No more typing reviews! Try our Samantha, our new voice AI agent.

Cortex Cloud by Palo Alto Networks vs Sysdig Monitor comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex Cloud by Palo Alto N...
Average Rating
8.6
Reviews Sentiment
5.7
Number of Reviews
11
Ranking in other categories
Vulnerability Management (25th), Cloud Workload Protection Platforms (CWPP) (12th), Cloud Security Posture Management (CSPM) (17th), Cloud-Native Application Protection Platforms (CNAPP) (12th), Data Security Posture Management (DSPM) (12th), Software Supply Chain Security (7th), Cloud Infrastructure Entitlement Management (CIEM) (6th), Application Security Posture Management (ASPM) (6th), Cloud Detection and Response (CDR) (4th)
Sysdig Monitor
Average Rating
8.0
Reviews Sentiment
6.2
Number of Reviews
4
Ranking in other categories
Container Monitoring (9th)
 

Mindshare comparison

Cortex Cloud by Palo Alto Networks and Sysdig Monitor aren’t in the same category and serve different purposes. Cortex Cloud by Palo Alto Networks is designed for Cloud Detection and Response (CDR) and holds a mindshare of 3.2%.
Sysdig Monitor, on the other hand, focuses on Container Monitoring, holds 2.1% mindshare, up 0.4% since last year.
Cloud Detection and Response (CDR) Mindshare Distribution
ProductMindshare (%)
Cortex Cloud by Palo Alto Networks3.2%
Wiz30.5%
Microsoft Defender for Cloud14.7%
Other51.599999999999994%
Cloud Detection and Response (CDR)
Container Monitoring Mindshare Distribution
ProductMindshare (%)
Sysdig Monitor2.1%
Dynatrace28.5%
Datadog24.6%
Other44.8%
Container Monitoring
 

Featured Reviews

SJ
Technical Solutions Architect at IBM
Cloud security has improved as AI-driven runtime protection detects threats and reduces incidents
In my opinion, Cortex Cloud by Palo Alto Networks could be improved or enhanced in various ways. I don't have an idea about that yet because for that you actually need to use two or three different other tools to make a basic comparison. If you ask me how good the tool is, I would fairly rate it quite high. The tool is very popular, and customers can already see that it is one of the cloud leaders in the security space. The platform had a very good feature which provides documentation links about how to use a specific feature on the UI. It takes you to the proper documentation page where it suggests what to do and tells you about the steps that need to be done for a resource deployment. My thoughts about improving the product which I believe could greatly aid vendors is that it used to be a very user-friendly tool, but now they have incorporated everything under one umbrella. It has XDR, XSOAR, and Cortex Cloud by Palo Alto Networks. Before, we used to have separate modules and separate environments for each of these capabilities or features. Right now, it is a little complex and users would take their own time to know the tool better. This is something that would have been way better, but I would say there would be different opinions on this. Talking about user-friendliness, it has decreased now.
Bharath Nadar - PeerSpot reviewer
Senior Staff Site Reliability Engineer at a tech vendor with 501-1,000 employees
Centralized host monitoring has reduced operational overhead and provides trusted dashboards
Sysdig Monitor could be improved, particularly regarding application monitoring. There are specific areas or features where improvement is needed, specifically in application-level monitoring. While other monitoring solutions provide APM capabilities, Sysdig Monitor does not and targets only host-based monitoring. Many applications require APM support, and we want to introduce OpenTelemetry into some applications to gain more insights, but with Sysdig Monitor, we could not implement this functionality, so we have to opt for solutions from other vendors for those applications. Beyond the APM and OpenTelemetry support limitations, I would appreciate seeing Sysdig Monitor offer a unified solution for all monitoring needs, including logging as well, eventually bringing whole observability under one roof. That would be ideal.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cortex Cloud by Palo Alto Networks has impacted our organization positively by keeping our machines secure and our team using the dashboard to find issues quickly."
"The capabilities of Cortex Cloud by Palo Alto Networks are valuable because it is the best product in the market."
"I have absolutely seen improvements in our incident close rates, with mean time to detect and respond reduced significantly, sometimes by at least forty to fifty percent."
"The AI and automation features in detecting and responding to high-risk threats are impressive; it's one of the best tools regarding AI technology and unifies security in one platform in real-time, improving vulnerability analysis, incident response, and compliance reporting."
"The most valuable features I have found in Cortex Cloud by Palo Alto Networks are those that we provided to customers in a stock environment, as we have done some POCs and tried to check how it can help different organizations, and this same solution has been positioned for multiple customers."
"Previously with Cortex Cloud by Palo Alto Networks, I deployed this product for one of my customers, and after three to four months, they said that previously they had around four hours of MTTR, and now it has reduced to just 15 to 20 minutes."
"Cortex Cloud by Palo Alto Networks' cloud runtime security in terms of stopping attacks in real time is impressive."
"I have seen several benefits from using Cortex Cloud by Palo Alto Networks: It was easy to use and easy to migrate from the IBM platform."
"Sysdig Monitor has positively impacted my organization by significantly reducing operational costs and improving our ability to monitor our systems effectively."
"The ability to stop/pause and capture logs when something happens is the most valuable feature."
"The ability to stop/pause and capture logs when something happens is the most valuable feature."
"Docker containers are completely supported, kind of like first class citizens."
"Docker containers are completely supported, kind of like "first class citizens"."
"Sysdig Monitor impressed me with its in-depth visibility into my infrastructure."
 

