No more typing reviews! Try our Samantha, our new voice AI agent.

Huntress Managed EDR vs ThreatLocker Zero Trust Platform comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.0
Huntress Managed EDR delivers ROI through time savings, reduced security staffing needs, and enhanced security management efficiency.
Sentiment score
5.9
ThreatLocker Zero Trust Platform reduces security incidents, lowers costs, and increases efficiency with enhanced control and real-time protection.
We have to provide endpoint security as a core part of our service as an MSP and using Huntress Managed EDR has saved us approximately a thousand dollars a month over using other more expensive, less effective solutions.
CTO at Limetree Labs
My advice to others looking into using Huntress Managed EDR is that if they're looking for an easy-to-use and manage solution, Huntress Managed EDR is a good fit for a small to medium company.
Director, Information Technology at Middletown Medical
Huntress Managed EDR provides validated detections, detailed threat context, and recommendations from the SOC team, our engineers can focus on responding to legitimate threats rather than manually reviewing large numbers of low priority alerts.
Professional Services Engineer at Next7 IT
If something were to happen without ThreatLocker, the cost would be huge, and thus, having it is definitely worth it.
Tier 1 IT Engineer at a retailer with 11-50 employees
Based on what we use ThreatLocker Zero Trust Endpoint Protection Platform for with the same functionalities and packaging, it was around 13 or 14 hours.
Head Of Cyber Security at a outsourcing company with 201-500 employees
We have the MDR package as well, and just knowing someone is watching those endpoints at 3:00 a.m. is a lifesaver that you cannot put a dollar figure on.
System Administrator at Gwynedd Mercy University
 

Customer Service

Sentiment score
7.9
Huntress Managed EDR's customer service is praised for its responsiveness, knowledgeable support, and proactive 24/7 assistance, earning high ratings.
Sentiment score
8.0
ThreatLocker Zero Trust Platform support is praised for rapid, expert assistance and proactive, professional service, including the Cyber Heroes feature.
I felt it was important to raise awareness about this new technique where attackers use legitimate applications to gain remote access and control of computers.
Owner at Phenicie Business Management
They are thorough and ensure the problem is addressed without pushing responsibilities onto me unnecessarily.
Senior Systems Engineer at NetSmart, Inc.
For technical support, I would rate Huntress a ten out of ten, and in truth, they are better than that.
President at Cyber5
They have been very responsive, helpful, and knowledgeable.
Systems Security Analyst & Deputy Security Officer at a financial services firm with 201-500 employees
I would rate their customer support a ten out of ten.
Director, Managed Services at a consultancy with 11-50 employees
Their support is world-class.
Supervisor, Client Security at a consultancy with 11-50 employees
 

Scalability Issues

Sentiment score
7.9
Huntress Managed EDR is scalable, cost-effective, supports multiple OS, and simplifies multi-client management with a cloud-based architecture.
Sentiment score
7.8
ThreatLocker Zero Trust Platform scales efficiently for any size, integrating seamlessly with existing infrastructures and ensuring reliable performance.
For MSPs, the multi-tenant management capabilities are especially valuable because they allow engineers to support multiple clients from a single platform while maintaining clear separation between environments.
Professional Services Engineer at Next7 IT
I know other techs with thousands deployed, so scalability isn't an issue.
Business Owner at Royal IT
Scaling Huntress is simple; I can manage up to a thousand devices without issue.
Owner at Phenicie Business Management
I started off with just the servers, and within a month and a half, I set up the entire company with ThreatLocker.
Technical Engineer at Cloud 1 Solutions
It seems to primarily operate on the endpoints rather than at a central location pushing out policies.
Systems Security Analyst & Deputy Security Officer at a financial services firm with 201-500 employees
ThreatLocker Zero Trust Endpoint Protection Platform scales very smoothly with our growing needs.
CEO at Mostro
 

