No more typing reviews! Try our Samantha, our new voice AI agent.

Malwarebytes Endpoint Protection vs Symantec Endpoint Security Enterprise comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
108
Ranking in other categories
Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (6th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (2nd)
Malwarebytes Endpoint Prote...
Ranking in Endpoint Protection Platform (EPP)
44th
Average Rating
9.0
Number of Reviews
1
Ranking in other categories
No ranking in other categories
Symantec Endpoint Security ...
Ranking in Endpoint Protection Platform (EPP)
30th
Average Rating
8.0
Reviews Sentiment
6.3
Number of Reviews
32
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.5%, down from 4.0% compared to the previous year. The mindshare of Malwarebytes Endpoint Protection is 0.2%, up from 0.0% compared to the previous year. The mindshare of Symantec Endpoint Security Enterprise is 0.6%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.5%
Symantec Endpoint Security Enterprise0.6%
Malwarebytes Endpoint Protection0.2%
Other95.7%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
KL
IT Consultant at Rigorsys Inc
Protects against zero-day threats and provides a quick overview of the status of all desktops
The platform's real-time protection works by blocking or quarantining threats when a user clicks on a link or opens an email deemed suspicious. I recommend it for those focused on zero-day threats. However, if you're looking for a one-size-fits-all solution, you may need more than one product. Overall, I rate it a nine out of ten.
reviewer2162541 - PeerSpot reviewer
IT Consultant at a tech services company with 11-50 employees
Provides stable and resource-efficient protection but lacks clear modern security features
Symantec Endpoint Security Enterprise is highly compatible and rarely causes disruptions in production. It operates transparently and is easy to maintain. The automated response feature helps to mitigate breaches effectively. When comparing with ThreatDown agent, I have noticed that ThreatDown detects behaviors more readily and flags suspicious user activities more clearly. While Symantec Endpoint Security Enterprise remains effective, ThreatDown's user interface is more manageable and provides a clearer system overview. The management interface is crucial for maintaining Symantec Endpoint Security Enterprise effectively. A significant advantage of Symantec Endpoint Security Enterprise is its lightweight resource usage. It consumes less memory, CPU, and IO compared to alternatives such as ThreatDown and Bitdefender.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"From the Palo Alto side, whatever they buy, they integrate that really well into their integration suite, and that makes a massive difference."
"There has been a significant reduction of approximately 70% to 80% in our internal MTTR and MTTD metrics, now around five to eight minutes whereas previously it was hours, which has helped tremendously."
"Cortex XDR features advanced threat detection capabilities."
"Palo Alto Networks Traps improves our security posture and lowers risk by providing next-gen methods to combat against modern threats on all the major platforms."
"Cortex is the best tool for endpoint detection, with playbooks that automate and gather endpoint logs, block malicious processes, and update incident tickets, showcasing end-to-end processes with automation in investigation and reducing the analysis workflow."
"Since they've done their most recent update, the ease to isolate endpoints is valuable. If we find one where there is a virus on it, we can easily isolate it. We don't even have to contact the user. We don't have to manually take them off the network. We can easily isolate them."
"The initial setup isn't too bad."
"I don't have to do much monitoring with it; I don't have to have anybody manually looking at this, it gives us reports, and it lets us know if something needs to be addressed, and we can easily address it."
"We focus on zero-day threats, and Malwarebytes helps minimize the risk."
"Symantec Endpoint Security Enterprise’s interface is good to use."
"Anti-malware is the most valuable feature. We trust Symantec for protection, and we like the idea that Symantec is preventing us from accessing certain websites that are known for containing malware."
"The monitoring and reporting features are pretty awesome."
"The endpoint protection features are valuable."
"Since I joined the company and implemented Symantec and other products, we've had stability on our network and no security incidents or breaches."
"The firewall management and intrusion prevention are excellent; those are the critical differences between Symantec and most other products on the market, as they don't manage Windows Firewall or offer intrusion prevention."
"The primary feature of the solution is antivirus scanning with IPS. It blocks viruses and uses a signature database, ensuring robust protection when configured correctly to meet our requirements."
"Managing the dashboard is straightforward and efficient. I appreciate the convenience of accessing all alerts in one place and find configuring policies to be a simple process. Creating and deploying policies to agents is easily accomplished, and the communication between agents and servers is effectively implemented. These aspects are what I find favorable about Symantec Endpoint Security Enterprise."
 

