No more typing reviews! Try our Samantha, our new voice AI agent.

Coro vs WatchGuard EPDR comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Coro
Ranking in Endpoint Protection Platform (EPP)
53rd
Ranking in Endpoint Detection and Response (EDR)
61st
Average Rating
0.0
Reviews Sentiment
3.1
Number of Reviews
1
Ranking in other categories
Email Security (50th), Data Loss Prevention (DLP) (70th)
WatchGuard EPDR
Ranking in Endpoint Protection Platform (EPP)
16th
Ranking in Endpoint Detection and Response (EDR)
19th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
38
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.8%, up from 3.8% compared to the previous year. The mindshare of Coro is 0.5%, down from 0.6% compared to the previous year. The mindshare of WatchGuard EPDR is 1.5%, down from 2.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.8%
WatchGuard EPDR1.5%
Coro0.5%
Other94.2%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Vignesh  K - PeerSpot reviewer
Practice Engineer at Cloudunicorn.in
Auto scanning and enhanced security but re-adding protections need improvement
At that time, we observed certain issues with the product. The functionalities could be improved, such as the isolation feature. If we remove our protection, we cannot easily add it back. If, in our organization, we need to remove a specific system for a particular time, we cannot add it back for security after doing so. This is one thing we have experienced. Scalability is also lacking. If we want to do the same thing repeatedly, there's not much the solution offers; it isn't very strong.
Petri Alhainen - PeerSpot reviewer
Administrator at Sulbana Oy
Balanced endpoint protection has improved forensic visibility and speeds threat investigation
I think there's always something that needs to be improved about WatchGuard EPDR, but I don't have something specific to say that you should do this or that. They are listening to the users, so they are fixing things as they've been found. I don't have any example to give. The pricing is always a thing where you need to be in the line that the balance to get it right is a challenging thing with WatchGuard EPDR. If you have good features, then you can have a little bigger price, but if you just get the balance right, that's important. I haven't used automated incident response in WatchGuard EPDR.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It blocks malicious files, prevents attacks, and doesn't require many updates because it is a very light application."
"Cortex XDR by Palo Alto Networks saves time in various ways, although the user interface is fairly standard."
"The tool's use cases are relevant to security."
"Once you become familiar with it, Cortex XDR by Palo Alto Networks is a more powerful tool and I would say that I prefer it over MDE because it is a stronger tool for me."
"Cortex XDR by Palo Alto Networks's ability to block sophisticated threats in real time is quite good and is on par with SentinelOne's."
"I've found the solution to be highly scalable for enterprises."
"Palo Alto is the best security solution in the market."
"The tool is designed to scale for large enterprises and handle large volumes of data."
"The auto-scanning feature is quite beneficial."
"It's quite easy to manage, which is a good thing."
"The product so far has been good at protecting us. We haven't faced a breach."
"It is easy to manage."
"I like the Panda Security Adaptive Defense cloud usages, everything is on a single plane of glass like the dashboards, and I also like the information I can get about the computers itself."
"I would give the overall solution a rating of ten out of ten."
"It offers an easy initial setup."
"The reporting feature is valuable."
"I think there's quite a good balance in everything with WatchGuard EPDR, with tools to do things and watch what's happening, and everything is in the same tools and quite well designed or thought about how to do things, which is the reason I've been enjoying them."
 

