cisco Secure Email Threat Defense, there is no option, and we must do API integration to send logs. Only SIM can get logs; Syslog cannot retrieve them.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cloudflare is by far the most effective solution that I have come across."
"The capabilities of the software are strong enough for me to do what it's supposed to do. For me, we don't need to do a lot of configuration on our site. We just enable it and monitor it."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
"Enables me to work from two locations."
"Using Cloudflare One makes my work quite easy because for DDoS protection, all I need to do is understand the OSI model and click; it makes it easier than trying to write a command line or use a Linux command."
"The best feature is rate limiting. If I'm expecting 500 visits per hour, Cloudflare will limit the requests if I suddenly get 50,000."
"It is a stable solution."
"Clover is the best product globally."
"Initial auto-remediation allows us to auto-remediate before the email lands in the end user's inbox for a split second."
"Abnormal Security's AI capabilities are what we like most, as they can categorize and classify the emails, and based on the context of the email, understand if it's a graymail, a bulk mail, or a phish."
"It protects us from being business email compromised, which is invaluable for maintaining our security."
"It does some really cool stuff that other tools aren't doing. We found it to be really effective, and the AI/ML functionality is really what differentiates them."
"I would recommend Abnormal Security."
"Ease of use is undoubtedly one of the most valuable features of Abnormal Security."
"I have never encountered any stability issues with Abnormal."
"What I like about Abnormal Security is that it notifies me if any of my partners or suppliers are experiencing a security breach by analyzing their database and identifying potential cyber threats."
"On ease of use, it rates very high. It's something that I was able to get into without really looking at any documentation. I wanted to see what it felt like before I started looking at any documentation on how to use it, and it was very easy to use. It works very smoothly. The user experience is very intuitive. They did an amazing job on that."
"The ability to see east-west traffic is its most valuable feature. Traditionally, email defense focuses on north-south, inbound-outbound, egress-ingress traffic. With Cisco Secure Email Cloud Mailbox, it's able to quickly identify, track, tag, and categorize emails that are internal. That can typically give us visibility into if there's an internal compromised account (for example). Someone can then use that internal compromised account to email additional accounts with either malicious software or links, but internal within that Office tenant. Effectively, that email message never leaves the tenant. Any of the mail gateways really do not have any method or way of seeing this traffic since it's not leaving the environment."
"Cisco Secure Email Threat Defense's best features include user management of graymail, enhancing security awareness by allowing users to manage cold calls, sales-based items, and ensuring email compliance."
"The advanced threat analytics and URL filtering in threat detection are good features that are working well."
"Cisco has a threat mechanism called cloud-based Talos, where all the threats are inbuilt."
"On ease of use, it rates very high."
"The features and functionalities are much better than Microsoft's in-built Defender plan, and this product has helped us to protect our organization from any malware attack in the past."
"The product offers protection, email security, anti-spam, and antivirus."
 

Cons

"Our customers no longer use Cloudflare because its service is subpar."
"Operating and tuning the product is difficult."
"For the topic of improvement, providing some training material is one of my suggestions."
"Feedback could be enhanced."
"Cloudflare Zero Trust Platform needs to improve its documentation. It took time to do the implementation."
"Automation could be improved where you can easily add a TLS and SSL certificate to an application or web app if the developer did not include it."
"From a logging perspective, it is still a bit difficult to see exactly what users are being blocked with the current views."
"Cloudflare One is not very powerful, but for what we require, it is basic and sufficient."
"One feature I'd love to see is outbound scanning."
"I, as such, do not have anything that I do not like or would like to add, but you could argue that because they are doing it API-based, there is a chance that something could slip through temporarily before they are able to pull it out. In theory, it could happen just because of the nature of the system. They are not in line with the delivery of the mail. They are kind of asynchronous, which is a pro as well as a con. If it is synchronous, then I know it would always stop them, but because it is asynchronous, things could get through temporarily or because of some system issues on the Microsoft side or their side. It is the nature of the beast, but it is a little bit of a con."
"I would like to have the ability to customize the auto-remediation feature."
"The pricing for academic institutions and student mailboxes is challenging."
"There could be room for improvement in enhancing integration with other cybersecurity tools."
"The biggest pain point for us is the lack of support for on-premise email systems."
"When we're working on something as engineers, and we find an idea or a method of doing something that would be greatly improved by doing it another way, there should be an ability for me to click the ideas button, type in an idea that I have, and submit it to a product review team or developers to have them think through the process a little bit more."
"For Abnormal Security as a product, I would say probably somewhere around a seven, as there are some other areas where they can improve to achieve a higher rating."
"I wouldn't recommend Cisco to others because I think Fortinet is better."
"There is still room for improvement in terms of integrations with other Cisco tools and non-Cisco tools. There is also some room for improvement needed in terms of the reporting."
"The solution is a bit expensive. It could be cheaper."
"Cisco's multiple product lines and verticals made this just one of their many verticals, and we could see a shift in focus."
"The pricing could always be better."
"The product's complexity at times results in redundant rule sets that are difficult to untangle, highlighting the need for streamlined management systems and a more user-centric approach to system configuration."
"Cisco Secure Email Cloud Mailbox can improve by adding advanced phishing, then the solution would become the best in the market. However, this could increase the price even more. Additionally, if CES with domain protection could be added it would be an even better solution."
"The search area has room for improvement."
 

