No more typing reviews! Try our Samantha, our new voice AI agent.

Microsoft Defender for Endpoint vs Seqrite Endpoint Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
115
Ranking in other categories
Endpoint Detection and Response (EDR) (5th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Microsoft Defender for Endp...
Ranking in Endpoint Protection Platform (EPP)
1st
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
212
Ranking in other categories
Advanced Threat Protection (ATP) (5th), Anti-Malware Tools (1st), Endpoint Detection and Response (EDR) (3rd), Microsoft Security Suite (3rd)
Seqrite Endpoint Security
Ranking in Endpoint Protection Platform (EPP)
31st
Average Rating
7.6
Reviews Sentiment
6.9
Number of Reviews
23
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.9%, up from 3.7% compared to the previous year. The mindshare of Microsoft Defender for Endpoint is 6.7%, down from 10.2% compared to the previous year. The mindshare of Seqrite Endpoint Security is 1.0%, down from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Microsoft Defender for Endpoint6.7%
Cortex XDR by Palo Alto Networks3.9%
Seqrite Endpoint Security1.0%
Other88.4%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Robert Arbuckle - PeerSpot reviewer
Security Analyst III at a healthcare company with 10,001+ employees
Automatically isolates threats and integrates with logging to reduce response time
Overall, I would evaluate the Microsoft support level that I receive at probably about a seven, but that depends on the day. It has been spotty. We have had issues where the urgency level of the Microsoft support is not as high as ours, especially during a data breach or potential data breach situation. We have had issues with some of the offshore support being lackluster. One specific thing that comes to mind is we were on a support call with our CISO on the call, and the Microsoft agent, who did not actually work for Microsoft, is one of the vendors that Microsoft uses for support, said, "Just to set expectations, my lunch break is in an hour and I am going to go away then." For us, it was already ten o'clock at night and we had been working on this for a couple of hours, trying to get a security engineer on with us. For him to tell us that he was going to go away and have lunch, it was, "Okay, but go find somebody else if you need to." It was just the lackluster approach, and it seemed like he did not really care. We seem to get a lot of this when we get non-Microsoft support. I can identify areas for improvement with Microsoft Defender for Endpoint, as it is kind of a convoluted mess to try to take care of false positives. Especially when they have been identified as false positives but they keep going off over and over again. It is great for my pocketbook because it generates a lot of on-call action, but I would really prefer more sleep at two o'clock in the morning than dealing with false positives. I would say that the unified portal for managing Microsoft Defender for Endpoint is suitable for both teams as they are all in there. It would be great if they would stop moving things around and renaming things, which makes sense. The new XDR portal is pretty nice. Being able to have it central again inside of the regular Security Center without having to open up two windows is helpful. Overall, I think it is pretty good. There is always going to be something that could be improved, such as alerting and the ability to modify alerts would be a little bit helpful to have. Being able to add more data into the alerts and turn off alerts that are not as useful would be beneficial. It is hard to say what the quantitative impact the security exposure management feature has had on our company's security, because a lot of it is kind of subjective. I think we are sitting at around a fifty percent score still, and a lot of it is just kind of unusual circumstances that we cannot really implement without breaking the organization.
ManishKumar14 - PeerSpot reviewer
DGM IT at Seth Anandram Jaipuria Group of Educational Institutions
Centrally managed, easy to configure, and easy to use
Seqrite Endpoint Security protects individual machines, servers, and emails against malware, viruses, and spam attacks The solution is centrally managed, easy to configure, and easy to use. It allows you to patch your required reports. The solution provides central deployment, remote deployment,…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Implementing Cortex XDR by Palo Alto Networks has had a significant impact on my security analyst workload because it becomes much easier."
"The solution is a new generation XDR that has a lot of artificial intelligence modules."
"If the user leaves our premises or network, Palo Alto Traps will still be on that endpoint and will still apply our policies."
"Cortex is the best tool for endpoint detection, and I have used it to verify hashes or domains to identify malicious activity, trigger playbooks that automate and gather endpoint logs, block malicious processes, and update incident tickets, showcasing end-to-end processes with automation in investigation and reducing the analysis workflow."
"It's very stable. I've never experienced downtime for the ASM console or ASM core."
"We've had a significant increase in blocking with a decrease in false positives, because it's looking at how the files work, not just a list of files that it's been told to look for."
"We think that this product will help us grow, as it meets our needs currently and we can grow with it over time."
"From the Palo Alto side, whatever they buy, they integrate that really well into their integration suite, and that makes a massive difference."
"For the end user it's good to know that everything is safe and well protected."
"This solution absolutely eliminated the need to look at multiple dashboards because we have one XDR."
"We have just started to implement it, and it is useful for protection from malware and ransomware."
"The comprehensiveness of Microsoft threat-protection products is great... Today, Microsoft Sentinel by itself is a leading Gartner SIEM tool. It has advantages over competitors because of the ability to integrate with Microsoft solutions and automate continuous monitoring of Microsoft AD and Office 365 data."
"There is no licensing fee, as Microsoft Defender for Endpoint comes included with the Windows license."
"The solution provides good security features, and the key valuable feature for me is that you can view it in the central console."
"My advice for anybody who is looking into using this product is that it's a good and easy way to secure your PC."
"It's stable."
"The solution is stable."
"The convenience has been great."
"Seqrite Endpoint Security provides external protection in terms of hard drives."
"Endpoint Security's best features are inventory, asset management, and quick scanning."
"The most valuable part of the solution is its ransomware backup feature."
"The overall performance of the server and the dashboard are the most interesting aspects of the solution."
"With Seqrite, it is completely protected, and we have full control over what is happening on the end user's laptop."
"The update process and policy control are good."
 