Stability Issues

Sentiment score
8.5
Huntress Managed EDR is praised for stability, reliability, low impact, minor compatibility issues, and swift resolution of occasional problems.
Sentiment score
8.0
ThreatLocker Zero Trust Platform is reliable, with minimal issues, quick support, and high satisfaction despite rare glitches.
About stability, we have not seen any lagging, crashing, downtime, or any sort of instability with Huntress Managed EDR.
Security Specialist at a healthcare company with 201-500 employees
From a day-to-day perspective, the platform has provided dependable threat detection, tamper alerting, and consistent SOC support.
Professional Services Engineer at Next7 IT
It is stable and reliable for day-to-day SOC operations.
Soc Analyst at a manufacturing company with 10,001+ employees
For five years, we have not had a problem.
Supervisor, Client Security at a consultancy with 11-50 employees
Once deployed, it downloads the policies locally, so even if the computer doesn't have internet, it doesn't matter.
Information Cybersecurity Technology Specialist at Freez.it
It has been very stable, reliable, and accessible.
COO at Panda Technology
 

Room For Improvement

Huntress Managed EDR needs better integrations, UI, customization, automated support, network monitoring, and cost-effective pricing.
The ThreatLocker Zero Trust Platform needs flexible training, automated policies, better integrations, enhanced UI, and improved mobile management.
A more transparent way for the support team at Huntress and our IT team to collaborate to make it faster and easier would be beneficial.
VCIO at a tech services company with 11-50 employees
Huntress Managed EDR indicated this is a normal behavior, but I would prefer to be alerted whenever there is any incident involving Windows Defender on any machines, regardless of the status of the incident.
Managing Director at KAN iT
Additional dashboard customization, more granular alert filtering options, and enhanced executive level reporting would help teams present security insights more effectively to their clients.
Professional Services Engineer at Next7 IT
Controlling the cloud environment, not just endpoints, is crucial.
COO at Panda Technology
ThreatLocker Zero Trust Endpoint Protection Platform could improve by being a little more hands-off, perhaps by having a team inside ThreatLocker that does all the vetting of patches; having one person hired by ThreatLocker to check out patches means that a million other industries using ThreatLocker Zero Trust Endpoint Protection Platform do not have to vet the same patch, ultimately saving time and money around the world.
Technical Support Engineer at CMIT Solutions of Central Orlando
This feedback would help us understand what is learned in real-time, especially during a one-hour learning mode setup, ensuring we remain aware of potentially unnecessary learned items.
Server Administrator at Clay County Sheriff's Office
 

Setup Cost

Huntress Managed EDR offers competitive, transparent pricing per endpoint, aligning with market standards for cost-effective managed detection and response.
ThreatLocker Zero Trust Platform offers competitive pricing with flexible tiers, direct quotes, and favorable features for enterprises.
The savings from utilizing the included Windows Defender offset the cost of Huntress Managed EDR, making it an affordable solution overall.
Managing Director at Fluent2 Ltd
It is not too expensive or too cheap. It is just right.
Owner at Antra Tech
It can get expensive for small to medium businesses if large license quantities are not purchased.
Senior Systems Engineer at NetSmart, Inc.
After conversations with other partners, it became clear we underpriced it initially, which caused most of our issues.
Director, Managed Services at a consultancy with 11-50 employees
We are moving towards the Unified solution, where they basically bundle everything together, providing us better stability with the ability to bring in new product offerings without having to go back to the customer and say, 'This is going to cost you.'
Supervisor, Client Security at a consultancy with 11-50 employees
Money is saved because it is not costly, and I would suggest it for other companies.
Helpdesk Engineer at Computer Network Infrastructure (CNI) Consultants
 

Valuable Features

Huntress Managed EDR offers 24/7 SOC, ease of use, and proactive threat management, enhancing security for SMBs cost-effectively.
ThreatLocker Zero Trust Platform enhances endpoint security with features like allowlisting, improving control, visibility, and operational efficiency.
What stands out most is their human element: when faced with an unknown threat, real people, not just automated processes, are investigating it, and they're people we trust.
CTO at Accent Consulting
They provide detailed remediation steps, explaining why an issue is a problem and what steps to take.
Business Owner at Royal IT
Previously, I could not modify it unless I had special Microsoft licensing, so it was beneficial to control Windows Defender through a central console to add policies and things like that.
Owner at Antra Tech
ThreatLocker Zero Trust Endpoint Protection Platform's ability to block access to unauthorized applications has been excellent.
Cyber Security Specialist at Bremmar Consulting
It protects our customers.
CTO at Zettabytes
The major benefit is fewer breaches overall, as nothing can be run without prior approval. This helps my company protect its data and secure itself effectively.
Tier 1 IT Engineer at a retailer with 11-50 employees
 

