No more typing reviews! Try our Samantha, our new voice AI agent.

Digital Guardian vs Tanium comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Digital Guardian
Ranking in Endpoint Detection and Response (EDR)
56th
Average Rating
6.8
Reviews Sentiment
6.5
Number of Reviews
13
Ranking in other categories
Data Loss Prevention (DLP) (17th), Endpoint Encryption (6th), Mobile Data Protection (3rd), Advanced Threat Protection (ATP) (27th)
Tanium
Ranking in Endpoint Detection and Response (EDR)
23rd
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
23
Ranking in other categories
Vulnerability Management (24th), Endpoint Protection Platform (EPP) (14th), Unified Endpoint Management (UEM) (8th), Autonomous Endpoint Management (3rd)
 

Mindshare comparison

As of August 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.8% compared to the previous year. The mindshare of Digital Guardian is 0.7%, up from 0.4% compared to the previous year. The mindshare of Tanium is 2.1%, down from 2.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
Tanium2.1%
Digital Guardian0.7%
Other93.5%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Syed Mubeen - PeerSpot reviewer
Cyber Security Researcher at a tech services company with 11-50 employees
Enterprise data protection has supported regulatory compliance and integrates with classification tools
In terms of functionality, many features are valuable in Digital Guardian, as the first thing for most customers is that they are using solutions such as Boldon James and Titus, which fall under the classification side, and Digital Guardian can easily integrate with this data classification solution and has a very granular level of configuration and policy tuning. Digital Guardian's data protection policies are indeed useful for my clients. Regarding Digital Guardian, I find it to be a very good solution, and in fact, it is an enterprise-level solution that has very tight integration with most of the products, with Fortra but also with others.
Sandeepraj Gatla - PeerSpot reviewer
Dfir Analyst at a tech services company with 201-500 employees
Endpoint monitoring has strengthened incident response and provides rapid isolation and forensics
Tanium provides an endpoint which is isolated from the network and environment. We can easily search its logs and history and connect remotely directly to that particular device which has been isolated from the network. We can search for the history and logs, including audit logs and event logs. The complete activity of the user or owner of the device is visible to us. We can see the artifacts of particular USB transfers internally for official use. We can not only connect remotely but also see the device status and how many failures have occurred within the network so far. We can see the IP address, how many times it has changed its IP address, and how many times it was connected to VPN or external VPN or internal VPN and what has been searched while on VPN. We can block the IOCs or IP addresses as well. We can block domains, hashes, SHA values, SHA-256, SHA-1, SHA-5 and MD5. Although I am not completely involved in the automation team, we do have that team and I have worked in some CERT recently. Tanium is more useful while we are in the CERT because most of the times when we are on high alert, Tanium does play a main role for that particular incident or any high case. Tanium is a simple tool and we can easily integrate it to many devices and it is a mandatory tool to secure an endpoint. It is mandatory to give any RDP connection and the tool should be present in the particular device. It is completely mandatory and it is in the policy as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cortex is the best solution for avoiding security breaches, malware attacks, and other kinds of security issues."
"I have found the solution to be very easy in respect of the integration and configurable."
"After deploying Traps, we saw the performance of the network improve by 65 to 70 percent."
"If the user leaves our premises or network, Palo Alto Traps will still be on that endpoint and will still apply our policies."
"Based on my experience, I would recommend Cortex XDR by Palo Alto Networks to other people."
"The solution's most valuable feature is its ability to rapidly detect certain hardware files."
"Traps is quite a stable product. Once it was properly deployed and configured, you have nothing to be worried about."
"They did what they said, and this solution could apply to any scenario."
"Data security is now one of the most important aspects for any organization."
"I like the solution's adaptive inspection and container inspection."
"It can scale from 100 to 10,000. There's no problem with the scalability."
"There is a built-in endpoint detection response that helps save money."
"The feature we call desktop recording is the most valuable aspect of the solution. Not only can we collect data from the user's usage, but we also capture his screenshots when he is trying to steal the data."
"It has the added advantage of offering forensic analysis."
"The technical support is really terrific."
"We have been able to monitor access to files from each of our workstations."
"The security features are very valuable."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first. I like the ability it has to make several campaigns that work in parallel."
"For inventory purposes, it's from one of the best things on the scene, as you can get live inventory."
"Threat hunting is a very good feature on Tanium. We have just started using it and have not used it extensively."
"The insights we gain from our endpoints and the management capabilities that Tanium provides have been a boon to our operations and security."
"The solution is scalable and helps to understand how infrastructure works. It helps to improve the health of the organization."
"The most valuable features of this solution are the consolidation of all historical data on device endpoints, security drivers, firmware, and Software version gaps."
"The interrogation piece was the most valuable feature because it was very detailed."
 

