No more typing reviews! Try our Samantha, our new voice AI agent.

CylanceOPTICS vs ESET Inspect comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (3rd), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
CylanceOPTICS
Ranking in Endpoint Detection and Response (EDR)
63rd
Average Rating
7.4
Reviews Sentiment
5.2
Number of Reviews
13
Ranking in other categories
No ranking in other categories
ESET Inspect
Ranking in Endpoint Detection and Response (EDR)
51st
Average Rating
7.6
Reviews Sentiment
7.4
Number of Reviews
7
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.9% compared to the previous year. The mindshare of CylanceOPTICS is 0.6%, up from 0.3% compared to the previous year. The mindshare of ESET Inspect is 0.9%, down from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
ESET Inspect0.9%
CylanceOPTICS0.6%
Other94.8%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
GauthamVakapalli - PeerSpot reviewer
Account Manager at Teksalah
Provides reliable threat detection and response but requires better regional support
One improvement I suggest for CylanceOPTICS is more robust marketing efforts from their side. Many customers gravitate towards popular EDRs like CrowdStrike or Sophos, largely due to better marketing, despite BlackBerry Cylance being a superior product. The lack of marketing from distributors or vendors is a critical area where they are falling short. Apart from marketing, it would be beneficial for CylanceOPTICS to establish a dedicated team in GCC since I coordinate with the UK team to handle support. Whenever a ticket is raised by one of our customers, we have to wait for responses which can take a whole day due to the time zone differences, and a local team could expedite this process. In terms of scalability, CylanceOPTICS is indeed easy to scale, but one issue I face is related to visibility; while it is scalable, the security teams struggle with limited visibility as we need to gather data from multiple sources.
Cees Van Den Haak - PeerSpot reviewer
ICT Manager at Bouwbedrijf de Vries en Verburg BV
A product with an easy setup phase that helps manage attacks and vulnerabilities
The most valuable features of the solution stem from the fact that you can manage and react to vulnerabilities and attacks on all the workstations or laptops. You can put certain workstations and isolation. With ESET PROTECT, you see only one machine that is protected, but with ESET Inspect, you see all the machines that are protected in an environment.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Their XDR agent and their behavioral indicators of compromise (BIOC) are pretty nice. Their managed threat hunting is also pretty nice. They also have WildFire, which is a service for actively looking for malware. It's quite useful."
"It has absolutely improved the way our organization functions, we are more secure, it is giving us more peace of mind, and it has found malicious activity happening on our endpoints that probably would not have been detected if we didn't have it."
"We have found in our test Cortex XDR by Palo Alto Networks to be a very good tool."
"The anti-exploit is impenetrable."
"Palo Alto is one of the tech vendors that always provides top-of-the-line products."
"It is an easy-to-use tool."
"After deploying Traps, we saw the performance of the network improve by 65 to 70 percent."
"The anti-exploit is impenetrable. We chose Traps because it is the only product that we were not able to get anything past."
"This feature is something people should be looking into; the threat monitoring in CylanceOPTICS is very good, and while CrowdStrike has similar features, CylanceOPTICS is more cost-effective."
"The most valuable feature is the ability to respond to zero-day and unknown threats."
"The initial setup was fairly straightforward. To get a large health care organization sorted, we had to create exemptions because some of the scripts and some of the automations were broken."
"CylanceOPTICS is easy to use."
"CylanceOPTICS is pretty stable."
"The solution is pretty stable; it's pretty rock solid."
"They are well-known for their efficacy, which is a huge plus."
"The most valuable part of this solution is that it is advanced technology, as Cylance is an engine that is not a signature-based antivirus protection solution but is based on AI and ML models and could really not be more proactive in the way it works."
"The product's most valuable features are its performance and stability."
"I find the multilayered endpoint security the most valuable feature."
"The rules are the best and most useful features."
"ESET Enterprise Inspector's most valuable feature is EDR."
"Rules are the most valuable feature of ESET Inspect. They are created through XML language, and they track and filter events from endpoints. If the event matches the rule, the rule is triggered. Exceptions are the second most valuable feature because it gives you the power to filter false positives in large numbers. The third most valuable feature is the Learning mode that facilitates making exceptions for known processes with a good reputation."
"Scalability-wise, it is a very good solution."
"ESET Enterprise Inspector's greatest asset lies in its user-friendly interface, which allows for easy navigation and thorough analysis of incidents."
"This solution is easy to install, setup and monitor."
 

