Try our new research platform with insights from 80,000+ expert users

ExtraHop Reveal(x) vs Zscaler Cloud IPS comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ExtraHop Reveal(x)
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
14
Ranking in other categories
Network Traffic Analysis (NTA) (5th), Network Detection and Response (NDR) (5th)
Zscaler Cloud IPS
Average Rating
9.0
Reviews Sentiment
6.8
Number of Reviews
5
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (16th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. ExtraHop Reveal(x) is designed for Network Traffic Analysis (NTA) and holds a mindshare of 17.5%, up 16.5% compared to last year.
Zscaler Cloud IPS, on the other hand, focuses on Intrusion Detection and Prevention Software (IDPS), holds 1.5% mindshare, up 1.1% since last year.
Network Traffic Analysis (NTA)
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Jordan Swanson - PeerSpot reviewer
It helps you visualize how data moves across your network
I rate ExtraHop Reveal(x) 10 out of 10. This is more of a nice-to-have rather than a must-have solution. Something like a CrowdStrike or a next-gen AV is an essential product, whereas NDR is more of a nice-to-have thing. If you only have a little bit of traffic, you're probably not going to get anything out of it. It's better for a medium-to-large enterprise. It's more appropriate for companies wh a massfootprints or industrial applications using use nonstandard devices. It's helpful for things that use SCADA, the Internet of Things, somethingings that don't fit neatly into other management categories. Itty common for industrial, construction, or maintenance devices to be a little lackluster in their security. Major breaches like the Colonial Pipeline hack and attempted hacks on nuclear power plants all went through Internet of Things vulnerabilities and other devices where security wasn't part of their plan. This helps you cover yourself by monitoring the traffic. With something like CrowdStrike, you need to put the CrowdStrike sensor on it, but Reveal(x) looks at everything on the network.
Boubker KASTOUNI - PeerSpot reviewer
Stable platform with good technical support services
We use Zscaler Cloud IPS for internet access, extended log store, cloud application control, and advanced threat protection We encounter issues sharing IP addresses with other companies using the software. We have been using Zscaler Cloud IPS for ten years. Stability-wise, I rate the software a…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution's ability to decrypt SSL traffic is its most valuable feature."
"Reveal X integrates seamlessly with CrowdStrike. If you see something sketchy on the network, you can quarantine devices through ExtraHop and it'll push to the CrowdStrike server."
"The solution's initial setup process is easy."
"The solution works well for sending sensors."
"The most valuable features of ExtraHop Reveal(x) are the detection and alerting of network behavior and anomalies."
"The security features of this solution are the most valuable."
"We had useful information within the hour of deployment. The ability to trace back for historical analysis, as well as the behavioral analysis done with the security information, puts the user in a position to make an informed decision to mitigate the performance or security incidents. Regarding the security incidents, Reveal (x) is able to create incident cards that guide your teams through the incidents and gives you the option to delve into the transaction detail to potentially view payloads as well."
"ExtraHop Reveal(x) is highly recommended and very good."
"The initial setup is straightforward and easy in comparison with other solutions."
"Cloud IPS integration is seamless, and it uses a Zero Trust model. It also simplifies overall user access management."
"The best feature is that Zscaler allows for a separation between cloud applications and URL filtering. For example, under the cloud application segment, I can bypass Microsoft Office 365 without the need to add URLs manually. It's one click, so that's handy."
"The product's most valuable feature is complete SSL inspection."
"The initial setup process is easy."
 

Cons

"They used to have the ability to decode Citrix sign-on, setup, and tear down. Unfortunately, Citrix has stopped sharing that knowledge. Citrix has continued to change its model of processing, making it harder and harder to troubleshoot."
"Netflow - Processing Netflow can be cumbersome as it requires triggers to truly gain value and insight. This in turn can add a bit of load to the hardware. The focus of ExtraHop Reveal (x) is live packet data."
"The solution’s pricing could be improved."
"I would like to see improvements in areas where events are getting dropped; we're not able to view complete insights."
"The solution's reporting part and GUI are areas with certain shortcomings where improvements are required."
"Currently, we have to check manually as we do not receive any notifications about new patches, maintenance, or firmware releases."
"I think the tuning capabilities could be improved. We're working on minimizing false positives. Apart from that, everything seems fine to me."
"It needs integration with more security vendors."
"They have given limited free access for a year. Instead, they should increase the file size and give limited free access for around two months. It will allow engineers to evaluate the product."
"We recently had a significant issue with Zscaler. I think they have too many customers and some of their connection edge nodes went down because there were too many requests. I think they aren't scaling enough to keep up with the demand in some areas. That's one thing they should improve."
"When it comes to scalability, the IPsec could be improved."
"There is always room for improvement."
"We encounter issues sharing IP addresses with other companies using the software."
 

Pricing and Cost Advice

"The solution is based on an annual subscription model and is expensive."
"I rate the price of ExtraHop Reveal(x) a seven on a scale of one to ten, where one is a high price, and ten is a low price."
"I rate ExtraHop Reveal(x) six out of 10 for affordability. We pay for an annual license. It's always one of those trade-offs. You get a lot of value, but ExtraHop isn't exorbitantly priced. You can pay extra for additional features like the ability to decode HL7 traffic, which is crucial for EMR environments."
"I would rate the price a three out of five. It could be less expensive."
"Zscaler has so far been solely responsible for all the sales we have done with it, so it would be more suited than us to address any issues concerning the pricing."
"The software has become more expensive at present."
"The product is not affordable for small and medium enterprises."
report
Use our free recommendation engine to learn which Network Traffic Analysis (NTA) solutions are best for your needs.
859,533 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Computer Software Company
12%
Government
7%
Healthcare Company
7%
Financial Services Firm
13%
Manufacturing Company
13%
Computer Software Company
10%
Healthcare Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is the best network monitoring software for large enterprises?
We just did an assessment for our 47 datacenters around North America. The top two enterprise-level network monitoring solutions were ExtraHop first, Riverbed SteelCenter second. Their negotiated c...
What open source tool can one use to measure bandwidth from one's upstream service provider?
One I am looking closely at is AppNeta. They have an appliance that can digest the flow and do a better job than Netflow. The other one we are using is ExtraHop. This has both a Datacenter Hig...
What do you like most about ExtraHop Reveal(x)?
With ExtraHop Reveal(x), it gives me more visibility into the packets. It doesn't provide the entire packet capture, but it offers more information on how connections are made at the network layer....
What do you like most about Zscaler Cloud IPS?
The product's most valuable feature is complete SSL inspection.
What is your experience regarding pricing and costs for Zscaler Cloud IPS?
The product is not affordable for small and medium enterprises.
What needs improvement with Zscaler Cloud IPS?
They have given limited free access for a year. Instead, they should increase the file size and give limited free access for around two months. It will allow engineers to evaluate the product.
 

Also Known As

Reveal(x), Revealx
No data available
 

Overview

 

Sample Customers

Wood County Hospital
Zenith Live, Azure, Carlsberg Group
Find out what your peers are saying about Darktrace, Auvik, SolarWinds and others in Network Traffic Analysis (NTA). Updated: May 2025.
859,533 professionals have used our research since 2012.