Cisco Threat Grid vs NetWitness XDR comparison

Cancel
You must select at least 2 products to compare!
Cisco Logo
511 views|268 comparisons
100% willing to recommend
NetWitness Logo
96 views|62 comparisons
87% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Cisco Threat Grid and NetWitness XDR based on real PeerSpot user reviews.

Find out in this report how the two Threat Intelligence Platforms solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Cisco Threat Grid vs. NetWitness XDR Report (Updated: May 2024).
771,170 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The most valuable feature is the integration with firewalls. It's integrated with AMP so the ecosystem with equal solutions from Threat Grid is good with CISCO products.""It is easy to implement and is very scalable. It also comes with very good documentation. Cisco provides good technical support as well.""The simplicity of implementation is valuable."

More Cisco Threat Grid Pros →

"The most valuable feature of RSA NetWitness Network is the single unified dashboard from which you can manage all the different products of RSA. Additionally, the integration with native applications is good.""Technical support is knowledgeable.""The interface of this solution is very flexible and easy to use.""We've contacted technical support several times. They've been very good. They have been able to help us resolve our issues.""The log correlation is good.""They have recently updated the features and the most valuable ones are the instant threat response, ease of use, web interface, integration, and easy access. RSA NetWitness Endpoint is very compatible with other solutions and technologies. However, they do not rely on third-party solutions and have most features built-in.""It is very easy to use, and its usability is great. The use cases are also very easy. The visualizations of the use cases are magnificent. You cannot find this in any other solution. From my point of view, it is great.""NetWitness Endpoint's most valuable features are its interoperability across many different operating systems and the ease of pivoting from network to endpoint via a single console."

More NetWitness XDR Pros →

Cons
"I was told that the user interface could be more user friendly and easy in comparison to that of competitors. I remember that there is a competitor who has a much easier interface for many users to interact with.""Support must be improved.""They come in and have multiple management solutions but it doesn't scan or doesn't have the ability to look at every file extension."

More Cisco Threat Grid Cons →

"The contamination feature could be improved.""I would like to see Security Orchestration and Response Automation (SOAR) integration.""When analyzing something, you have to click several times. It requires a lot of effort to find something.""Its price could be improved. It is an expensive product. Its training is also too expensive. It would be great if they can have a better pricing scheme for the training.""NetWitness Endpoint's blocking feature does not work properly - if there's a malicious process, it's not possible to kill it via a custom rule unless and until it's flagged as malicious.""The threat intelligence could improve in RSA NetWitness Endpoint.""We would like to see the hunting and investigation features of this solution improved, in order to provide better visibility of issues.""The solution is modular, for example you can buy the RSA ePack, which you buy as a module is not part of the conduit solution. They could include it and have it as an all-in-one solution."

More NetWitness XDR Cons →

Pricing and Cost Advice
  • "If I remember correctly, the licensing cost is a little bit higher than that of the competitor."
  • More Cisco Threat Grid Pricing and Cost Advice →

