Fortra's Alert Logic MDR vs Sophos MDR comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Binary Defense MDR
Sponsored
Ranking in Managed Detection and Response (MDR)
7th
Average Rating
9.2
Number of Reviews
15
Ranking in other categories
No ranking in other categories
Fortra's Alert Logic MDR
Ranking in Managed Detection and Response (MDR)
18th
Average Rating
8.0
Number of Reviews
11
Ranking in other categories
Vulnerability Management (32nd), SOC as a Service (4th)
Sophos MDR
Ranking in Managed Detection and Response (MDR)
6th
Average Rating
8.6
Number of Reviews
24
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of July 2024, in the Managed Detection and Response (MDR) category, the mindshare of Binary Defense MDR is 0.8%, up from 0.6% compared to the previous year. The mindshare of Fortra's Alert Logic MDR is 1.0%, down from 1.6% compared to the previous year. The mindshare of Sophos MDR is 6.0%, down from 6.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR)
Unique Categories:
No other categories found
Vulnerability Management
0.3%
SOC as a Service
20.5%
No other categories found
 

Featured Reviews

JO
May 16, 2023
Our security alerts have been reduced significantly due to the higher level of analysis we now receive
The biggest aspect for us is that they are able to conform to our environment and utilize our tools. That way, we still maintain ownership of all the data and access to the applications, and we never lose control of the ability to run the solution ourselves if we need to. They're also very flexible in terms of what they're willing to bring to the table as well as having their own solutions that they provide if you don't have anything that you're using yourself. In terms of threat intelligence, as we make recommendations and suggestions to them for modifications to the reports so that they work better in our environment, they're working on putting them into place. And they're giving us feedback on what they can and can't do, meaning they're being very transparent. Binary Defense has also been great, so far, with integrating all the different things that we're trying to put together. They're also even helping guide us regarding some other tools that we're looking to implement. And those tools will have additional integrations into our main SIEM platform that we're using. They definitely have the knowledge and the insight to accomplish an open XDR strategy for securing infrastructure. With some of their own agents and tools that they are able to deploy into the environment, they're able to determine what's happening and put into effect the kill chain at the earliest possible point to help protect the overall network.
GP
Apr 18, 2023
A product that is a highly scalable and provides the functionalities of a SIEM solution to its users
My main issue with them was the constant need for meetings to discuss developing the API model we needed. It felt like we were always in and out of meetings trying to figure it out. It would be great if they could create a more user-friendly experience, like a drag-and-drop interface or a website builder, where clients could build their own API without needing access to the back end. Let me choose the specific tools I want to use and be able to set a price for each of them. Maybe I don't need the entire package in my environment, but I really just want the IDS/IPS. I don't like Splunk or one of the other providers, like Rapid7, who don't work well for me in my environment. So, I suggest having packages for small to medium-sized businesses, even if the primary focus is on larger companies.
SherifFouad - PeerSpot reviewer
Sep 27, 2023
Proactive protection, scalability, and cloud-based efficiency
They offer three different engagement levels with the Sophos team. We can choose full engagement, where Sophos takes immediate action upon detecting a threat, but this doesn't offer much learning opportunity for our team. Alternatively, we can opt for a middle-ground approach, where Sophos reports the threat to us and assists our team in handling it. This model allows our team to learn and gain experience from the Sophos experts. The third option involves Sophos solely reporting the threat to us, leaving the resolution in our hands. It is important that our team doesn't become entirely dependent on it, but to work alongside the Sophos team to intercept threats and gain a deeper understanding of where these threats originate. It's a collaborative effort to enhance our skills and knowledge about potential threats.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features are the SIEM and the ticketing function; the latter is very smooth and easy to read and understand. We don't have any issues looking at the ticketing information when we're trying to identify what's going on."
"Binary Defense is comprehensive. We see most of the questionable activity. Once you see things a couple of times and are familiar with the processes, you know what those are. The level of activity is definitely favorable."
"Our mean time to response has gone down. We're much faster with direct response and have more investigative capabilities than we did before."
"The case interface is Binary Defense MDR's most valuable feature."
"The speed at which their services are reactive is valuable. Nowadays, when a threat hits an endpoint, you've got minutes, not hours or days. Their average response time is about four minutes on an alert. For anything that needs to be sent to us, it's about fourteen minutes, which is pretty good. They're the third SOC that I've used in fifteen years. By far, they are the quickest ones to act. When you're looking at prevention, that's a key factor."
"The most valuable feature is reviewing tickets and the notes added by technicians."
"Binary Defense's most valuable feature is the 24/7 monitoring and threat hunting. Their team checks the latest breaches and how they're done."
"Among the valuable features are the agent, continuous reporting, and dashboard. It has all the features we need and we haven't had to customize it, other than turning on certain features that we wanted."
"It is a very stable product."
"While I still have on-premises appliances, I can remotely monitor everything from the cloud, and Alert Logic's ease-of-access features have helped me streamline my workflow and reduce implementation time."
"The solution was consistently available, and I cannot recall any instances where it was down."
"Everything is in one dashboard; I'm notified when there's an incident and advised on what steps to take."
"The quicker implementation of changes to our infrastructure from Alert Logic tell us if there are any problems."
"The installation and configuration were slick."
"We receive infrastructure security warnings from it. So, we know what is going on and what needs to be addressed."
"The initial setup is pretty straightforward."
"The product's most valuable feature is its ability to view environmental activities."
"The solution is stable."
"The product gives us good visibility into what is happening inside the company."
"The solution provides the best security features."
"The product’s most valuable feature is ease of use."
"The product’s most valuable feature is rapid response."
"The product as a whole is truly outstanding and it excels in detecting and responding to various types of cyberattacks."
"The authentication it offers minimizes the risk of access."
 

