Try our new research platform with insights from 80,000+ expert users

CylanceOPTICS vs VMware Carbon Black Cloud comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

CylanceOPTICS
Ranking in Endpoint Detection and Response (EDR)
28th
Average Rating
7.4
Reviews Sentiment
4.5
Number of Reviews
11
Ranking in other categories
No ranking in other categories
VMware Carbon Black Cloud
Ranking in Endpoint Detection and Response (EDR)
46th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
18
Ranking in other categories
Security Incident Response (6th)
 

Mindshare comparison

As of May 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of CylanceOPTICS is 0.2%, up from 0.1% compared to the previous year. The mindshare of VMware Carbon Black Cloud is 0.2%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Q&A Highlights

PB
Dec 20, 2021
 

Featured Reviews

HERNAN RODRIGUEZ - PeerSpot reviewer
Easy to use
CylanceOPTICS is easy to use.  The product's technical support is slow.  I have been using the product for three years.  CylanceOPTICS is easy to use.  I rate the solution a nine out of ten. 
Tom Kar - PeerSpot reviewer
Shows promise for endpoint detection and response, with room for improvement in complexity and pricing
VMware Carbon Black Cloud is a user-friendly solution that can isolate machines from the rest of the network. When a machine is quarantined, it cannot communicate with any other machines on the network except for the Carbon Black Cloud server. This allows you to investigate the machine without the risk of malware escaping to the network. Carbon Black Cloud's server can communicate with the quarantined machine through DNS and VSCP. This allows you to collect data from the machine, such as system logs, process activity, and registry changes. This data can be used to investigate the infection and determine the next steps. CrowdStrike and Cybereason are also popular EDR solutions. They offer similar features to VMware Carbon Black Cloud but may have different strengths and weaknesses. It is important to evaluate all of your options before choosing an EDR solution. Additionally, it is complex to use, and the pricing should be improved.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"CylanceOPTICS is pretty stable."
"You can use the solution to query certain things."
"I would rate the stability a nine out of ten. I would give it a close ten as possible because, like SentinelOne, I've seen incompatibility. Whereas Cylance, I've seen none."
"It automatically blocks the threats, helping us investigate if they harm the environment."
"It's pretty unintrusive"
"It is a bit early in our evaluation process to give proper feedback, although so far, the overall feedback is good."
"Cylance is not a signature-based protection solution and instead works proactively using AI and ML models to patrol for malicious behavior."
"The initial setup was fairly straightforward. To get a large health care organization sorted, we had to create exemptions because some of the scripts and some of the automations were broken."
"The solution does very well as a baseline EDR and provides good process-level management."
"Integration and scalability are the most valuable."
"The most valuable features are its lightweight design, ensuring minimal impact on end-users, and its real-time protection."
"Threat hunting is the most valuable feature of VMware Carbon Black Cloud."
"We are able to remotely isolate exploited endpoints in seconds and perform a live deep dive of any endpoint into its running processes (as necessary) without the need for extra scripts.​"
"The most valuable feature of VMware Carbon Black Cloud is the possibility of securing any PC worldwide."
"Carbon Black Cb Response excels at providing context to indicators when responding to incidents. It allows responders to understand the entire scope of an incident and quickly contain it to minimize impact and disruption."
"For setup, the server can be given to you as a VM image and with minimal configuration needed."
 

Cons

"The product's initial setup process could be easy."
"One minor issue that somebody mentioned was that they didn't like their management console."
"The tools are ineffective. It flags a lot of things. To give you an example, it detected Google Chrome and blocked the user's access to it. That it mistook for malicious, which turned out to be a false positive."
"The reporting is very weak and not very good at all."
"Our customers would like to see more automation with respect to how threats are handled once they have been detected."
"It takes more time to investigate or dig up and understand what's going on."
"CylanceOPTICS could benefit from more granular control in the timeline-building process. Ideally, users would be able to drill deeper into the analysis rather than have the machine dictate the direction."
"The product's technical support is slow."
"The solution needs to simplify the process of adding custom watchlists, as well as embrace YARA for rule creation."
"It's not simple."
"Training and education for both partner and customer, including product marketing need to be improved."
"It's not highly available, so you have to have a core server. If the primary server goes down, you need a new one. It's not available at the same time, however. It's not automatically swapped from one server to another."
"The solution's support could be improved."
"The product detects too many false positives initially and it could integrate better with other security solutions."
"The cloud console has a lot of bugs and issues in the analysis part."
"The solution can only handle about 500 bans or blocks."
 

