No more typing reviews! Try our Samantha, our new voice AI agent.

NetMon vs ThreatSync NDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetMon
Ranking in Network Monitoring Software
50th
Average Rating
7.6
Reviews Sentiment
6.1
Number of Reviews
12
Ranking in other categories
Identity Threat Detection and Response (ITDR) (15th)
ThreatSync NDR
Ranking in Network Monitoring Software
56th
Average Rating
8.6
Reviews Sentiment
8.7
Number of Reviews
2
Ranking in other categories
Network Detection and Response (NDR) (18th)
 

Mindshare comparison

As of August 2026, in the Network Monitoring Software category, the mindshare of NetMon is 0.7%, up from 0.3% compared to the previous year. The mindshare of ThreatSync NDR is 0.3%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Monitoring Software Mindshare Distribution
ProductMindshare (%)
NetMon0.7%
ThreatSync NDR0.3%
Other99.0%
Network Monitoring Software
 

Featured Reviews

SR
Pan India IT Infrastructure Management / End-user Services at Tata Group
Has supported real-time event detection and reporting accuracy while database integration has required extra effort
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to integrate NetMon with other databases. We can customize NetMon's monitoring views, but it is done by the team who handles it, as it is outsourced.
Michael-Foster - PeerSpot reviewer
Head of IT at Bulkhaul Limited
Has improved threat detection and reduced manual workload through real-time cloud insights
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it reacts instantly with a notification delay of 10 to 20 minutes, while nighttime notifications can have up to eight hours delay. ThreatSync+ NDR has enhanced our ability to proactively manage network risks by enabling us to implement extra measures at a lower level based on its findings. The compliance reporting tools are comprehensive and meet our requirements. Though we haven't conducted official compliance reporting yet, we anticipate it will save approximately one day of work in report compilation. Regarding pricing, WatchGuard rates a nine out of ten. We maintain 1,001 licenses for ThreatSync+ NDR, serving approximately 1,000 users, with about 300 local users in the UK. ThreatSync+ NDR's effectiveness in identifying weaknesses before exploitation is excellent and very quick. I recommend ThreatSync+ NDR to other users based on its rapid deployment and immediate value delivery. I rate ThreatSync+ NDR 9 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Compared to many other products in the market, I think LogRhythm has the highest cost to performance ratio in terms of its value."
"The initial setup is straightforward because we can deploy an open server."
"LogRhythm NetMon's most impressive feature is that it's a bundled package, so you're not just relying on monthly data; you get a six-month view for more comprehensive indicators of compromise. This dual approach is precious. We implement LogRhythm NetMon in our cybersecurity strategy mainly for compliance and correlation of network, user, and decision activities, particularly for network firewalls and access control."
"In general, this is a good product."
"The most valuable feature is the log, which can be analyzed by our SIEM solution."
"It has a very strong artificial intelligence engine."
"It is a stable solution...It is a scalable solution."
"We are using NetMon's real-time traffic analysis regularly with a team of four members who effectively monitor all alerts and events, which has helped them identify whether there could be a severe incident."
"Implementing ThreatSync+ NDR has influenced our business significantly as it provides enhanced security and saves several hours daily by eliminating manual log reviews."
"ThreatSync NDR is a strong addition to our company's security architecture."
 

Cons

"Sometimes it's hard to find the network devices' self-audit logs."
"Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time."
"Could use a topology diagram which would help get an exact visual."
"LogRhythm NetMon's pricing model is an area of concern that should be made a little bit cheaper in comparison to the other players in the market currently."
"The training for this product is not very good and needs to be improved."
"Previously, it was typically every Monday that I was coming in - it would die over the weekend - and I would spend a day cleaning up databases."
"Some of the automated tasks we can perform on QRadar cannot be performed on LogRhythm because the solution has limitations."
"I would like to see better integration with multiple products. Integration is not something that is readily available for most of the products."
"After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API."
"There are definitely areas for improvements in ThreatSync NDR, as no product is perfect. Its effectiveness depends on proper network visibility, so if important traffic segments are not mirrored or monitored, detection may be incomplete."
 

Pricing and Cost Advice

"The price of this solution is too high, so it should be made more practical and more valuable for the customer."
"The product is expensive for smaller companies."
"LogRhythm's licensing part is something that depends on the license you want since they offer it on a perpetual and subscription basis."
"Pricing is okay. There were some competitors that were extremely expensive and there were some which were really inexpensive but LogRhythm stayed in the middle of them."
"I don't have visibility into the pricing of LogRhythm NetMon as it's handled through our commercial partnerships."
"NetMon's licensing costs about $85k per year, with some extra costs for support."
Information not available
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
909,948 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Transportation Company
13%
Financial Services Firm
11%
Comms Service Provider
9%
Construction Company
16%
Outsourcing Company
9%
Comms Service Provider
7%
Transportation Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise7
No data available
 

Questions from the Community

What needs improvement with LogRhythm NetMon?
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to i...
What is your primary use case for LogRhythm NetMon?
We have outsourced our SIEM solutions at the moment, and we are using it.We have been using LogRhythm in our organization as a SaaS offering. We have outsourced it as part of the actual scope where...
What advice do you have for others considering LogRhythm NetMon?
We use AWS as our cloud provider in a private cloud environment.It completely depends upon when incidents happen. To find the root cause analysis, we need to first gather the logs from the team. It...
What needs improvement with ThreatSync+ NDR?
After using ThreatSync+ NDR for about a year, areas for improvement include the ability to pull logs from other vendors using an API. You can use Netflow which gets around this in some cases.
What is your primary use case for ThreatSync+ NDR?
We use ThreatSync+ NDR for both network monitoring and detection and response.
What advice do you have for others considering ThreatSync+ NDR?
ThreatSync+ NDR has helped identify potential security gaps in my network, and we are currently working on resolving them. The impact on incident response time varies. During daytime operations, it...
 

Also Known As

LogRhythm Network Monitor
No data available
 

Overview

 

Sample Customers

Sera-Brynn
Information Not Available
Find out what your peers are saying about Zabbix, SolarWinds, Datadog and others in Network Monitoring Software. Updated: August 2026.
909,948 professionals have used our research since 2012.