No more typing reviews! Try our Samantha, our new voice AI agent.

Norton Small Business vs Tanium comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 18, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
108
Ranking in other categories
Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (6th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (2nd)
Norton Small Business
Ranking in Endpoint Protection Platform (EPP)
29th
Average Rating
8.6
Reviews Sentiment
7.7
Number of Reviews
9
Ranking in other categories
Cloud Backup (38th), SSL VPN (12th)
Tanium
Ranking in Endpoint Protection Platform (EPP)
19th
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
22
Ranking in other categories
Server Monitoring (3rd), Vulnerability Management (23rd), Endpoint Detection and Response (EDR) (21st), Unified Endpoint Management (UEM) (6th)
 

Mindshare comparison

As of March 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.5%, down from 4.0% compared to the previous year. The mindshare of Norton Small Business is 1.7%, down from 2.3% compared to the previous year. The mindshare of Tanium is 2.3%, down from 2.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.5%
Tanium2.3%
Norton Small Business1.7%
Other92.5%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Balaguru Paramasivan - PeerSpot reviewer
Delivery Manager - DBA at HTC Global Services (INDIA) Private
The initial setup phase is very easy and user-friendly
I had tried Kaspersky a long time ago. I think it is available only in India. I don't know for sure. I have used that one for a couple of years, but I didn't like it, and that is the only reason I went back to Norton. Kaspersky was not safeguarding me in all aspects. I had seen some loopholes in the tool, so that is the only reason I went for Norton. The only thing I like about Kaspersky is that it supports the mobile version.
MA
Division Manager, Information Technology at a legal firm with 51-200 employees
Centralized policies have improved remote endpoint control and have simplified data visibility
The integration is not simple and easy. It requires experienced users or people who have done the implementation. When certain policies are applied, they do not immediately push the policies. For example, we manage endpoint device USB access. We set a policy to block it, but it does not come into effect immediately. Sometimes it takes three or four days for it to reflect. That is a pain point. I have raised this issue with support as well, but they said that I need to limit the number of devices in the policy. In terms of application deployment, for us, it was seamless.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use it for malicious connections from malicious websites, to identify payloads that might be inside the traffic, to identify malicious processes or bugs that are running on the network, and any activities that tend to lead to data infiltration."
"I like that the product has behavior-based detection which offers many benefits over signature-based detection."
"The solution allows us to gain remote access without the user's knowledge and take the necessary actions on the device."
"The positive impacts I see from Cortex XDR by Palo Alto Networks include a complete 360-degree view of our security posture altogether, being a uniform platform where we are ingesting logs from multiple resources."
"One thing that I like about Cortex XDR by Palo Alto Networks, it is detecting all the suspicious or malicious binaries, and it has integration with Palo Alto Firewall."
"I don't have to do much monitoring with it; I don't have to have anybody manually looking at this, it gives us reports, and it lets us know if something needs to be addressed, and we can easily address it."
"My advice for anybody who is considering Cortex XDR is that it is a complete solution, and has very good features."
"Has great threat detection capabilities."
"Norton 360 offers the best defense compared to other low-priced antivirus solutions. Its most valuable feature is storage and automatic backup. You can restore materials from the tool's cloud backup. It is encrypted with authentication."
"The solution has good performance."
"The most valuable feature of the solution is that it offers alerts if I get a spam email."
"The performance is fine."
"The most valuable feature of Norton 360 has been its robust notification system."
"The solution detects viruses very, very fast."
"It offers diverse features, such as antivirus protection, firewall, identity protection, secure VPN, device backup, password management, parental controls, and performance optimization."
"The product’s valuable feature is the availability of support services 24/7."
"Tanium has made the process of detecting threats more proactive with its detection, so the process is easier and more efficient."
"The interrogation piece was the most valuable feature because it was very detailed."
"For incident response tasks, all these tasks can get done in minutes with minimal disruption to the end-user."
"The solution is scalable and helps to understand how infrastructure works. It helps to improve the health of the organization."
"Tanium's most valuable features are patch management, inventory, and distribution software."
"Tanium has made the process of detecting threats more proactive with its detection. So, the process is easier and more efficient."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first."
"Threat hunting is a very good feature on Tanium. We have just started using it and have not used it extensively."
 

Cons

"The configuration could be simplified. I would like to see better protection, specifically to protect email applications."
"There is also no recovery feature; if some endpoint is under attack there must be the possibility of recovering it or restoring it to a normal state."
"Product might have some bugs."
"I feel that it should not be a licensed activity because a feature should allow us to see applications running on end devices."
"The solution should force customers to integrate with network traffic to see the full benefits of XDR."
"There are some false positives. What our guys would have liked is that it would have been easier to manipulate as soon as they found a false positive that they knew was a false positive. How to do so was not obvious. Some people complained about it. The interface, the ESM, is not user-friendly."
"It tends to do 99.9% of things. The only thing I'd like is single sign-on authentication into their cloud platform so that my users can be properly authenticated against it."
"The solution needs better reports. I think they should let the customer go in and customize the reports."
"One area where Norton 360 could improve is the constant push for upselling."
"The updates must be less frequent."
"The tool should be easily available in the market and should be cheaper."
"The tool's price is an area of concern where improvements are required."
"There's a need for enhanced security measures."
"Norton 360’s features for device optimization could be better."
"The product should be improved with more storage. Though included in its price, the tool's auto VPN doesn't work at times."
"The solution’s stability could be improved."
"The most painful thing is the interface. It's a bit unclear sometimes."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
"They could improve the UI."
"The solution needs to improve the reporting and tracking capabilities."
"Tanium’s scalability could be improved."
"Tanium required local admin or root rights on Mac devices, which did not comply with our security policies. This made the solution less suitable for our restrictive environment."
"The solution can give a lot of false positives."
"There are downsides and drawbacks in Tanium, and there is room for improvement from my perspective."
 

Pricing and Cost Advice

"When we first bought it, it was a bit expensive, but it was worth it. The licensing was straightforward."
"We pay about $50,000 USD per year for a bundle that includes Cortex XDR."
"Very costly product."
"I don't have any issues with the pricing. We are satisfied with the price."
"The price of the product is not very economical."
"It has a yearly renewal."
"I am using the Community edition."
"Cortex XDR's pricing is ok."
"The price is fairly acceptable."
"The tool has a yearly licensing."
"On a scale of one to ten, if ten is the most expensive and one is the cheapest, I rate the price as nine."
"The solution is cost-effective."
"It is an inexpensive product. We purchase its yearly license."
"It's an expensive solution. It would be nice if the cost were lower."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"It is higher than some competitors in the market."
"There is an annual license required to use this solution."
"The solution is expensive but it's a good investment."
"The solution offers value for money."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
885,311 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
13%
Manufacturing Company
8%
Computer Software Company
8%
Financial Services Firm
8%
Comms Service Provider
11%
Manufacturing Company
8%
Healthcare Company
7%
Educational Organization
6%
Financial Services Firm
15%
Government
11%
Manufacturing Company
9%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise47
By reviewers
Company SizeCount
Small Business9
Large Enterprise2
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise3
Large Enterprise12
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Norton 360?
I have a yearly licensing plan. The cost is not that high. The solution is cost-effective.
What is your primary use case for Norton 360?
I use the solution for the general protection of my computer. It runs in the background.
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
No data available
Tanium Inc Cloud, Tanium XEM
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Information Not Available
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Find out what your peers are saying about Norton Small Business vs. Tanium and other solutions. Updated: March 2026.
885,311 professionals have used our research since 2012.