Try our new research platform with insights from 80,000+ expert users

Rapid7 InsightIDR vs WatchGuard EPDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Rapid7 InsightIDR
Ranking in Endpoint Detection and Response (EDR)
25th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
32
Ranking in other categories
Security Information and Event Management (SIEM) (14th), User Entity Behavior Analytics (UEBA) (5th), Threat Deception Platforms (4th), Extended Detection and Response (XDR) (17th)
WatchGuard EPDR
Ranking in Endpoint Detection and Response (EDR)
14th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
37
Ranking in other categories
Endpoint Protection Platform (EPP) (11th)
 

Mindshare comparison

As of October 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of Rapid7 InsightIDR is 1.2%, up from 0.8% compared to the previous year. The mindshare of WatchGuard EPDR is 1.9%, up from 1.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Market Share Distribution
ProductMarket Share (%)
WatchGuard EPDR1.9%
Rapid7 InsightIDR1.2%
Other96.9%
Endpoint Detection and Response (EDR)
 

Featured Reviews

Asim Naeem - PeerSpot reviewer
Providing comprehensive insight into alerts while working towards AI enhancement
I definitely recommend Rapid7 InsightIDR. It is becoming better, with improvements being continuously made to the product. Right now, I do not have any advice about Rapid7 for other users because every organization or user has different criteria or multiple use cases, so I refrain from commenting on that. I rate the overall solution seven out of ten.
PaolaLamura - PeerSpot reviewer
While being easy to manage and create reports, the tool also offers a good UI
I rate the ease of use and management of Panda Adaptive Defense 360 an eight on a scale of one to ten. The tool's ability to provide information about the vulnerability is the most impactful feature of the product that has an impact on our company's security posture. Speaking about scenarios where the solution effectively prevented the security breach, I would say that our company sees how the tool blocks when our customers accidentally click on some malware, after which it quarantines that file. My company makes a playbook with the SOAR tool that Panda Adaptive Defense 360 uses to block and isolate attacks. In our company's system, if there is a big event that occurs, then to block the endpoint, we use SOAR with Panda Adaptive Defense 360 to block and isolate attacks or threats. The solution's real-time monitoring has improved our company's ability to detect threats if we use it in our company with Panda SIEMFeeder. Only if in my company there is a need to do some research, prepare a report, or if we want to change the policy, so it is not very often that we use the visualization part of the tool in our company. The reporting and analytics part of the tool has helped with the decision-making in our company since we combine different kinds of logs and situations from different ingestion logs, and we can configure a specific alert. In my company, we use the tool's data search functionality if required to check the information we need. Presently, our company uses the configuration alert and SIEMFeeder in our system. I rate the tool a nine out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Integration with threat modeling from the Metasploit and InsightIDR repositories."
"The biggest reason why we chose Rapid7 was to gain value in a really quick time. Its deployment doesn't take months. It just takes a few days."
"The solution is very stable and works very well for what I need it to do."
"The alerting to drive investigations and remediation has been its most valuable feature.​"
"I definitely recommend Rapid7 InsightIDR."
"Very intuitive and easy to set up."
"The log aggregation and storage provided by InsightIDR has shown no issues with scalability; aggregating over one hundred millions events daily."
"I am able to run automated actions based on the output of reports, leaving me extra time to focus on more pressing matters."
"The protection from malware is the most important feature. It has some endpoint information about the vehicle of the virus, malware, etc. It is also stable and easy to install, and they also provide good technical support."
"The most valuable features of the solution stem from the fact that I like the tool's UI, ease of management, ease of making reports, and the ability to export information easily."
"The detection capabilities for malicious activities are effective."
"The EDR has a high accuracy rate with only a few false positives."
"The product so far has been good at protecting us. We haven't faced a breach."
"WatchGuard EPDR improves organization primarily by supporting the IT team rather than the end users directly. It helps IT teams accomplish more with fewer people. One of its standout features is the patch management solution, which allows companies without up-to-date services like WSUS to manage patches for Windows and Linux systems. Additionally, it provides the usual endpoint protection features such as virus and malware protection, application control, and website control."
"The most valuable feature of the solution is its device control."
"The interface is great."
 

