Lead Engineer - Network & Security at Connex Information Technologies
Real User
Top 10
Jun 29, 2026
Governance and security is another important feature in cybersecurity. I have to ensure SOCRadar Extended Threat Intelligence is used correctly, and I think it should be implemented inside the security operations center and monitored twenty-four seven. By doing this, governance will facilitate a proper cybersecurity posture for all companies. I would say to any companies that value their brands and want to protect their external attack surface, it is a must to adopt a solution such as SOCRadar Extended Threat Intelligence, which will be very useful for protecting your brand and identifying all malicious IP addresses and URLs targeted towards your domain. Monitoring this platform twenty-four seven will be very beneficial. Anyone using this platform should also consider SOC adoption. I provided a review rating of eight for this product.
Principal Cybersecurity Engineer at a tech vendor with 1,001-5,000 employees
Real User
Top 20
Jun 29, 2026
I expect clear and detailed responses to my inquiries based on the product. Since SOCRadar Extended Threat Intelligence is a SaaS platform, maintenance can primarily be handled by the vendor. We only need to fine-tune the alerts for our benefit by determining which alerts are necessary and which are not. The pricing for SOCRadar Extended Threat Intelligence is within our budget, and the features offered are more comprehensive compared to other solutions available at the same price point. Overall, I rate this solution at eight out of ten.
Cybersecurity Consultant at a tech services company with 11-50 employees
Real User
Top 10
Jun 27, 2026
For brand protection, I had my partner, or more of a client who had someone publishing on the internet, especially on LinkedIn, about their vulnerabilities or their scan results about their attack surface vulnerabilities. I quickly got in touch with SOCRadar Extended Threat Intelligence so they could take down those posts because they directly impacted my client's image. The response from SOCRadar Extended Threat Intelligence was amazing. They supported me throughout this process and the post was quickly taken down, I think it was taken down in about a day, something between 24 to 48 hours. It was a very good experience. SOCRadar Extended Threat Intelligence has really impacted my view of the organization, especially what is being discussed on the Dark Web. Regarding the outcome, I feel I now have a better view of what is happening with the organization, the attack surface, supply chain vulnerabilities, and what is coming up with the supply chain. SOCRadar Extended Threat Intelligence has greatly improved the security posture regarding all of this. I feel more secure and more alerted about what is happening with the brand and company. For numbers, I do not have any numbers to give, but the most specific metrics I can discuss is the faster response time because I am alerted in real time and I have the information in real time. I can respond more effectively and with the support of the SOCRadar Extended Threat Intelligence team, I can take action very fast. I can really resolve the issue before it becomes a bigger problem, especially with the takedown, with leaked passwords, or with anything similar. That is the biggest metric and the biggest improvement regarding the implementation of SOCRadar's solution. SOCRadar Extended Threat Intelligence has an AI assistant that is a really simple assistant that explains attacks or things happening in the reports or in the alerts, which is great and really helpful. I think if anyone is interested in SOCRadar Extended Threat Intelligence, I think calling or booking a POC with them would really give the opportunity to check the solution, to get in touch with the SOCRadar Extended Threat Intelligence team, and see the value they provide. That would be enough for anyone to actively consider the solution. The solution is very mature. The customer support is really great. I think they will be better and better in the upcoming years and maybe they will be a leader in the industry, which I hope for them because the team is great.
We have utilized the dark web intelligence sources from SOCRadar Extended Threat Intelligence, and they have been quite valuable for early threat detection, as the platform helps monitor dark web forums, marketplaces, and breached data sources where we can find leaked credentials and sensitive information. SOCRadar Extended Threat Intelligence allows us to take proactive remediation actions before they escalate into any incidents. I would rate this product an eight out of ten.
