

Alert Logic MDR and Rapid7 MDR compete in the Managed Detection and Response category. Rapid7 MDR seems to have the upper hand due to its robust feature set, offering appreciable value for its cost.
Features: Alert Logic MDR offers continuous threat detection, intelligence-driven insights, and a unified dashboard for incident management. Rapid7 MDR provides automation capabilities, extensive integrations, and strong incident response features.
Room for Improvement: Alert Logic MDR could enhance its automation and expand its integration options. Its reporting features could also be more detailed. Rapid7 MDR might benefit from a more straightforward pricing structure and faster setup times. Some users suggest that while automation is strong, there could be further refinement of workflow customization.
Ease of Deployment and Customer Service: Alert Logic MDR is known for swift deployment and strong customer support, ensuring a smooth transition. Rapid7 MDR provides efficient deployment and emphasizes in-depth resources and responsive support, enhancing the overall customer experience.
Pricing and ROI: Alert Logic MDR has competitive pricing with a clear ROI due to its straightforward setup. Rapid7 MDR's initial cost may be higher, but it results in significant savings due to reduced manual interventions and superior threat detection, offering a higher ROI that justifies the expense.
Rapid7 MDR has provided a clear return on investment by significantly reducing the time my internal security team spends on alert triage through validated investigations and actionable recommendations.
The inclusion of digital forensics and incident response within Rapid7 MDR service has positively impacted my incident recovery process, both operationally and financially.
I have seen a positive return on investment concerning Rapid7 MDR, as we have invested wisely, yielding results in detection mechanisms.
During the four-month duration, we did not face any such issues.
They help whenever we get stuck.
In contrast, Rapid7 MDR support often takes longer to respond to issues.
Rapid7 MDR has been the best in zero-day attacks and the vulnerabilities that come into picture.
We do not directly rely on Rapid7 MDR for support, but we have built up our own competency with Rapid7 MDR.
Alert Logic MDR is scalable.
The ability to scale Rapid7 MDR is really super easy, so I would rate it a 10 as well.
The managed service model reduces the need to continuously scale the internal SOC resources while maintaining consistent monitoring and response capabilities.
I can onboard more devices and expand easily.
You will find no errors or glitches with Alert Logic MDR.
Stability is good, and I have not experienced delays, even with on-premises deployments.
I would rate Rapid7 MDR as a 10 for stability; it has always been there and has never been down.
The service has provided consistent monitoring and dependable support from the Rapid7 MDR team.
One major missing feature was the ability to see if vulnerabilities were exploitable, which required extra effort for us.
If Alert Logic MDR not only detected incidents but also allowed us to block those incidents or isolate any affected asset, that would be beneficial.
If I had to pick one area where Alert Logic MDR could be even better, it would be the rollback feature, which is currently for Windows only.
There should definitely be a tool that gives us the confidence that whatever AI model we are using is secured through that tool.
For example, during a suspicious endpoint activity alert, the Rapid7 MDR team provides context around the process execution, related user activity, and supporting indicators, which help us quickly validate the incident and take appropriate actions.
Rapid7 MDR is currently weak in AI solutions and intelligence, which is concerning.
The price, which is per endpoint around ten to twelve dollars, and it is a good setup cost.
If we check the functional requirement and financial perspective, this is the best service.
They negotiate well with us on various aspects of MDR, and we have received great rates for services such as IVM, including Threat Command.
The setup cost is reasonable and not so expensive.
The standout features of Alert Logic included the topology feature, which was helpful for mapping assets on the network, giving a clear understanding of all connected devices.
The integration with ticketing tools such as ServiceNow helped my workflow by automatically creating a ticket and sharing it with the required team as soon as a critical alert is generated.
The best features that Alert Logic MDR offers include AI and behavior analysis, which I find most valuable.
While a competitor's solution failed to detect many attacks, Rapid7 identified them in real time, which effectively pushed my management towards choosing Rapid7 MDR.
The main benefits that Rapid7 MDR provides for me as an end-user are the security and that they are available 24 hours a day, always.
The best features that Rapid7 MDR offers are 24x7 alert monitoring, expert threat hunting, and high quality alert validation, which significantly reduces false positive alerts.
| Product | Mindshare (%) |
|---|---|
| Rapid7 MDR | 1.6% |
| Alert Logic MDR | 1.4% |
| Other | 97.0% |

| Company Size | Count |
|---|---|
| Small Business | 5 |
| Midsize Enterprise | 3 |
| Large Enterprise | 15 |
| Company Size | Count |
|---|---|
| Small Business | 9 |
| Midsize Enterprise | 3 |
| Large Enterprise | 11 |
Alert Logic MDR offers fast and accurate scanning, automated installations, and security alerts. Its advanced intrusion detection and centralized management enhance threat visibility and response, providing an effective security management strategy for diverse sectors.
Alert Logic MDR provides comprehensive security management with advanced threat detection and human expertise. It includes valuable features such as infrastructure security alerts, heuristic threat detection, and a centralized dashboard. Users can swiftly detect and respond to security threats through extensive global SOCs, detailed notifications, and immediate log access. However, it can improve in alert payload customization, analytics capabilities, initial setup documentation, error tracing transparency, and command processes for better usability. Companies benefit from its applications in container security on Kubernetes, production tracking, log management, and network intrusion detection, making it suitable for large-scale applications across utilities, finance, and government sectors.
What are the key features of Alert Logic MDR?Implementation across industries shows Alert Logic MDR's adaptability in securing containers on Kubernetes, managing production logs, and serving as a primary SIEM tool. Companies implement it to safeguard large-scale e-commerce platforms and extensive IT infrastructures. Users from utilities to financial and government sectors find it provides a comprehensive and effective security management approach, enhanced by artificial intelligence and machine learning capabilities.
Rapid7 MDR is a leading service offering transparency, integration, incident response, and proactive security. It is designed for efficient SIEM and EDR integration to facilitate threat detection, making it effective for organizations of all sizes.
Renowned for robust threat detection, Rapid7 MDR combines transparency, automation, and integration. It provides excellent incident response, vulnerability management, AI-driven log queries, and significant time savings. Despite competitive advantages, there's an opportunity to enhance transparency in security operations and improve AI capabilities compared to peers like CrowdStrike. Users seek stronger digital forensics and better on-premises versus cloud-based tool integration. Organizations deploy Rapid7 MDR to enhance security with SIEM distinction from EDRs, ensuring endpoint security and behavior analysis. It effectively detects phishing and manages fintech anomalies through predefined rules and RegEx parsing.
What are the key features of Rapid7 MDR?In fintech environments, Rapid7 MDR manages anomalies and phishing detection with predefined rules, enhancing security operation centers' visibility and incident investigation capabilities. This integration facilitates effective analysis of attacker behaviors and compromised endpoint security.
We monitor all Managed Detection and Response (MDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.