Categories and Ranking

Huntress Managed EDR
Average Rating
9.2
Reviews Sentiment
7.4
Number of Reviews
69
Ranking in other categories
Endpoint Detection and Response (EDR) (6th), Managed Detection and Response (MDR) (1st)
ThreatLocker Zero Trust Pla...
Average Rating
9.2
Reviews Sentiment
7.0
Number of Reviews
99
Ranking in other categories
Network Access Control (NAC) (3rd), Endpoint Protection Platform (EPP) (5th), Advanced Threat Protection (ATP) (5th), Application Control (1st), ZTNA as a Service (5th), ZTNA (6th), Ransomware Protection (1st)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Huntress Managed EDR is designed for Managed Detection and Response (MDR) and holds a mindshare of 4.1%, down 9.6% compared to last year.
ThreatLocker Zero Trust Platform, on the other hand, focuses on Endpoint Protection Platform (EPP), holds 1.3% mindshare, up 0.9% since last year.
Managed Detection and Response (MDR) Mindshare Distribution
ProductMindshare (%)
Huntress Managed EDR4.1%
SentinelOne Wayfinder Threat Detection and Response6.3%
CrowdStrike Falcon Complete MDR4.4%
Other85.2%
Managed Detection and Response (MDR)
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
ThreatLocker Zero Trust Platform1.3%
Microsoft Defender for Endpoint6.5%
CrowdStrike Falcon5.6%
Other86.6%
Endpoint Protection Platform (EPP)
 

