No more typing reviews! Try our Samantha, our new voice AI agent.

Kaspersky Next EDR Optimum vs Tanium comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Ranking in Endpoint Detection and Response (EDR)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Kaspersky Next EDR Optimum
Ranking in Endpoint Protection Platform (EPP)
22nd
Ranking in Endpoint Detection and Response (EDR)
26th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
26
Ranking in other categories
No ranking in other categories
Tanium
Ranking in Endpoint Protection Platform (EPP)
14th
Ranking in Endpoint Detection and Response (EDR)
23rd
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
23
Ranking in other categories
Vulnerability Management (26th), Unified Endpoint Management (UEM) (8th), Autonomous Endpoint Management (3rd)
 

Mindshare comparison

As of August 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.9%, up from 3.7% compared to the previous year. The mindshare of Kaspersky Next EDR Optimum is 1.0%, up from 0.9% compared to the previous year. The mindshare of Tanium is 2.5%, up from 2.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.9%
Tanium2.5%
Kaspersky Next EDR Optimum1.0%
Other92.6%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Nadeem Syed - PeerSpot reviewer
CEO at Haniya Technologies
Continuous protection has improved automated threat response and reporting for our endpoints
We did work with one of our clients who required mobile security solutions. In my opinion, Trend Micro, when we went through the POCs and other components, we did not find it very strong as far as mobile security is concerned. I think Kaspersky is much better than Trend Micro when it comes to mobile security solutions. From an outside perspective, Kaspersky Endpoint Detection and Response Optimum looks pretty strong and comprehensive. The main improvement would be if they could decrease the cost, as it would be great for clients since it is quite expensive now compared to when it used to be cheaper. The key competitor for Kaspersky Endpoint Detection and Response Optimum is Trend Micro. Trend Micro is the only competitor in the market right now. I would say both Trend Micro Endpoint Detection and Response and Kaspersky Endpoint Detection and Response Optimum are quite similar; I cannot say that one is better than the other. The difference is mainly in cost; Trend Micro has mostly moved all their products to the cloud, offering no on-premises products now, whereas Kaspersky is still in a transition phase providing both on-premises and cloud solutions. Many clients prefer on-premises as it is less expensive compared to cloud.
Sandeepraj Gatla - PeerSpot reviewer
Dfir Analyst at a tech services company with 201-500 employees
Endpoint monitoring has strengthened incident response and provides rapid isolation and forensics
Tanium provides an endpoint which is isolated from the network and environment. We can easily search its logs and history and connect remotely directly to that particular device which has been isolated from the network. We can search for the history and logs, including audit logs and event logs. The complete activity of the user or owner of the device is visible to us. We can see the artifacts of particular USB transfers internally for official use. We can not only connect remotely but also see the device status and how many failures have occurred within the network so far. We can see the IP address, how many times it has changed its IP address, and how many times it was connected to VPN or external VPN or internal VPN and what has been searched while on VPN. We can block the IOCs or IP addresses as well. We can block domains, hashes, SHA values, SHA-256, SHA-1, SHA-5 and MD5. Although I am not completely involved in the automation team, we do have that team and I have worked in some CERT recently. Tanium is more useful while we are in the CERT because most of the times when we are on high alert, Tanium does play a main role for that particular incident or any high case. Tanium is a simple tool and we can easily integrate it to many devices and it is a mandatory tool to secure an endpoint. It is mandatory to give any RDP connection and the tool should be present in the particular device. It is completely mandatory and it is in the policy as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The multi-layered approach to the product gives you confidence that it will stop exploits, ransomware, worms, or viruses from compromising endpoints, essentially providing peace of mind."
"The most valuable features are incident creation, policy-based protection, IP whitelisting, and device encryption. These are beneficial for endpoint and server security."
"The solution allows control over the user and his machine through Cortex XDR security policies."
"There are a lot of lead solutions in this space, however, Palo Alto is number one."
"I recognize that Cortex XDR by Palo Alto Networks is one of the best products in its category regarding capabilities."
"When the pandemic started, Palo Alto came up with many solutions, which helped with the quick shift from on-premises to the cloud."
"I generally believe that Cortex XDR by Palo Alto Networks is probably the best in the market right now."
"My advice for others looking into using Cortex is that it is very easy to use and very useful for the customer environment, whether it's a public or private one."
"Overall, I would rate Kaspersky Endpoint Detection and Response Optimum an eight out of ten."
"It protects against malware and secures the network."
"The product's most valuable feature is the flexibility of installation with the console and a simple administration strategy."
"EDR Optimum's best features are its dashboard, control of external media, and user-friendliness."
"The most valuable features are checking the Kaspersky portal and integrating it with SIEM Elastic Stack and ELK Stack for log monitoring."
"They provide integrated protections and prevention with multi-layered anti-malware, which makes clients want to go for it."
"The solution is very user friendly, which we appreciate."
"The most advantageous aspect is tracking and taking action automatically."
"Tanium has made the process of detecting threats more proactive with its detection. So, the process is easier and more efficient."
"For inventory purposes, it's from one of the best things on the scene, as you can get live inventory."
"I find the inventory and compliance features of Tanium to be the most impressive."
"The insights we gain from our endpoints and the management capabilities that Tanium provides have been a boon to our operations and security."
"Tanium is a simple tool and we can easily integrate it to many devices and it is a mandatory tool to secure an endpoint."
"Threat hunting is a very good feature on Tanium. We have just started using it and have not used it extensively."
"The most valuable features of this solution are the consolidation of all historical data on device endpoints, security drivers, firmware, and Software version gaps."
"The solution's technical support is very responsive."
 

