Try our new research platform with insights from 80,000+ expert users

CylanceOPTICS vs Rapid7 InsightIDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CylanceOPTICS
Ranking in Endpoint Detection and Response (EDR)
42nd
Average Rating
7.4
Reviews Sentiment
5.4
Number of Reviews
12
Ranking in other categories
No ranking in other categories
Rapid7 InsightIDR
Ranking in Endpoint Detection and Response (EDR)
25th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
32
Ranking in other categories
Security Information and Event Management (SIEM) (14th), User Entity Behavior Analytics (UEBA) (5th), Threat Deception Platforms (5th), Extended Detection and Response (XDR) (16th)
 

Mindshare comparison

As of August 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of CylanceOPTICS is 0.3%, up from 0.1% compared to the previous year. The mindshare of Rapid7 InsightIDR is 1.2%, up from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Featured Reviews

Subhadip Pakrashi - PeerSpot reviewer
Performance is competitive while setup support needs improvement
From a technical perspective, the product has no issues. The main consideration is cost, as customers are unwilling to pay high amounts for security solutions. I purchase the product from CrowdStrike and sell it to customers. CylanceOPTICS is now owned by North Arctic, after being acquired from BlackBerry, who had previously acquired it from Cylance. When customers approached us wanting an EDR product with technical capabilities, we presented two choices: CrowdStrike and CylanceOPTICS. While both products were good, CylanceOPTICS was chosen based on price-performance ratio. The solution serves primarily data center businesses and other companies. The product's features, reporting, and alert generation were well-received by customers. Though CrowdStrike has excellent features, CylanceOPTICS proved more cost-effective. The interface is somewhat complex, but this is appropriate for a security product. A technical team is essential for successful implementation. I rate this solution 8 out of 10.
Asim Naeem - PeerSpot reviewer
Providing comprehensive insight into alerts while working towards AI enhancement
I definitely recommend Rapid7 InsightIDR. It is becoming better, with improvements being continuously made to the product. Right now, I do not have any advice about Rapid7 for other users because every organization or user has different criteria or multiple use cases, so I refrain from commenting on that. I rate the overall solution seven out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the ability to respond to zero-day and unknown threats."
"I would rate the stability a nine out of ten. I would give it a close ten as possible because, like SentinelOne, I've seen incompatibility. Whereas Cylance, I've seen none."
"Cylance is not a signature-based protection solution and instead works proactively using AI and ML models to patrol for malicious behavior."
"You can use the solution to query certain things."
"CylanceOPTICS is pretty stable."
"It automatically blocks the threats, helping us investigate if they harm the environment."
"It's pretty unintrusive"
"It is a bit early in our evaluation process to give proper feedback, although so far, the overall feedback is good."
"The alerting to drive investigations and remediation has been its most valuable feature.​"
"Rapid7's reporting is more robust than Tenable's."
"The solution is easy to use, and the interface is intuitive."
"Enables the use of honey pots, honey users, and honey files to monitor for suspicious patterns."
"The web interface is great — very useful and user-friendly."
"Scalability-wise, I rate the solution a ten out of ten. As a cloud tool, the product is highly scalable."
"The incident case management is the most valuable feature. Even though there's always something I find I would like to add to that feature, the ability to quickly sort through all the logs, network and endpoint data, etc., and add it to an incident case as part of the investigation, is nice. Having it automatically timeline that additional data into the original incident timeline, and correlate it to other notable events and activities on the network, results in a huge improvement in our overall confidence that we've quickly traced down the right source of an issue."
"The biggest reason why we chose Rapid7 was to gain value in a really quick time. Its deployment doesn't take months. It just takes a few days."
 

Cons

"The tools are ineffective. It flags a lot of things. To give you an example, it detected Google Chrome and blocked the user's access to it. That it mistook for malicious, which turned out to be a false positive."
"The product's technical support is slow."
"The support is inadequate because their technical people are not supportive. Since the support is not based in India, there are numerous issues."
"Too many false positives are reported."
"One minor issue that somebody mentioned was that they didn't like their management console."
"CylanceOPTICS could benefit from more granular control in the timeline-building process. Ideally, users would be able to drill deeper into the analysis rather than have the machine dictate the direction."
"The technical support could be improved although it's probably better than you get with a lot of the other traditional antivirus solutions"
"It takes more time to investigate or dig up and understand what's going on."
"I feel it would greatly benefit from more supported log sources."
"The APIs can be further improved in Rapid7."
"One thing that springs to mind is easier API integration with ITSMs. We are evaluating a new ITSM and I would like to have InsightIDR create a ticket when an attack is identified, and the ticket would be closed in InsightIDR when the ITSM resolution is completed. This would take out the "single point of failure" we currently have, if the email recipient is somehow absent, in recording the risk appetite for the incident and the actions taken to mitigate or not."
"It takes time for the product's support team to resolve issues, making it an area of concern where improvements are required."
"The solution needs improvement in threat intelligence. Increasing the depth of intelligence to help users understand more about threats is a possibility. My suggestion is to expand access to other websites or resources."
"Needs a better ability to customize the check within the console."
"One of the things that could be better is digital forensics. It is there, but it can be better. They could provide more on the endpoint detection level."
"Customised alert recipients need to be added to allow better first-line action and quicker response. Configurable honeypots would be a welcome addition."
 

Pricing and Cost Advice

"I would rate the pricing a three out of five."
"CylanceOPTICS is probably priced equal to other EDRs in the market."
"The pricing for CylanceOPTICS is very good; I would rate it around a nine on a scale of one to ten, with ten being the lowest. It's one of the most affordable options I've seen."
"We pay for the number of endpoints we have and that is about it. On a monthly basis, the licensing cost is $55 per user."
"Licensing is by endpoint and amount of retention time (at least ours is). Default retention was one year, but we are able to push the retention further if needed. There's also a provide-your-own-S3 option for longer retention if you don't want to pay for the additional retention years in your Rapid7 agreement."
"Rapid7 InsightIDR is priced very well and is cost-effective."
"It is more reasonably priced than other vendors."
"Rapid7 InsightIDR's pricing is reasonable."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"It is on a yearly basis. For our own company, for about 250 users, it was 16,000 euros a year."
"Rapid7 InsightIDR charges us based on the endpoints we connect to."
"The pricing of the solution depends on the user. But there is a yearly licensing cost."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
864,053 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
23%
Computer Software Company
11%
Insurance Company
7%
Financial Services Firm
7%
Computer Software Company
15%
Manufacturing Company
7%
Financial Services Firm
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Blackberry Optics?
I would rate the stability a nine out of ten. I would give it a close ten as possible because, like SentinelOne, I've seen incompatibility. Whereas Cylance, I've seen none.
What is your experience regarding pricing and costs for Blackberry Optics?
CylanceOPTICS is probably priced equal to other EDRs in the market. Price-wise, considering what it has to offer, you could probably get a better product.
What needs improvement with Blackberry Optics?
The solution's contextual analysis is sometimes not very clear compared to some modern EDRs like CrowdStrike. Compared to other EDR tools, CylanceOPTICS lacks some information. It takes more time t...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about Rapid7 InsightIDR?
During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, its origin, and potential threats. For instance, it can identify if an applicati...
 

Also Known As

No data available
InsightIDR
 

Overview

 

Sample Customers

Cerdant, Washoe County School District
Liberty Wines, Pioneer Telephone, Visier
Find out what your peers are saying about CylanceOPTICS vs. Rapid7 InsightIDR and other solutions. Updated: July 2025.
864,053 professionals have used our research since 2012.