Technical Sales Specialist at a comms service provider with 1,001-5,000 employees
Reseller
Top 20
Jun 30, 2026
I am working with Trend Micro Vision One, mostly MCC Vision One, for smaller customers. I see a lot of customers opting for known brands such as ESET and Kaspersky. On Trend Micro, Vision One is what we see being pushed a lot here. On Fortinet, we deal a lot with FortiEDR and their other products: FortiSIEM, FortiNAC, and FortiWAF. We are not yet on FortiCNP, as most of our native cloud customers opt to rely on the platform for vulnerability management and identification. Cloud specialists can advise more on that end, though I am more focused on generic security as opposed to cloud security. With Sophos, we do everything: XDR, MDR, and Sophos EDR. Regarding the threat hunting features, we do not consume the product ourselves; we resell it to customers. From feedback I have received, the threat hunting is very impactful and requires almost no intervention. If you set it up well, you can leave it to run itself with minimal oversight. The identity threat and detection response of the XDR is quite phenomenal.
SOC Analyst at a consultancy with 1,001-5,000 employees
Real User
Top 20
Jun 10, 2026
The main use for Secureworks Taegis XDR is to triage alerts from low to critical alerts and analyze and investigate different kinds of alerts from the platform. As a SOC analyst, Secureworks Taegis XDR is helpful to check every detection from the client's environment. It helps the SOC analyst to analyze the specific alert and provide more specific or comprehensive investigation or technical reports to clients. I investigated a case wherein there was an impossible travel of a user or an account while using Secureworks Taegis XDR. The user logged in from different countries, then another country for the second time of his login. Secureworks Taegis XDR helped me to check which countries the user had logged in from and provided more details such as the time of login, the IP address that the user used, and more. Secureworks Taegis XDR allows us to check or monitor every data collector we are managing and also the users or the endpoints that we are managing in that platform. We can verify if the endpoints or computers of the company have endpoint sensors installed in their endpoints so that we can ensure that their computers are in a managed asset.
I use Secureworks Taegis XDR within my organization primarily to secure our network infrastructure so that none can access our servers and our devices in the LAN portion.
Secureworks Taegis XDR offers cutting-edge extended detection and response capabilities to enhance cybersecurity efforts. It effectively integrates and analyzes comprehensive data to provide actionable insights for threat identification and mitigation.Secureworks Taegis XDR consolidates security data, thus enabling organizations to detect and respond to threats more efficiently. Its integrated approach allows for seamless correlation across data sources, enhancing the ability to identify...
I am working with Trend Micro Vision One, mostly MCC Vision One, for smaller customers. I see a lot of customers opting for known brands such as ESET and Kaspersky. On Trend Micro, Vision One is what we see being pushed a lot here. On Fortinet, we deal a lot with FortiEDR and their other products: FortiSIEM, FortiNAC, and FortiWAF. We are not yet on FortiCNP, as most of our native cloud customers opt to rely on the platform for vulnerability management and identification. Cloud specialists can advise more on that end, though I am more focused on generic security as opposed to cloud security. With Sophos, we do everything: XDR, MDR, and Sophos EDR. Regarding the threat hunting features, we do not consume the product ourselves; we resell it to customers. From feedback I have received, the threat hunting is very impactful and requires almost no intervention. If you set it up well, you can leave it to run itself with minimal oversight. The identity threat and detection response of the XDR is quite phenomenal.
The main use for Secureworks Taegis XDR is to triage alerts from low to critical alerts and analyze and investigate different kinds of alerts from the platform. As a SOC analyst, Secureworks Taegis XDR is helpful to check every detection from the client's environment. It helps the SOC analyst to analyze the specific alert and provide more specific or comprehensive investigation or technical reports to clients. I investigated a case wherein there was an impossible travel of a user or an account while using Secureworks Taegis XDR. The user logged in from different countries, then another country for the second time of his login. Secureworks Taegis XDR helped me to check which countries the user had logged in from and provided more details such as the time of login, the IP address that the user used, and more. Secureworks Taegis XDR allows us to check or monitor every data collector we are managing and also the users or the endpoints that we are managing in that platform. We can verify if the endpoints or computers of the company have endpoint sensors installed in their endpoints so that we can ensure that their computers are in a managed asset.
I use Secureworks Taegis XDR within my organization primarily to secure our network infrastructure so that none can access our servers and our devices in the LAN portion.
More from the perspective of SOC to ensure that every endpoint is taken care of from a cybersecurity perspective. It's a complete solution package.
We used the solution as an XDR platform but primarily as a secondary alerting system and log repository.