



Find out what your peers are saying about Splunk, Microsoft, Palo Alto Networks and others in Security Orchestration Automation and Response (SOAR).
| Product | Mindshare (%) |
|---|---|
| Fortinet FortiSOAR | 3.8% |
| Microsoft Sentinel | 9.8% |
| Palo Alto Networks Cortex XSOAR | 8.7% |
| Other | 77.7% |
| Product | Mindshare (%) |
|---|---|
| SECDO Platform | 7.0% |
| VMware Carbon Black Cloud | 9.2% |
| ServiceNow Security Operations | 9.0% |
| Other | 74.8% |
| Product | Mindshare (%) |
|---|---|
| Splunk SOAR | 7.1% |
| Microsoft Sentinel | 9.8% |
| Palo Alto Networks Cortex XSOAR | 8.7% |
| Other | 74.4% |

| Company Size | Count |
|---|---|
| Small Business | 2 |
| Midsize Enterprise | 5 |
| Large Enterprise | 5 |
| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 3 |
| Large Enterprise | 5 |
| Company Size | Count |
|---|---|
| Small Business | 18 |
| Midsize Enterprise | 8 |
| Large Enterprise | 40 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
Fortinet FortiSOAR offers a comprehensive platform for automating and managing security operations. It streamlines cyber incident response and integrates with existing security systems for effective threat detection and remediation.
FortiSOAR is designed to enhance security operations through its automation capabilities and seamless platform integration. Its playbooks allow for quick response and efficient policy application, simplifying incident management and network security tasks. The centralized analytics and intuitive dashboards support threat intelligence management and workflow automation. Despite its benefits, FortiSOAR has areas for improvement, such as third-party integration, user-friendliness, and a high learning curve which affects playbook creation. Documentation and technical support need enhancement to facilitate better user experience, along with refining its pricing model and improving orchestration with network devices.
What are the top features of Fortinet FortiSOAR?Fortinet FortiSOAR is utilized across industries for its ability to manage security operations and case management efficiently. In sectors such as finance and healthcare, FortiSOAR automates responses to cyber threats, aiding in compliance and data protection. Its integration with security technologies supports robust threat intelligence, vital for sectors that process sensitive information.
SECDO Platform provides an advanced investigation and response framework designed to enhance security teams' capabilities in detecting, analyzing, and responding to threats efficiently.
SECDO Platform leverages event correlation and data enrichment to deliver contextual insights, allowing security operations teams to swiftly address threats with minimal downtime. Its robust automation features empower teams to streamline incident management processes, leading to quicker resolutions and enhanced threat mitigation.
What are SECDO Platform's Key Features?SECDO Platform is effectively implemented in industries requiring stringent security measures. Financial institutions benefit from its real-time threat detection, while healthcare facilities utilize its efficient data protection capabilities. Its adaptable nature ensures compatibility with different sector-specific requirements.
Splunk SOAR focuses on automating security operations with seamless third-party integrations and customizable workflows, enhancing incident response and threat management.
Splunk SOAR offers robust playbook automation and powerful API connectivity, allowing organizations to streamline workflows and integrate extensively with tools like Salesforce and ServiceNow. With its capabilities in real-time data visualization and automated threat responses, it significantly enhances security and reduces manual efforts. Users appreciate the ease of creating playbooks, which reduces mean time to detect and resolve. However, attention to its integration challenges with Microsoft products, the need for more playbooks, and improved customization tools is necessary. Enhancements in the development process, visibility, scalability, and case management options are also beneficial. Improving documentation and training resources would add more depth and accessibility.
What are the top features of Splunk SOAR?Organizations implement Splunk SOAR in industries to automate tasks in Security Operation Centers, addressing incidents such as phishing, brute force, and ransomware. It integrates with third-party applications for threat intelligence enrichment, commonly deployed both on-premise and cloud, enhancing cybersecurity efforts.