Cons

"It's sometimes difficult to know when to engage Binary Defense or TrustedSec, their sister company. TrustedSec is more focused on offensive security, as opposed to the defensive security that the MDR solution provides. It would be awesome if there were a better bridge between that relationship for when we need to get more proactive services or when we need to do a penetration test."
"We found that an earlier version of the agent had high memory usage and that was a bit concerning, but we raised the concern with their support team and they immediately replied that they had noticed the same thing and had a candidate fix already available... it totally fixed the issue."
"The only area I see for improvement with Binary Defense is their service portal. It could benefit from some enhancements."
"I don't find any downside to them, but if I have to put one, it would be consistent manpower or staffing. The only area where the solution can be improved is going to be with people. As they grow, they are struggling with the same thing that every other company is, which is getting talent and getting that talent to stay, but they've just revised their tiering system to go from a flat analyst and manager to a three-tier solution where it goes through two or three before it gets elevated. That seems to have worked out well, so if one level misses it, the next one picks it up, and it works out fine."
"We found a couple of bugs in the user interface."
"I would like to see more frequent check-ins with our security status."
"The current reporting system could benefit from improvement."
"We should be able to isolate devices faster. They should shorten the time between clicking on a device to contain it and carrying out the action. That would be a welcome improvement."
"The documentation, especially with the initial setup, needs improvement."
"Alert Logic needs to expand its SOCs to serve more markets, such as the Middle East and Asia. There should be infrastructure that covers more time zones. The company should also develop an EDR that is natively integrated into their solution. Currently, a client must buy another EDR solution like CrowdStrike or Sophos. I think Alert Logic is developing this. Built-in email security could also be developed and integrated."
"The product needs to mature. We don't want to be bombarded with unnecessary issues and have the real ones slip through."
"This product needs to mature more. While it is a good product, there are some areas where it needs work."
"We'd like to have triggered alerts sent to us so we see errors quicker."
"The setup process was complex."
"Could be more of an endpoint protector."
"As a user involved with the user interface, I believe there is a need to continue improving it based on feedback from our customers."
"The product's pricing could be less expensive."
"The solution is expensive for customers."
"Once in a great while, an update fails."
"Endpoint protection is very slow."
"It is a bit expensive. It could be cheaper. There are many competitive products in the market, like Kaspersky, McAfee Antivirus, and more."
"The product must provide zero trust security."
"It could be more secure."
"Sophos is not integrating the same console and umbrella with its product."
 

