No more typing reviews! Try our Samantha, our new voice AI agent.

Illumio Insights vs ThreatSync NDR comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Illumio Insights
Ranking in Network Detection and Response (NDR)
19th
Average Rating
9.6
Reviews Sentiment
1.8
Number of Reviews
4
Ranking in other categories
Microsegmentation Software (6th), Cloud Detection and Response (CDR) (11th)
ThreatSync NDR
Ranking in Network Detection and Response (NDR)
18th
Average Rating
8.6
Reviews Sentiment
8.7
Number of Reviews
2
Ranking in other categories
Network Monitoring Software (56th)
 

Featured Reviews

EM
Manager at OOCL
Micro-segmentation has improved threat visibility and supports ongoing zero-trust monitoring
Deployment of Illumio Insights was not difficult, but the difficulty depends on how micro your design is. For Docker containers, it is not quite suitable for that kind of application traffic. For container architectures, it is not quite designed that way. For normal VMs it might be acceptable, but for container architectures, I cannot be as micro-segmented as I want to be. Illumio Insights is not very well designed for containers, which is one of the drawbacks and weak sides of the product. I use Illumio Insights' real-time analytics for micro-segmentation, and beyond zero-trust monitoring, I also want to do analysis. However, the product coverage is not very broad, so I have to do my own filtering and analysis, and integration with other tools is necessary. The reporting and analysis are not ready out of the product itself. Reporting is another area for improvement in this product and is not very sufficient, so I have to further integrate or do it on my own. Illumio Insights is stable and a mature product. The functionality, such as reporting and analysis, may extend in the roadmap, but it has not in the past. The current functionality is adequate and quite mature, which is how I chose it based on maturity and market share. However, it is not very modern for Kubernetes and containers. If this functionality can extend, that would be a valuable roadmap addition. Streamline integration with Illumio Insights does not help me much since it does not require too much integration with my other operations.
Michael-Foster - PeerSpot reviewer
Head of IT at Bulkhaul Limited
Has improved threat detection and reduced manual workload through real-time cloud insights
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it reacts instantly with a notification delay of 10 to 20 minutes, while nighttime notifications can have up to eight hours delay. ThreatSync+ NDR has enhanced our ability to proactively manage network risks by enabling us to implement extra measures at a lower level based on its findings. The compliance reporting tools are comprehensive and meet our requirements. Though we haven't conducted official compliance reporting yet, we anticipate it will save approximately one day of work in report compilation. Regarding pricing, WatchGuard rates a nine out of ten. We maintain 1,001 licenses for ThreatSync+ NDR, serving approximately 1,000 users, with about 300 local users in the UK. ThreatSync+ NDR's effectiveness in identifying weaknesses before exploitation is excellent and very quick. I recommend ThreatSync+ NDR to other users based on its rapid deployment and immediate value delivery. I rate ThreatSync+ NDR 9 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Illumio Insights is stable and a mature product."
"One of the most valuable features is the ability to map traffic and patterns over multiple hyperscalers, not just AWS."
"Illumio Insights impressed me with its ease of use, clarity, and potential to significantly improve breach containment strategies."
"This solution has contributed to quick detection of risky traffic and offers one-click containment."
"ThreatSync NDR is a strong addition to our company's security architecture."
"Implementing ThreatSync+ NDR has influenced our business significantly as it provides enhanced security and saves several hours daily by eliminating manual log reviews."
 

Cons

"In some of the views, an IP address appears to be a link, but it doesn't open any new windows or display any new information."
"Illumio Insights is not very well designed for containers, which is one of the drawbacks and weak sides of the product."
"There is room for improvement with more AI-based detection to report traffic abnormalities and potential issues."
"After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API."
"There are definitely areas for improvements in ThreatSync NDR, as no product is perfect. Its effectiveness depends on proper network visibility, so if important traffic segments are not mirrored or monitored, detection may be incomplete."
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
909,725 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
No data available
Construction Company
16%
Outsourcing Company
9%
Comms Service Provider
7%
Transportation Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
No data available
 

Questions from the Community

What needs improvement with Illumio Insights?
Deployment of Illumio Insights was not difficult, but the difficulty depends on how micro your design is. For Docker containers, it is not quite suitable for that kind of application traffic. For c...
What is your primary use case for Illumio Insights?
Illumio Insights plays its own role in enhancing threat visibility. Illumio Insights performs micro-segmentation according to the traffic, determining whether to trust it, allow it, or block it. Mi...
What needs improvement with ThreatSync+ NDR?
After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API. You can use Netflow which gets around this in some cases.
What is your primary use case for ThreatSync+ NDR?
We use ThreatSync+ NDR for both network monitoring and detection and response.
What advice do you have for others considering ThreatSync+ NDR?
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it...
 

Interactive Demo

Demo not available
 

Overview

Find out what your peers are saying about Illumio Insights vs. ThreatSync NDR and other solutions. Updated: August 2026.
909,725 professionals have used our research since 2012.