No more typing reviews! Try our Samantha, our new voice AI agent.

Rapid7 InsightIDR vs TrendAI Vision One – Cloud Security comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 26, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Extended Detection and Response (XDR)
3rd
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (5th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Rapid7 InsightIDR
Ranking in Extended Detection and Response (XDR)
18th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
33
Ranking in other categories
Security Information and Event Management (SIEM) (23rd), User Entity Behavior Analytics (UEBA) (11th), Endpoint Detection and Response (EDR) (34th), Threat Deception Platforms (4th)
TrendAI Vision One – Cloud ...
Ranking in Extended Detection and Response (XDR)
23rd
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
23
Ranking in other categories
Vulnerability Management (37th), Container Security (24th), Cloud Workload Protection Platforms (CWPP) (16th), Hybrid Cloud Computing Platforms (11th), Cloud Security Posture Management (CSPM) (16th), Cloud-Native Application Protection Platforms (CNAPP) (17th), Attack Surface Management (ASM) (14th), Cloud Infrastructure Entitlement Management (CIEM) (6th), Cloud Detection and Response (CDR) (8th), AI Security (16th)
 

Mindshare comparison

As of October 2026, in the Extended Detection and Response (XDR) category, the mindshare of Cortex XDR by Palo Alto Networks is 4.8%, down from 6.0% compared to the previous year. The mindshare of Rapid7 InsightIDR is 2.5%, down from 3.2% compared to the previous year. The mindshare of TrendAI Vision One – Cloud Security is 1.9%, up from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Extended Detection and Response (XDR) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks4.8%
Rapid7 InsightIDR2.5%
TrendAI Vision One – Cloud Security1.9%
Other90.8%
Extended Detection and Response (XDR)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Prajwal Chougale - PeerSpot reviewer
SOC L2 Analyst at a tech services company with 51-200 employees
Centralized threat hunting has improved alert accuracy and simplifies incident investigations
I would say there are two areas for improvement: the reporting dashboard that provides insights or reports weekly or monthly lacks detailed information about how logs are being ingested. While the details are there, they could be more concise and easier to understand for any level of authority. The second area is alert tuning; compared to Microsoft Sentinel, Rapid7 InsightIDR provides fewer alerts with more static alert functionality and lacks dynamic alerting exposures. There could be improvements to learn from past alert activities for more dynamic alert configurations. These two areas are the main areas for improvement; everything else is good.
reviewer2793894 - PeerSpot reviewer
Platform Engineer Ii at a outsourcing company with 5,001-10,000 employees
Centralized cloud view has improved threat response and simplified compliance reporting
We are using Trend Vision One - Cloud Security for getting complete visibility of all the assets that exist within our cloud, and it helps us identify any sort of misconfigurations or fine-tuning that can be done to better our compliance. Trend Vision One - Cloud Security helps in onboarding all the cloud solutions or cloud providers that we have within our organization into a single dashboard, thereby providing greater visibility of all the assets. Earlier we used to have multiple dashboards to manage the same solution or capability, but with Trend Micro, we are able to get everything in a single pane of glass, benefiting our operations significantly. We are using the playbooks built into Trend Vision One - Cloud Security, which help us take a lot of response actions and bring automation capabilities into play. Trend Vision One - Cloud Security has positively impacted our organization by providing a single pane of glass visibility across all the cloud solutions that we have and reducing the number of threats we used to see earlier in the cloud. We are seeing that the number of cloud operations required earlier in terms of threat detection and response, and the time taken to detect a particular threat and take a response action, has considerably improved after onboarding Trend Micro.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It has pretty much everything we need and works well within the Palo Alto ecosystem."
"From the Palo Alto side, whatever they buy, they integrate that really well into their integration suite, and that makes a massive difference."
"Cortex covers everything I need. It's a perfect solution. Cortex provides a different level of visibility because it's an extended EDR, allowing you to grab logs from the network and firewalls. Palo Alto invented the concept of the extended EDR or XDR."
"Has great threat detection capabilities."
"The user interface of the solution is sophisticated and straightforward."
"The solution is a new generation XDR that has a lot of artificial intelligence modules."
"One thing that I like about Cortex XDR by Palo Alto Networks, it is detecting all the suspicious or malicious binaries, and it has integration with Palo Alto Firewall."
"After deploying Traps, we saw the performance of the network improve by 65 to 70 percent."
"The UI is very good."
"Very intuitive and easy to set up."
"I like that it's a cloud-based solution."
"The technical support is a solid 10 out of 10 as they take the time to answer any questions or problems which may arise in a reasonable time frame."
"It improved my organization by building a security alerting program."
"We were able to identify criminals attempting to login from China and put a stop on their IP locations."
"Integration with threat modeling from the Metasploit and InsightIDR repositories."
"Another very important part of insightIDR is the ability to collect data from endpoint devices via agent software. With a large remote workforce, this allows visibility into the endpoints that are connected to the internet, but not to the corporate network."
"The product helps us understand our environment better."
"Trend Vision One - Cloud Security does not utilize a lot of resources which allows our users to keep working even during a scan."
"The stability is quite good."
"The the most valuable feature is the scanning engine. It does not impact server performance. It's very lightweight."
"If any vulnerability attack is there, it can secure that particular server in real-time."
"The return on investment is very high because it is so flexible and you can actually cancel this service whenever you want."
"I use the tool for security solutions. It's a leader in Gartner and Forrester Wave reports. Customers rely on these reports."
"Virtual patching is one of the key features, which is executed with their IPS."
 

