No more typing reviews! Try our Samantha, our new voice AI agent.

ConnectWise SIEM vs Huntress Managed EDR comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 29, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (3rd), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
ConnectWise SIEM
Ranking in Endpoint Detection and Response (EDR)
53rd
Average Rating
8.6
Reviews Sentiment
6.6
Number of Reviews
3
Ranking in other categories
Security Information and Event Management (SIEM) (44th), Secure Access Service Edge (SASE) (21st), Managed Detection and Response (MDR) (23rd)
Huntress Managed EDR
Ranking in Endpoint Detection and Response (EDR)
6th
Average Rating
9.2
Reviews Sentiment
7.5
Number of Reviews
67
Ranking in other categories
Managed Detection and Response (MDR) (1st)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
reviewer2711757 - PeerSpot reviewer
Cyber Security Software Engineer at a tech services company with 11-50 employees
Automated alerting and reporting excel while cost and feature limitations remain
I find automation to be one of the best and most valuable features of the product. Machine learning is incorporated into the solution, though AI is a broader term that I wouldn't apply here. I haven't personally explored AI yet, but I will investigate it. Machine learning functions more as automation in my experience, as there's no training involved yet. I want to conduct R&D on another project with Wazuh to determine how to capture usage, for example, tracking user logins and time spent. This is where I need to implement machine learning. Additionally, the extraction of GeoIP adds complexity. The solution is effectively reducing incident response times in operations.
Abhishek Saini - PeerSpot reviewer
Professional Services Engineer at Next7 IT
Managed detection has transformed incident response and now delivers faster, focused protection
Overall, my experience with Huntress Managed EDR has been very positive. If I were to suggest improvements, I would like to see more advanced customization and reporting capabilities, particularly for MSPs managing multiple clients. For example, additional dashboard customization, more granular alert filtering options, and enhanced executive level reporting would help teams present security insights more effectively to their clients. Deeper integrations with a broader range of third party security and IT management platforms could also streamline workflows and reduce the need to switch between multiple tools. Another area of improvement would be expanding automation options for common remediation tasks, allowing security teams to respond even more quickly to certain types of threats while maintaining appropriate control. These are more enhancements than shortcomings, as Huntress Managed EDR already provides strong threat detection, excellent SOC support, and an easy-to-manage platform that delivers significant value in day-to-day operations. A few additional enhancements would make the platform even stronger, especially for MSPs managing a large number of endpoints and clients. From a user interface perspective, I would like to see more customizable dashboards that allow engineers to tailor views based on the client's priorities, threat levels, or operational metrics. Another useful feature would be additional automation and authorization options for common response actions such as isolating devices, initiating remediation workflows, or integrating with ticketing systems and SIEM platforms. Overall, these would be valuable additions, but they do not take away from the core strength of Huntress Managed EDR.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It collects and caches and the knowledge of machine learning from different customers to take to the cloud, it makes it better to use for everybody, it allows for quick learning and updates and can, therefore, offer zero-day malware security, and this sharing of metadata helps make the solution very safe."
"If you are looking to deploy a security solution as a whole, this is a good option."
"Threat identification and detection are the most valuable features of this solution."
"Cortex XDR by Palo Alto Networks saves time in various ways, although the user interface is fairly standard."
"The biggest positive impact I see from Cortex XDR by Palo Alto Networks is a significant reduction in the number of people required to manage it."
"The most valuable features of this product are the management capabilities, which allow an IT organization to get quite a good picture of attempted cyber attacks, and its out-of-the-box investigation capabilities."
"Palo Alto is the best security solution in the market."
"Has great threat detection capabilities."
"One valuable feature of ConnectWise Fortify is the ability to add other teams and receive notifications when customers make changes or remove multi-factor authentication in Microsoft or SAP environments."
"We have found the solution has great functionality and it is easy to use."
"The integration capabilities of ConnectWise SIEM are off the shelf, making it easy to buy and use; you just unpack it and use it."
"It is a ten out of ten in terms of ease of use."
"The EDR is the most valuable feature."
"Huntress' best feature is the threat-hunting expertise that is part of their 24/7 SOC."
"It is very easy to use. It is a great solution. They are one of the better vendors that I have ever worked with since I have been in the industry."
"I have nothing negative to say about my main use case or how my team interacts with Huntress Managed EDR because Huntress Managed EDR is superb."
"Huntress helps us replace traditional antivirus solutions with an EDR. I like how easy it is to use and deploy. Support is good- they've responded quickly when I've had issues. I like it a lot so far. It reports valuable information and filters out things I don't need to know."
"We saw the benefits of Huntress pretty quickly. Once it started detecting threats, it was great."
"It catches things that no one else catches. We occasionally have things slip through antivirus and other things, but Huntress catches them. It is awesome as an additional layer of defense on top of other things."
 

