No more typing reviews! Try our Samantha, our new voice AI agent.

ESET EDR/XDR vs Kandji comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
ESET EDR/XDR
Ranking in Endpoint Detection and Response (EDR)
29th
Average Rating
9.0
Reviews Sentiment
4.7
Number of Reviews
4
Ranking in other categories
Authentication Systems (20th), Extended Detection and Response (XDR) (21st)
Kandji
Ranking in Endpoint Detection and Response (EDR)
13th
Average Rating
8.8
Reviews Sentiment
6.6
Number of Reviews
19
Ranking in other categories
Vulnerability Management (18th), Mobile Device Management (MDM) (3rd), Enterprise Mobility Management (EMM) (3rd)
 

Mindshare comparison

As of August 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.7%, down from 3.8% compared to the previous year. The mindshare of ESET EDR/XDR is 1.1%, up from 0.7% compared to the previous year. The mindshare of Kandji is 0.5%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.7%
Kandji0.5%
ESET EDR/XDR1.1%
Other94.7%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
GirdharMishra - PeerSpot reviewer
Program Manager at iONE IT Solutions
Centralized monitoring has improved threat visibility and reduced incident response time
In terms of valuable features in ESET EDR/XDR, we focus on endpoint device management as well as for the firewall team, including our log analysis and monitoring the firewall, which are three significant functions for us. ESET EDR/XDR has automated threat detection that gives us real-time incident alerts, and it helps us proactively receive and work on incidents that could have an impact. Regarding the usefulness of ESET EDR/XDR's behavior-based analysis in detecting potential breaches, we have identified some files or configuration files that should remain static, and if any changes occur without proper change management, we are able to identify those changes, including detecting zero-day attacks. The integration of threat intelligence feeds has helped our response strategies, as we are using Oracle OCA-based data analysis, and we have integrated it so that logs are forwarded to our SIEM, allowing us to analyze the data effectively. I evaluate the impact of centralized management on our security operations as very useful because it eliminates the need to log into individual systems to find sources, allowing us to identify all types of risks and vulnerabilities from a single desk.
CD
SysAdmin at a recreational facilities/services company with 11-50 employees
Strong security structure has supported fast Mac and iOS administration with minimal IT effort
One area for improvement for Kandji would be having a bigger suite of applications. I noticed that some of the niche apps our data software firm needs were not in the regular library. We were able to use the custom app feature to create those apps ourselves, but I would love it if Kandji could expand the library. I also wish Kandji could lock down different ports on MacBooks based on which ones we wanted to shut down, and I hope there is an easier way to sandbox people's bring your own device devices because when we're doing SOC 2, it really wants us to sandbox things so that if someone were to take a device that is not ours, we could delete just our data off there and not theirs. An improvement needed for Kandji would be the ability to remote into devices. I would appreciate something that is really reliable for that without having to buy third-party software.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"They did what they said, and this solution could apply to any scenario."
"Based on my experience, I would recommend Cortex XDR by Palo Alto Networks to other people."
"One of the main benefits of the solution is its intelligence to correlate the events into an incident."
"It collects and caches and the knowledge of machine learning from different customers to take to the cloud, it makes it better to use for everybody, it allows for quick learning and updates and can, therefore, offer zero-day malware security, and this sharing of metadata helps make the solution very safe."
"After installing this solution, it identified, blocked, and provided the complete attack chain, which was very helpful."
"Its ability to react to cyber data attacks is awesome. That is pretty much the use of it. What blows your mind is the ability to access your assets remotely and see what is actually going on with them. You can not only see them in a console. You can also react very rapidly to your assets that are compromised."
"The level of security I get for my endpoints and servers is extremely valuable."
"Overall, it's a great platform; it integrates very well with other solutions from Palo Alto and also with our vendors, the ease of use is excellent, I love the root cause analysis from Cortex, which is amazing, and in a few clicks you can have the full root cause."
"ESET EDR/XDR has automated threat detection that gives us real-time incident alerts, and it helps us proactively receive and work on incidents that could have an impact."
"The initial setup of ESET EDR_XDR is very simple, easy to deploy, and manage."
"The solution is easy to use."
"It is pretty easy to install without any hassles, and ESET EDR_XDR has its own cloud portal where everything is available."
"Kandji has positively impacted our organization by making it easy to manage all of our MacBook devices and applications."
"It's a very easy plug-and-play solution where you can just enroll the devices and choose the features you want."
"Kandji has positively impacted our organization by making it so we feel confident in our security structure, and we feel confident that we can pass SOC 2 every year because we know that Kandji is doing what it says it's doing."
"I have seen a return on investment with Kandji, as I save time."
"Kandji has positively impacted my organization because many things happen through Kandji, especially on the laptops and desktops at the infrastructure workspace level."
"Kandji has positively impacted my organization by providing remote and quick support."
"The customer support at Kandji is phenomenal and is the best I have experienced from any vendor."
"Kandji has positively impacted my organization because it is very user-friendly, and among the multiple MDM solutions I have used, such as JumpCloud and Intune, Kandji stands out as one of the best for Mac devices."
 