Cons

"Although I would say this product is highly-rated, it could probably do more because nothing does everything that you want."
"In the next release, I would like to see more UI improvements. Their UI is a bit basic. When we are speaking about Palo Alto Networks they are the big company, so they can improve the UI a little bit. The UI, the reports, the log system can all be improved."
"We have found that there are times Cortex XDR by Palo Alto Networks does not detect some of the viruses, we have to use another protection solution called Kaspersky."
"This is a very costly product."
"A potential area of improvement for Cortex XDR by Palo Alto Networks is the cost."
"The server sometimes stops continuously to check things so it would be helpful to receive access updates or technical reasons."
"Impact on system performance is horrible, adding a lot of delays for users."
"It's very time-consuming to log support issues and the people that answer the tickets aren't very knowledgeable."
"The product's initial setup process could be easy."
"The technical support could be improved although it's probably better than you get with a lot of the other traditional antivirus solutions"
"False positives could be improved. Cylance picks up a lot of them."
"CylanceOPTICS could benefit from more granular control in the timeline-building process. Ideally, users would be able to drill deeper into the analysis rather than have the machine dictate the direction."
"The product's technical support is slow."
"Too many false positives are reported."
"We have been dissatisfied with CylanceProtect and CylanceOPTICS and want to leave within the next several months. It just hasn't been an effective tool."
"The reporting is very weak and not very good at all."
"The solution could improve the consumption of resources. The RAM and CPU usage increases during usage which can cause issues. We have three separate services and it would be beneficial if all were executed from one agent limiting the over usage of system resources."
"It may be difficult for a first-time customer to understand all of the functions that are available to him."
"The platform's price could be better."
"Every vendor is working on making the job of SOC analysts easier, with fewer false positives and more precise detections. ESET uses LiveGrid technology that provides feedback on the reputation of files and operations. It's hard to eliminate all of the false positives, but hopefully, we'll see some improvement with the advances in AI."
"One area that needs improvement for the product is ransomware protection, which does not offer complete security."
"It is not a stable product. We were disappointed in the stability of this product in comparison to McAffee."
"The product is complex to configure, and there are too many errors that are not errors, making it an area that can be considered for improvement."
 

Pricing and Cost Advice

"It is present, but when compared to other competitive products, I would say it is not less expensive; however, when all of the other added values are considered, the price is reasonable."
"The tool's price is moderate."
"The solution has one subscription for endpoint protection and one subscription for detection and response. The two licenses combined give you the BRO version."
"The price was fine."
"If one wishes to work with another team or large number of users at a future point, he must purchase a license for them."
"I did PoCs on products called Cylance and CrowdStrike. Although, I consider these products and they were also good, when it come to cost and budgetary factors, Traps has been proven to be better than the other two products. It is quite cost-effective and delivers all the entire solution which we require."
"The pricing is okay, although direct support can be expensive."
"Its pricing is kind of in line with its competitors and everybody else out there."
"The pricing for CylanceOPTICS is very good; I would rate it around a nine on a scale of one to ten, with ten being the lowest. It's one of the most affordable options I've seen."
"We pay for the number of endpoints we have and that is about it. On a monthly basis, the licensing cost is $55 per user."
"CylanceOPTICS is probably priced equal to other EDRs in the market."
"I would rate the pricing a three out of five."
"The pricing and licensing are the big issue now, in my opinion. If the price was less than other companies, or a one-time charge for service was available, I think there would be more users of this solution."
"This is true in the case of licensing, we do not have the most expensive products, and we don't have the cheapest product, it's somewhere in the middle. Perhaps a little higher from the middle, but we are known for what we provide to our customers, and they are pleased."
"I feel it is a very expensive product."
"The platform is expensive; it could be cheaper."
"The platform's licensing is affordable and straightforward."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
Manufacturing Company
12%
Outsourcing Company
11%
Financial Services Firm
11%
Comms Service Provider
11%
Comms Service Provider
13%
Financial Services Firm
9%
Outsourcing Company
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise2
Large Enterprise4
By reviewers
Company SizeCount
Small Business5
Large Enterprise2
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Blackberry Optics?
In terms of cost, I find CylanceOPTICS to be reasonable; it's not overly expensive, nor is it at the lower end of the...
What needs improvement with Blackberry Optics?
One improvement I suggest for CylanceOPTICS is more robust marketing efforts from their side. Many customers gravitat...
What is your primary use case for Blackberry Optics?
One of the main use cases for CylanceOPTICS is endpoint detection and response, which even works without internet, un...
Ask a question
Earn 20 points
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
ESET Enterprise Inspector
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Cerdant, Washoe County School District
Mitsubishi Motors, Allianz Suisse, Cannon, T-Mobile
Find out what your peers are saying about CylanceOPTICS vs. ESET Inspect and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.