No more typing reviews! Try our Samantha, our new voice AI agent.

Bitdefender GravityZone EDR vs Tanium comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (3rd), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Bitdefender GravityZone EDR
Ranking in Endpoint Detection and Response (EDR)
25th
Average Rating
8.4
Reviews Sentiment
6.3
Number of Reviews
62
Ranking in other categories
No ranking in other categories
Tanium
Ranking in Endpoint Detection and Response (EDR)
21st
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
23
Ranking in other categories
Vulnerability Management (26th), Endpoint Protection Platform (EPP) (13th), Unified Endpoint Management (UEM) (8th), Autonomous Endpoint Management (2nd)
 

Mindshare comparison

As of October 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.9% compared to the previous year. The mindshare of Bitdefender GravityZone EDR is 1.6%, down from 2.4% compared to the previous year. The mindshare of Tanium is 2.1%, down from 2.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
Tanium2.1%
Bitdefender GravityZone EDR1.6%
Other92.6%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
HarshBhardiya - PeerSpot reviewer
SOC Engineer at a outsourcing company with 10,001+ employees
Provides detailed event investigation and endpoint control but needs better Mac support and UI improvements
I find the advanced behavioral analytics feature in Bitdefender GravityZone EDR a little gimmicky, as I don't usually find much use for it. The advanced behavioral analytics feature needs to be optimized to be more user-friendly and easier to work with. We don't specifically look for the customizable dashboards within Bitdefender GravityZone EDR; rather, we get the logs on our SIEM solution, QRadar, where we have created the dashboards. We also have Tableau and Power BI, so we don't utilize any dashboards on the EDR front. I would like to optimize the incident response area as well, especially when comparing my experience with CrowdStrike, which is relatively more responsive and easier to navigate when there are multiple hosts involved. Other areas of improvement for Bitdefender GravityZone EDR include its lack of support for Mac devices.
Sandeepraj Gatla - PeerSpot reviewer
Dfir Analyst at a tech services company with 201-500 employees
Endpoint monitoring has strengthened incident response and provides rapid isolation and forensics
Tanium provides an endpoint which is isolated from the network and environment. We can easily search its logs and history and connect remotely directly to that particular device which has been isolated from the network. We can search for the history and logs, including audit logs and event logs. The complete activity of the user or owner of the device is visible to us. We can see the artifacts of particular USB transfers internally for official use. We can not only connect remotely but also see the device status and how many failures have occurred within the network so far. We can see the IP address, how many times it has changed its IP address, and how many times it was connected to VPN or external VPN or internal VPN and what has been searched while on VPN. We can block the IOCs or IP addresses as well. We can block domains, hashes, SHA values, SHA-256, SHA-1, SHA-5 and MD5. Although I am not completely involved in the automation team, we do have that team and I have worked in some CERT recently. Tanium is more useful while we are in the CERT because most of the times when we are on high alert, Tanium does play a main role for that particular incident or any high case. Tanium is a simple tool and we can easily integrate it to many devices and it is a mandatory tool to secure an endpoint. It is mandatory to give any RDP connection and the tool should be present in the particular device. It is completely mandatory and it is in the policy as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Its interface and pricing are most valuable, and it is better than other vendors in terms of security."
"The information the dashboard provides is very clear."
"We've had a significant increase in blocking with a decrease in false positives, because it's looking at how the files work, not just a list of files that it's been told to look for."
"If you are looking for security, mainly for advanced threat prevention from ransomware and malware attacks, I would recommend Cortex."
"The solution is a new generation XDR that has a lot of artificial intelligence modules."
"Cortex is the best solution for avoiding security breaches, malware attacks, and other kinds of security issues."
"We can use Cortex XDR to get the entire graph of the incidents from source to destination, and we can take remedial action."
"The ability to kind of stitch everything together and see the actual complete picture is very useful. I guess you'd call it a playbook. Some people call it the forensics analysis of what was happening on particular endpoints when they detected some malicious behavior, and what transpired before that to cause that. It is also very user friendly. The way they have done everything and integrated all the solutions that they've purchased over the years to make it a very seamless, effective product is very good. One thing about Palo Alto is that they take the products or services that they purchase and make them seamless for the end user as compared to some companies that purchase other companies and then just kind of have their products off to the side or keep different interfaces. Palo Alto doesn't do that."
"Bitdefender easily tracks all security events in our organization and does not affect the performance of the local computer."
"I like GravityZone's short implementation time, as it takes only a day at most."
"The Ultra is a valuable feature."
"GravityZone can be controlled from the cloud."
"I have access to it from anywhere."
"The solution's deployment is very easy and flexible."
"I highly recommend this product to other consumers, it has great monitoring and scheduled emails for generated reports."
"I would recommend the product as it's easy to deploy and it's not as heavy as Symantec."
"Tanium's most valuable features are patch management, inventory, and distribution software."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first. I like the ability it has to make several campaigns that work in parallel."
"I find the inventory and compliance features of Tanium to be the most impressive."
"The security features are very valuable."
"For incident response tasks, all these tasks can get done in minutes with minimal disruption to the end-user."
"The interrogation piece was the most valuable feature because it was very detailed."
"Tanium’s best features include support for any Windows, Linux, or Mac endpoint, regardless of where it is, and the ability to do IT operations and security operations."
"Tanium is used for endpoint management, specifically patching and configuration management."
 

