No more typing reviews! Try our Samantha, our new voice AI agent.

ArcSight Analytics vs Cynet comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 4, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
110
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (6th), Extended Detection and Response (XDR) (5th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
ArcSight Analytics
Average Rating
6.8
Reviews Sentiment
6.7
Number of Reviews
15
Ranking in other categories
User Entity Behavior Analytics (UEBA) (18th)
Cynet
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
45
Ranking in other categories
Security Information and Event Management (SIEM) (21st), Endpoint Protection Platform (EPP) (18th), User Entity Behavior Analytics (UEBA) (7th), Endpoint Detection and Response (EDR) (18th), Threat Deception Platforms (2nd), Network Detection and Response (NDR) (9th), Extended Detection and Response (XDR) (13th), Ransomware Protection (4th)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
reviewer1311453 - PeerSpot reviewer
Consultant at a tech vendor with 10,001+ employees
Good filtering and reporting tools but can be difficult to use
It can scale as needed. It's not a problem. There are different teams using it. We have CSOC, which is internal, which is onshore, then we have a security operations center that is offshore, which would be in India. The onshore team might be a group of three, and the offshore might be a group of five. Likely, we have eight to ten people in total using the product directly.
Roshan Jadhav - PeerSpot reviewer
Technical Consultant at Vincacyber
Has improved threat detection and streamlined incident analysis through centralized control and AI-driven insights
People are looking for Cynet because it has next-generation threat protection that detects zero-day threats. It has UEBA (user entity behavior analysis), threat hunting features, and storage device control where we can create profiles and block unauthorized USB storage devices. We can also create threat protection policies to detect malware, ransomware, and many other threats. The most valuable feature is the UBA (User behavior analysis). It has integration with SIEM solutions, allowing us to share our logs to third-party SIEM servers. Cynet has AI integration which showcases complete forensic data about threats, making it very easy to understand what happened with the system and what type of incident was detected. Autonomous breach protection is a feature of Cynet which can detect and mitigate known and unknown threats based on signatures. If there are any signature-less files, malware, or ransomware, it will detect them based on autonomous breach protection capabilities. The centralized management console provides a dashboard where we can see four types of attack vectors and incident counts in real-time. It continuously scans the radar and shows open alerts related to files, hosts, users, or networks. We can easily export these alerts and send reports via email.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Palo Alto Networks Traps improves our security posture and lowers risk by providing next-gen methods to combat against modern threats on all the major platforms."
"From the Palo Alto side, whatever they buy, they integrate that really well into their integration suite, and that makes a massive difference."
"I have found the solution to be very easy in respect of the integration and configurable."
"Cortex XDR by Palo Alto Networks should be a stable solution."
"The multi-layered approach to the product gives you confidence that it will stop exploits, ransomware, worms, or viruses from compromising endpoints, essentially providing peace of mind."
"After deploying Traps, we saw the performance of the network improve by 65 to 70 percent."
"It has a higher cost than other solutions, like CrowdStrike or Microsoft’s EDR tools, but it reduces the cost of our operations because it’s a new generation antivirus tool."
"The solution allows us to make investigations. Other XDR solutions also provide similar capabilities but for investigation, Cortex XDR is better."
"The solution is easy to implement."
"Our organization has improved because ArcSight allows multiple integrations with multiple systems which we did not do before using the product."
"This solution allows us to identify connections for all users, and we can see the name, login time, IP address, and other information for each connection to each server."
"The features I have found most valuable are it capabilities for behavioral analytics and anomaly detection."
"The two most valuable features of this solution are its stability and scalability."
"I like their filtering and their reporting tools, I like their integration with many other different tool sets, which is similar to other products as well, the solution is easy to implement, and I have found the product to be quite stable and scalable."
"Allows multiple integrations with multiple systems in a stable and flexible fashion."
"The ability to correlate different logs is the solution's most valuable feature."
"It has quite good detection and response features; they are improving continuously."
"The most valuable aspect of this solution is that it is a complete solution, which makes cyber security very free and almost perfect. There is no such thing as perfect cyber security, but as far as it can go, sign it comes close to being perfect and holistic. Cynet is always comprehensive from the perspective of functionality, as well as from the standpoint that it encompasses not only technology but also processes and people. The triad of people, processes, and technology is crucial and should always be in place. To my knowledge, no other product or platform combines all three components into one, but Cynet does."
"The visibility it gives is excellent."
"Our clients choose Cynet because it is both simple to use and comprehensive."
"The solution provided an immediate return on investment; we've stopped several cyberattacks within hours, and we stopped one ongoing cyberattack within one day of deploying to a new client."
"We are using almost all of the features and we find it quite good overall."
"As a reseller, I believe the best functions in Cynet's product are the lightweight agent and good detection performance."
"The most effective features of Cynet are its ransomware protection and lateral movement deception."
 