Cons

"They have the worst support, as a company, that I have ever worked with, as they are difficult to get a hold of and keep on the phone. They don't know what they are talking about when you get them on the phone. They don't like to respond to messages when you send them to them. They like to "research problems" for weeks on end, then pass you off to somebody else."
"To jump from the partner to Palo Alto directly was challenging."
"Currently, if you use Palo Alto endpoint protection as the only solution it's very complicated to remove pre-existing threats."
"Being able to filter the events to see those that are related to the actual alert would save time spent by the engineer."
"When it comes to core analysis, and security analysis, Cortex needs to provide more information."
"Additionally, I think the price is very high, and if it can be adjusted, I believe it will be a very good solution."
"We would also like to have advanced tech protection and email scanning."
"The solution should add unwanted malicious hash values to a block list so that whenever the action is triggered, it will automatically prevent the malicious content."
"Rapid7's customer support is awful. They didn't respond at all."
"Lacks a mobile application."
"Personally, I feel it would greatly benefit from more supported log sources."
"I'd like to see a mobile application included and some feature related to the generality of segregation for internal users that access the application."
"InsightIDR's integration with other solutions could be improved. Also, I'd like more control from the portal over what's happening on the endpoint side. For example, when I see an attack on an endpoint, I want to be able to stop it from the portal."
"Sometimes, it is hard to get the right queries to use. Currently, the tool lacks a pre-made set of queries."
"They should add more configuration and security features to it."
"The interface for doing investigation needs to be enhanced with minor improvements that would make it more useful."
"Trend Vision One - Cloud Security should address threats automatically without having user input."
"Trend Vision One - Cloud security aims to protect our assets, but the rapid spread of viruses and vulnerabilities through malicious emails remains a significant concern."
"The product could use a little bit of automation."
"The licensing model could be improved. To gain full coverage, you need to spend more to buy subscriptions for each kind of service they offer. It will start to be pricey if you want full coverage."
"Trend Vision One - Cloud Security could improve connections with different types of authentication and user groups concerning cloud services."
"The local agent should be able to show more logs. At present, the logs are only available from the web console and not from the local agent."
"The tool should improve integration with trend products."
"Documentation on cloud architecture and job architecture would be helpful."
 

Pricing and Cost Advice

"The cost of Cortex XDR by Palo Alto Networks is $55 to $90 USD per endpoint per month."
"The price of the product is not very economical."
"Very costly product."
"It's the most expensive solution, but features-wise, it's quite strong. It's very good for protection, so the results are very good in the case of protection. I would rate it a two out of ten in terms of pricing."
"Our license will require renewal in August, after which the maintenance will continue as usual."
"Traps pays for itself within the first 16 months of a three-year subscription. This is attributed to OPEX savings, as security teams spent less time trying to identify and isolate malware for analysis as a result of a reduction in malware incidents, false positives, and breach avoidance."
"Our customers have expressed that the price is high."
"I am using the Community edition."
"It is on a yearly basis. For our own company, for about 250 users, it was 16,000 euros a year."
"The pricing and licensing are competitive."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"The pricing of the solution depends on the user. But there is a yearly licensing cost."
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"​I am sure that there are cheaper products out there, but none that meet so many of our needs whilst maintaining stability and usability.​"
"The solution has a mid-range price point in the market"
"The pricing is good, and it is not very expensive."
"The price could be lower. That is a bit of a consideration."
"With everything I deal with, Trend Micro Cloud One's pricing is somewhere in the middle."
"It's a slightly expensive product."
"I rate the solution's pricing a six out of ten."
"Pricing for Trend Micro Cloud One Container Security in the corporate market is okay."
"The pricing for Cloud One is reasonable because my costs scale up and down based on my infrastructure usage."
"The is price is 25% cheaper than it was a couple of years ago, which is good."
"Two years ago, it cost $200 for 20 credits, which was a high cost."
report
Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Manufacturing Company
10%
Manufacturing Company
10%
Financial Services Firm
9%
Comms Service Provider
8%
Computer Software Company
6%
Comms Service Provider
11%
Financial Services Firm
9%
Manufacturing Company
9%
Outsourcing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business22
Midsize Enterprise5
Large Enterprise6
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise6
Large Enterprise10
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is a...
What is your experience regarding pricing and costs for Rapid7 InsightIDR?
My experience with pricing, setup costs, and licensing has been very positive; it is cost-effective and offers great ...
What needs improvement with Rapid7 InsightIDR?
I would say there are two areas for improvement: the reporting dashboard that provides insights or reports weekly or ...
What is your experience regarding pricing and costs for Trend Micro Cloud One Container Security?
The pricing for Trend Vision One - Cloud Security is very straightforward; we are using credits for calculating the s...
What needs improvement with Trend Micro Cloud One Container Security?
I would like to see more third-party integrations being added into Trend Vision One - Cloud Security, as it currently...
What is your primary use case for Trend Micro Cloud One Container Security?
The main use case for Trend Vision One - Cloud Security is to secure our cloud environment from threats and we had to...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
InsightIDR
Trend Micro Cloud One , Cloud One Workload Security, Trend Micro Cloud One Container Security, Trend Micro Cloud One Application Security, Cloud One File Storage Security, Cloud One Network Security, Cloud One Conformity
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Liberty Wines, Pioneer Telephone, Visier
Information Not Available
Find out what your peers are saying about Rapid7 InsightIDR vs. TrendAI Vision One – Cloud Security and other solutions. Updated: August 2026.
915,341 professionals have used our research since 2012.