No more typing reviews! Try our Samantha, our new voice AI agent.

Huntress Managed EDR vs Zscaler Client Connector comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 29, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Huntress Managed EDR
Ranking in Endpoint Detection and Response (EDR)
6th
Average Rating
9.2
Reviews Sentiment
7.5
Number of Reviews
66
Ranking in other categories
Managed Detection and Response (MDR) (1st)
Zscaler Client Connector
Ranking in Endpoint Detection and Response (EDR)
24th
Average Rating
8.8
Reviews Sentiment
5.9
Number of Reviews
6
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.6%, down from 3.9% compared to the previous year. The mindshare of Huntress Managed EDR is 2.7%, down from 2.9% compared to the previous year. The mindshare of Zscaler Client Connector is 0.6%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.6%
Huntress Managed EDR2.7%
Zscaler Client Connector0.6%
Other93.1%
Endpoint Detection and Response (EDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Abhishek Saini - PeerSpot reviewer
Professional Services Engineer at Next7 IT
Managed detection has transformed incident response and now delivers faster, focused protection
Overall, my experience with Huntress Managed EDR has been very positive. If I were to suggest improvements, I would like to see more advanced customization and reporting capabilities, particularly for MSPs managing multiple clients. For example, additional dashboard customization, more granular alert filtering options, and enhanced executive level reporting would help teams present security insights more effectively to their clients. Deeper integrations with a broader range of third party security and IT management platforms could also streamline workflows and reduce the need to switch between multiple tools. Another area of improvement would be expanding automation options for common remediation tasks, allowing security teams to respond even more quickly to certain types of threats while maintaining appropriate control. These are more enhancements than shortcomings, as Huntress Managed EDR already provides strong threat detection, excellent SOC support, and an easy-to-manage platform that delivers significant value in day-to-day operations. A few additional enhancements would make the platform even stronger, especially for MSPs managing a large number of endpoints and clients. From a user interface perspective, I would like to see more customizable dashboards that allow engineers to tailor views based on the client's priorities, threat levels, or operational metrics. Another useful feature would be additional automation and authorization options for common response actions such as isolating devices, initiating remediation workflows, or integrating with ticketing systems and SIEM platforms. Overall, these would be valuable additions, but they do not take away from the core strength of Huntress Managed EDR.
DA
IT Support Admin at Kuehne & Nagel Inc.
Client activity has been monitored efficiently through in-depth log analysis and traffic filtering
I use the Zscaler speed test, and it is very nice. We use some logs from Zscaler Client Connector to collect data and see what is happening, such as if there is an interruption or something. There is a specific tunnel version that we have to use because, depending on the internet provider, some of them have lower speed, so we have some issues. This is because of the provider, not from Zscaler. We use Office 365 services and Office applications, and because some connections are slow and they do not have full coverage from the internet provider, we have some issues. If the speed is slow for Zscaler Client Connector connection, then we have issues because if the speed is not good, then Zscaler Client Connector goes down. This may be because they put some policy. Of course, if you use Office 365 services such as Outlook, the minimum bandwidth is 5 megabits and more, so this causes issues if the users do not have a good remote connection. This depends on the companies and the users, so they need to fix it. This is not from us or our company. It is very useful, and the logs are very helpful. When we go to logs, we understand what is happening.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The live terminal is probably the best thing ever. It gives you the access to get straight onto any machine."
"The interface is easy to use and it is more up to date than our previous solution."
"There are a lot of lead solutions in this space, however, Palo Alto is number one."
"The product's initial setup phase is very easy."
"Cortex XDR lets us manage several clients from the same console, and its endpoint defense is more advanced than traditional antivirus."
"The solution allows us to make investigations. Other XDR solutions also provide similar capabilities but for investigation, Cortex XDR is better."
"Cortex XDR is a very capable solution for protecting large networks and a lot of endpoints. It's very useful because the automation is very high, and if you combine it with the features on Palo Alto firewalls, it provides very strong protection."
"The product is mostly automated, and we do not have to make decisions, because all the decisions are made by the product itself and we are not required to create any custom policies since the policies that are created are well defined in the product itself."
"Using Huntress Managed EDR has helped reduce the need for expensive security tools or to hire expensive security analysts, and it is important because we save money."
"We don’t have the required staff to watch the issues that are happening. It is good to have a team from Huntress who can watch the logs 24/7. The tool’s automatic remediation is also fantastic. The solution’s interface is also nice and easy to use. The Huntress team saves us time by going through the issues."
"The customer support provided by Huntress is impeccable. Their product is easy to deploy and manage, and the portal setup for Managed Service Providers is excellent. A lot of companies do not do that very well."
"Huntress helped reduce the need for expensive security tools or to hire expensive security analysts."
"The most valuable aspect of Huntress is its 24/7 SOC service."
"Huntress Managed EDR fits our needs in the SMB market perfectly, especially targeting the cultural sector within the Netherlands, as it provides a cost-effective SOC SIEM solution with a clear product line and transparent pricing that allows us to maintain decent margins while keeping costs low for our end customers."
"The stability is perfect."
"Huntress Managed EDR has positively impacted my organization by preventing malware and viruses from attacking our clients."
"Zscaler Client Connector is quite scalable, and I would rate its scalability as nine or ten out of ten."
"It is very useful, and the logs are very helpful; when we go to logs, we understand what is happening."
"The best features of Zscaler Client Connector are that it gives the client a much more transparent experience, as they don't have to worry about connecting to a VPN."
"Zscaler Client Connector has eliminated VPN bottlenecks and outages, improved user productivity with instant secure access, and reduced help desk tickets related to VPN issues, overcoming 60% of VPN-related problems while allowing faster onboarding of remote users and better enforcement of zero-trust security policies."
"The real-time analytics feature in Zscaler Client Connector is another valuable feature called Digital Experience, or ZDX, which can easily identify the root cause of issues accessing public or internal resources and provide good analysis so relevant teams can quickly resolve them, making it a very good tool that helps customers."
"The solution operates in the background seamlessly without the user noticing."
"I'd rate the solution nine out of ten."
"It is very important to see what is happening between the user and the applications that we have, and to filter the traffic from outbound traffic and inside traffic."
 