Cons

"It'll help if customization was easier."
"Cortex XDR by Palo Alto Networks could improve by adding a sandbox feature to better compete with their competitors which have it."
"I feel that it should not be a licensed activity because a feature should allow us to see applications running on end devices."
"The downsides of Cortex XDR by Palo Alto Networks are that in many incidents, when I enter the causality chain, there are numerous logs."
"It is a complex solution to implement."
"There are some third-party solutions that are difficult to integrate with, which is something that can be improved."
"We would also like to have advanced tech protection and email scanning."
"We had a problem with getting our older endpoints up to date, but their newest updates have been really good. I've been pleased with it in terms of what our needs are. It's doing what we want it to do."
"Lowering the price would be an improvement."
"Microsoft Defender for Endpoint could improve by making the reporting better."
"Microsoft Windows Defender doesn't have a game mode."
"Threat intelligence has the potential for improvement, particularly by integrating more sources."
"There's scanning going on that occasionally topples the memory, causing everything to freeze. This should be fixed."
"Its interface can be improved a little bit. We would like to have some sort of centralization."
"Another concern is ransomware, whether people can penetrate and encrypt my data or steal my credit card/banking information."
"There are some areas in the proactive threats that are just overwhelming the SOC, so we've had to turn those off until we can figure out how to filter out the false positives."
"Endpoint Security would be improved by adding DLP."
"The interface is slow."
"A handbook of known issues and quick fixes should be given so that troubleshooting and frustration are less."
"The solution could improve by providing better security and a cloud base version."
"The solution's integration capabilities are moderate and could be improved."
"When we fire any employee connected remotely over the internet, we need a security feature that blocks the system and the device."
"We would like the solution to have integration with other security solutions so that we can have a single base for monitoring all the security incidents and concerns."
"When it comes to the support provided by the product, I see that Seqrite is not as mature as the other products in the market."
 

