No more typing reviews! Try our Samantha, our new voice AI agent.

Kaspersky Next MXDR Optimum vs Rapid7 InsightIDR comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Extended Detection and Response (XDR)
3rd
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (5th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Kaspersky Next MXDR Optimum
Ranking in Extended Detection and Response (XDR)
39th
Average Rating
8.0
Reviews Sentiment
5.9
Number of Reviews
5
Ranking in other categories
Endpoint Protection Platform (EPP) (39th), Managed Detection and Response (MDR) (28th)
Rapid7 InsightIDR
Ranking in Extended Detection and Response (XDR)
18th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
33
Ranking in other categories
Security Information and Event Management (SIEM) (23rd), User Entity Behavior Analytics (UEBA) (11th), Endpoint Detection and Response (EDR) (34th), Threat Deception Platforms (4th)
 

Mindshare comparison

As of October 2026, in the Extended Detection and Response (XDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 4.8%, down from 6.0% compared to the previous year. The mindshare of Kaspersky Next MXDR Optimum is 0.4%, up from 0.1% compared to the previous year. The mindshare of Rapid7 InsightIDR is 2.5%, down from 3.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Extended Detection and Response (XDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks4.8%
Rapid7 InsightIDR2.5%
Kaspersky Next MXDR Optimum0.4%
Other92.3%
Extended Detection and Response (XDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
HM
General Manager at water company benisuef
Centralized protection has improved malware defense and simplifies on‑premises deployment
What I like in Kaspersky TOTAL Security for Business is that I tried the deployment on only the endpoint with no EDR, and it is easy to use. Kaspersky TOTAL Security for Business's anti-malware feature has a positive effect. Centralized security management in Kaspersky TOTAL Security for Business is good, but many errors appear in the software management.
Prajwal Chougale - PeerSpot reviewer
SOC L2 Analyst at a tech services company with 51-200 employees
Centralized threat hunting has improved alert accuracy and simplifies incident investigations
I would say there are two areas for improvement: the reporting dashboard that provides insights or reports weekly or monthly lacks detailed information about how logs are being ingested. While the details are there, they could be more concise and easier to understand for any level of authority. The second area is alert tuning; compared to Microsoft Sentinel, Rapid7 InsightIDR provides fewer alerts with more static alert functionality and lacks dynamic alerting exposures. There could be improvements to learn from past alert activities for more dynamic alert configurations. These two areas are the main areas for improvement; everything else is good.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable for us is the correlation feature."
"The solution allows us to gain remote access without the user's knowledge and take the necessary actions on the device."
"We think that this product will help us grow, as it meets our needs currently and we can grow with it over time."
"Cortex XDR by Palo Alto Networks is easy to use and does not consume a lot of hardware resources."
"It is an easy-to-use tool."
"I have found the solution to be very easy in respect of the integration and configurable."
"The multi-layered approach to the product gives you confidence that it will stop exploits, ransomware, worms, or viruses from compromising endpoints, essentially providing peace of mind."
"The integrations are out-of-the-box, as are the playbooks."
"A good aspect of Kaspersky TOTAL Security for Business is that you can deploy it from the server to the end users, and you are able to manage and monitor each and every endpoint, including how it behaves and what things are coming in through a certain endpoint."
"Kaspersky offers a large number of robust default policies, such as USB blockage. I really like this feature."
"I like the inventory management. I also like behavior detection and exploit prevention."
"The deployment and implementation of Kaspersky TOTAL Security for Business are easy to deploy with no difficulties."
"Kaspersky TOTAL Security for Business provides central management for protection of devices, mitigating attacks effectively."
"Rapid7 InsightIDR has positively impacted my organization by capturing most logs and every minute detail, including endpoint logs, network logs, and any email-related logs if a malicious link has been clicked."
"They can subscribe to Rapid7 because it is more valuable and delivers a greater return on investment."
"Features for user behavior analytics and the rules for attack review are good."
"I like the tool's user analysis feature."
"Scalability-wise, I rate the solution a ten out of ten. As a cloud tool, the product is highly scalable."
"Very intuitive and easy to set up."
"Rapid7 InsightIDR integrates well with other solutions. It's also easy to configure because Rapid7 InsightIDR has a lot of instructions posted on their website that customers can follow if they need to get the source log."
"The biggest reason why we chose Rapid7 was to gain value in a really quick time. Its deployment doesn't take months. It just takes a few days."
 