Cons

"To jump from the partner to Palo Alto directly was challenging."
"Previously, the endpoint would leave the environment, not being on our VPN, essentially unable to interact with the server to upload files. It was unable to retrieve new file verdicts. It was using a thing called "local analysis" to determine if something was a malicious file or not. There was no dynamic analysis."
"If you compare it to SentinelOne, which has more functionalities and detection capabilities on an open platform, the pricing on SentinelOne is far more reasonable and cheaper than Cortex XDR by Palo Alto Networks."
"The solution can never really be an on-premises solution based simply on the way it is set up. It needs metadata to run and improve. Having an on-premises solution would cut it off from making improvements."
"In some cases, there are too many options for me, and it is a bit too hard to find some settings which I really need to implement."
"Product might have some bugs."
"Cortex XDR by Palo Alto Networks could improve by adding a sandbox feature to better compete with their competitors which have it."
"There are some limitations on the Traps agents."
"The functionalities could be improved, such as the isolation feature."
"Scalability is lacking. If we want to do the same thing repeatedly, there's not much the solution offers; it isn't very strong."
"I'd like to integrate it into my main services."
"WatchGuard EPDR does have areas for improvement. One significant gap is the lack of a virtual patching feature integrated into the endpoint security. This would be particularly useful for endpoints running operating systems that are no longer supported, such as Windows 7."
"The implementation was difficult."
"Either conclusion means we will have either false positives or false negatives."
"An area for improvement would be the software deployment to seamlessly deploy software packages across multiple machines simultaneously, and to enhance the remote monitoring capabilities."
"I'd like them to offer a better way to scan the hardware to detect whether they are valid."
"It would be nice if Panda Security Adaptive Defense could come out with remote desktop usage."
"Panda Security Adaptive Defense’s stability could be improved."
 

Pricing and Cost Advice

"This is an expensive solution."
"It is "expensive" and flexible."
"When we first bought it, it was a bit expensive, but it was worth it. The licensing was straightforward."
"The price was fine."
"Our license will require renewal in August, after which the maintenance will continue as usual."
"It's about $55 per license on a yearly basis."
"It has a higher cost than other solutions, like CrowdStrike or Microsoft’s EDR tools, but it reduces the cost of our operations because it’s a new generation antivirus tool."
"The solution is expensive. It's pricing is on a yearly-basis."
Information not available
"Customers need to pay monthly licensing costs for Panda Security Adaptive Defense, which is not expensive."
"The price of this solution depends on the number of licenses that you are purchasing."
"The licensing is subscription-based and priced well compared to other endpoint security solutions."
"I don't think Panda's license is too expensive, but they're charging more than it's worth. It's a yearly license. For 1,000 endpoints, it's around $18,000."
"Panda is cloud-only and comes at a reasonable cost. It is a set price per seat."
"The product is available at a high price."
"The solution is priced well for what features it provides."
"Our licensing fee is 1M Euro per month, so it is about 80 Euro's per user."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
914,109 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Financial Services Firm
9%
Construction Company
13%
Comms Service Provider
10%
Manufacturing Company
9%
Retailer
6%
Comms Service Provider
11%
Outsourcing Company
9%
Computer Software Company
9%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
No data available
By reviewers
Company SizeCount
Small Business28
Midsize Enterprise8
Large Enterprise2
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Coro?
The cost is reasonable because it is aimed at SMB customers, not enterprise customers. The prices are reasonable. We ...
What needs improvement with Coro?
At that time, we observed certain issues with the product. The functionalities could be improved, such as the isolati...
What is your primary use case for Coro?
We have not sold the product to any customers as of now. We are still in the testing phase, which means we, along wit...
What needs improvement with WatchGuard EPDR?
I think there's always something that needs to be improved about WatchGuard EPDR, but I don't have something specific...
What is your primary use case for WatchGuard EPDR?
I'm talking about WatchGuard EPDR, which is endpoint protection. I try to remember if we have them in our system, and...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Panda Adaptive Defense 360
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Lenovo, Dropbox, T-Systems
Indra, Valea AB, Fineit, Aemcom, Data Solutions INC., Gloucestershire NHS, Golden Star Resources Ltd, Hispania Racing Team, Instituto Dos Museus e da ConserÊo, Escuelas Pias Provincia Emaus, Axiom Housing Association, Municipality of Bjuv, Lesedi Nuclear, Mullsj_ municipality, Eng. skolan Norr AB, Dalakraft AB, Peter Green Haulage Ltd
Find out what your peers are saying about Microsoft, SentinelOne, CrowdStrike and others in Endpoint Protection Platform (EPP). Updated: September 2026.
914,109 professionals have used our research since 2012.