No more typing reviews! Try our Samantha, our new voice AI agent.

NetMon vs ThreatSync NDR comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetMon
Ranking in Network Monitoring Software
48th
Average Rating
7.6
Reviews Sentiment
6.1
Number of Reviews
12
Ranking in other categories
Identity Threat Detection and Response (ITDR) (12th)
ThreatSync NDR
Ranking in Network Monitoring Software
55th
Average Rating
8.6
Reviews Sentiment
8.7
Number of Reviews
2
Ranking in other categories
Network Detection and Response (NDR) (18th)
 

Mindshare comparison

As of October 2026, in the Network Monitoring Software category, the mindshare of NetMon is 0.7%, up from 0.4% compared to the previous year. The mindshare of ThreatSync NDR is 0.3%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Monitoring Software Mindshare Distribution
ProductMindshare (%)
NetMon0.7%
ThreatSync NDR0.3%
Other99.0%
Network Monitoring Software
 

Featured Reviews

SR
Pan India IT Infrastructure Management / End-user Services at Tata Group
Has supported real-time event detection and reporting accuracy while database integration has required extra effort
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to integrate NetMon with other databases. We can customize NetMon's monitoring views, but it is done by the team who handles it, as it is outsourced.
Michael-Foster - PeerSpot reviewer
Head of IT at Bulkhaul Limited
Has improved threat detection and reduced manual workload through real-time cloud insights
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it reacts instantly with a notification delay of 10 to 20 minutes, while nighttime notifications can have up to eight hours delay. ThreatSync+ NDR has enhanced our ability to proactively manage network risks by enabling us to implement extra measures at a lower level based on its findings. The compliance reporting tools are comprehensive and meet our requirements. Though we haven't conducted official compliance reporting yet, we anticipate it will save approximately one day of work in report compilation. Regarding pricing, WatchGuard rates a nine out of ten. We maintain 1,001 licenses for ThreatSync+ NDR, serving approximately 1,000 users, with about 300 local users in the UK. ThreatSync+ NDR's effectiveness in identifying weaknesses before exploitation is excellent and very quick. I recommend ThreatSync+ NDR to other users based on its rapid deployment and immediate value delivery. I rate ThreatSync+ NDR 9 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is a stable solution...It is a scalable solution."
"NetMon's best feature is traffic analysis."
"In general, this is a good product."
"It has a very strong artificial intelligence engine."
"We were sold on the product based on the fairly narrow use cases that the sales reps gave us, and what we're seeing during our usage is that we can get there, and we're very excited about the potential."
"The initial setup is straightforward because we can deploy an open server."
"But just having it there, it's incredibly smart, incredibly easy to use, and the breadth of information we get off it is really good for investigations for us."
"The protocols with which you see the traffic for a particular website that a client has in their environment, for example, are valuable. We can monitor whether the traffic is up to the mark or whether they need to add more bandwidth. Also, we can see if we're able to get real-time environment data as well. The customization dashboard is really good. LogRhythm NetMon has its own in-built dashboards which are helpful in guiding customization."
"ThreatSync NDR is a strong addition to our company's security architecture."
"Implementing ThreatSync+ NDR has influenced our business significantly as it provides enhanced security and saves several hours daily by eliminating manual log reviews."
 

Cons

"The platform's integration features often need to be improved."
"LogRhythm's support team isn't responsive enough - it's common to wait a day or two for someone to deal with a case."
"One thing that surprised me was the current version of LogRhythm does not natively support Windows 2016."
"Could use a topology diagram which would help get an exact visual."
"LogRhythm NetMon's pricing model is an area of concern that should be made a little bit cheaper in comparison to the other players in the market currently."
"The main concern is that LogRhythm has not improved NetMon but instead introduced a separate product, which many customers, including us, would prefer to be integrated into a single platform for easier management."
"Sometimes it's hard to find the network devices' self-audit logs."
"I would like to see better integration with multiple products. Integration is not something that is readily available for most of the products."
"There are definitely areas for improvements in ThreatSync NDR, as no product is perfect. Its effectiveness depends on proper network visibility, so if important traffic segments are not mirrored or monitored, detection may be incomplete."
"After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API."
 

Pricing and Cost Advice

"NetMon's licensing costs about $85k per year, with some extra costs for support."
"The product is expensive for smaller companies."
"I don't have visibility into the pricing of LogRhythm NetMon as it's handled through our commercial partnerships."
"The price of this solution is too high, so it should be made more practical and more valuable for the customer."
"Pricing is okay. There were some competitors that were extremely expensive and there were some which were really inexpensive but LogRhythm stayed in the middle of them."
"LogRhythm's licensing part is something that depends on the license you want since they offer it on a perpetual and subscription basis."
Information not available
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
11%
Transportation Company
11%
Financial Services Firm
11%
Comms Service Provider
11%
Comms Service Provider
18%
Construction Company
13%
Outsourcing Company
12%
University
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise7
No data available
 

Questions from the Community

What needs improvement with LogRhythm NetMon?
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to i...
What is your primary use case for LogRhythm NetMon?
We have outsourced our SIEM solutions at the moment, and we are using it.We have been using LogRhythm in our organization as a SaaS offering. We have outsourced it as part of the actual scope where...
What advice do you have for others considering LogRhythm NetMon?
We use AWS as our cloud provider in a private cloud environment.It completely depends upon when incidents happen. To find the root cause analysis, we need to first gather the logs from the team. It...
What needs improvement with ThreatSync+ NDR?
There are definitely areas for improvements in ThreatSync NDR, as no product is perfect. Its effectiveness depends on proper network visibility, so if important traffic segments are not mirrored or...
What is your primary use case for ThreatSync+ NDR?
I use ThreatSync NDR for monitoring across our hybrid and cloud infrastructure. For monitoring in our hybrid and cloud infrastructure using ThreatSync NDR, we investigate indicators such as IP addr...
What advice do you have for others considering ThreatSync+ NDR?
If I am evaluating an NDR solution for medium to large enterprises, especially with our experience using it with our WatchGuard security products, ThreatSync NDR delivers strong visibility, intelli...
 

Also Known As

LogRhythm Network Monitor
No data available
 

Overview

 

Sample Customers

Sera-Brynn
Information Not Available
Find out what your peers are saying about NetMon vs. ThreatSync NDR and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.