Try our new research platform with insights from 80,000+ expert users

Anomali vs IRONSCALES comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 6, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Anomali
Ranking in Advanced Threat Protection (ATP)
22nd
Average Rating
7.8
Reviews Sentiment
7.2
Number of Reviews
4
Ranking in other categories
Security Information and Event Management (SIEM) (33rd), User Entity Behavior Analytics (UEBA) (18th), Threat Intelligence Platforms (8th), Extended Detection and Response (XDR) (27th)
IRONSCALES
Ranking in Advanced Threat Protection (ATP)
19th
Average Rating
9.2
Reviews Sentiment
7.6
Number of Reviews
13
Ranking in other categories
Email Security (18th), Secure Email Gateway (SEG) (8th)
 

Mindshare comparison

As of August 2025, in the Advanced Threat Protection (ATP) category, the mindshare of Anomali is 1.3%, up from 1.1% compared to the previous year. The mindshare of IRONSCALES is 2.4%, down from 2.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Advanced Threat Protection (ATP)
 

Featured Reviews

CC
Enables automated threat intelligence sorting and enhances proactive threat hunting capabilities
You have to have at least a threat intelligence background or a SOC analyst background to use it, as that's the information you'll dig around with in there. If you don't have that kind of knowledge, it probably can be a little hard to use, but they do provide training. They offer training not only for how to use the platform but also some basic threat intelligence training to explain what these things are and what these terms mean. My company is a customer of Anomali. I would recommend it to other people. I would advise making sure you don't pick it without testing other products and have your use cases well thought out and documented before testing, so you know it will solve the problems you're trying to address. Keep an open mind with it and realize that whatever you can dream of, you can probably do with the platform. Overall, I would rate Anomali an eight out of ten.
Hemeshen Govender - PeerSpot reviewer
Applies AI automation to clearly identify and stop a lot of phishing emails
The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a lot of phishing emails that come through. The solution improved our response to phishing attempts. IRONSCALES has a virtual assistant and some AI intelligence that's applied to it. That was the main differentiator between IRONSCALES and Microsoft. The solution's AI automation clearly identifies phishing emails and gives you an overall indication of why it found the mail to be malicious. It does the whole analysis for you to see why the email was deemed a phishing email. The solution's response time is better than that of our previous tool. The solution's user interface is pretty straightforward and user-friendly.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I have found Cyber threat intelligence (CTI) very useful and concise. The solution is easy to use."
"The most valuable aspect of Anomali is the threat modeling capability."
"We now have a very robust collection of threat intelligence based on the capabilities that Anomali provides."
"The feature I have found most valuable is credential monitoring. This feature is easy and quick."
"The most valuable features of the solution are that it is easy to set it up, install, and manage the product."
"For me, the mobile app is most valuable. All other features are also very useful, but the mobile app makes it really easy for me to manage on the go. I don't have to be at my desk. I could be at the shops, or it could be in the evening when I am out, and I can get a notification on my phone that there is an incident that has been raised. I can sort it out very quickly without having to be at my work PC."
"AI-driven phishing detection and incident remediation are valuable. It saves time from having to do manual analysis and investigation, and we also get alerts for phishing emails."
"For what was being offered with IRONSCALES, I feel like we got an incredible deal."
"The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a lot of phishing emails that come through."
"The stability is good."
"The report function through Gmail is probably the most valuable feature. The next most valuable features are simulation and training."
"There is buzz around phishing awareness training. When I make a campaign, all of a sudden people in our organization are talking, thinking, and wondering about it. Therefore, it keeps people on their toes. That is perfect because it does exactly what we want it to do."
 