Cons

"Technology evolves every day, so it would be nice if it gets more secure. It can also have more integration with other platforms."
"The server sometimes stops continuously to check things so it would be helpful to receive access updates or technical reasons."
"The GUI could be improved. It's a little bit cumbersome. It could be more user-friendly."
"Although I would say this product is highly-rated, it could probably do more because nothing does everything that you want."
"I have run into some detection issues with Cortex XDR. It needs to be better at detection of internal attacks."
"It would be good if they could make an exception for applications."
"The complexity and confusion regarding product variants, such as XDR, Forexiant, and Forexon, must be addressed."
"The dashboard could use some significant improvement, just making it more useful with more information. It has a limited amount of information right now. It is customizable, but I'd love to see a better out-of-box dashboard."
"The interactive dashboard is complicated and you need to have training in order to use it, so I think that it could be made easier to use."
"The ArcSight Analytic is not so easy."
"Their support team could be better."
"It's a difficult product to navigate, it's complex."
"The reporting and the way it is worded needs to be improved in future releases."
"The GUI interface is not always intuitive and easy for non-technical users to work with."
"You can use this solution for limited use cases. But for more advanced use cases, there are other solutions which are better than ArcSight."
"The interactive dashboard is more complicated comparing to his concurrent Qradar and you need to have training in order to do complexe configuration, so I think that it could be made easier to use."
"The reporting is a little weak and could be improved. The other downside is that Cynet does not use the local time zone. It's based off of Greenwich Mean Time."
"Management of the console could be simplified and made more user-friendly because right now it's not very easy to use."
"Sometimes, it is necessary for me to make important changes to a hard drive of a computer, and because Cynet does not allow me to do that, I have to go to the console and remove the computer from the security group just for Cynet. After that, I have to wait for 10 or 15 minutes for that to take effect. I would like to be able to disable Cynet locally. I shouldn’t have to go to the console to find the PC and then take it out of the group and then add it again to the group. I should locally be able to disable Cynet on a computer with a password or something like that, but it is currently not possible."
"Cynet could improve when a reverse proxy is being used to connect to the servers. There could be an easier configuration because it is not plug-and-play."
"I suppose everybody's working on AI these days. So, I would like to see more about AI-based threats."
"Cynet could improve when a reverse proxy is being used to connect to the servers. There could be an easier configuration because it is not plug-and-play."
"The solution just needs to keep maturing and they need to keep up with the threat landscape to ensure they're protecting clients well as time passes."
"I think the technical support could be better."
 

Pricing and Cost Advice

"This is an expensive solution."
"It has a higher cost than other solutions, like CrowdStrike or Microsoft’s EDR tools, but it reduces the cost of our operations because it’s a new generation antivirus tool."
"Every customer has to pay for a license because it doesn't work with what you get from a managed services provider."
"It's about $55 per license on a yearly basis."
"It's the most expensive solution, but features-wise, it's quite strong. It's very good for protection, so the results are very good in the case of protection. I would rate it a two out of ten in terms of pricing."
"In terms of the cost Cortex XDR by Palo Alto Networks is very expensive because we are a Mexican company and when you translate dollars to pesos the cost is very high. The solution is very expensive for Mexican companies. I understand that they have international prices, but I do not think it offsets the price enough for many companies in countries, such as Mexico. The amount it is reduced is not a massive percentage."
"It has a yearly renewal."
"Cortex XDR is a costly solution."
"The monthly licensing fee is around $20,000. There aren't any costs in addition to the standard licensing fee."
"My customers pay a yearly licensing fee for ArcSight Analytics."
"ArcSight Analytics is a bit expensive compared with other tools in terms of licensing costs, training, hardware implementation, and support."
"This solution is expensive."
"It can range between $30,000 and $40,000 USD, and can go up to $500,000 and $600,000 USD."
"In addition to the costs of standard licensing fees, there is the cost of labor for maintenance."
"It costs us 20,000 to 28,000 per year."
"This solution is expensive. I would rate the price as a three out of five when compared to similar products."
"Cynet is cheaper than other solutions in the market."
"Cynet is cheap."
"Our billing is on a quarterly basis, but they have monthly or annual billing availability."
"Cynet has a pay-as-you-go pricing model."
"There is an extra cost if you want the support of Cynet."
"My company's customers have to make yearly payments towards the licensing costs of the solution. Cynet is not expensive."
report
Use our free recommendation engine to learn which User Entity Behavior Analytics (UEBA) solutions are best for your needs.
894,738 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Construction Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Marketing Services Firm
15%
Construction Company
13%
Financial Services Firm
11%
Manufacturing Company
9%
Manufacturing Company
10%
Financial Services Firm
10%
Comms Service Provider
9%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise20
Large Enterprise49
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise4
Large Enterprise7
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise7
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
When evaluating User Activity Monitoring, what aspect do you think is the most important to look for?
The support team that stands behind the detection and response. Is there adequate expertise and are they behind you ...
What is your experience regarding pricing and costs for Cynet?
Cynet is not very costly. We can refer it to other customers because Cynet does not ask for additional costs for add-...
What needs improvement with Cynet?
One area where Cynet needs improvement is tamper protection for Mac and Linux agents. It currently has tamper protect...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
ArcSight User Behavior Analytics, ArcSight UBA
No data available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
Meuhedet, East Boston Neighborhood Health Center
Find out what your peers are saying about ArcSight Analytics vs. Cynet and other solutions. Updated: April 2026.
894,738 professionals have used our research since 2012.