Pricing and Cost Advice

"We pay for the number of endpoints we have and that is about it. On a monthly basis, the licensing cost is $55 per user."
"The pricing for CylanceOPTICS is very good; I would rate it around a nine on a scale of one to ten, with ten being the lowest. It's one of the most affordable options I've seen."
"I would rate the pricing a three out of five."
"CylanceOPTICS is probably priced equal to other EDRs in the market."
"Purchase Professional Services up front as part of the implementation package, then renew hours annually to ensure you have adequate support for upgrades and enhancements. Overbuy by at least 10% to account for infrastructure growth."
"You need to pay for the licensing of the product. The pricing is costly."
"We had no issues purchasing through our preferred reseller and were able to get a fair price even when not purchasing direct. Carbon Black Enterprise Response didn’t break the bank, though adding on the matching antivirus and anti-malware components of the Protect product was more than we could afford, even with some discounting. Cb Response is really designed to complement Carbon Black’s Defense product. While Response can be used on its own, coupling with Defense seems like the best strategy if you can afford the price tag."
"VMware Carbon Black Cloud is an expensive solution."
"The solution is very inexpensive so there is great cost savings to using it."
"Pricing for this solution could be made lower."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
849,963 professionals have used our research since 2012.
 

Answers from the Community

PB
Dec 20, 2021
Dec 20, 2021
Hiya Paul, I'm a bit biased as we are partnered with Cynet Security. We've done extensive testing on Cynet 360 using two recipes: MITRE Framework and Atomic Red Team's collection of small, highly portable detection tests mapped to MITRE ATT&CK®. Value Proposition is very good with a 24/7 SOC support. Fully automated D&R agent with ability to integrate to external SIEM. Also has User Beh...
2 out of 5 answers
SP
Aug 7, 2020
If you're looking for a NextGen, Machine Learning & AI-driven Active EDR with automated remediation, that has not been breached and is backed by a one million USD ransomware warranty.  Contact me and I'll provide you with detailed comparisons between SentinelOne, Cylance and Carbon Black, showing how SentinelOne is superior to both Cylance and Carbon Black.  It will also be my pleasure to demonstrate the SentinelOne solution to you. The future of your company's cybersecurity is in your hands.
PM
Aug 7, 2020
Capability                               Cylance                   Carbon Black Leverages local ML Model        Yes                          No Leverages cloud ML Model.      Not required but      No                                               adds to efficacy Predictive Advantage              Yes                          No Prevents attacks from  zero-day threats                     Yes                          Partial Daily or frequent updates        No                           Yes Allows malware to execute      No                           Yes Cloud vs. On-Premise Mgmt     Cloud & On-Premise  On-Premise Single Agent                           Yes                           No Scale of Agents                       Infinite                    Limited Single Console                        Yes                          No Requires continual scans         No                           Yes Capable of convicting offline   Yes                         No Avg mem/cpu                         <70MB/1%                High Agent Update Cycle                Quarterly                 Daily ML Update Cycle                    3x Yearly                  N/A
 

Top Industries

By visitors reading reviews
Manufacturing Company
21%
Computer Software Company
19%
Government
9%
Financial Services Firm
7%
Computer Software Company
18%
Financial Services Firm
12%
Real Estate/Law Firm
11%
Healthcare Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Blackberry Optics?
I would rate the stability a nine out of ten. I would give it a close ten as possible because, like SentinelOne, I've seen incompatibility. Whereas Cylance, I've seen none.
What is your experience regarding pricing and costs for Blackberry Optics?
CylanceOPTICS is probably priced equal to other EDRs in the market. Price-wise, considering what it has to offer, you could probably get a better product.
What needs improvement with Blackberry Optics?
The solution's contextual analysis is sometimes not very clear compared to some modern EDRs like CrowdStrike. Compared to other EDR tools, CylanceOPTICS lacks some information. It takes more time t...
What to choose: an endpoint antivirus, an EDR solution or both?
I can recommend Carbon Black, an award-winning next-gen anti-virus (NGAV) and endpoint detection and response (EDR) security solution. The CB Predictive Security Cloud platform combines multiple hi...
What's the difference between Carbon Black CB Response and Carbon Black CB Defense?
Carbon Black offers two different levels of Endpoint Detection and Response. One is the VM Carbon Black Cloud Endpoint Standard (CB Defense), and the other is the Carbon Black Endpoint Detection an...
What do you like most about Carbon Black CB Response?
Threat hunting is the most valuable feature of VMware Carbon Black Cloud.
 

Also Known As

No data available
Carbon Black CB Response
 

Overview

 

Sample Customers

Cerdant, Washoe County School District
ALLETE belk
Find out what your peers are saying about CylanceOPTICS vs. VMware Carbon Black Cloud and other solutions. Updated: April 2025.
849,963 professionals have used our research since 2012.