

NetWitness NDR and Kaspersky Endpoint Detection and Response Expert are leading cybersecurity solutions. Kaspersky appears to have an upper hand due to its advanced response actions and comprehensive threat intelligence.
Features: NetWitness NDR offers extensive network traffic analysis, customizable dashboards, and robust detection capabilities. Kaspersky provides automated threat detection, integrated sandbox, and comprehensive threat intelligence.
Room for Improvement: NetWitness could improve integration with third-party tools, reduce complexity, and enhance usability. Kaspersky needs a smoother setup process, more frequent updates, and better integration with existing systems.
Ease of Deployment and Customer Service: NetWitness has detailed documentation and support but a complex initial setup. Kaspersky has straightforward deployment and excellent customer service, making it simpler to deploy and maintain.
Pricing and ROI: NetWitness offers competitive pricing, though its complexity and time investment impact ROI. Kaspersky provides better value with higher ROI, despite its higher upfront cost, due to its features and ease of use.
I rate the technical support from Kaspersky a 10, as they respond quickly with engineers joining the conversation within three to five minutes.
I have my own independent team for Kaspersky deployment and operational support, so I am not dependent on Kaspersky's backend technical support.
From my perspective, the local team and the support team of Kaspersky Endpoint Detection and Response Expert need to be more accurate and more responsible.
Kaspersky Endpoint Detection and Response Expert is very scalable, working with high availability techniques across three main data centers in my organization.
I believe Kaspersky Endpoint Detection and Response Expert is scalable, as I can keep adding agents without hard limitations.
It effectively detects new applications and requires whitelisting based on assessments discussed with the technical teams or vendors.
Customers using Kaspersky Endpoint Detection and Response Expert can manage environments with as few as 100 endpoints or as many as 5,000 endpoints very effectively.
I haven't found any issues with this particular solution, and there's no room for improvement for Kaspersky Endpoint Detection and Response Expert.
A centralized dashboard is a primary requirement, as it would facilitate easier management without needing to install multiple agents.
Deployment with the console directly, without depending on other workers to deploy the agents, would be beneficial.
Compared to my previous product, Kaspersky Endpoint Detection and Response Expert is not up to the mark; it's below my rating.
The pricing is nominal when we compare it with other solutions.
Compared to other products, the pricing for Kaspersky Endpoint Detection and Response Expert is almost the same.
The ATP functionality is quite strong because it utilizes the behavioral analytics engine in the backend, which employs machine learning mechanisms to identify any kind of vulnerability or exploit running on the operating system level and the network level.
Almost all our clients use the Patch Management, vulnerability, and integration feature.
The product is strong enough and capable of handling the type of detections as protection and security.
| Product | Market Share (%) |
|---|---|
| Kaspersky Endpoint Detection and Response Expert | 1.5% |
| NetWitness NDR | 0.7% |
| Other | 97.8% |

| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 4 |
| Large Enterprise | 18 |
| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 2 |
| Large Enterprise | 5 |
Kaspersky Endpoint Detection and Response Expert is a comprehensive cybersecurity solution designed to detect and respond to advanced threats in real time. It combines advanced threat intelligence, machine learning algorithms, and behavioral analysis to provide proactive protection against sophisticated attacks.
With its centralized management console, security teams can easily monitor and investigate incidents, while automated response capabilities enable quick remediation. This solution offers deep visibility into endpoint activities, allowing organizations to identify and mitigate potential risks effectively. Kaspersky Endpoint Detection and Response Expert is a powerful tool for enhancing the overall security posture of businesses, ensuring the protection of critical assets and sensitive data.
Using a centralized combination of network and endpoint analysis, behavioral analysis, data science techniques and threat intelligence, NetWitness NDR helps analysts detect and resolve known and unknown attacks while automating and orchestrating the incident response lifecycle. With these capabilities on one platform, security teams can collapse disparate tools and data into a powerful, blazingly fast user interface.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.