No more typing reviews! Try our Samantha, our new voice AI agent.

Cortex XDR by Palo Alto Networks vs Heimdal Patch and Asset Management comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
109
Ranking in other categories
Endpoint Protection Platform (EPP) (5th), Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (6th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (2nd)
Heimdal Patch and Asset Man...
Average Rating
9.0
Reviews Sentiment
7.2
Number of Reviews
1
Ranking in other categories
Patch Management (25th)
 

Mindshare comparison

Cortex XDR by Palo Alto Networks and Heimdal Patch and Asset Management aren’t in the same category and serve different purposes. Cortex XDR by Palo Alto Networks is designed for Extended Detection and Response (XDR) and holds a mindshare of 4.9%, down 5.6% compared to last year.
Heimdal Patch and Asset Management, on the other hand, focuses on Patch Management, holds 0.6% mindshare, up 0.5% since last year.
Extended Detection and Response (XDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks4.9%
CrowdStrike Falcon9.9%
Wazuh6.8%
Other78.4%
Extended Detection and Response (XDR)
Patch Management Mindshare Distribution
ProductMindshare (%)
Heimdal Patch and Asset Management0.6%
NinjaOne7.9%
Microsoft Configuration Manager7.8%
Other83.7%
Patch Management
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Melvin Ong - PeerSpot reviewer
Country Manager at PT Symcaw Solutions Indonesia
Has plug-and-play capability once configured and good reporting system
The tool's most valuable features have been its plug-and-play capability once configured and its reporting system is good. The most improved feature of asset auditing is its physical logging of all software. This allows us to understand what software and applications are installed on endpoints. We can easily check which software applications are installed in the network infrastructure during client processing or audits.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cortex XDR's most valuable feature is its intelligence-based dashboards."
"I have found the solution to be very easy in respect of the integration and configurable."
"They have a new GUI which is just fantastic."
"If the user leaves our premises or network, Palo Alto Traps will still be on that endpoint and will still apply our policies."
"Cortex XDR by Palo Alto Networks's ability to block sophisticated threats in real time is quite good and is on par with SentinelOne's."
"Previously, we had to install endpoint protection per machine and then scan and update, but Cortex XDR basically does that centrally and predictably, so we have more time to do day-to-day work rather than spend time chasing those endpoints."
"My advice for anybody who is considering Cortex XDR is that it is a complete solution, and has very good features."
"The user interface of the solution is sophisticated and straightforward."
"The tool's most valuable features have been its plug-and-play capability once configured and its reporting system is good. The most improved feature of asset auditing is its physical logging of all software. This allows us to understand what software and applications are installed on endpoints. We can easily check which software applications are installed in the network infrastructure during client processing or audits."
 

Cons

"The installation should be easier and the Palo Alto pre-sales and sales teams should have more information on the product because they don't know what they are selling."
"It would be better if they could educate the customers more. Some sort of seminars and roadshows will help educate the customers and show what the product can do."
"Product might have some bugs."
"A little bit more automation would be nice."
"They've been having some issues with updating their endpoint agents, and it has been quite frustrating."
"Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth."
"Cortex XDR by Palo Alto Networks could improve by offering remote management. It would be useful to look at the client's issue to fix it."
"It is not easy to sell Cortex XDR, not because it isn't a good tool."
"The tool needs to be more user-friendly."
 

Pricing and Cost Advice

"The pricing is a little high. It is per user per year."
"I did PoCs on products called Cylance and CrowdStrike. Although, I consider these products and they were also good, when it come to cost and budgetary factors, Traps has been proven to be better than the other two products. It is quite cost-effective and delivers all the entire solution which we require."
"It has reasonable pricing for the use cases it provides to the company."
"When we first bought it, it was a bit expensive, but it was worth it. The licensing was straightforward."
"The cost depends on your chosen license type, like Pro or other licenses."
"The cost of Cortex XDR by Palo Alto Networks is $55 to $90 USD per endpoint per month."
"Cortex XDR’s pricing is very reasonable."
"Every customer has to pay for a license because it doesn't work with what you get from a managed services provider."
"I rate the solution's pricing a five out of ten."
report
Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
885,789 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
14%
Financial Services Firm
10%
Comms Service Provider
8%
Manufacturing Company
7%
Construction Company
14%
Agriculture
10%
University
8%
Transportation Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise48
No data available
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. The ability to reverse damage caused by ransomware with minimal interruptions to...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions that are very scalable, secure, and user-friendly. Cortex XDR by Palo Alto offers ...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface, applies behavioral-based endpoint protection and response, and includes risk-ba...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Thor Foresight Enterprise
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Brother, Symbion, CPH West
Find out what your peers are saying about CrowdStrike, SentinelOne, TrendAI and others in Extended Detection and Response (XDR). Updated: April 2026.
885,789 professionals have used our research since 2012.