Cons

"Some aspects of the GUI can be confusing and make it difficult for me to find certain options or navigate where needed."
"As per my experience with Cortex Cloud by Palo Alto Networks, the UI could be simpler."
"Cortex Cloud by Palo Alto Networks is creating some confusion in terms of names because this is recent."
"Cortex Cloud by Palo Alto Networks is not the cheapest solution in the market, but I know that is the best solution for SOC and Cloud once have all tools to connect cloud issues with SOC procedures, because we are partners with T-Systems."
"Overall, I rate Cortex Cloud by Palo Alto Networks as an eight out of ten. I think that it could improve on price, as I know that the Google solution has the best price, and this is one of the conditions."
"In my opinion, Cortex Cloud by Palo Alto Networks can be improved by addressing forensic information collection and storage, although I cannot suggest specific things right now, based on what customers might need."
"From the commercial perspective, we have some limitations because Palo Alto has a minimum number of users of endpoints set at 200, which is quite high for the Italian market."
"The negative aspects or areas for improvement in the product include the fact that the cost might be a bit high, which challenges commercials, but not technically."
""Events" reporting (errors, crashes, etc.) is not clear at all in a Mesos environment (i.e., it's not clear what specific container is the one that went down). In a Docker Compose environment, it may be way better."
"Sysdig Monitor could be improved, particularly regarding application monitoring."
"I had difficulty installing Sysdig Monitor on Windows."
""Events" reporting (errors, crashes, etc.) is not clear at all in a Mesos environment (i.e., it's not clear what specific container is the one that went down). In a Docker Compose environment, it may be way better."
"It is needs to automate the actions to take when an alert is triggered."
"It needs to automate the actions to take when an alert is triggered."
 

Pricing and Cost Advice

Information not available
"Sysdig Monitor is not expensive."
report
Use our free recommendation engine to learn which Cloud Detection and Response (CDR) solutions are best for your needs.
885,444 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
14%
Financial Services Firm
8%
Manufacturing Company
8%
Performing Arts
6%
Financial Services Firm
14%
Outsourcing Company
13%
Computer Software Company
10%
Construction Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise1
Large Enterprise4
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Cortex Cloud by Palo Alto Networks?
The solution is costly, with high-end capabilities suitable for enterprises. It is less affordable for startups or small-scale vendors.
What needs improvement with Cortex Cloud by Palo Alto Networks?
As per my experience with Cortex Cloud by Palo Alto Networks, the UI could be simpler. There are few features which are very hidden, such as those in software bill of materials and compliance polic...
What is your primary use case for Cortex Cloud by Palo Alto Networks?
My use case for Cortex Cloud by Palo Alto Networks is for CSPM, application security, and IAM. I use it for checking on the asset inventory, policies, and standards like GDPR, NIST, and SOC 2 compl...
What is your experience regarding pricing and costs for Sysdig Monitor?
My experience with pricing, setup cost, and licensing was good. Before moving forward with Sysdig Monitor, we analyzed many other tools, and the costing was more transparent and significantly bette...
What needs improvement with Sysdig Monitor?
Sysdig Monitor could be improved, particularly regarding application monitoring. There are specific areas or features where improvement is needed, specifically in application-level monitoring. Whil...
What is your primary use case for Sysdig Monitor?
Sysdig Monitor has become essential for overseeing a vast array of hosts and EC2 instances across our environment. We initially tried Grafana, but it fell short in operational capabilities. Managin...
 

Overview

 

Sample Customers

Information Not Available
SAP Concur, Goldman Sachs, Worldpay by FIS, Cisco, Experian, Home Office, Societe Generale, Sunrun. More here: https://sysdig.com/customers/
Find out what your peers are saying about Wiz, Orca Security, Microsoft and others in Cloud Detection and Response (CDR). Updated: March 2026.
885,444 professionals have used our research since 2012.