No more typing reviews! Try our Samantha, our new voice AI agent.

BigFix vs OpenText EnCase eDiscovery comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
110
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (6th), Extended Detection and Response (XDR) (5th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
BigFix
Average Rating
8.6
Reviews Sentiment
6.3
Number of Reviews
99
Ranking in other categories
Configuration Management (9th), Endpoint Protection Platform (EPP) (29th), Patch Management (8th), Unified Endpoint Management (UEM) (9th)
OpenText EnCase eDiscovery
Average Rating
7.8
Reviews Sentiment
7.7
Number of Reviews
8
Ranking in other categories
eDiscovery (9th)
 

Mindshare comparison

Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
BigFix1.6%
Microsoft Defender for Endpoint7.0%
CrowdStrike Falcon6.2%
Other85.2%
Endpoint Protection Platform (EPP)
eDiscovery Mindshare Distribution
ProductMindshare (%)
OpenText EnCase eDiscovery3.7%
Microsoft Purview eDiscovery5.9%
kCura Relativity5.8%
Other84.6%
eDiscovery
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
AM
RPA Developer at Hexaware Technologies Limited
Successfully manage endpoint security and compliance while facing integration challenges
I have not come across any difficulties. I integrated it with ILMT (IBM License Metric Tool). It lets us identify all software being used in my organization with BigFix. It provides input of all types of software being used, including details and information about hardware specifications. I am more involved in software licensing and procurement, so I utilize this tool for procuring more licenses if needed for our company. After integration, we get different dashboards showcasing our IBM infrastructure, highlighting various issues in our environment that we can mitigate. I recommend BigFix to others. I rate BigFix a seven out of ten.
Alejandro Stromer - PeerSpot reviewer
Director Consulting SAP OpenText en Entelgy at DCL Consultores EIM SL
A stable and scalable hybrid solution with easy setup
The solution is scalable. It has three levels. You have the presentation area that can be escalated to the balance sheet. You have the back-end area that can be escalated using higher viability to configure more application servers. Also, the area of storage can be increased. We usually cater to enterprise solutions but have small- and medium-sized customers. It starts with 25 users and goes up to 100s and 1000s.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The management capabilities, allow an IT organization to get quite a good picture of attempted cyber attacks."
"The policy configuration is great, the granularity of policies that are available is very helpful, it is straightforward to set up, and it has pretty much everything we need and works well within the Palo Alto ecosystem."
"Cortex is the best tool for endpoint detection, with playbooks that automate and gather endpoint logs, block malicious processes, and update incident tickets, showcasing end-to-end processes with automation in investigation and reducing the analysis workflow."
"It blocks malicious files, prevents attacks, and doesn't require many updates because it is a very light application."
"The multi-layered approach to the product gives you confidence that it will stop exploits, ransomware, worms, or viruses from compromising endpoints, essentially providing peace of mind."
"After installing this solution, it identified, blocked, and provided the complete attack chain, which was very helpful."
"They have a new GUI which is just fantastic."
"Monitoring is most valuable."
"Ability to run custom reports and custom relevance."
"BigFix's patch management automation feature is impressive."
"All the vendor patches are synchronized automatically, which is something you don't find in other tools."
"If you utilize the tool to the maximum capacity available to you, your ROI is significantly five to seven-fold over cost."
"I like the inventory and life cycle management feature."
"DOWNLOADING-PATCHES; It has also helped to reduce network traffic when it comes to downloading patches. By only having to download the patch once to the central location and then utilizing the relay structure to then download the patch to a specific site and then everything gathering at local, it greatly reduces the bandwidth of multiple endpoints."
"It has improved reliability upon delivery of software and has also helped reduce software expenses."
"Being able to intelligently create reports, gather data, export CSVs and give that to the leadership of some of the client groups that my team supports has been a benefit to my organization."
"Data Recovery: Its ability to repair damaged partitions and uncover hidden partitions from within the tool, and allow further analysis."
"The solution is very stable."
"I like the processing feature on the product because it does everything at once, i.e, indexing, recovery, keyword searches, etc."
"The solution has been quite good, and, overall, the features we need are available to us."
"It speeds up the process, so I can meet my deadlines."
"The most important feature we've found is the Enscripts. That is one powerful feature that I, personally, love to use."
"The most important feature we've found is the Enscripts, as it allows me to customize the scripts and deploy them as and how I need them, for example to segregate and index files efficiently."
"I like the processing feature on the product because it does everything at once, i.e, indexing, recovery, keyword searches, etc."
 