Cons

"It's not an ideal choice for smaller businesses, as you need a minimum of 200 endpoints to even use the solution at all."
"I have run into some detection issues with Cortex XDR. It needs to be better at detection of internal attacks."
"However, if you do not have Palo Alto in your environment, you are paying these additional services just for Cortex XDR by Palo Alto Networks, so it is not a cost-effective solution."
"This is a very costly product."
"Cortex XDR by Palo Alto Networks is a very good product, but financially, it is very expensive, so the company should look into that area."
"The deployment is pretty hard."
"The configuration could be simplified. I would like to see better protection, specifically to protect email applications."
"Cortex XDR by Palo Alto Networks can improve mobile integration to allow access to the console."
"The solution could improve how it scours each website."
"ESET EDR_XDR needs to conduct more research and development and innovations in early detection of attacks."
"The memory and CPU footprint can affect performance. It sometimes slows down the CPU performance."
"One way Kandji can be improved is through pricing, as other market providers comparatively have a lower price."
"In Kandji, I see a drawback related to the remote wipe function."
"One area for improvement for Kandji would be having a bigger suite of applications."
"Kandji can definitely be improved by the complexity. I feel we cannot necessarily tweak the Blueprints in the ways that we need to or there are just complex one-off situations where we need more customization and more ability to run custom scripts."
"I rated Kandji an eight because the laptop needs to be connected to Wi-Fi to erase it."
"While I do not have anything specific to add about the features, I do think there is a lack of flexibility in Kandji."
"There are certain limitations with blueprints where each machine can only have one or must have a blueprint, which is frustrating since certain machines may not need to have a blueprint straight away for testing."
"One thing I have noticed is that Kandji is mainly for Mac devices."
 

Pricing and Cost Advice

"This is an expensive solution."
"The solution is expensive. It's pricing is on a yearly-basis."
"I don't recall what the cost was, but it wasn't really that expensive."
"I don't like that they have different types of licenses."
"The return on investment is from the user side because we have seen the performance of it increase the delivery time of the product if we are using too many web-based and on-premise applications. In indirect ways, we saw the return of investment in terms of performance and user satisfaction increase."
"The cost depends on your chosen license type, like Pro or other licenses."
"We didn't have to pay any additional fee for the cloud instance. It just came with the renewal, which was nice."
"The solution has one subscription for endpoint protection and one subscription for detection and response. The two licenses combined give you the BRO version."
"I rate the solution’s pricing a six or seven out of ten.."
"Users have to pay a yearly licensing fee for Kandji, which is expensive."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
909,725 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
12%
Comms Service Provider
10%
Financial Services Firm
10%
Manufacturing Company
10%
Financial Services Firm
14%
Comms Service Provider
13%
Manufacturing Company
8%
Construction Company
7%
Comms Service Provider
13%
Financial Services Firm
11%
Outsourcing Company
10%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
No data available
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise5
Large Enterprise7
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for ESET EDR/XDR?
I find the price of ESET EDR/XDR to be competitive to the market, which is a reasonable aspect for us.
What needs improvement with ESET EDR/XDR?
I just deploy and forget it, so I don't get into much detail about improvements. The major setback we face with ESET ...
What advice do you have for others considering ESET EDR/XDR?
We might get good pricing one year, and then the next year there could be significant pricing issues. Integration wit...
What is your experience regarding pricing and costs for Kandji?
My experience with pricing, setup cost, and licensing is that we are using nearly 100 machines in Kandji, which comes...
What needs improvement with Kandji?
One thing I have noticed is that Kandji is mainly for Mac devices. We cannot manage Windows devices on Kandji. This i...
What is your primary use case for Kandji?
Kandji, which is now called Hero, is used for mobile device management. We use it to manage Mac devices, Apple device...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
ESET Secure Authentication
No data available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Mitsubishi Motors, Canon
Information Not Available
Find out what your peers are saying about ESET EDR/XDR vs. Kandji and other solutions. Updated: August 2026.
909,725 professionals have used our research since 2012.