Senior Cyber Security Expert at a computer software company with 201-500 employees
Real User
Top 10
Feb 24, 2026
I am not using their AI tool. I do not know if they have any AI currently. I did not check it, but every company nowadays has some AI platform or AI integration because it is a new niche. I basically use what they had from before, such as their threat intelligence, their guides, their background research, and their monitoring from Telegram. I do not use anything specifically labeled as AI from them. If they already have it implemented in the core of their solution, then I am using it and did not even know about it. They might have it, but not that I am aware of. I am not using something that is per se AI from them or used before. I have used the unique dark web sources that SOCRadar Extended Threat Intelligence provides. I use the sources that they give me. Sometimes they provide even the Telegram chats and forums where they conduct their research. They are very transparent about this. We can go there and access the Onion links and everything. I use them, but not very often because when they do the work for me, I do not need to use them that much. However, for curiosity, I sometimes go in and check the sources. SOCRadar Extended Threat Intelligence offers Takedown services. I have never used them because I never needed the service, as we never had an exposure that would require a takedown service from them. I did use the information once or twice to do it myself. We used the information that we had an impersonating domain and, instead of using their services which again requires credits and is expensive, I did the work myself. I contacted the provider and told them that the impersonation was not authorized, and we handled it ourselves. I never used their service and do not know how good it is. The issue comes down to credits and cost. I have not used their Identical Phishing workflow for noise minimization capabilities. I have never used that tool because phishing is already integrated within Microsoft Exchange, and Microsoft already has pretty good threat intelligence with it, so we keep it within Microsoft. We mainly use Microsoft, or if we use Google, Google has their own services as well. Attack Surface Threat Assessment is a really good feature because I can use it to get leads on customers. When I get a customer and input it there as an MSSP, it gives me the attack surface of the customer and their exposure. Again, you need some credits to make a search and complete the process. Before, you needed to ask them personally to add a customer. I believe they changed that so you can go on the fly and add it yourself, but previously you needed to ask them, which was not comfortable. Otherwise, the product itself is good because it gives you a good overview of the company's exposure. It was really good for getting leads. If you have a possible customer lead and input that domain, it will give you more information about the exposure of that possible customer and get you ready to win a new customer, which for me is a very important point when it comes to cybersecurity in MSSPs. I had many consulting jobs with companies that wanted SOCRadar Extended Threat Intelligence and wanted more details on the operational side. One of the things I tell everyone is the ease of getting started with them because they are super fast, they are technical, and they help. When you pay such an amount of money, they will help you with everything. SOCRadar Extended Threat Intelligence does not require any maintenance on my end. Everything is being taken care of by them from their API. For example, if you have it on your CM tool, it is taken care of by them. Only if you want to add more customers, you can do it yourself, but otherwise, everything is in the background with them. It is super easy. I do not need to deal with anything. I have never had to do any type of maintenance from my side. Even if I have the free tool or the complete tool, I have never had to do any maintenance.
Learn what your peers think about SOCRadar Extended Threat Intelligence. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
SOCRadar Extended Threat Intelligence enables users to identify and mitigate cybersecurity risks through comprehensive threat visibility and real-time monitoring.
Organizations utilize SOCRadar Extended Threat Intelligence for early detection and proactive defense against potential cyber attacks. With its robust features, users gain enhanced security posture and informed strategic decision-making. Detailed analytics and actionable insights contribute to improved threat response and...
Governance and security is another important feature in cybersecurity. I have to ensure SOCRadar Extended Threat Intelligence is used correctly, and I think it should be implemented inside the security operations center and monitored twenty-four seven. By doing this, governance will facilitate a proper cybersecurity posture for all companies. I would say to any companies that value their brands and want to protect their external attack surface, it is a must to adopt a solution such as SOCRadar Extended Threat Intelligence, which will be very useful for protecting your brand and identifying all malicious IP addresses and URLs targeted towards your domain. Monitoring this platform twenty-four seven will be very beneficial. Anyone using this platform should also consider SOC adoption. I provided a review rating of eight for this product.
I expect clear and detailed responses to my inquiries based on the product. Since SOCRadar Extended Threat Intelligence is a SaaS platform, maintenance can primarily be handled by the vendor. We only need to fine-tune the alerts for our benefit by determining which alerts are necessary and which are not. The pricing for SOCRadar Extended Threat Intelligence is within our budget, and the features offered are more comprehensive compared to other solutions available at the same price point. Overall, I rate this solution at eight out of ten.
