No more typing reviews! Try our Samantha, our new voice AI agent.

BlackBerry Cylance Cybersecurity vs WithSecure Elements Endpoint Protection comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Detection and Response (EDR) (5th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
BlackBerry Cylance Cybersec...
Ranking in Endpoint Protection Platform (EPP)
32nd
Average Rating
8.0
Reviews Sentiment
4.6
Number of Reviews
44
Ranking in other categories
No ranking in other categories
WithSecure Elements Endpoin...
Ranking in Endpoint Protection Platform (EPP)
36th
Average Rating
8.0
Reviews Sentiment
4.3
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.9%, up from 3.7% compared to the previous year. The mindshare of BlackBerry Cylance Cybersecurity is 1.6%, up from 1.0% compared to the previous year. The mindshare of WithSecure Elements Endpoint Protection is 0.9%, up from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.9%
BlackBerry Cylance Cybersecurity1.6%
WithSecure Elements Endpoint Protection0.9%
Other93.6%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Sooraj Makkancherrry - PeerSpot reviewer
Security Operations Manager at Philips
Doesn't have daily updates, which is important for healthcare IT
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we contact support, they tell us to update the latest agent, but we can't do that immediately due to medical device protocols and validation testing. I wish support would try to understand our issues better instead of giving this standard response. The machine learning feature they use often tells us to upgrade the agent or add things to the exclusion list, which isn't unacceptable. It's a very good and new technology as a tool and antivirus. But sometimes, it doesn't work properly with our medical devices and products, quarantining files it shouldn't even after we add them to exclusions. This is tricky for us.
Mark Feldman - PeerSpot reviewer
IT-Manager at MKF-Schimanski-ERGIS GmbH
Central console streamlines patch monitoring and device management effortlessly
WithSecure Elements Endpoint Protection is good and easy to set up. I provide an installation file for every client through my domain controller and GPO, and it works properly. We have faced no incidents with viruses or network breaches, and it's easy to monitor patches. I can use remote desktop from the central console. The solution also saves my time because, being the only one handling it, I can monitor all devices easily.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cortex XDR is stable, offering high quality and reliable performance."
"WildFire AI is the best option for this product."
"One of the main benefits of the solution is its intelligence to correlate the events into an incident."
"The user interface of the solution is sophisticated and straightforward."
"The most valuable features of this product are the management capabilities, which allow an IT organization to get quite a good picture of attempted cyber attacks, and its out-of-the-box investigation capabilities."
"The good thing about the product is that it's always scanning."
"It collects and caches and the knowledge of machine learning from different customers to take to the cloud, it makes it better to use for everybody, it allows for quick learning and updates and can, therefore, offer zero-day malware security, and this sharing of metadata helps make the solution very safe."
"Based on my experience with Cortex XDR by Palo Alto Networks, I highly recommend it due to its quick response to zero-day attacks and low utilization from end-user devices."
"The Application Guard and ByteGuard are useful features."
"It does a good job of protecting us."
"The deployment of updates is easy."
"With Cylance AI and Machine Learning, it's ensuring that all types of malware, PUP (Potential Unwanted Programs) and Memory Protection your endpoint devices are fully protected, even with day zero threats."
"The product works pretty well; it does a good job catching viruses, and while we haven't had a chance to test against any kind of ransomware attack, I know it works great and I'm not worried about its capabilities in that respect."
"Does malware analysis. Blocks WannaCry and other attacks that have come out."
"We have been trained to learn how to use the product and now we have a very good experience with it."
"It secures different entry points into the network."
"We use the product for detecting network vulnerabilities and for software update purposes."
"Both incoming and outgoing traffic is protected."
"It's pretty simple to use, with the console and the dashboard there is no information overload, it's easy to follow, and it's pretty straightforward to do things like web filtering, generating reports, creating profiles, and deploying it to machines remotely, which is convenient for us."
"There is a layer of security to prevent a malicious agent (malware) from interrupting or stopping services, deleting or modifying registry entries or even stopping the antivirus from acting, ensuring that there will be no interruption of protection."
"WithSecure Elements Endpoint Protection is good and easy to set up."
"The notifications and patch management features are valuable."
"The customer portal by WithSecure is a lot better with WithSecure Elements Endpoint Protection than it was with Countercept."
"It's a very good and reliable product as we have no problems with it generally."
 

