No more typing reviews! Try our Samantha, our new voice AI agent.

Blackberry Dynamics Apps vs NetWitness NDR comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (3rd), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Blackberry Dynamics Apps
Ranking in Endpoint Detection and Response (EDR)
68th
Average Rating
8.0
Reviews Sentiment
7.2
Number of Reviews
2
Ranking in other categories
No ranking in other categories
NetWitness NDR
Ranking in Endpoint Detection and Response (EDR)
57th
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
15
Ranking in other categories
Endpoint Protection Platform (EPP) (47th), Threat Intelligence Platforms (TIP) (34th), Security Orchestration Automation and Response (SOAR) (22nd), Network Detection and Response (NDR) (19th), Extended Detection and Response (XDR) (40th)
 

Mindshare comparison

As of October 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.9% compared to the previous year. The mindshare of Blackberry Dynamics Apps is 0.5%, up from 0.1% compared to the previous year. The mindshare of NetWitness NDR is 1.1%, up from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
NetWitness NDR1.1%
Blackberry Dynamics Apps0.5%
Other94.7%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Sukkanta Banerjee - PeerSpot reviewer
Senior Software Engineer at a tech vendor with 10,001+ employees
A way for users to manage their credentials on the go using a stable, and scalable app
I give the solution an eight out of ten. It's hard to comment on the number of users because the feature is completely for corporate employees who have Blackberry devices, so it's hard to track how many users there are. I advise making your decision to use the solution based on the usage in the company or the demand of the business, which you are running based on the demand.
reviewer1799727 - PeerSpot reviewer
Manager, IT Security Operations at a non-profit with 11-50 employees
Reliable and good support but can be expensive
I have no real complaints about the solution. Threat detection could be better. They need to enhance their threat intelligence feeds. We would like to have more IOCs or more trade intelligence to not only rely on the intelligence of the engineer in charge but to have some threat intelligence and some seeds of IOCs and to have the host have some artificial intelligence to reduce the number of false positives. I don't see this solution being very scalable. The solution is pricey.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Palo Alto is one of the tech vendors that always provides top-of-the-line products."
"We use Cortex XDR by Palo Alto Networks for its ability to detect based on behavior rather than simple virus scan to prevent malicious activities."
"Cortex XDR's most valuable feature is its intelligence-based dashboards."
"Cortex XDR is a very capable solution for protecting large networks and a lot of endpoints. It's very useful because the automation is very high, and if you combine it with the features on Palo Alto firewalls, it provides very strong protection."
"The live terminal is probably the best thing ever. It gives you the access to get straight onto any machine."
"The normal protection was really effective, and we detected situations that if we didn't have Cortex XDR by Palo Alto Networks, it's highly likely that we would have been affected, but it protected the infrastructure."
"We can visualize and control the activities in the environment from anywhere."
"I've found the solution to be highly scalable for enterprises."
"The solution is very easy to set up."
"The resetting option and creating a password is a very useful on-the-go feature, which gives a user a good experience, obviously a hassle-free experience."
"The mail is without a doubt the most valuable."
"Their technical support is actually quite good."
"The solution is scalable; it creates 3,000 lab logs per second, and I think the solution is suitable for large companies or medium to large companies."
"We like the solution doesn't have to be managed by an IT department; it's easy to use and you can still check the machine without the IT department being involved."
"One of the most valuable features is the Orchestrator."
"This solution allows us to locate the malware in real-time."
"We use it for IT security purposes; this is our central log management solution, so we incorporate all of our servers and PCs into this software and can monitor the logs from there."
"It is very easy to use, and its usability is great."
"It helps our security team respond more accurately when there are threats, then we get less false positives or negatives."
"In my opinion, this is the best platform, world-wide, and I am happy with it."
 

Cons

"They have the worst support, as a company, that I have ever worked with, as they are difficult to get a hold of and keep on the phone. They don't know what they are talking about when you get them on the phone. They don't like to respond to messages when you send them to them. They like to "research problems" for weeks on end, then pass you off to somebody else."
"The product's pricing could be better."
"In general, the price could be more competitive."
"It's very time-consuming to log support issues and the people that answer the tickets aren't very knowledgeable."
"Enhancing UI simplicity and playbook flexibility are areas that could benefit from more low-code automation options for smoother integrations."
"For working with the solution, you only really need a web browser, however, we've found that working on Chrome, for example, is horrible."
"It automatically detects security issues. It should be able to protect our network devices while operating autonomously."
"The negative aspect I see is the economic model used by Palo Alto."
"The user interface could be improved. It was clunky at times."
"The solution can be improved by adding more features in which the content could be synced."
"RSA NetWitness Endpoint is a scalable solution. However, the problem which we normally face is in terms of the migration of the solution."
"We would like to see the hunting and investigation features of this solution improved, in order to provide better visibility of issues."
"The initial setup requires a high level of skill, then the setup is good and smooth."
"When analyzing something, you have to click several times. It requires a lot of effort to find something."
"The solution doesn't have a reporting engine which would be helpful."
"The problem with this product is that it's a bit slow."
"The solution lacks a reporting engine."
"Its price could be improved. It is an expensive product. Its training is also too expensive. It would be great if they can have a better pricing scheme for the training."
 

Pricing and Cost Advice

"In terms of the cost Cortex XDR by Palo Alto Networks is very expensive because we are a Mexican company and when you translate dollars to pesos the cost is very high. The solution is very expensive for Mexican companies. I understand that they have international prices, but I do not think it offsets the price enough for many companies in countries, such as Mexico. The amount it is reduced is not a massive percentage."
"Cortex XDR’s pricing is very reasonable."
"It is cost-effective compared to similar solutions. It fits for the small businesses through to the big businesses."
"The solution is expensive. It's pricing is on a yearly-basis."
"I don't recall what the cost was, but it wasn't really that expensive."
"I don't have any issues with the pricing. We are satisfied with the price."
"The cost depends on your chosen license type, like Pro or other licenses."
"I did PoCs on products called Cylance and CrowdStrike. Although, I consider these products and they were also good, when it come to cost and budgetary factors, Traps has been proven to be better than the other two products. It is quite cost-effective and delivers all the entire solution which we require."
"I am not able to remember the amount, but users have to subscribe for a certain amount, so once they subscribe, the amount gets sent."
"We had a licensing package of $500,000 for three years."
"With RSA, there is flexibility in choosing the service, products, and the range that meets your requirement, as well as they are flexible in terms of pricing."
"It is an expensive product."
"The cost depends on the number of endpoints that you want to monitor, but it is not expensive."
"It is highly scalable. It can be bought based on your requirements."
"I do not have any opinion on the pricing or licensing of the product."
"The pricing is not very economical. It is a quite costly product for India. One thing is that when you purchase it, you have to purchase a module separately."
"NetWitness Endpoint is less costly than its competitors, but it offers fewer features."
"We are on a three-year contract to use RSA NetWitness Network."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
No data available
Financial Services Firm
11%
Outsourcing Company
10%
Comms Service Provider
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
No data available
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise6
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
Ask a question
Earn 20 points
Ask a question
Earn 20 points
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
RSA ECAT, NetWitness Network
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
ADP, Ameritas, Partners Healthcare
Find out what your peers are saying about Blackberry Dynamics Apps vs. NetWitness NDR and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.