Cons

"It would be good if they could make an exception for applications. Sometimes, it can be a bit of a challenge to make exceptions for certain applications that have been used as rogue."
"Cortex XDR is trickier to configure than other Palo Alto products. This is one area where we are not so satisfied."
"The encryption is not up to the mark."
"If they had pulse rate detection, it would be better."
"A better pricing plan would make this product more competitive."
"To jump from the partner to Palo Alto directly was challenging."
"Previously, the endpoint would leave the environment, not being on our VPN, essentially unable to interact with the server to upload files. It was unable to retrieve new file verdicts. It was using a thing called "local analysis" to determine if something was a malicious file or not. There was no dynamic analysis."
"The installation should be easier and the Palo Alto pre-sales and sales teams should have more information on the product because they don't know what they are selling."
"The ITDR product is coming along great, however, we are still getting many false positives."
"I also would love for them to make their new SIEM tool reports much more robust. They are currently way too simplified, and we need to have something better to send to our compliance clients."
"We have been working on it, but their Rio agent has been having some issues trying to repair itself."
"If I had to suggest an improvement, I would like to see a customizable dashboard and reporting along with additional integrations with third-party SIEM or SOAR platforms."
"The alert emails that they send out with the different portions of their product sometimes are not similarly formatted, which makes automatically processing those alerts a bit more difficult in our PSA."
"I would like to see more customization and deeper integration with SIEM and other security tools for Huntress Managed EDR, as better reporting and more detailed endpoint investigation data would also make investigations easier, especially for complex incidents."
"I'd like it if Huntress could scan for software that's out of date or has open vulnerabilities. That would be useful for us. Scanning for vulnerable software would be helpful. Also, we've set it up to create a ticket in our ticketing system when there's an alert. It would be nice if closing that ticket would also close the Huntress alert. It doesn't do that right now, but they're working on adding that feature."
"One sucky part about that is that they don't have a prorate. They don't reduce it for the exact number of days used. They charge you for the whole month."
"I rate this product nine out of ten because I have seen some minor instability issues after updates and some room for UI improvement for deeper analytics, with instances of major issues after updating the GCC that required rollbacks."
"There is room for improvement regarding the price of Zscaler Client Connector, as it is one of the most expensive solutions available."
"The stability of Zscaler Client Connector needs improvement, as it often disconnects and reconnects."
"If the speed is slow for Zscaler Client Connector connection, then we have issues because if the speed is not good, then Zscaler Client Connector goes down."
"Zscaler Client Connector is not low in cost; it is definitely on the higher side."
"There is a hard learning curve for Zscaler Client Connector; their support isn't the greatest all the time."
 