Pricing and Cost Advice

"If one wishes to work with another team or large number of users at a future point, he must purchase a license for them."
"Very costly product."
"It's the most expensive solution, but features-wise, it's quite strong. It's very good for protection, so the results are very good in the case of protection. I would rate it a two out of ten in terms of pricing."
"It is "expensive" and flexible."
"The pricing is a little bit on the expensive side."
"We pay about $50,000 USD per year for a bundle that includes Cortex XDR."
"The cost of Cortex XDR by Palo Alto Networks is $55 to $90 USD per endpoint per month."
"It's about $55 per license on a yearly basis."
"The nice thing about Defender and Sentinel is that the cost is based on the data logs that you ingest from the Defender endpoints and data connectors. I don't have to buy a 25- or 50- or 1,000-user or enterprise license. I can buy one license at a time."
"It is so expensive. It isn't cheaper than McAfee or other solutions."
"If you don't purchase the advanced threat protection then there is no additional charge."
"Most people don't realize M365/E5 licenses are an amazing deal. They think "Oh, it's expensive," and I'll ask, "Compared to what?" If you don't have it you will have to buy licenses for multiple products to fill the same security space that you would have gotten with the Microsoft product. Go figure out how much it costs you per product, per user, and then come back and tell me how things add up financially."
"The base price for an E5 license, which includes Enterprise Mobility + Security E5, is $57 per user per month."
"Microsoft has different plans for buying this product. The price depends on the configuration of the full set of products that you buy and on the licensing program in your contract."
"The price of Microsoft Defender for Endpoint is reasonable. Other solutions are more expensive, such as ClowdStrike."
"We have been using the free version."
"The licensing fee is 200 Bangladeshi Taka per client per year."
"I give the cost of the solution a seven out of ten."
"The solution has reasonable pricing. There is one pricing without any hidden charges. They have to pay once a year or three years."
"The license isn't expensive."
"We pay approximately $1,500 for licenses for the solution."
"You need to pay for a yearly license for Seqrite Endpoint Security, which is expensive."
"Endpoint Security is cheaper than Trend Micro."
"My company needs to purchase a yearly subscription for the licensing costs for Seqrite Endpoint Security."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
908,800 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
10%
Comms Service Provider
10%
Manufacturing Company
10%
Manufacturing Company
10%
Financial Services Firm
9%
Computer Software Company
8%
Comms Service Provider
8%
Comms Service Provider
11%
Manufacturing Company
11%
Computer Software Company
10%
Financial Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business82
Midsize Enterprise45
Large Enterprise96
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise12
Large Enterprise1
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
Which offers better endpoint security - Symantec or Microsoft Defender?
We use Symantec because we do not use MS Enterprise products, but in my opinion, Microsoft Defender is a superior sol...
How does Microsoft Defender for Endpoint compare with Crowdstrike Falcon?
The CrowdStrike solution delivers a lot of information about incidents. It has a very light sensor that will never pu...
What is your experience regarding pricing and costs for Microsoft Defender for Endpoint?
We have been discussing pricing, setup cost, and licensing, and we are currently on an E3. We are discussing going to...
What is your experience regarding pricing and costs for Seqrite Endpoint Security?
The solution's pricing is good for us, where it is neither cheap nor expensive.
What needs improvement with Seqrite Endpoint Security?
The solution's integration capabilities are moderate and could be improved.
What is your primary use case for Seqrite Endpoint Security?
Seqrite Endpoint Security protects individual machines, servers, and emails against malware, viruses, and spam attacks.
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Microsoft Defender ATP, Microsoft Defender Advanced Threat Protection, MS Defender for Endpoint, Microsoft Defender Antivirus
Seqrite End Point Security, Seqrite EPS
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Petrofrac, Metro CSG, Christus Health
Gadre, Bharat Vikas Group, Fernandez Hospital, Fabtech Projects & Engineering, KIMS Hospital, National Steel And Agro Industries, Sardar Patel University, Sterling Wilson, Chowgule Industries
Find out what your peers are saying about Microsoft Defender for Endpoint vs. Seqrite Endpoint Security and other solutions. Updated: June 2026.
908,800 professionals have used our research since 2012.