Cons

"There is also no recovery feature; if some endpoint is under attack there must be the possibility of recovering it or restoring it to a normal state."
"Cortex XDR by Palo Alto Networks could improve by offering remote management. It would be useful to look at the client's issue to fix it."
"The solution eats memory of the computer, unlike anything I've ever seen."
"Managing the product should be easier."
"When it comes to core analysis, and security analysis, Cortex needs to provide more information."
"If he is using a smaller company, he can depend on some other tools because Cortex XDR by Palo Alto Networks is a bit expensive."
"The product's pricing needs improvement. They could provide more discounts. Additionally, the dashboard and control panel could be enhanced."
"Cortex XDR by Palo Alto Networks is a strong tool, but it is true that digesting information sometimes makes the tool go a little bit slower."
"Additionally, their channel management has been lacking, with a notable disregard for small and medium-sized businesses, focusing primarily on large enterprises and very large MSPs."
"Reporting is an area with shortcomings in CylancePROTECT that needs to be improved."
"I would like to see a little bit of additional reporting or insight as to what it is doing exactly."
"It just doesn't make you feel like you're getting covered or have the best protection, which you should have."
"The solution should implement AI in the product."
"An area for improvement in CylancePROTECT is its pricing, as it's a bit costly."
"Having worked with SentinelOne, Cylance is good, however, it probably needs to add a feature similar to SentinelOne's rollback functionality. With this feature, if you get infected, with a click, you can go back to the pre-infection state. If Cylance could add this functionality to their offering as well, that would be ideal."
"While you are working, you are finding these things that were supposed to be waived have come back to being blocked. That's frustrating."
"The solution could improve by having more real-time responses. For example, when a license gets removed from a computer it does not update the records of the change. Additionally, when I installed Microsoft Windows Defender I was not able to send licenses through email to our tenants. The integration with other solutions could improve."
"One problem is that the solution takes too much RAM from the client."
"I would like the part of Hash Analysis by external sources to be improved."
"The program and cloud service management is in English. It's not a problem for me, however, it might be for users who don't speak English or use it regularly."
"In my opinion, there is room for improvement for WithSecure Elements Endpoint Protection, especially in the deployment tools, which could be a little better, but not by much."
"There could be a dedicated security partner with essential knowledge."
"Resource consumption is suboptimal and could be improved."
"But the biggest one for us is patch management because this has been our top priority when looking at alternatives. Every solution needs to have patch management, if that's possible. It would cut costs on our side if that feature were included, so we don't need to pay for two separate pieces of software."
 

Pricing and Cost Advice

"Compared to CrowdStrike, Cortex XDR is an expensive solution."
"It's way too expensive, but security is expensive. You pay for your licensing, and then you pay for someone to monitor the stuff."
"I feel it is fairly priced."
"If one wishes to work with another team or large number of users at a future point, he must purchase a license for them."
"The pricing is a little high. It is per user per year."
"The cost of Cortex XDR by Palo Alto Networks is $55 to $90 USD per endpoint per month."
"The pricing is a little bit on the expensive side."
"The solution has one subscription for endpoint protection and one subscription for detection and response. The two licenses combined give you the BRO version."
"Currently, we have competitive pricing for Cylance, which is affordable enough to consider."
"The monthly fee is $55 USD per user."
"Review closely how many endpoints you actually need before buying into a pricing level. Deal and deal with the VAR of your choice."
"The licensing part of the product is too expensive compared to other solutions in the market."
"I think that the price we are paying is good for what it is."
"The price is reasonable for us at the moment. I rate the overall solution an eight out of ten."
"It's not so heavily priced; rather, it's average and decent."
"CylancePROTECT's pricing is reasonable, at about €18 per user, per year."
"The price is comparable."
"We pay a yearly licensing fee of about €20 per computer."
"The product has average pricing."
"If you purchase licenses in bulk the price of the licenses can decrease."
"The cost of the solution depends on the size of the company and where the licenses are being ordered from."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
10%
Construction Company
12%
Outsourcing Company
7%
Comms Service Provider
7%
Manufacturing Company
7%
Comms Service Provider
20%
Manufacturing Company
12%
Computer Software Company
7%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business33
Midsize Enterprise5
Large Enterprise14
By reviewers
Company SizeCount
Small Business7
Large Enterprise1
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Blackberry Protect?
The price is reasonable for us at the moment. I rate the overall solution an eight out of ten.
What needs improvement with Blackberry Protect?
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we conta...
What is your primary use case for Blackberry Protect?
I am using CylancePROTECT as an active learning algorithm. We installed it on almost 20,000 servers and virtual machi...
What is your experience regarding pricing and costs for F-Secure Protection Service for Business?
The pricing is scalable. We can purchase more licenses if needed. It's a more cost-effective solution compared to Dar...
What needs improvement with F-Secure Protection Service for Business?
In my opinion, there is room for improvement for WithSecure Elements Endpoint Protection, especially in the deploymen...
What is your primary use case for F-Secure Protection Service for Business?
The product I am working with currently is WithSecure Elements Endpoint Protection. We are currently using WithSecure...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Blackberry Protect
F-Secure Elements Endpoint Protection, F-Secure Protection Service for Business
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Panasonic, Noble Energy, Apria Healthcare Group Inc., Charles River Laboratories, Rovi Corporation, Toyota, Kiewit
Information Not Available
Find out what your peers are saying about BlackBerry Cylance Cybersecurity vs. WithSecure Elements Endpoint Protection and other solutions. Updated: August 2026.
908,877 professionals have used our research since 2012.