Cons

"It would be good to have a better way to search for a file within the UI."
"I recommend adding a data loss prevention (DLP) solution to Cortex XDR by Palo Alto Networks. The inclusion of this feature would allow the application of DLP policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products."
"It takes time to scan the servers and devices."
"In the next release, I would like to see more UI improvements. Their UI is a bit basic. When we are speaking about Palo Alto Networks they are the big company, so they can improve the UI a little bit. The UI, the reports, the log system can all be improved."
"There is also no recovery feature; if some endpoint is under attack there must be the possibility of recovering it or restoring it to a normal state."
"Fine-tuning the detection policy requires experience because the policy is very complex in Cortex XDR by Palo Alto Networks, and we get high false positive alerts."
"If Palo Alto reduces the pricing slightly for their products, it would make them more scalable in markets such as India and globally for cybersecurity."
"In general, the price could be more competitive."
"ConnectWise Fortify could work on covering more areas, like phishing messages, which have become more complicated to detect."
"The manage portion of the solution is complicated and should be simplified by having different versions to meet the needs of different size companies."
"ConnectWise SIEM is primarily focused on notifications and is limited in that aspect, while Wazuh can automate the elimination process."
"Their EDR can have increased coverage for Macintosh. They do not fully secure Macintosh computers."
"The reporting could be improved by providing a more simplified report that can be easily understood by clients. A way to present the data to the client so they understand its importance would be beneficial."
"It would be nice if Huntress Managed EDR started adding additional features that some of the other competitors have, but obviously, to keep it lightweight, they cannot pack too much into it."
"Ultimately, the clarity of their alerts is paramount for effective threat communication and could benefit from clearer remediation steps."
"In terms of room for improvement for Huntress Managed EDR, I think that if they could work with maybe other antivirus vendors to sort of work together with those, it would be beneficial because I know they work with Microsoft Defender, but we chose not to do that."
"I also would love for them to make their new SIEM tool reports much more robust. They are currently way too simplified, and we need to have something better to send to our compliance clients."
"The existing features are perfect. However, I think they could add a more robust set of security features like dark web scanning, penetration testing, and risk assessment for clients. We would have one tool for everything. We wouldn't have to go to multiple vendors to pull something together. That would be more beneficial for us."
"Improvements for Huntress Managed EDR really come down to the user interface online, which is less polished than I would like."
 

Pricing and Cost Advice

"The tool's price is moderate."
"The price of the solution is high for the license and in general."
"The price is on the higher side, but it's okay."
"The solution is expensive. It's pricing is on a yearly-basis."
"The price was fine."
"Cortex XDR by Palo Alto Networks is an expensive solution."
"This is an expensive solution."
"Cortex XDR's pricing is ok."
"The solution is expensive."
"While other options have emerged since Huntress' arrival, I believe it still offers the best value for the features and services it provides."
"It is very fair. I started at $2.50 and now I am at $3.50. When I signed up, I thought it was too cheap. It now reflects the price. It is very fair. I do not think you can find anything better."
"The pricing is competitive, in line with Huntress's offerings, and aligns well with our business model."
"I rate the product's price a five or six on a scale of one to ten, where one is cheap, and ten is expensive since it is a fairly priced product."
"The solution is cheap compared to other alternatives. It offers good value for money. For the whole solution, it's up to about five pounds per device per month. Considering what it does, I think that's very good value."
"It is simple. It is reasonable. They raised my prices this year. We never like price increases, but they continue to add value, so we just keep adding agents as we grow and as our clients grow."
"It is fair. They provide good value for the product that they deliver. I have had one price increase in the entire time I have used them. They added a bunch of features and then said that they have to increase our price a little bit. That is a fair way to handle it."
"The pricing model for Huntress is similar to competitors and is charged per endpoint."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
Construction Company
11%
Comms Service Provider
11%
Computer Software Company
9%
Manufacturing Company
8%
Computer Software Company
10%
Manufacturing Company
10%
Outsourcing Company
8%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
No data available
By reviewers
Company SizeCount
Small Business65
Midsize Enterprise6
Large Enterprise2
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with ConnectWise Fortify?
I haven't utilized the advanced threat intelligence capabilities with ConnectWise SIEM. Advanced threat intelligence ...
What is your primary use case for ConnectWise Fortify?
I do not have experience with ConnectWise SIEM for RMM, as I mostly work on Wazuh, and I have a team that handles Con...
What advice do you have for others considering ConnectWise Fortify?
The review can be made anonymous if just my name and not the company name is used. I would assess the real-time visib...
What needs improvement with Huntress?
I would like to see more customization and deeper integration with SIEM and other security tools for Huntress Managed...
What is your primary use case for Huntress?
My main use case for Huntress Managed EDR is endpoint monitoring and threat detection, which I use to investigate sus...
What advice do you have for others considering Huntress?
I would rate Huntress Managed EDR a nine out of 10 because it gives strong endpoint visibility, reliable threat detec...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
ConnectWise Security Management, ConnectWise Fortify, Continuum Fortify, ConnectWise SIEM, ConnectWise SASE
No data available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Techvera, Syrex, Clark Integrated Technologies
Information Not Available
Find out what your peers are saying about ConnectWise SIEM vs. Huntress Managed EDR and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.