Cons

"If he is using a smaller company, he can depend on some other tools because Cortex XDR by Palo Alto Networks is a bit expensive."
"It's more focused on network communication. If a customer wants to increase the level of protection and start working with documents, it's impossible to integrate these features into the system. It's more of a communication-oriented system than a content security-oriented system."
"Cortex XDR by Palo Alto Networks could improve by offering remote management. It would be useful to look at the client's issue to fix it."
"They have the worst support, as a company, that I have ever worked with, as they are difficult to get a hold of and keep on the phone. They don't know what they are talking about when you get them on the phone. They don't like to respond to messages when you send them to them. They like to "research problems" for weeks on end, then pass you off to somebody else."
"I have seen lagging with Cortex XDR by Palo Alto Networks. There was one time when we faced a threat actor trying to gain access to our system. When our team utilized the tool, we were all on the same dashboard and we faced a lag issue at that time of around five minutes, which was quite significant."
"The dashboard could use some significant improvement, just making it more useful with more information. It has a limited amount of information right now. It is customizable, but I'd love to see a better out-of-box dashboard."
"Being able to filter the events to see those that are related to the actual alert would save time spent by the engineer."
"I would like to see them include NDR (Network Detection Response). Then it would work well with SIEM Response."
"I think the whole system needs improvement, even though it works fine the way they designed it."
"I would like to see the workflow, to get all the rules and policies set up, be less complicated."
"In my experience, the area closest for improvement is the occurrence of strong false positives."
"It would be helpful if there was an on-premise version of the solution for companies that cannot use the cloud, such as government sectors."
"The room for improvement with Digital Guardian is that it will be better with the Linux agent because it is the only DLP solution for Linux workstations. It still needs to upgrade the agents to the latest version for the Linux kernel."
"The initial setup is a bit more complex than other solutions."
"My biggest lesson learned from dealing with this product is that they commit to something but they don't deliver it."
"The solution has complexities around policy creation and deployment."
"It is not really additional functions, or the features that are needed, rather the complexity would be reduced based on the number of modules required to put together a comprehensive operational security and risk compliance model."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
"In my opinion, sometimes it takes a long time to give solutions or resolve the issue."
"We had some issues with the solution's OS upgrade."
"The solution lacks mobility."
"They could improve the UI."
"There are downsides and drawbacks in Tanium, and there is room for improvement from my perspective."
"There are some bugs in the product. The tool needs to improve in the area of reporting."
 

Pricing and Cost Advice

"The pricing is a little high. It is per user per year."
"The solution is expensive. It's pricing is on a yearly-basis."
"The solution has one subscription for endpoint protection and one subscription for detection and response. The two licenses combined give you the BRO version."
"Our license will require renewal in August, after which the maintenance will continue as usual."
"The price was fine."
"We didn't have to pay any additional fee for the cloud instance. It just came with the renewal, which was nice."
"Licensing for Palo Alto Networks Cortex XDR can be costly, especially when it comes to a hundred users. A license is required for each user, and the subscription must be renewed on a yearly basis."
"This is an expensive solution."
"If I compare Digital Guardian with Symantec, the license cost is lower, but McAfee can be cheaper than Digital Guardian. It depends on how many licenses you plan to buy and how big the project is. The cost is not so high as Symantec, but not as cheap as McAfee. They can easily sell the solution for price."
"The cost was around $300,000."
"Digital Guardian has both, subscription and perpetual licenses, but I think when everything (all technologies) will go to the cloud they will only offer subscriptions."
"I rate the solution's pricing an eight out of ten because Digital Guardian is expensive."
"The price of Digital Guardian is expensive."
"The price of Digital Guardian is on the higher end compared to other vendors."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"It is higher than some competitors in the market."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"It's an expensive solution. It would be nice if the cost were lower."
"The solution offers value for money."
"The solution is expensive but it's a good investment."
"There is an annual license required to use this solution."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
10%
Financial Services Firm
12%
Manufacturing Company
10%
Construction Company
8%
Comms Service Provider
8%
Financial Services Firm
14%
Government
10%
Manufacturing Company
9%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business11
Large Enterprise4
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with Digital Guardian?
In my experience, the area closest for improvement is the occurrence of strong false positives. Digital Guardian can ...
What is your primary use case for Digital Guardian?
My main use case for Digital Guardian is to prevent or stop sensitive data from being copied to USB, email, or cloud,...
What advice do you have for others considering Digital Guardian?
Digital Guardian has significantly improved incident response time by providing real-time detection, instant alerts, ...
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
The Fifth Avenue Theatre, Jabil Circuit
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Digital Guardian vs. Tanium and other solutions. Updated: June 2026.
908,834 professionals have used our research since 2012.