Pricing and Cost Advice

"The pricing isn't that bad, it's very competitive. I don't feel that it's over-priced and I don't feel that it's under-priced."
"From the initial cost that Binary Defense came in with, we pared it down quite a bit over the course of 30 or 60 days. My leadership would say that their cost was high, but realistically, they were in line with the market."
"It's valued at the right price. Even with the number of endpoints we have, we don't feel that it's a lot more than any competitor. In fact, it might be less expensive when you look at the fact that you're getting a full flex SOC out of it along with the tools."
"The solution's price is spot on; if anything, it's slightly below the norm for most services. Compared to building the same team internally, it would cost more to create the same amount of capability than what we get from an external team. Price-wise, Binary Defense is in a great spot."
"The pricing is very good. They are definitely competitive and they were lower at the time that we went with them."
"Binary Defense has changed its pricing model from being primarily based on the volume of data to one based on escalations and incidents they handle."
"Binary Defense MDR is priced competitively and may be slightly lower than CrowdStrike."
"The pricing is on target. Working with their sales team on pricing negotiations was a pleasant process. They were very respectful of the constraints we had and I feel that we're paying a fair price."
"Almost any product that is on the AWS Marketplace is super easy to subscribe to."
"Its pricing is very reasonable considering what you get for what you pay. There is quite a good value there. Its licensing is also very logical. They've got the licensing price points at a reasonable level. It is on a monthly license but a yearly contract. There are no additional costs to the standard licensing fees."
"Price of the solution was very reasonable considering the size of our organization at the time, and so it worked out perfectly."
"Alert Logic has better competitive pricing than some of its competitors."
"Our ROI would probably be zero. We don't even use it. It sits in there. We get emails and just delete them. Around the world, we don't even use it."
"It is an expensive platform."
"Sophos MDR could be more affordable."
"I would rate the price of Sophos MDR as a nine out of ten, with ten being the most expensive."
"The solution has subscription-based pricing plans."
"Sophos MDR is not a cheap product. Compared with other solutions in the market, Sophos MDR is available at a good price, especially considering its performance."
"The solution is expensive."
"Sophos MDR is a cheap solution."
"I rate Sophos MDR’s pricing a seven or eight out of ten."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
793,295 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Healthcare Company
8%
Manufacturing Company
7%
Financial Services Firm
7%
Computer Software Company
17%
Financial Services Firm
11%
Manufacturing Company
9%
Healthcare Company
7%
Computer Software Company
21%
Manufacturing Company
8%
Government
7%
Financial Services Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Binary Defense MDR?
The most valuable feature is reviewing tickets and the notes added by technicians.
What is your experience regarding pricing and costs for Binary Defense MDR?
Binary Defense is reasonably priced, considering that it saves us from hiring personnel and deters threats that could...
What needs improvement with Binary Defense MDR?
The only area I see for improvement with Binary Defense is their service portal. It could benefit from some enhanceme...
What do you like most about Alert Logic?
The most valuable aspect of Alert Logic is its technology platform. They have SOCs in the US and Europe, giving them ...
What is your experience regarding pricing and costs for Alert Logic?
Alert Logic's license is one of the most competitive. They deliver a high-quality service for a competitive price.
What needs improvement with Alert Logic?
Alert Logic should also develop an EDR that is natively integrated into their solution. Currently, a client must buy ...
What do you like most about Sophos MDR?
The user doesn't need a technician; it offers 24/7 support to identify and manage your infrastructure and take comple...
What needs improvement with Sophos MDR?
The product must provide zero trust security. The security tools for the endpoints must communicate with the firewalls.
What advice do you have for others considering Sophos MDR?
We use the tool in our company. Our customers also use it. We are partners and resellers. I recommend the product to ...
 

Also Known As

Binary Defense Vision, Binary Defense Managed Detection and Response, Binary Defense Managed Detection & Response
Alert Logic MDR, Alert Logic Managed Detection and ResponseAlert Logic Threat Manager, Alert Logic Cloud Defender, Critical Watch FusionVM
Sophos Managed Threat Response
 

Overview

 

Sample Customers

Securitas USA, Black Hills Energy, Lincoln Electric,The J.M. Smuckers Company, New York Community Bank, State of Connecticut, NCR
Information Not Available
Find out what your peers are saying about Fortra's Alert Logic MDR vs. Sophos MDR and other solutions. Updated: May 2024.
793,295 professionals have used our research since 2012.