  • "With RSA, there is flexibility in choosing the service, products, and the range that meets your requirement, as well as they are flexible in terms of pricing."
  • "They can easily adjust if you have the requirements which are required. If you have a budget cut or a budget constraint, they can bend."
  • "It is highly scalable. It can be bought based on your requirements."
  • "I do not have any opinion on the pricing or licensing of the product."
  • "The cost depends on the number of endpoints that you want to monitor, but it is not expensive."
  • "It is an expensive product."
  • "The price of the solution depends on the environment. If the environment is large then it will cost more. However, the larger the environment with more endpoints, you will receive an increased discount. If the environment is very small, then you might think it is expensive. It is always better to buy in bulk to receive a discount. The minimum number of assets is usually 500, with discounts on 1000 and 2000."
  • "The pricing is not very economical. It is a quite costly product for India. One thing is that when you purchase it, you have to purchase a module separately."
  • More NetWitness XDR Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Threat Intelligence Platforms solutions are best for your needs.
    771,170 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The simplicity of implementation is valuable.
    Top Answer:The way the management file is integrated into the environment must be improved.
    Top Answer:Technical support is knowledgeable.
    Top Answer:The solution is expensive. I'd rate it at a one or two out of five. They need to adjust it to keep up with the competition. I cannot speak to the exact pricing of the product.
    Top Answer:I have no real complaints about the solution. Threat detection could be better. They need to enhance their threat intelligence feeds. We would like to have more IOCs or more trade intelligence to not… more »
    Ranking
    Views
    511
    Comparisons
    268
    Reviews
    1
    Average Words per Review
    205
    Rating
    7.0
    Views
    96
    Comparisons
    62
    Reviews
    6
    Average Words per Review
    320
    Rating
    7.8
    Comparisons
    Also Known As
    Threat Grid, ThreatGrid
    RSA ECAT, NetWitness Network
    Learn More
    NetWitness
    Video Not Available
    Overview

    Cisco Threat Grid crowd-sources malware from a closed community and analyzes all samples using proprietary, highly secure techniques that include static and dynamic (sandboxing) analysis. It correlates the results with hundreds of millions of other analyzed malware artifacts to provide a global view of malware attacks, campaigns, and their distribution. Security teams can quickly correlate a single samples of observed activity and characteristics against millions of other samples to fully understand its behaviors in a historical and global context. This ability helps analysts effectively defend against both targeted attacks and the broader threats from advanced malware. Threat Grid’s detailed reports, including the identification of important behavioral indicators and the assignment of threat scores, let you quickly prioritize and recover from advanced attacks.

    Using a centralized combination of network and endpoint analysis, behavioral analysis, data science techniques and threat intelligence, NetWitness XDR helps analysts detect and resolve known and unknown attacks while automating and orchestrating the incident response lifecycle. With these capabilities on one platform, security teams can collapse disparate tools and data into a powerful, blazingly fast user interface.

    Sample Customers
    Center for Internet Security (CIS), ADP
    ADP, Ameritas, Partners Healthcare
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company17%
    Financial Services Firm12%
    Healthcare Company9%
    Retailer7%
    VISITORS READING REVIEWS
    Financial Services Firm15%
    Computer Software Company15%
    Government8%
    Manufacturing Company7%
    Company Size
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise8%
    Large Enterprise70%
    REVIEWERS
    Small Business59%
    Midsize Enterprise24%
    Large Enterprise18%
    VISITORS READING REVIEWS
    Small Business17%
    Midsize Enterprise16%
    Large Enterprise67%
    Buyer's Guide
    Cisco Threat Grid vs. NetWitness XDR
    May 2024
    Find out what your peers are saying about Cisco Threat Grid vs. NetWitness XDR and other solutions. Updated: May 2024.
    771,170 professionals have used our research since 2012.

    Cisco Threat Grid is ranked 21st in Threat Intelligence Platforms with 3 reviews while NetWitness XDR is ranked 13th in Threat Intelligence Platforms with 15 reviews. Cisco Threat Grid is rated 7.6, while NetWitness XDR is rated 8.0. The top reviewer of Cisco Threat Grid writes "Has good integration with firewalls but has limited file extensions". On the other hand, the top reviewer of NetWitness XDR writes "Beneficial single unified dashboard, good native application integration, and high availability". Cisco Threat Grid is most compared with CrowdStrike Falcon, Microsoft Defender Threat Intelligence and Palo Alto Networks AutoFocus, whereas NetWitness XDR is most compared with Darktrace, ExtraHop Reveal(x), CrowdStrike Falcon, SentinelOne Singularity Complete and Microsoft Defender for Endpoint. See our Cisco Threat Grid vs. NetWitness XDR report.

    See our list of best Threat Intelligence Platforms vendors.

    We monitor all Threat Intelligence Platforms reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.