Try our new research platform with insights from 80,000+ expert users

Rapid7 InsightIDR vs WatchGuard Threat Detection and Response comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Rapid7 InsightIDR
Ranking in Endpoint Detection and Response (EDR)
24th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
32
Ranking in other categories
Security Information and Event Management (SIEM) (13th), User Entity Behavior Analytics (UEBA) (3rd), Threat Deception Platforms (5th), Extended Detection and Response (XDR) (15th)
WatchGuard Threat Detection...
Ranking in Endpoint Detection and Response (EDR)
38th
Average Rating
8.0
Reviews Sentiment
7.9
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of Rapid7 InsightIDR is 1.1%, up from 0.7% compared to the previous year. The mindshare of WatchGuard Threat Detection and Response is 0.5%, down from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Featured Reviews

Asim Naeem - PeerSpot reviewer
Providing comprehensive insight into alerts while working towards AI enhancement
I definitely recommend Rapid7 InsightIDR. It is becoming better, with improvements being continuously made to the product. Right now, I do not have any advice about Rapid7 for other users because every organization or user has different criteria or multiple use cases, so I refrain from commenting on that. I rate the overall solution seven out of ten.
Jose Fos - PeerSpot reviewer
The solution provides automated responses and helps protect our systems
We use the solution to protect our systems. We also use it for real-time detection The tool provides automated responses. It has a lot of features. The interface is not the best. I do not like it. The reports must also be improved. I am currently using the solution. I have contacted the…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution provides satisfying native integration features"
"It improves because several sensors are deployed within the on-premise environment. It can be very efficient if the customer implements and operates it effectively."
"Rapid7 InsightIDR integrates well with other solutions. It's also easy to configure because Rapid7 InsightIDR has a lot of instructions posted on their website that customers can follow if they need to get the source log."
"Scalability-wise, I rate the solution a ten out of ten. As a cloud tool, the product is highly scalable."
"Integration with threat modeling from the Metasploit and InsightIDR repositories."
"Enables the use of honey pots, honey users, and honey files to monitor for suspicious patterns."
"The solution is very scalable in terms of the licensing model."
"The product works well. Stability-wise, I rate the solution a ten out of ten."
"I like WatchGuard's network segmentation features. It's easy to configure user policies."
"The most valuable feature, in my opinion, is the dimension logging platform and the network traffic filtering."
"The protection that it provides from ransomware is valuable. The awareness that it has is also valuable. It didn't have a central console earlier, but now it has a central console, which is pretty good."
"The tool provides automated responses."
"The most valuable feature is the correlation of logs from different devices."
"WatchGuard is very user-friendly. It provides us with all of the security services we need."
"When you download the executable file from the internet, it automatically sandboxes to make sure it's not doing anything incorrectly."
"The interface is very good."
 

Cons

"The interface for doing investigation needs to be enhanced with minor improvements that would make it more useful."
"Cloud risk assessment is one area where I think they need a lot of improvement."
"Needs a better ability to customize the check within the console."
"The solution needs improvement in threat intelligence. Increasing the depth of intelligence to help users understand more about threats is a possibility. My suggestion is to expand access to other websites or resources."
"They should add more configuration and security features to it."
"One thing that springs to mind is easier API integration with ITSMs. We are evaluating a new ITSM and I would like to have InsightIDR create a ticket when an attack is identified, and the ticket would be closed in InsightIDR when the ITSM resolution is completed. This would take out the "single point of failure" we currently have, if the email recipient is somehow absent, in recording the risk appetite for the incident and the actions taken to mitigate or not."
"It would be useful to import threat intelligence in YARA format along with known incorrect email addresses.​"
"The product allows us to make only 30 custom rules."
"When it comes to live-monitoring, the user-interface could be improved to make things easier."
"The solution is a bit confusing and there are unusual complications with setup."
"The reporting isn't so good. If they worked to improve this aspect of the solution, it would be much stronger."
"The administrative UI/UX could be significantly improved."
"This product needs to be fully integrated with the firewall. Currently, it only sends logs to the cloud and asks the firewall to correlate them."
"The pricing of WatchGuard Threat Detection and Response could be improved."
"The ease of detecting where an issue is should be improved."
"It can have a couple of false positives, but after you add them to your allow list, it works fine. It could have better Mac support. I am pretty sure it doesn't have much support for Mac. It can be installed on a Mac, but it is not that good."
 

Pricing and Cost Advice

"Rapid7 InsightIDR's pricing is reasonable."
"I rate Rapid7 InsightIDR's price a four on a scale of one to ten, where one is cheap, and ten is expensive."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"Licensing is by endpoint and amount of retention time (at least ours is). Default retention was one year, but we are able to push the retention further if needed. There's also a provide-your-own-S3 option for longer retention if you don't want to pay for the additional retention years in your Rapid7 agreement."
"Licensing is straightforward. If, for some reason, you don’t meet the minimum licensing requirements, there is a third-party managed service that can help."
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"It is more reasonably priced than other vendors."
"The pricing is good, and it is not very expensive."
"There is a license required to use the solution and we pay annually. The price could be reduced because it is a bit expensive."
"The price is comparable."
"The pricing is competitive."
"The price of WatchGuard is very good."
"The price is very good."
"The solution is cheap."
"The solution is a bit more expensive than other options."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
850,349 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
9%
Manufacturing Company
7%
Government
7%
Computer Software Company
18%
Comms Service Provider
10%
Retailer
10%
Financial Services Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about Rapid7 InsightIDR?
During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, its origin, and potential threats. For instance, it can identify if an applicati...
What needs improvement with WatchGuard Threat Detection and Response?
The pricing of WatchGuard Threat Detection and Response could be improved. It's not the cheapest option available. That said, it often meets our needs effectively. There are areas for improvement i...
What is your primary use case for WatchGuard Threat Detection and Response?
WatchGuard Threat Detection and Response is used to monitor traffic and give alarms to the administration if something goes wrong. It reacts when services protected by it are attacked and sends not...
 

Also Known As

InsightIDR
WatchGuard TDR
 

Overview

 

Sample Customers

Liberty Wines, Pioneer Telephone, Visier
Goodwill New York / New Jersey, F4 IT, Café Comunicação Integrada
Find out what your peers are saying about Rapid7 InsightIDR vs. WatchGuard Threat Detection and Response and other solutions. Updated: April 2025.
850,349 professionals have used our research since 2012.