Try our new research platform with insights from 80,000+ expert users
Arista NDR Logo

Arista NDR Reviews

Vendor: Arista
4.5 out of 5
198 followers
Start review

What is Arista NDR?

Featured Arista NDR reviews

Arista NDR mindshare

Product category:
As of March 2025, the mindshare of Arista NDR in the Network Detection and Response (NDR) category stands at 4.3%, down from 5.3% compared to the previous year, according to calculations based on PeerSpot user engagement data.
Network Detection and Response (NDR)

PeerAnalyst reports based on Arista NDR reviews

TypeTitleDate
CategoryNetwork Detection and Response (NDR)Mar 27, 2025Download
ProductReviews, tips, and advice from real usersMar 27, 2025Download
ComparisonArista NDR vs DarktraceMar 27, 2025Download
ComparisonArista NDR vs Vectra AIMar 27, 2025Download
ComparisonArista NDR vs Trend Vision OneMar 27, 2025Download
Suggested products
TitleRatingMindshareRecommending
Darktrace4.125.3%94%77 interviewsAdd to research
Vectra AI4.316.3%97%44 interviewsAdd to research
 
 
Key learnings from peers

Valuable Features

Room for Improvement

ROI

Pricing

Popular Use Cases

Service and Support

Deployment

Scalability

Stability

Review data by company size

By reviewers
By visitors reading reviews

Top industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
11%
Government
9%
Educational Organization
7%
Real Estate/Law Firm
6%
Manufacturing Company
6%
Comms Service Provider
5%
Retailer
5%
Energy/Utilities Company
4%
Healthcare Company
4%
University
4%
Insurance Company
3%
Legal Firm
3%
Non Profit
2%
Transportation Company
2%
Construction Company
2%
Media Company
2%
Hospitality Company
2%
Performing Arts
1%
Marketing Services Firm
1%
Outsourcing Company
1%
Logistics Company
1%
Wholesaler/Distributor
1%
Recreational Facilities/Services Company
1%
Renewables & Environment Company
1%

Arista NDR customers

Related questions

 

Arista NDR reviews

Sort by:
PeerSpot user
Chief Technology Officer at a financial services firm with 11-50 employees
Verified user of Arista NDR
Dec 9, 2021
Product version discussed: 4.11
it's much easier to create your own queries and hunt for threats

Pros

"When I create a workbench query in Awake to do threat hunting, it's much easier to query. You get a dictionary popup immediately when you try to type a new query. It says, "You want to search for a device?" Then you type in "D-E," and it gives you a list of commands, like device, data set behavior, etc. That gives you the ability to build your own query. "

Cons

"The one thing that the Awake platform lacks is the ability to automate the ingestion of IOCs rather than having to import CSV files or JSON files manually. "
DS
Senior Systems Engineer at WealthCounsel, LLC
Verified user of Arista NDR
Oct 14, 2021
Increases our security abilities by covering more attack vectors through managed services

Pros

"The interface itself is clean and easy to use, yet customizable. I like that I can create my own dashboards fairly easily so that I can see what is important to me. Also, the query language is pretty easy to use. I haven't needed to use it a ton, but as I need to go in and do different queries based on their requests, it has been fairly simple to use."

Cons

"One thing I would like to see is a little bit more education or experience on AWS cloud for their managed services team. We've explained how we have the information set up, that the traffic coming in goes to the AWS load balancer and then gets sent on to our internal servers... but when I get notices they always tell me this traffic is coming from the IPs belonging to the load balancers, not the source IPs. So a little bit more education for their team about how AWS manages the traffic might help out. "
Find out what your peers are saying about Arista NDR. Updated March 2025
842,466 professionals have used our research since 2012.
DS
Senior Analyst Security and Compliance at a insurance company with 5,001-10,000 employees
Verified user of Arista NDR
Jul 23, 2020
Reduced the time my team focused on incident response and provided the visibility we were looking for

Pros

"We appreciate the value of the AML (structured query language). We receive security intel feeds for a specific type of malware or ransomware. AML queries looking for the activity is applied in almost real-time. Ultimately, this determines if the activity was not observed on the network."