Cons

"It would be good if they could make an exception for applications. Sometimes, it can be a bit of a challenge to make exceptions for certain applications that have been used as rogue."
"I feel that it should not be a licensed activity because a feature should allow us to see applications running on end devices."
"In the next release, I would like to see more UI improvements. Their UI is a bit basic. When we are speaking about Palo Alto Networks they are the big company, so they can improve the UI a little bit. The UI, the reports, the log system can all be improved."
"It's very time-consuming to log support issues and the people that answer the tickets aren't very knowledgeable."
"It is not easy to sell Cortex XDR, not because it isn't a good tool. Its marketing needs to be improved."
"I have seen lagging with Cortex XDR by Palo Alto Networks. There was one time when we faced a threat actor trying to gain access to our system. When our team utilized the tool, we were all on the same dashboard and we faced a lag issue at that time of around five minutes, which was quite significant."
"The only issues that we have are, one the cost, two the dashboard is not very intuitive, even though you can drill down within the dashboard, we usually have to gather information from other sources to determine locations and if its a false positive."
"We would also like to have advanced tech protection and email scanning."
"The technology grows day by day, so we need to check for updates and do the updates daily. Kaspersky Endpoint Detection and Response Optimum is still improving over time and quality-wise, there are still things that need to be changed in the product, so that's why I rated it nine out of ten. Compatibility could also be improved in the product."
"Scalability depends on various factors."
"Unfortunately, Kaspersky UI is something they need to work upon. It's not as simplistic or user-friendly as other competing products such as Sophos or Check Point."
"The central management needs improvement. The ease of use for updating and managing through the web console is difficult and lacks features."
"To increase the benefits of the product, Managed Detection and Response (MDR) service from Kaspersky should be included."
"Security features could be improved."
"Support is an area for improvement. It should have faster response times."
"The application should be made a bit lighter so that it does not slow down the PC."
"I would like to have more integrations and custom plugins to input. Integration is always a big deal in a lot of different environments."
"Tanium's limitations should be improved because although it is a great tool, it is limited to only a few classes during a session."
"When working with Tanium, there are some older devices that haven't been patched for a long time, and certain patches are not included in Tanium. I have to search outside to download patches, create bundles, and then perform the task."
"The problem or challenge is a pre-sales and go-to strategy for the SMB market delivered through a channel or model. It's very convoluted and vague, which leads to some confusion about the various types of modules, and the device-to-seat cost is extremely difficult to calculate."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
"The solution can give a lot of false positives."
"They could improve the UI."
"In my opinion, sometimes it takes a long time to give solutions or resolve the issue."
 

Pricing and Cost Advice

"It is cost-effective compared to similar solutions. It fits for the small businesses through to the big businesses."
"The pricing is a little high. It is per user per year."
"The return on investment is from the user side because we have seen the performance of it increase the delivery time of the product if we are using too many web-based and on-premise applications. In indirect ways, we saw the return of investment in terms of performance and user satisfaction increase."
"The price is on the higher side, but it's okay."
"The price of the solution could be reduced. I have customers that have voiced that the solution is good for the value but if I want to sell more of the solution the price reduction would help."
"Cortex XDR's pricing is ok."
"I feel it is fairly priced."
"The price was fine."
"The pricing is totally reasonable."
"I would rate the product's pricing a nine out of ten. You need to pay about 80,000 rupees yearly for the tool. There are no additional costs associated with the product."
"The tool’s pricing is yearly. The solution’s pricing is expensive."
"The price is good, not too high."
"The solution could be made a bit cheaper."
"Kaspersky gives a consolidated price with a good solution. If we choose something else, we need to add other options on our own."
"Kaspersky Endpoint Detection and Response Optimum is more affordable than the endpoint security product of Fortinet. Whether it's worth the money depends on your security strategy."
"The price of the solution is reasonable. It cost approximately €10,000 annually."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"It's an expensive solution. It would be nice if the cost were lower."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"The solution is expensive but it's a good investment."
"It is higher than some competitors in the market."
"The solution offers value for money."
"There is an annual license required to use this solution."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
909,701 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
12%
Comms Service Provider
10%
Financial Services Firm
10%
Manufacturing Company
10%
Financial Services Firm
14%
Outsourcing Company
12%
Comms Service Provider
10%
Manufacturing Company
7%
Financial Services Firm
14%
Government
10%
Manufacturing Company
9%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise7
Large Enterprise5
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Kaspersky Endpoint Detection and Response Optimum?
Kaspersky Endpoint Detection and Response Optimum is reasonably priced for the market. I do not know the exact cost o...
What needs improvement with Kaspersky Endpoint Detection and Response Optimum?
We did work with one of our clients who required mobile security solutions. In my opinion, Trend Micro, when we went ...
What is your primary use case for Kaspersky Endpoint Detection and Response Optimum?
When it comes to endpoint security requirements, we work with Trend Micro most of the time; currently, my focus is mo...
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Kaspersky Next EDR Optimum vs. Tanium and other solutions. Updated: August 2026.
909,701 professionals have used our research since 2012.