For brand protection, I had my partner, or more of a client who had someone publishing on the internet, especially on LinkedIn, about their vulnerabilities or their scan results about their attack surface vulnerabilities. I quickly got in touch with SOCRadar Extended Threat Intelligence so they could take down those posts because they directly impacted my client's image. The response from SOCRadar Extended Threat Intelligence was amazing. They supported me throughout this process and the post was quickly taken down, I think it was taken down in about a day, something between 24 to 48 hours. It was a very good experience. SOCRadar Extended Threat Intelligence has really impacted my view of the organization, especially what is being discussed on the Dark Web. Regarding the outcome, I feel I now have a better view of what is happening with the organization, the attack surface, supply chain vulnerabilities, and what is coming up with the supply chain. SOCRadar Extended Threat Intelligence has greatly improved the security posture regarding all of this. I feel more secure and more alerted about what is happening with the brand and company. For numbers, I do not have any numbers to give, but the most specific metrics I can discuss is the faster response time because I am alerted in real time and I have the information in real time. I can respond more effectively and with the support of the SOCRadar Extended Threat Intelligence team, I can take action very fast. I can really resolve the issue before it becomes a bigger problem, especially with the takedown, with leaked passwords, or with anything similar. That is the biggest metric and the biggest improvement regarding the implementation of SOCRadar's solution. SOCRadar Extended Threat Intelligence has an AI assistant that is a really simple assistant that explains attacks or things happening in the reports or in the alerts, which is great and really helpful. I think if anyone is interested in SOCRadar Extended Threat Intelligence, I think calling or booking a POC with them would really give the opportunity to check the solution, to get in touch with the SOCRadar Extended Threat Intelligence team, and see the value they provide. That would be enough for anyone to actively consider the solution. The solution is very mature. The customer support is really great. I think they will be better and better in the upcoming years and maybe they will be a leader in the industry, which I hope for them because the team is great.
We have utilized the dark web intelligence sources from SOCRadar Extended Threat Intelligence, and they have been quite valuable for early threat detection, as the platform helps monitor dark web forums, marketplaces, and breached data sources where we can find leaked credentials and sensitive information. SOCRadar Extended Threat Intelligence allows us to take proactive remediation actions before they escalate into any incidents. I would rate this product an eight out of ten.
I am not using their AI tool. I do not know if they have any AI currently. I did not check it, but every company nowadays has some AI platform or AI integration because it is a new niche. I basically use what they had from before, such as their threat intelligence, their guides, their background research, and their monitoring from Telegram. I do not use anything specifically labeled as AI from them. If they already have it implemented in the core of their solution, then I am using it and did not even know about it. They might have it, but not that I am aware of. I am not using something that is per se AI from them or used before. I have used the unique dark web sources that SOCRadar Extended Threat Intelligence provides. I use the sources that they give me. Sometimes they provide even the Telegram chats and forums where they conduct their research. They are very transparent about this. We can go there and access the Onion links and everything. I use them, but not very often because when they do the work for me, I do not need to use them that much. However, for curiosity, I sometimes go in and check the sources. SOCRadar Extended Threat Intelligence offers Takedown services. I have never used them because I never needed the service, as we never had an exposure that would require a takedown service from them. I did use the information once or twice to do it myself. We used the information that we had an impersonating domain and, instead of using their services which again requires credits and is expensive, I did the work myself. I contacted the provider and told them that the impersonation was not authorized, and we handled it ourselves. I never used their service and do not know how good it is. The issue comes down to credits and cost. I have not used their Identical Phishing workflow for noise minimization capabilities. I have never used that tool because phishing is already integrated within Microsoft Exchange, and Microsoft already has pretty good threat intelligence with it, so we keep it within Microsoft. We mainly use Microsoft, or if we use Google, Google has their own services as well. Attack Surface Threat Assessment is a really good feature because I can use it to get leads on customers. When I get a customer and input it there as an MSSP, it gives me the attack surface of the customer and their exposure. Again, you need some credits to make a search and complete the process. Before, you needed to ask them personally to add a customer. I believe they changed that so you can go on the fly and add it yourself, but previously you needed to ask them, which was not comfortable. Otherwise, the product itself is good because it gives you a good overview of the company's exposure. It was really good for getting leads. If you have a possible customer lead and input that domain, it will give you more information about the exposure of that possible customer and get you ready to win a new customer, which for me is a very important point when it comes to cybersecurity in MSSPs. I had many consulting jobs with companies that wanted SOCRadar Extended Threat Intelligence and wanted more details on the operational side. One of the things I tell everyone is the ease of getting started with them because they are super fast, they are technical, and they help. When you pay such an amount of money, they will help you with everything. SOCRadar Extended Threat Intelligence does not require any maintenance on my end. Everything is being taken care of by them from their API. For example, if you have it on your CM tool, it is taken care of by them. Only if you want to add more customers, you can do it yourself, but otherwise, everything is in the background with them. It is super easy. I do not need to deal with anything. I have never had to do any type of maintenance from my side. Even if I have the free tool or the complete tool, I have never had to do any maintenance.