Cons

"Awake Security needs to move to a 24/7 support model in the MNDR space. Once they do that, it will make them even better."
JC
Chief Security Officer with 51-200 employees
Verified user of Arista NDR
May 14, 2019
Gives us the capabilities of a Tier 4 analyst without hiring one; at a glance we can see what's happening in our environment

Pros

"The most valuable feature is the ability to see suspicious activity for devices inside my network. It helps me to quickly identify that activity and do analysis to see if it's expected or I need to mitigate that activity quickly."

Cons

"There's room for improvement with some of the definitions, because I don't have time and I'm not a Tier 4 analyst. I believe that is something they're working towards."
PeerSpot user
Head of Information Security at a pharma/biotech company with 1,001-5,000 employees
Verified user of Arista NDR
Mar 9, 2021
Product version discussed: 3.4.8
Gives us network layer visibility into things that may not be covered by other monitoring tools, such as shadow IT

Pros

"The query language that they have is quite valuable, especially because the sensor itself is storing some network activity and we're able to query that. That has been useful in a pinch because we don't necessarily use it just for threat hunting, but we also use it for debugging network issues. We can use it to ask questions and get answers about our network. For example: Which users and devices are using the VPN for RDP access? We can write a query pretty quickly and get an answer for that."

Cons

"One concern I do have with Awake is that, ideally, it should be able identify high-risk users and devices and entities. However, we don't have confidence in their entity resolution, and we've provided this feedback to Awake. My understanding is that this is where some of the AI/ML is, and it hasn't been reliable in correctly identifying which device an activity is associated with. We have also encountered issues where it has merged two devices into one entity profile when they shouldn't be merged. The entity resolution is the weakest point of Awake so far."
EE
Chief Information Security Officer at Dolby Laboratories
Verified user of Arista NDR
Jul 26, 2020
Enables us to monitor lateral movement of traffic across sensitive networks

Pros

"The security knowledge graph has been very helpful in the sense that whenever you try a new security solution, especially one that's in the detection and response market, you're always worried about getting a lot of false positives or getting too many alerts and not being able to pick out the good from the bad or things that are actual security incidents versus normal day to day operations. We've been pleasantly surprised that Awake does a really good job of only alerting about things that we actually want to look into and understand. They do a good job of understanding normal operations out-of-the-box."

Cons

"They've been focused on really developing their data science, their ability to detect, but over time, they need to be able to tie into other systems because other systems might detect something that they don't."
KL
Director of Information Security at a computer software company with 201-500 employees
Verified user of Arista NDR
Feb 3, 2020
Product version discussed: 3.2.0
The time from finding threats to remediation is almost instantaneous

Pros

"This solution’s encrypted traffic analysis helps us stay in compliance with government regulations. It is all about understanding data exfiltration, what is ingressing and egressing in our network. One common attack vector is exfiltrating data using encryption. My capabilities to see potential data exfiltration over encrypted traffic is second to none now."

Cons

"I would like to see the capability to import what's known as STIX/TAXII in an IOC format. It currently doesn't offer this."
PeerSpot user
CISO at a insurance company with 1,001-5,000 employees
Verified user of Arista NDR
May 6, 2020
Data is displayed in a very easy to read and understandable manner

Pros

"This solution help us monitor devices used on our network by insiders, contractors, partners, or suppliers. Its correlation and identification of specific endpoints is very good, especially since we have a large, virtualized environment. It discerns this fairly well. Some of the issues that we have had with other tools is we sometimes are not able to tell the difference between users on some of those virtualized instances."

Cons

"Be prepared to update your SOPs to have your analysts work in another tool separately. There are some limitations in the integrations right now. One of the things that I want from a security standpoint is integration with multiple tools so I don't need to have my analysts logging into each individual tool."