Pricing and Cost Advice

"The solution is not that expensive."
"Cloudflare Zero Trust Platform's pricing is good."
"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"The prices are slightly expensive."
"The solution's pricing lacks transparency."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
"The pricing appears fair, and they demonstrate a genuine willingness to work with us on it."
"Abnormal Security, on the other hand, provides the same level of functionality for just over $60,000 – that's half the price!"
"The license is based on the user count, so the number of users that have an email address in the organization."
"Overall, we'd certainly prefer lower pricing, but Abnormal Security doesn't seem unreasonable compared to similar offerings in the market."
"The solution’s pricing is manageable."
"Cisco Secure Email Cloud Mailbox does not have any competition with Sophos, Trend Micro, or other vendors of the world. However, there is a pricing premium for the solution. One has to look at it from that angle that while they are buying Cisco, there will be a premium, and Cisco justifies that premium value. That's why they're charging a high price."
"It is expensive compared to other vendors."
"The feedback from vendors and customer is that it is expensive."
report
Use our free recommendation engine to learn which Email Security solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
19%
Comms Service Provider
11%
Outsourcing Company
9%
Financial Services Firm
8%
Manufacturing Company
10%
Computer Software Company
9%
Financial Services Firm
9%
Government
6%
Marketing Services Firm
11%
Construction Company
8%
Comms Service Provider
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise12
By reviewers
Company SizeCount
Small Business1
Midsize Enterprise2
Large Enterprise8
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise6
Large Enterprise7
 

Questions from the Community

What needs improvement with Cloudflare Zero Trust Platform?
In my opinion, Cloudflare One can be improved mainly through compatibility, as the integration should be much simpler...
What is your primary use case for Cloudflare Zero Trust Platform?
Cloudflare One's primary use case for my organization is to protect servers and to provide remote access with the VPN...
What is your experience regarding pricing and costs for Abnormal Security?
I find the pricing to be favorable, but I did not disclose the exact cost.
What needs improvement with Abnormal Security?
Ease of use is important, and Abnormal Security's responsiveness and ability to deliver solutions when issues arise a...
What is your primary use case for Abnormal Security?
The main use case for Abnormal Security is as a spam filter and for mail hygiene. This use case is for the finance in...
What is your experience regarding pricing and costs for Secure Email Threat Defense?
Comparatively with other products, the pricing of Cisco Secure Email Threat Defense is normal. As a technical guide, ...
What needs improvement with Secure Email Threat Defense?
We have deployed Cisco Secure Email Threat Defense in two customer environments. It is still in development as a new ...
What is your primary use case for Secure Email Threat Defense?
We are working with Cloud Mail Gateway and on-premise mail gateways. We have worked with Cisco Secure Email Threat De...
 

Also Known As

Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
No data available
Cisco Secure Email Cloud Mailbox, Cisco CMD, Cisco Cloud Mailbox Defense
 

Overview

 

Sample Customers

23andMe
Foot Lcoker, Xerox, Liberty Mutual, Mattel, Boston Scientific
Luiss University, Lone Star College, T-Systems, Magyar Telekom
Find out what your peers are saying about Abnormal Security vs. Cisco Secure Email Threat Defense and other solutions. Updated: August 2026.
908,877 professionals have used our research since 2012.