Cons

"Support in the past has been top-notch, but recent trends indicate that it has taken a back seat, as we often don't get answers for days."
"An area for improvement is the intelligence sharing within the Anomali community. The tagging system can be inconsistent, as any company can use any tags for their reporting."
"Less code in integration would be nice when building blocks."
"A lot of tools can give you many features, such as CTI intelligence and a tax service reduction. However, many people are combining different tools together to have more capabilities. It is up to the consumer whether they want to have multiple tools or have one tool that serves the purpose. Anomali Enterprise could improve by combining all the other tools' features into one solution."
"The tool supports 15 to 16 languages, but the content it uses in the training in Spanish has certain limitations."
"The integration with Google Suite needs to be better. it's something they can work on."
"In addition to integrated training, they should also have personalized training that you don't have to do as part of a phishing campaign or a simulation."
"I would like it if IRONSCALES had some sort of reminder mechanism, meaning IRONSCALES knows if a user completed the training or not. As long as it hasn't been completed, it keeps reminding every so often, alerts the manager, etc. Right now, it is all in the hands of the employee, and not all of them continue the process, which is a shame."
"I would love to see the indication of compromise and how the solution utilizes open source resources. It would be good to see that included in the paid versions. It would be a small addition but add a lot of value for clients."
"IRONSCALES should bundle more features together instead of separating them and charging additional licensing fees."
"Even though they have been continuously improving it, it is not 100% there. We have had a few incidents where legitimate emails were getting blocked, and we had to manually remove those emails from quarantine. It is 90% effective or accurate because, on rare occasions, some emails from customers were not getting delivered. In one or two instances, their emails got blocked by IRONSCALES, and we had to manually remove the emails from quarantine. I would like them to improve their algorithm to avoid flagging genuine emails as malicious. I would also like to be able to whitelist certain email addresses. I'd love to be able to whitelist a particular customer."
"There is a feature called Account Takeover, which isn't what I want it to be able to do. I know that they're working on that, but when they first started the Account Takeover feature in incident management, it didn't have much information. It didn't have any usability to it. I already had tools in place that were better."
 

Pricing and Cost Advice

"When comparing the price of Anomali Enterprise to other solutions it is in the medium to high range. However, I am satisfied with the price."
"IRONSCALES is an expensive solution."
"There is an installation cost. Since we have this as a managed service, we pay for licensing and the managed service itself. Other than that, there are no additional costs."
"The product is available as a middle-priced tool. I think it is not the cheapest solution."
"As compared to everything else we looked at, it was good. It was the best value for the dollars."
"I don't know about its pricing because I don't run the budget or pay the bills, but if it was extortionate, we probably would be looking to scrap it, and because we are not, I assume its price is okay."
"They are pretty much the same as all the other competitors in the market."
"We pay $3000 plus a little more a year for the number of employees we have, and we're not even that big. The solution is at the higher end in terms of cost. It's not the most expensive product, but I would say it's worth the price if you have a high volume of email traffic. In our case, the solution has inspected over 162,000 emails between three and four months. It saved us a lot of time and money. It's a worthwhile investment because a bad actor only has to succeed once; we must defend against everything in our business. IRONSCALES offers a sense of security and confidence from being well protected."
"Considering the value it provides, it is definitely worth the cost. We don't have to do manual analysis and remediation of phishing emails, which saves us a lot of hours. Its licensing is based on the number of users being supported and the number of email addresses being protected. I'm not aware of any additional costs."
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
865,384 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Computer Software Company
13%
Government
7%
Insurance Company
6%
Computer Software Company
16%
Manufacturing Company
7%
University
6%
Construction Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What needs improvement with Anomali ThreatStream?
An area for improvement is the intelligence sharing within the Anomali community. The tagging system can be inconsistent, as any company can use any tags for their reporting. Combining all aliases ...
What is your primary use case for Anomali ThreatStream?
I use Anomali ( /products/anomali-reviews ) for threat hunting, threat collection, operationalization of intelligence, such as indicators of compromise (IOCs), and dissemination of reports for repo...
What advice do you have for others considering Anomali ThreatStream?
For new users, I recommend taking the training provided by Anomali as it is very well articulated. I advise reading the user manual and taking the instructor-led training sessions from the customer...
What do you like most about IRONSCALES?
The solution captures a bit more of the unknown, quantifies it, and applies intelligence to it to pick out and stop a lot of phishing emails that come through.
What is your experience regarding pricing and costs for IRONSCALES?
The product is available as a middle-priced tool. I think it is not the cheapest solution. There are other solutions apart from IRONSCALES that are more expensive, while some are a little bit more ...
What needs improvement with IRONSCALES?
I think maybe on the side of the awareness training, the tool can improve a little more information and have some other languages since even though English is good, Spanish is not so good. The tool...
 

Also Known As

Match, Lens, ThreatStream, STAXX, Anomali Security Analytics
No data available
 

Overview

 

Sample Customers

Bank of England, First Energy, UBISOFT, Bank of Hope, Blackhawk Network
Allegheny Millwork, Ayrshire College, Nium, Orris, Paramount School District, Pres Les, PRT Staffing, Recovery Unplugged, Telit, WebHelp
Find out what your peers are saying about Anomali vs. IRONSCALES and other solutions. Updated: July 2025.
865,384 professionals have used our research since 2012.