Cons

"Impact on system performance is horrible, adding a lot of delays for users."
"The solution could improve by providing better integration with their own products and others."
"I would like to see some additional features related to email protection included."
"Cortex does not offer an on-premises solution. However, some customers would prefer not to be on the cloud. It would be ideal if it could offer something on-prem as well."
"Cortex XDR could be improved with more GUI features."
"I would like to see them include NDR (Network Detection Response). Then it would work well with SIEM Response."
"We would also like to have advanced tech protection and email scanning."
"Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth."
"They should include the Hebrew language for its technical support in terms of communication."
"The software itself is solid. It would be better if it was more of a real-time solution, like SentinelOne. The one thing that holds me back on the SentinelOne side is that I can blacklist websites and stuff like that, but it's not as granular as Bitdefender. With Bitdefender, I feel like I have more control over what I can whitelist and blacklist."
"The only issue an end user might have is in the case where a website has some kind of monitoring software included, where they want to track use, and it might unnecessarily block the site for the user."
"In terms of improvement of the solution, it could have better features. For example, having a firewall within. This way we would only need one solution."
"We find it's making the machines run slow."
"The interface could be improved."
"Other solutions are cheaper than GravityZone."
"The one thing I'd say about their complete MDR product is that it's too expensive, which is why I prefer to use an alternative SOC and integrate Bitdefender to a different SOC on their own."
"Our biggest issue with the solution is its lack of mobility."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
"The main issues are the network connection because different customers have issues with their networks. It's difficult implementing this type of solution because the network is the main feature in the architecture for these types of solutions. Tanium could improve by creating some network optimization."
"The solution lacks mobility."
"Tanium required local admin or root rights on Mac devices, which did not comply with our security policies. This made the solution less suitable for our restrictive environment."
"The solution needs to improve the reporting and tracking capabilities."
"There are downsides and drawbacks in Tanium, and there is room for improvement from my perspective."
"There are some bugs in the product. The tool needs to improve in the area of reporting."
 

Pricing and Cost Advice

"Our customers have expressed that the price is high."
"Our license will require renewal in August, after which the maintenance will continue as usual."
"I don't like that they have different types of licenses."
"It's about $55 per license on a yearly basis."
"I don't recall what the cost was, but it wasn't really that expensive."
"Cortex XDR’s pricing is very reasonable."
"Cortex XDR by Palo Alto Networks is an expensive solution."
"This is an expensive solution."
"As I am on a different model, my clients pay me on a monthly basis."
"The solution is affordable."
"We need to pay for a yearly license for the solution."
"It is not that expensive. Compared to its competitors, it is well-priced and well-placed."
"Bitdefender GravityZone Ultra's pricing is competitive in the market."
"I rate the product's price a four on a scale of one to ten, where one is low, and ten is high."
"Price-wise, we have a better licensing agreement with Bitdefender than we did with competing vendors."
"Bitdefender GravityZone EDR is cost-effective and has the best pricing."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"It is higher than some competitors in the market."
"It's an expensive solution. It would be nice if the cost were lower."
"The solution is expensive but it's a good investment."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"The solution offers value for money."
"There is an annual license required to use this solution."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
Comms Service Provider
12%
Construction Company
10%
Outsourcing Company
10%
Manufacturing Company
7%
Financial Services Firm
14%
Government
9%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise9
Large Enterprise11
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Bitdefender GravityZone Ultra?
The cost is reasonable, with the license costing approximately six to eight dollars per user.
What needs improvement with Bitdefender GravityZone Ultra?
I would like to see improvements in Bitdefender GravityZone EDR to better support older machines. From my experience,...
What is your primary use case for Bitdefender GravityZone Ultra?
My usual use cases for Bitdefender GravityZone EDR mostly involve zoning, reviewing EDR policies, and vetting for pos...
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Bitdefender GravityZone Ultra, Bitdefender GravityZone
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Mentor Graphics, Rudersdal Kommune
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Bitdefender GravityZone EDR vs. Tanium and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.