No more typing reviews! Try our Samantha, our new voice AI agent.

Comodo Advanced Endpoint Protection vs Tanium comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Detection and Response (EDR) (5th), Extended Detection and Response (XDR) (3rd), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Comodo Advanced Endpoint Pr...
Ranking in Endpoint Protection Platform (EPP)
45th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
17
Ranking in other categories
No ranking in other categories
Tanium
Ranking in Endpoint Protection Platform (EPP)
13th
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
23
Ranking in other categories
Vulnerability Management (26th), Endpoint Detection and Response (EDR) (21st), Unified Endpoint Management (UEM) (8th), Autonomous Endpoint Management (2nd)
 

Mindshare comparison

As of October 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.8%, up from 3.7% compared to the previous year. The mindshare of Comodo Advanced Endpoint Protection is 0.9%, up from 0.4% compared to the previous year. The mindshare of Tanium is 2.5%, up from 2.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.8%
Tanium2.5%
Comodo Advanced Endpoint Protection0.9%
Other92.8%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
IK
Director at IP Infotech Pvt. Ltd.
Ransomware protection has made data security reliable and efficient
There are not many disadvantages, but they need to do some work on DLP integration. Support could be improved. Sometimes it is difficult to find exact solutions, and people occasionally get stuck, resulting in delayed responses. The main areas for improvement are support responsiveness and the additional enhancement with the DLP integration.
Sandeepraj Gatla - PeerSpot reviewer
Dfir Analyst at a tech services company with 201-500 employees
Endpoint monitoring has strengthened incident response and provides rapid isolation and forensics
Tanium provides an endpoint which is isolated from the network and environment. We can easily search its logs and history and connect remotely directly to that particular device which has been isolated from the network. We can search for the history and logs, including audit logs and event logs. The complete activity of the user or owner of the device is visible to us. We can see the artifacts of particular USB transfers internally for official use. We can not only connect remotely but also see the device status and how many failures have occurred within the network so far. We can see the IP address, how many times it has changed its IP address, and how many times it was connected to VPN or external VPN or internal VPN and what has been searched while on VPN. We can block the IOCs or IP addresses as well. We can block domains, hashes, SHA values, SHA-256, SHA-1, SHA-5 and MD5. Although I am not completely involved in the automation team, we do have that team and I have worked in some CERT recently. Tanium is more useful while we are in the CERT because most of the times when we are on high alert, Tanium does play a main role for that particular incident or any high case. Tanium is a simple tool and we can easily integrate it to many devices and it is a mandatory tool to secure an endpoint. It is mandatory to give any RDP connection and the tool should be present in the particular device. It is completely mandatory and it is in the policy as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features are the fact that it was running in the background and it would intercept any weird stuff, and the fact that it would send things directly to the cloud for sandboxing. It's quite practical."
"Palo Alto Networks Traps improves our security posture and lowers risk by providing next-gen methods to combat against modern threats on all the major platforms."
"It has absolutely improved the way our organization functions, we are more secure, it is giving us more peace of mind, and it has found malicious activity happening on our endpoints that probably would not have been detected if we didn't have it."
"Cortex is the best tool for endpoint detection, and I have used it to verify hashes or domains to identify malicious activity, trigger playbooks that automate and gather endpoint logs, block malicious processes, and update incident tickets, showcasing end-to-end processes with automation in investigation and reducing the analysis workflow."
"Cortex XDR by Palo Alto Networks has helped lighten the load of our security analysts because it was the major tool that we were using and the one we utilized most."
"Cortex XDR alerts us on the dashboard when there's a threat, which allows us to restrict that user and helps secure our infrastructure."
"It blocks malicious files, prevents attacks, and doesn't require many updates because it is a very light application."
"Has great threat detection capabilities."
"It's user-friendly, compatible, and accessible."
"Comodo Advanced Endpoint Protection allows our organization's clients to be managed and inventoried remotely."
"Auto Containment is a valuable feature."
"The most valuable feature is the management of end-user machines."
"The product’s valuable feature is the remote control station."
"Overall, I would rate Comodo Advanced Endpoint Protection a nine out of ten."
"We are using the latest version of the solution within our organization, and we have been very satisfied with it overall."
"It gives you a really good balanced portfolio to work with for your machines, not just on the malware protection and the firewall protection, but the virtual container, the ability to manage endpoints, the ability to manage patches."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first. I like the ability it has to make several campaigns that work in parallel."
"Tanium's most valuable features are patch management, inventory, and distribution software."
"Tanium is highly scalable."
"The product is granular and can build complex roles compared to other EDR vendors."
"For inventory purposes, it's from one of the best things on the scene, as you can get live inventory."
"The solution is scalable and helps to understand how infrastructure works. It helps to improve the health of the organization."
"Tanium is a very good product and I would rate it eight or nine out of ten."
"Tanium’s best features include support for any Windows, Linux, or Mac endpoint, regardless of where it is, and the ability to do IT operations and security operations."
 

