No more typing reviews! Try our Samantha, our new voice AI agent.

Fidelis Elevate vs Rapid7 MDR comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 3, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (5th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Fidelis Elevate
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
7
Ranking in other categories
Endpoint Detection and Response (EDR) (60th), Threat Deception Platforms (8th), SSL/TLS Decryption (4th), Network Detection and Response (NDR) (23rd), Managed Detection and Response (MDR) (30th), Extended Detection and Response (XDR) (42nd)
Rapid7 MDR
Average Rating
8.6
Reviews Sentiment
6.4
Number of Reviews
15
Ranking in other categories
Managed Detection and Response (MDR) (8th)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Mostafa Ameen - PeerSpot reviewer
Information Security Engineer at ICT Misr
Advanced threat detection capabilities with comprehensive incident response features providing robust cybersecurity for organizations
The initial aspect concerns two engines. The first one mentioned is available for searching behaviors directly. The second engine involves the Google Ade tool, which operates on the machine. The challenge arises when attempting to rectify protection rules, causing confusion. It would be beneficial to enhance Rigixs Query. I encounter difficulty removing certain entries in behavior or alerts; likewise, I am unable to add specific calls.
Ehsan Khaleel - PeerSpot reviewer
Manager SOC at PTCL
Comprehensive detection has strengthened real-time protection and streamlined investigations
My experience with detection and response capabilities for Microsoft-centric environments has been positive. While API integration can be challenging with some third-party tools, Microsoft's built-in features facilitate seamless communication. I have found it relatively easy to triage and integrate Microsoft systems with Rapid7 MDR. In terms of digital forensics and incident response included in the MDR service, my experience is that it is not very robust. We lack a dedicated forensic team, which is essential for thorough investigation. Rapid7 has introduced honeypots, which is an encouraging feature, but it is not a comprehensive solution such as those offered by competitors, such as Palo Alto's Unit 42. Apart from forensics, I believe Rapid7 MDR should introduce more forensic services. Another area to improve is the active platform's handling of on-premises tools versus cloud-based tools. We prefer on-premises options for data security, and we find limitations in features compared to cloud-based tools, concerning data access and privacy controls.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Palo Alto is one of the tech vendors that always provides top-of-the-line products."
"On a scale from one to ten, I would rate Cortex XDR by Palo Alto Networks a nine."
"Its ability to react to cyber data attacks is awesome."
"Cortex XDR by Palo Alto Networks is specifically designed to prevent zero-day attacks and is part of an ecosystem of Palo Alto, providing customers with a long-term vision to modify and redesign how security is applied in their company."
"The normal protection was really effective, and we detected situations that if we didn't have Cortex XDR by Palo Alto Networks, it's highly likely that we would have been affected, but it protected the infrastructure."
"After installing this solution, it identified, blocked, and provided the complete attack chain, which was very helpful."
"My advice for anybody who is considering Cortex XDR is that it is a complete solution, and has very good features."
"The product is very good, it has caught a lot of exploits that most products would not."
"The technical support is very helpful."
"The solution is pretty scalable; you buy a lot of features, a known product, and you want it to run in any environment, and it does, so it's scalable enough."
"It is used as our primary in-line IDS/IPS system, replacing FireEye NX, and it catches more, looks at more ports than FireEye NX, and is a scalable appliance, unlike our NX which was saturated and shut itself down."
"There are many valuable features. The NDR gives very good network visibility, and the endpoint module has a great feature called "Live Connect" for remote connections. They also have "Tasks" that can be run on endpoints to gather specific information or retrieve logs."
"After rack and stack, devices were up and running base configurations within two hours. As with any IPS, tuning is required to stop false positives. This is no different, but the ease of use of the interface allowed my team to start making adjustments within a few hours."
"It has also improved our hunt ability with quick search tools, to zone in on malware or other anomalies. It is able to link items to incidents from other consoles, and works natively with the SIEM."
"It has a rating system now so you can rate things up or down, depending on your environment. This means alerting can be customized, yet still pick up anomalies."
"Reporting is great, it is easy to do a quick search through 45 days of data for something of interest."
"The product allows us to customize our alerts."
"We've filled in crucial gaps we had with our previous solution. This was a key factor in choosing Rapid7 during the selection process. The ROI is already starting to show, too."
"Instead of dedicating resources for around-the-clock monitoring, Rapid7 MDR acts as an extension of our security team, saving man-hours each month while improving detection and response capabilities."
"All stakeholders claim that Rapid7 MDR is very effective at identifying threats in today's AI era."
"The benefits that came with Rapid7 MDR is the analysis we are getting now, which is quite useful."
"The enrichment that Rapid7 MDR generates for the client is greater than with other tools, and this has had a big impact."
"The features of Rapid7 MDR that I find most effective for threat detection are the threat intelligence capabilities because it already collects many vulnerabilities and exploitations, as well as the configuration of network devices."
"From my perspective, Rapid7 MDR is a really good product that is easy to implement and use."
 