Cons

"Being able to filter the events to see those that are related to the actual alert would save time spent by the engineer."
"There is a severe gap in functionality between Windows, Linux, and Mac versions. For example all folder restriction settings are Windows only. Traps 5.0+ does not have SAML / LDAP integration."
"The main issue I could point out is the offline agents and the way that it is missing."
"The price could be a little lower."
"I have run into some detection issues with Cortex XDR. It needs to be better at detection of internal attacks."
"There are some false positives."
"The deployment is pretty hard."
"The installation should be easier and the Palo Alto pre-sales and sales teams should have more information on the product because they don't know what they are selling."
"The stability is generally pretty good. The one thing that we came across is the battle between load on endpoints and load on our servers and relays versus how quickly, effectively and reliably actions can be taken. I'd like to not have to take an action on a system while I'm working with someone and then have to say whether something will happen between five seconds or thirty minutes from that point."
"Dynamic messaging needs improvement because one of the things that we deal with a lot is the messaging when pushing releases out."
"The self-service application seems to need some work to replace the client UI."
"I would like the dashboard to be improved to show the problematic machines and good machines."
"The technical support is usually pretty good. However, I had a ticket that stayed open for a couple of weeks which I didn't get a response to, and when we got the response it wasn't really good."
"I would like to see more emphasis on using the web console, to have the same power as the full fat client console that they do they now. It's a lighter way to log in and it would be faster for our operators to do their work. The console tends to take a long time for a large number of clients."
"I would like to see much better web reporting because as it is now, it's convoluted, basic, it's not modern, and there are limitations to it."
"Sometimes there can be a delay reporting back to the server for a variety of reasons, such as users turning their computer off when they go home."
"I would like to see a capability to ingest and absorb more data. That would be really good. It currently is lacking this function."
"In the past, incident response time for tech support was slow."
"The reporting is a bit unreliable. It needs to be better."
"I would like to see a capability to ingest and absorb more data. That would be really good. It currently is lacking this function."
"This is not the program I would suggest for a newbie using to learn. It is just too expensive for the full experience, and the student versions, while very good, are just for that, students."
"​Sometimes the application can take more time to complete the image processing or fail at the end of the process.​"
"Ease of use and learning curve need improvement."
"We have come across problems with the end-case. We could not find an email discovery type of module and there was not flexibility with the email."
 

Pricing and Cost Advice

"The cost of Cortex XDR by Palo Alto Networks is $55 to $90 USD per endpoint per month."
"Cortex XDR’s pricing is very reasonable."
"The price is on the higher side, but it's okay."
"It has a higher cost than other solutions, like CrowdStrike or Microsoft’s EDR tools, but it reduces the cost of our operations because it’s a new generation antivirus tool."
"Licensing for Palo Alto Networks Cortex XDR can be costly, especially when it comes to a hundred users. A license is required for each user, and the subscription must be renewed on a yearly basis."
"Compared to CrowdStrike, Cortex XDR is an expensive solution."
"It's the most expensive solution, but features-wise, it's quite strong. It's very good for protection, so the results are very good in the case of protection. I would rate it a two out of ten in terms of pricing."
"It's way too expensive, but security is expensive. You pay for your licensing, and then you pay for someone to monitor the stuff."
"You get what we call the Platform Edition, which you get for free. The patch service is maybe $0.50 per workstation per month. Then there's the basic server cost, which is about $1.50 per server per month. You also get into Lifecycle which does power management, OSD remote control, and those types of things, and that might be about 10 times the price - which works out to about $13 per server and, maybe $5 per workstation per month."
"The tool's price continues to go up. The cost per endpoint can vary, ranging from approximately 30 to 80 dollars per year. Compared to other products, pricing is in the middle. You need to buy an additional database license, but most users already have it."
"So, the pricing is slightly more expensive than the others. I have to keep buying licenses every time I add a new device."
"It might be about $23 a client."
"Compliance, inventory, and licensing are really pricey. They should lower the price. It discourages users from getting onboard."
"The price is very fair."
"There's not much big cost. We only have to pay the agents' cost for the server, and for the systems."
"The price of the solution is high. There are not any additional fees from the standard license."
"​The product is affordable and user-friendly.​"
"EnCase is an affordable solution."
"We have a license. And, we found the cost high. We contacted them and talked to them about the ratio of the US dollar versus the Indian rupee and then we came to a solution."
"We have a license. And, we found the cost high. We contacted them and talked to them about the ratio of the US dollar versus the Indian rupee and then we came to a solution."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
892,868 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Construction Company
12%
Comms Service Provider
8%
Manufacturing Company
8%
Financial Services Firm
13%
Manufacturing Company
9%
Government
8%
Computer Software Company
6%
Performing Arts
12%
Financial Services Firm
8%
Government
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business45
Midsize Enterprise21
Large Enterprise48
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise12
Large Enterprise67
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise3
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for BigFix?
The pricing is pretty good and now follows a subscription model similar to other major software solutions, making it ...
What needs improvement with BigFix?
I have concerns about BigFix's pricing, which I find to be slightly on the higher side. While it may not be the most ...
What is your primary use case for BigFix?
I have been working at Tech Data for the last 12 plus years.
Ask a question
Earn 20 points
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Tivoli Endpoint Manager
EnCase eDiscovery
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
US Foods, Penn State, St Vincent's Health US Foods, Sabadell Bank, SunTrust, Australia Sydney, Stemac, Capgemini, WNS Global Services, Jebsen & Jessen, CenterBeam, Strauss, Christian Hospital Centre, Brit Insurance, Career Education Corporation
Ontario Ministry of Government, Aerospace Company, Chesterfield Police Department
Find out what your peers are saying about BigFix vs. OpenText EnCase eDiscovery and other solutions. Updated: January 2020.
892,868 professionals have used our research since 2012.