Cons

"In an upcoming release, the solution could improve by providing hard disk encryption."
"A little bit more automation would be nice."
"This is a very costly product."
"Traps doesn't work with McAfee. You need to remove McAfee to install Traps. This is very common, and its nothing that should be an issue. Some antivirus engines recognize Traps as an threat component, so maybe they need to shake hands somewhere."
"In the next release, I would like to see more UI improvements. Their UI is a bit basic. When we are speaking about Palo Alto Networks they are the big company, so they can improve the UI a little bit. The UI, the reports, the log system can all be improved."
"The solution needs better reports. I think they should let the customer go in and customize the reports."
"We would also like to have advanced tech protection and email scanning."
"It automatically detects security issues. It should be able to protect our network devices while operating autonomously."
"The product's reporting functionality could be improved. Additionally, there could be enough documentation available."
"The tool needs to improve its dashboard."
"The solution could improve its speed, threat coverage, and the tool's functionality."
"Symantec Endpoint Security Enterprise should focus on cloud security with Microsoft Azure or Amazon AWS rather than having their standard solution."
"The solution could always be more stable and more user-friendly."
"The product is a bit resource-intensive."
"In the future, Symantec Endpoint Security Enterprise should improve the firewall and documentation."
"There could be a pop-up notification at the users' end whenever the software expires."
"Symantec's main priority should be enhancing their support, especially local support for different regions."
 

Pricing and Cost Advice

"I don't like that they have different types of licenses."
"The solution is expensive. It's pricing is on a yearly-basis."
"The price of the solution is high for the license and in general."
"Cortex XDR's pricing is ok."
"The price of the product is not very economical."
"It has reasonable pricing for the use cases it provides to the company."
"It's way too expensive, but security is expensive. You pay for your licensing, and then you pay for someone to monitor the stuff."
"This is an expensive solution."
"The product pricing is fair. They may negotiate if you contact them directly; otherwise, you'll pay the standard premium."
"I rate Symantec Endpoint Security Enterprise's pricing a two out of ten."
"The tool fits within our budget. It is not expensive."
"I would rate it a seven, indicating a satisfactory and moderate level. Despite being somewhat on the expensive side, it aligns with our long-standing relationship with Symantec, and we find it acceptable."
"It's not the cheapest, but it's reasonably priced, around a five on a scale from one to ten. It's suitable for small, medium, and enterprise businesses and offers competitive pricing. There are no additional costs; it's a renewable purchase, either annually or as needed."
"We have Symantec Endpoint Security Enterprise, and it's very competitively priced. However, there is a considerable jump in price for upgrading to the EDR, so that's more compatible with enterprise-level organizations."
"The product is not very expensive."
"I rate the tool's pricing a six out of ten."
"The cost of the solution is reasonable."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
885,444 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
14%
Manufacturing Company
8%
Computer Software Company
8%
Financial Services Firm
8%
No data available
Comms Service Provider
12%
Marketing Services Firm
11%
Manufacturing Company
9%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise47
No data available
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise7
Large Enterprise9
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Malwarebytes Endpoint Protection?
The product pricing is fair. They may negotiate if you contact them directly; otherwise, you'll pay the standard prem...
What needs improvement with Malwarebytes Endpoint Protection?
The product's reporting functionality could be improved. Additionally, there could be enough documentation available.
What is your primary use case for Malwarebytes Endpoint Protection?
I primarily use the product to filter user actions. When a user opens a link, it catches patterns based on malware ra...
What do you like most about Symantec Endpoint Security Enterprise?
The tool is a secure and stable workstation for checking antivirus. The alerting feature helps us see alerts and is e...
What needs improvement with Symantec Endpoint Security Enterprise?
I have not experienced integrated threat intelligence benefits with Symantec Endpoint Security Enterprise. Many custo...
What is your primary use case for Symantec Endpoint Security Enterprise?
The primary use case for Symantec Endpoint Security Enterprise for my clients is basic antivirus protection.
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
No data available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
Information Not Available
Find out what your peers are saying about CrowdStrike, Microsoft, SentinelOne and others in Endpoint Protection Platform (EPP). Updated: February 2026.
885,444 professionals have used our research since 2012.