Cons

"The integration capabilities of the solution have certain shortcomings where improvements are required."
"Inability to get access to compliance reports within the solution."
"The main problem lies in the processes within the client's operating systems."
"Needs a better ability to customize the check within the console."
"Tenable Nessus is easier to deal with. It's more efficient and accurate. InsightIDR is heavier than Tenable in terms of performance and scanning. Rapid7 would be much easier to use if it had a network connector like Tenable. Tenable's connector allows continuous monitoring over the B caps."
"Customised alert recipients need to be added to allow better first-line action and quicker response. Configurable honeypots would be a welcome addition."
"It would be useful to import threat intelligence in YARA format along with known incorrect email addresses.​"
"InsightIDR's integration with other solutions could be improved. Also, I'd like more control from the portal over what's happening on the endpoint side. For example, when I see an attack on an endpoint, I want to be able to stop it from the portal."
"We do get the odd false positive when we're trying to install the software."
"It would be nice if Panda Security Adaptive Defense could come out with remote desktop usage."
"WatchGuard EPDR does have areas for improvement. One significant gap is the lack of a virtual patching feature integrated into the endpoint security. This would be particularly useful for endpoints running operating systems that are no longer supported, such as Windows 7."
"The only part I really don't use as much is their firewall. It's a bit superfluous. Most people have their own firewall in place, so they don't really need that part portion of the solution."
"Only the DNS filtering part could be improved, and nothing else apart from this needs correction."
"Needs a better way to scan the hardware to detect whether it's valid."
"The software has performance issues due to its requirements on the processor, however, these issues are common with other vendors, not just WatchGuard."
"The software has performance issues due to its requirements on the processor."
 

Pricing and Cost Advice

"Licensing is by endpoint and amount of retention time (at least ours is). Default retention was one year, but we are able to push the retention further if needed. There's also a provide-your-own-S3 option for longer retention if you don't want to pay for the additional retention years in your Rapid7 agreement."
"​I am sure that there are cheaper products out there, but none that meet so many of our needs whilst maintaining stability and usability.​"
"The pricing is good, and it is not very expensive."
"The solution has a mid-range price point in the market"
"Rapid7 InsightIDR charges us based on the endpoints we connect to."
"The pricing and licensing are competitive."
"Rapid7 InsightIDR is priced very well and is cost-effective."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"The solution is priced well for what features it provides."
"Our licensing fee is 1M Euro per month, so it is about 80 Euro's per user."
"Panda is cloud-only and comes at a reasonable cost. It is a set price per seat."
"The price of this solution depends on the number of licenses that you are purchasing."
"I don't think Panda's license is too expensive, but they're charging more than it's worth. It's a yearly license. For 1,000 endpoints, it's around $18,000."
"The solution's pricing is better compared to other products."
"The price is excellent."
"The licensing is subscription-based and priced well compared to other endpoint security solutions."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
869,760 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
8%
Manufacturing Company
7%
Government
7%
Computer Software Company
13%
Comms Service Provider
12%
Hospitality Company
6%
Manufacturing Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise5
Large Enterprise6
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise8
Large Enterprise1
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about Rapid7 InsightIDR?
During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, its origin, and potential threats. For instance, it can identify if an applicati...
What do you like most about WatchGuard EPDR?
The product's most valuable features are the zero-trust application service and its capability to detect threats and attacks.
What is your experience regarding pricing and costs for WatchGuard EPDR?
I think the pricing is normal because we subscribe for three years. Regarding pricing, I am not sure because I did not compare it with other antivirus; maybe it is pricey.
What needs improvement with WatchGuard EPDR?
I have no idea if I use some automation functions. I can't find any disadvantages; maybe that is because many companies haven't used it. I would prefer to see some features such as AI in antivirus ...
 

Also Known As

InsightIDR
Panda Adaptive Defense 360
 

Overview

 

Sample Customers

Liberty Wines, Pioneer Telephone, Visier
Indra, Valea AB, Fineit, Aemcom, Data Solutions INC., Gloucestershire NHS, Golden Star Resources Ltd, Hispania Racing Team, Instituto Dos Museus e da ConserÊo, Escuelas Pias Provincia Emaus, Axiom Housing Association, Municipality of Bjuv, Lesedi Nuclear, Mullsj_ municipality, Eng. skolan Norr AB, Dalakraft AB, Peter Green Haulage Ltd
Find out what your peers are saying about Rapid7 InsightIDR vs. WatchGuard EPDR and other solutions. Updated: September 2025.
869,760 professionals have used our research since 2012.