Cons

"The configuration could be simplified. I would like to see better protection, specifically to protect email applications."
"In terms of areas of improvement, we have not completed our review of the product. We're also looking at other products. So, it's a little bit hard to tell what could be different because we have not completed the review of this product, but based on our experience so far, its implementation is quite complex."
"If you compare it to SentinelOne, which has more functionalities and detection capabilities on an open platform, the pricing on SentinelOne is far more reasonable and cheaper than Cortex XDR by Palo Alto Networks."
"This is a very costly product."
"Being able to filter the events to see those that are related to the actual alert would save time spent by the engineer."
"However, if you do not have Palo Alto in your environment, you are paying these additional services just for Cortex XDR by Palo Alto Networks, so it is not a cost-effective solution."
"Every 30 or 40 days, there's a new version and we need to go and make sure our customer's laptops are upgraded."
"It takes time to scan the servers and devices."
"The quality of the analysis and the product dashboard is a bit low compared to other providers."
"They need to just modernize the infrastructure with something that is next-generation. We have recently moved to SentinelOne. It had been doing good for us for a while, but we needed something modern with new technology."
"The locking and backup capabilities of the solution can be improved."
"Some competing products outperform Comodo in this area."
"The product must provide a web filter to block websites based on specific categories."
"Support could be improved. Sometimes it is difficult to find exact solutions, and people occasionally get stuck, resulting in delayed responses."
"The licensing fees are high. The company should work to try to lower them for the customer."
"The downside of the product stems from the fact that it is still an unknown product in the market. Comodo needs to invest more in advertisements and promotions."
"Tanium’s scalability could be improved."
"Our biggest issue with the solution is its lack of mobility."
"They could improve the UI."
"The solution can give a lot of false positives."
"The main issues are the network connection because different customers have issues with their networks. It's difficult implementing this type of solution because the network is the main feature in the architecture for these types of solutions. Tanium could improve by creating some network optimization."
"The solution needs to improve the reporting and tracking capabilities."
"The solution lacks mobility."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
 

Pricing and Cost Advice

"Cortex XDR’s pricing is very reasonable."
"I feel it is fairly priced."
"The solution is expensive. It's pricing is on a yearly-basis."
"The pricing is okay, although direct support can be expensive."
"Very costly product."
"The pricing is a little bit on the expensive side."
"The price is on the higher side, but it's okay."
"It has a yearly renewal."
"The product is pricey."
"Comodo Advanced Endpoint Protection is inexpensive."
"It was about 35 or 40 bucks per year for the endpoint."
"The product is very reasonably priced."
"I rate the pricing a five on a scale of one to ten, where one is cheap and ten is expensive. The product can be considered fairly cheap."
"The tool's pricing is not very expensive and falls within the market price. The solution's licensing is on a yearly basis."
"Generally, the cost is between $16 and $19 per endpoint."
"I rate Comodo’s pricing a four out of ten."
"It's an expensive solution. It would be nice if the cost were lower."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"The solution is expensive but it's a good investment."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"The solution offers value for money."
"It is higher than some competitors in the market."
"There is an annual license required to use this solution."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
915,287 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
Construction Company
13%
Outsourcing Company
13%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
14%
Government
9%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise1
Large Enterprise1
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Comodo Advanced Endpoint Protection?
Pricing is competitive and considered average compared to other solutions.
What needs improvement with Comodo Advanced Endpoint Protection?
There are not many disadvantages, but they need to do some work on DLP integration. Support could be improved. Someti...
What is your primary use case for Comodo Advanced Endpoint Protection?
The use case for the Comodo Advanced Endpoint Protection solution is very simple. Everyone is looking for a ransomwar...
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Comodo AEP
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Christian Motorcyclists Association, City of Thousand Oaks, City of Danville, HRI Properties
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Comodo Advanced Endpoint Protection vs. Tanium and other solutions. Updated: September 2026.
915,287 professionals have used our research since 2012.