Cons

"There are some false positives."
"Although I would say this product is highly-rated, it could probably do more because nothing does everything that you want."
"It would be good if they could make an exception for applications. Sometimes, it can be a bit of a challenge to make exceptions for certain applications that have been used as rogue."
"The solution lags to the real-time scenarios here and there."
"Based on our experience so far, its implementation is quite complex."
"If they had pulse rate detection, it would be better."
"In reporting they should have a customizable dashboard due to the fact that C-level people don't like reporting to the IT department. They prefer to have a real-time dashboard. That kind of dashboard needs to have various customizations."
"The solution needs better reports. I think they should let the customer go in and customize the reports."
"The response time could be enhanced."
"One significant difference is the lack of on-site support from Kaspersky. Symantec has a local team in Pakistan with representatives I can contact directly for troubleshooting and support. On the other hand, Kaspersky doesn't provide the same level of local resources. If I have an issue, I need to draft an email and send it to a Kaspersky help center."
"The deployment process could be clarified, specifically around the ability to push the security application to clients from the central servers, as we faced issues with this."
"It's been good for months but bad on older endpoints. Only performance issues."
"What could be improved about Kaspersky TOTAL Security for Business is that many errors appear on the console software, and sometimes I do not know why these errors appear on the console software."
"Rapid7's customer support is awful. They didn't respond at all."
"The integration capabilities of the solution have certain shortcomings where improvements are required."
"There is a future in AI with Rapid7, however, it is not fully operated. There are certain limitations with Rapid7 that I am working on."
"The APIs can be further improved in Rapid7."
"The product allows us to make only 30 custom rules."
"Needs a better ability to customize the check within the console."
"I would like the ability to adjust the threshold of certain existing alerts. Currently the only option is to change the notifications or create my own alert."
"I'd like to see a mobile application included and some feature related to the generality of segregation for internal users that access the application."
 

Pricing and Cost Advice

"This is an expensive solution."
"Our license will require renewal in August, after which the maintenance will continue as usual."
"I don't have any issues with the pricing. We are satisfied with the price."
"The solution has one subscription for endpoint protection and one subscription for detection and response. The two licenses combined give you the BRO version."
"The pricing is a little bit on the expensive side."
"The pricing is a little high. It is per user per year."
"The tool's price is moderate."
"I don't like that they have different types of licenses."
"The price is below average."
"The pricing and licensing are competitive."
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"It is a reasonably priced solution."
"Rapid7 InsightIDR is priced very well and is cost-effective."
"​Accurately predict your licensing counts as this is a subscription based product.​"
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"Licensing is straightforward. If, for some reason, you don’t meet the minimum licensing requirements, there is a third-party managed service that can help."
"It is on a yearly basis. For our own company, for about 250 users, it was 16,000 euros a year."
report
Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
Outsourcing Company
15%
Comms Service Provider
14%
Construction Company
11%
Manufacturing Company
10%
Manufacturing Company
10%
Financial Services Firm
9%
Comms Service Provider
8%
Computer Software Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
No data available
By reviewers
Company SizeCount
Small Business22
Midsize Enterprise5
Large Enterprise6
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with Kaspersky TOTAL Security for Business?
The logs should be improved. The response time could be enhanced. To make Kaspersky TOTAL Security for Business close...
What is your primary use case for Kaspersky TOTAL Security for Business?
I still work with Kaspersky TOTAL Security for Business. I use Kaspersky TOTAL Security for Business and another prod...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
What is your experience regarding pricing and costs for Rapid7 InsightIDR?
My experience with pricing, setup costs, and licensing has been very positive; it is cost-effective and offers great ...
What needs improvement with Rapid7 InsightIDR?
I would say there are two areas for improvement: the reporting dashboard that provides insights or reports weekly or ...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
InsightIDR
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
Liberty Wines, Pioneer Telephone, Visier
Find out what your peers are saying about Kaspersky Next MXDR Optimum vs. Rapid7 InsightIDR and other solutions. Updated: August 2026.
915,341 professionals have used our research since 2012.