Cons

"It's not an ideal choice for smaller businesses, as you need a minimum of 200 endpoints to even use the solution at all."
"The deployment is pretty hard."
"The playbooks could be improved to include more functionalities or actions."
"In terms of areas of improvement, we have not completed our review of the product. We're also looking at other products. So, it's a little bit hard to tell what could be different because we have not completed the review of this product, but based on our experience so far, its implementation is quite complex."
"When it comes to malware files, it should be a little quick because, at times, it would give a wrong result in the sense of what it might be on malware, even if it still might be a normal one."
"It is not easy to sell Cortex XDR, not because it isn't a good tool. Its marketing needs to be improved."
"On the pricing aspect, Cortex XDR by Palo Alto Networks needs to have a more reasonable rate, particularly for customers in Sri Lanka and Asian countries."
"I would like to see improvement in the tool's user interface, particularly in the area of managing alerts and providing more reporting capabilities."
"Fidelis Endpoint is an expensive product making it one of its shortcomings that needs improvement."
"The interface bug needs to be squashed once and for all."
"We position the solution as an antivirus, but this part of the solution needs improvement. They need to generally enhance the features that they have, rather than adding anything new."
"There is room for improvement in email security. It's a security issue. If you're aiming for XDR, covering the entire threat landscape is crucial."
"The interface bug needs to be squashed once and for all. This has been the predominant issue with an otherwise stellar product. It reboots itself unscheduled, about once a month, due to a memory buffer flaw in the interface."
"The reports in the endpoint area of Elevate can be improved."
"I encounter difficulty removing certain entries in behavior or alerts; likewise, I am unable to add specific calls."
"Configuration, in terms of building the collector and communicating with endpoints, is complex."
"To improve Rapid7 MDR, I suggest enhancing detection and reporting, including customizable dashboards and more dynamic alert detection rules based on anomalies."
"There are potential improvements in reports and dashboards."
"I think Rapid7 MDR already has a strong managed security service, but I believe things can be improved."
"There are still a couple of areas where Rapid7 MDR can be improved. The visibility of the dashboard should be improved, and faster threat detection can also be enhanced."
"However, I think the best area for improvement is pricing."
"The price of Rapid7 MDR could definitely be lower, as these are expensive systems, especially if you have the MDR."
"The product should provide full transparency in security operations."
"Regarding Rapid7's support team, I must say that their response time is not as quick as I would prefer. While they do respond, it can take a few days or even a week to get on a call."
 

Pricing and Cost Advice

"The price is on the higher side, but it's okay."
"Its pricing is kind of in line with its competitors and everybody else out there."
"Cortex XDR by Palo Alto Networks is quite an expensive solution."
"If one wishes to work with another team or large number of users at a future point, he must purchase a license for them."
"It's way too expensive, but security is expensive. You pay for your licensing, and then you pay for someone to monitor the stuff."
"Licensing for Palo Alto Networks Cortex XDR can be costly, especially when it comes to a hundred users. A license is required for each user, and the subscription must be renewed on a yearly basis."
"It's about $55 per license on a yearly basis."
"Cortex XDR by Palo Alto Networks is an expensive solution."
"It's quite expensive but we can customize it to reduce the price."
"You license by the number of days of logs you need to maintain visibility for. Forty-five days is a good solid number for a company with around a 10k user base."
"It's somehow expensive. From one to ten, I would rate it a five. They need to improve the prices. It's very high."
"Fidelis Endpoint is an expensive product. My company makes yearly payments toward the licensing cost of the solution."
"The product is not overly priced."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
10%
Financial Services Firm
14%
Construction Company
12%
Comms Service Provider
12%
Manufacturing Company
10%
Manufacturing Company
12%
Educational Organization
10%
Financial Services Firm
7%
Outsourcing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business6
Large Enterprise2
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise3
Large Enterprise10
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
Ask a question
Earn 20 points
What needs improvement with Rapid7 MDR?
There are still a couple of areas where Rapid7 MDR can be improved. The visibility of the dashboard should be improve...
What is your primary use case for Rapid7 MDR?
I use Rapid7 MDR for security monitoring and easy onboarding and deployment. We primarily use Rapid7 MDR for threat d...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Fidelis Elevate Platform, Fidelis Enterprise, Fidelis Cloud, Fidelis Managed Detection and Response, Fidelis Deception, Fidelis Decryption, Fidelis Endpoint, Fidelis Network
Rapid7 Managed Detection and Response
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
First Midwest Bank
Landmark Health, NISC, Resimac, Starr Companies
Find out what your peers are saying about Fidelis Elevate vs. Rapid7 MDR and other solutions. Updated: June 2026.
908,834 professionals have used our research since 2012.