Featured Reviews

YashwantShinde - PeerSpot reviewer
Soc Analyst at a manufacturing company with 10,001+ employees
Managed detection has transformed investigations and now speeds up containment and response
The best features Huntress Managed EDR offers include 24/7 monitoring, process insight that we get while investigating any suspicious process or command line activity, and the child-parent process relationship. The containment actions allow us to take host isolation and assisted or automated remediation, which speeds up the removal of malicious files or persistence mechanisms and helps us identify attempts to survive the reboot, assisting in detecting persistent detections in the device. Most of the time, we rely on 24/7 SOC monitoring and investigation support. In my day-to-day activities, it helps me to continuously review the endpoint activity and validate suspicious detections, so I don't have to manually investigate every alert. This gives me more time to focus on genuine alerts or incidents and threat hunting and deeper investigations instead of wasting time on false positive alerts. Host isolation or remediation is very helpful because it helps us contain the confirmed threat quickly and reduce the risk of lateral movement. Huntress Managed EDR has a positive impact mainly through faster threat detection and reduced manual investigation effort. The 24/7 SOC gives us additional monitoring and validation, while the endpoint telemetry provides useful context for investigations. It also helps us contain and remediate threats faster, particularly when endpoint isolation or automated remediation is needed. Overall, it has improved our security response efficiency without requiring us to build a dedicated 24/7 SOC monitoring capability internally. Regarding outcomes, we have seen a measurable improvement in response time and analyst workload, with about 20 to 30% less manual effort for endpoint alert investigation response. For context, Huntress customer case studies report response times dropping from hours to 5 to 10 minutes in some environments. Huntress Managed EDR is quite easy to use, especially after the initial deployment. The agent is straightforward to deploy and handles much of the monitoring, detection, and response through the managed SOC. There is lesser day-to-day configuration for us. From an investigation perspective, the dashboard and endpoint telemetry make it fairly easy to review process activities, detection, isolation, and remediation. Overall, after using it for about a year, the learning curve is low and it is much less operationally demanding than managing a traditional EDR ourselves. From my experience, it has significantly reduced the alert triage workload. Instead of reviewing every endpoint alert, Huntress SOC continuously monitors, investigates, and filters out benign alerts, escalating the confirmed alerts with context. We do use the automation for remediation of low-severity threats. It has been particularly useful for things like PUPs and other minor malware artifacts because Huntress SOC validates the activity and can remediate it without waiting for our manual approval. From our operations perspective, it has reduced repetitive remediation work and allows us to focus on higher priority incidents.
Santo Joy - PeerSpot reviewer
Head Of Cyber Security at a outsourcing company with 201-500 employees
Security controls have been strengthened with granular application, ringfencing, and access policies
The features of ThreatLocker Zero Trust Endpoint Protection Platform that I like the most are the Ringfencing, elevation control, storage control, and application whitelisting functionality. For examples of how these features benefit my company, we were looking for a solution across various vendors to actually implement application whitelisting controls. ThreatLocker's agent, which is very lightweight and does not use much CPU or RAM, helped us achieve that solution. Ringfencing was an add-on that ticked off a lot of Australian framework security controls, which is the reason we chose it. My impression of the allowlisting feature in terms of managing which software, scripts, and libraries run on my devices is that ThreatLocker's community page has a lot of information around this, which is very helpful. Not only that, the Cyber Hero support that ThreatLocker provides gives us insights and best practices, helping us achieve that solution and guiding us to the right platform. The impact of Ringfencing on controlling the behavior of approved applications has been a big winner for us because it is something that many other platforms do not provide as a functionality. Having that allowed us to identify what applications talk to each other, which is something that many other platforms do not do. The network control feature impacts my ability to manage network traffic across my endpoints and servers. We have not used this widely across all our partners, but wherever required, we use it. It has been an easy solution for those customers to get that control implemented. The elevation feature's role in facilitating just-in-time administrative access for approved applications shows that elevation control helps in many use cases involving remote control platforms, door usage, and security system platforms that require local admins. There are many solutions that provide this functionality, but the licensing cost seems to be expensive, and it also adds another solution into the mix. Rather than doing that, we try to use ThreatLocker Zero Trust Endpoint Protection Platform to achieve that control. Regarding the storage control feature, I have used it. The primary function is USB blocking, which is very widely adopted, and also just locking down and allowing certain users to access certain file locations helps us there. When it comes to enforcing policy-driven access over various storage devices, it depends on the business risk adapted by the companies that we support, but generally the use case is USB and external storage devices where companies know that is a risk, but they do not have appropriate solutions. There are EDR platforms that claim to do this, but ThreatLocker Zero Trust Endpoint Protection Platform does it at an advanced level. My assessment of the efficiency of the real-time threat intelligence and category controls employed by Web Control in blocking malicious and non-compliant sites leads me to think that Web Control is another functionality within ThreatLocker Zero Trust Endpoint Protection Platform that is an add-on on top of the current set. That is another solution that we use based on what is required for the company, but again, that is not widely adapted yet for our partners.
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
916,117 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Manufacturing Company
10%
Outsourcing Company
8%
Comms Service Provider
7%
Manufacturing Company
12%
Financial Services Firm
11%
Computer Software Company
10%
Outsourcing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business67
Midsize Enterprise6
Large Enterprise3
By reviewers
Company SizeCount
Small Business69
Midsize Enterprise16
Large Enterprise20
 

Questions from the Community

What needs improvement with Huntress?
I would like to see more customization and deeper integration with SIEM and other security tools for Huntress Managed EDR, as better reporting and more detailed endpoint investigation data would al...
What is your primary use case for Huntress?
My main use case for Huntress Managed EDR is endpoint monitoring and threat detection, which I use to investigate suspicious processes, malware activity, endpoint alerts, and potential indicators o...
What advice do you have for others considering Huntress?
I would rate Huntress Managed EDR a nine out of 10 because it gives strong endpoint visibility, reliable threat detection, and effective remediation, while the managed SOC reduces the workload for ...
What is your experience regarding pricing and costs for ThreatLocker Allowlisting?
Regarding my experience with pricing, setup cost, and licensing, I remember reaching out to them and it was about over a month. I reached out to them directly and also a couple third-party service ...
What needs improvement with ThreatLocker Allowlisting?
I would like to see ThreatLocker Zero Trust Platform improve by developing some sort of software deployment plan where we can use it for pushing out and installing software onto the computers throu...
What is your primary use case for ThreatLocker Allowlisting?
My main use case for ThreatLocker Zero Trust Platform is allow listing software, as well as Elevation Control and Storage Control. For a specific example of how I use allow listing or Elevation Con...
 

Also Known As

No data available
Protect, Allowlisting, Network Control, Ringfencing
 

Overview

Find out what your peers are saying about Huntress, CrowdStrike, SentinelOne and others in Managed Detection and Response (MDR). Updated: September 2026.
916,117 professionals have used our research since 2012.