Pricing and Cost Advice

"The pricing is okay, although direct support can be expensive."
"It is present, but when compared to other competitive products, I would say it is not less expensive; however, when all of the other added values are considered, the price is reasonable."
"This is an expensive solution."
"The pricing seems fair, and I do like the licensing model. You use wherever they are, and it is elastic."
"The return on investment is from the user side because we have seen the performance of it increase the delivery time of the product if we are using too many web-based and on-premise applications. In indirect ways, we saw the return of investment in terms of performance and user satisfaction increase."
"I don't have any issues with the pricing. We are satisfied with the price."
"Traps pays for itself within the first 16 months of a three-year subscription. This is attributed to OPEX savings, as security teams spent less time trying to identify and isolate malware for analysis as a result of a reduction in malware incidents, false positives, and breach avoidance."
"The price was fine."
"Huntress has a favourable pricing structure, and I appreciate the cost-effectiveness compared to previous solutions."
"Regarding the pricing for Huntress Managed EDR, I was amazed when I heard the price; I thought it was going to be way more than what it is based on the quality."
"I believe Huntress offers competitive pricing overall."
"I rate the product pricing six out of ten for the Malaysian market. However, I would rate it a three out of ten for the Australian, New Zealand, or Singapore markets."
"The tool’s price is very good. You just need to pay for the standard license. However, you need to pay the additional cost for Microsoft Defender."
"It works well for an MSP."
"It is simple. It is reasonable. They raised my prices this year. We never like price increases, but they continue to add value, so we just keep adding agents as we grow and as our clients grow."
"It is very fair. I started at $2.50 and now I am at $3.50. When I signed up, I thought it was too cheap. It now reflects the price. It is very fair. I do not think you can find anything better."
Information not available
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
914,394 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
9%
Computer Software Company
10%
Manufacturing Company
10%
Outsourcing Company
7%
Comms Service Provider
7%
Manufacturing Company
18%
Comms Service Provider
10%
Government
8%
Financial Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business64
Midsize Enterprise6
Large Enterprise2
By reviewers
Company SizeCount
Small Business3
Large Enterprise5
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with Huntress?
I would like to see more customization and deeper integration with SIEM and other security tools for Huntress Managed...
What is your primary use case for Huntress?
My main use case for Huntress Managed EDR is endpoint monitoring and threat detection, which I use to investigate sus...
What advice do you have for others considering Huntress?
I would rate Huntress Managed EDR a nine out of 10 because it gives strong endpoint visibility, reliable threat detec...
What is your experience regarding pricing and costs for Zscaler Client Connector?
My experience with pricing, setup cost, and licensing is that the pricing is fair, though it is a bit costly. It oper...
What needs improvement with Zscaler Client Connector?
For Zscaler Client Connector, I would appreciate more granular control over the client update rollout and slightly fa...
What is your primary use case for Zscaler Client Connector?
My main use case of Zscaler Client Connector is to provide secure, seamless access to the internet and internal appli...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
No data available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
Information Not Available
Find out what your peers are saying about Huntress Managed EDR vs. Zscaler Client Connector and other solutions. Updated: September 2026.
914,394 professionals have used our research since 2012.