Try our new research platform with insights from 80,000+ expert users

Intercept X Endpoint vs Secureworks Taegis Managed XDR / MDR comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Binary Defense MDR
Sponsored
Ranking in Managed Detection and Response (MDR)
7th
Average Rating
9.2
Number of Reviews
15
Ranking in other categories
No ranking in other categories
Intercept X Endpoint
Ranking in Managed Detection and Response (MDR)
9th
Average Rating
8.4
Number of Reviews
102
Ranking in other categories
Endpoint Protection Platform (EPP) (7th), Endpoint Detection and Response (EDR) (5th), ZTNA (9th), Extended Detection and Response (XDR) (11th), Ransomware Protection (3rd)
Secureworks Taegis Managed ...
Ranking in Managed Detection and Response (MDR)
8th
Average Rating
7.8
Number of Reviews
13
Ranking in other categories
Managed Security Services (1st)
 

Mindshare comparison

As of September 2024, in the Managed Detection and Response (MDR) category, the mindshare of Binary Defense MDR is 0.5%, up from 0.4% compared to the previous year. The mindshare of Intercept X Endpoint is 0.4%, up from 0.1% compared to the previous year. The mindshare of Secureworks Taegis Managed XDR / MDR is 5.9%, down from 7.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR)
 

Featured Reviews

JO
May 16, 2023
Our security alerts have been reduced significantly due to the higher level of analysis we now receive
The biggest aspect for us is that they are able to conform to our environment and utilize our tools. That way, we still maintain ownership of all the data and access to the applications, and we never lose control of the ability to run the solution ourselves if we need to. They're also very flexible in terms of what they're willing to bring to the table as well as having their own solutions that they provide if you don't have anything that you're using yourself. In terms of threat intelligence, as we make recommendations and suggestions to them for modifications to the reports so that they work better in our environment, they're working on putting them into place. And they're giving us feedback on what they can and can't do, meaning they're being very transparent. Binary Defense has also been great, so far, with integrating all the different things that we're trying to put together. They're also even helping guide us regarding some other tools that we're looking to implement. And those tools will have additional integrations into our main SIEM platform that we're using. They definitely have the knowledge and the insight to accomplish an open XDR strategy for securing infrastructure. With some of their own agents and tools that they are able to deploy into the environment, they're able to determine what's happening and put into effect the kill chain at the earliest possible point to help protect the overall network.
Saad Qaiser - PeerSpot reviewer
Mar 5, 2024
Provides web protection and filtering and application and peripheral control
We've been selling Intercept X Endpoint for eight years now. It's best suited for customers already using Sophos Firewall or considering one. Deploying both solutions offers synchronized security, where the firewall and endpoint communicate to enhance security posture. If an endpoint is attacked…
AH
Sep 8, 2023
Offers robust real-time monitoring capabilities but issues with stability of the solution
The deployment could definitely be improved. We still have some of the RedCloak agents. They don't have a remote-controlled uninstall. You have to manually connect to every machine to remove it. Taegis, that's not an issue with Taegis. Taegis actually does work that way. You can remove it. We push it out from Intune. But the RedCloak has tied it even after supposedly running the uninstall; it's still there. In future releases, if Taegis could come with bundled AV. It would be a great feature, which was actually one of the reasons why we moved to CrowdStrike because of the bundled solution.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The case interface is Binary Defense MDR's most valuable feature."
"The most valuable features are the SIEM and the ticketing function; the latter is very smooth and easy to read and understand. We don't have any issues looking at the ticketing information when we're trying to identify what's going on."
"The most valuable feature is reviewing tickets and the notes added by technicians."
"With Binary Defense, we don't just get an alert, but also a detailed rundown of why they're alerting us on it. They tell us what was executed, or the username, script, or IP. That way, we're not wasting time investigating."
"The most valuable part of Binary Defense is its team of cybersecurity analysts. Their analysts filter out the noise and only forward the critical threats that require a response instead of false positives."
"Binary Defense's most valuable feature is the 24/7 monitoring and threat hunting. Their team checks the latest breaches and how they're done."
"Among the valuable features are the agent, continuous reporting, and dashboard. It has all the features we need and we haven't had to customize it, other than turning on certain features that we wanted."
"Binary Defense is comprehensive. We see most of the questionable activity. Once you see things a couple of times and are familiar with the processes, you know what those are. The level of activity is definitely favorable."
"It is a very scalable solution."
"The updates and a lot of the day-to-day fiddling that you would have to do with it, can all be done from the cloud so it's easy to manage, and very easy to administer."
"It does its job — it protects us from viruses. We don't really interact with it very much."
"Synchronization with the firewall is most valuable."
"The threat analysis center is nice."
"The most valuable feature of the solution is that it is less hash-based than competitors."
"I am impressed with the tool's common dashboard feature. The solution is also easy to deploy and manage. Reporting is also easy with the software."
"The most valuable features of Sophos Intercept X are the minimal configuration needed for the end user and the central view of all the endpoints. There are plenty of tools to control and manage the endpoints. Additionally, there is the capability of connecting the endpoint to the CLI."
"We don't have a full SOC, so it's helpful to have them sifting through our alerts and only bringing actionable items to us."
"The most valuable feature is the fast alerting and response time."
"It provides more visibility and more control over endpoints. It reduces the noise. It clears things and only shows things that are really important. It only shows those things that need to be looked at or need to be investigated further. Other similar solutions give you a lot of alerts and other things, but Secureworks gives you a defined or less noisy view so that you can work or focus on things that are important in terms of investigation, response, and remediation."
"The most valuable features are IDS and IPS."
"The pricing is flexible."
"The initial setup was very straight forward."
"Securworks' threat intel seems pretty decent, and they integrate with several solutions we have, such as Azure AD, so all our Microsoft 365 stuff is covered."
"The most valuable feature is the support. The support chat. It's always connecting to people. And you open the chat, and it's not about that automated response. It's actually a human being that responds to you."
 

Cons

"We should be able to isolate devices faster. They should shorten the time between clicking on a device to contain it and carrying out the action. That would be a welcome improvement."
"I would like to get more reports from Binary Defense about what they're blocking."
"I would like to see more frequent check-ins with our security status."
"If I were shopping for an MDR solution today, I would not only look for a company that has the ability to alert, detect, and remediate, but also the ability to integrate vulnerability management. That's a big thing that they're lacking today."
"I don't find any downside to them, but if I have to put one, it would be consistent manpower or staffing. The only area where the solution can be improved is going to be with people. As they grow, they are struggling with the same thing that every other company is, which is getting talent and getting that talent to stay, but they've just revised their tiering system to go from a flat analyst and manager to a three-tier solution where it goes through two or three before it gets elevated. That seems to have worked out well, so if one level misses it, the next one picks it up, and it works out fine."
"We found a couple of bugs in the user interface."
"It's hard to think of anything that they need to improve on, but just to point out something, I would like to see them provide advanced XDR."
"It's sometimes difficult to know when to engage Binary Defense or TrustedSec, their sister company. TrustedSec is more focused on offensive security, as opposed to the defensive security that the MDR solution provides. It would be awesome if there were a better bridge between that relationship for when we need to get more proactive services or when we need to do a penetration test."
"This product does not handle USB drives well."
"The performance offered by the product needs improvement."
"We would like to deploy across a variety of machines simultaneously through the network."
"Intercept X needs more reporting and device management features, so I can get messages from PCs that let me know if I need to do something with them."
"It should offer better security updates."
"The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays."
"We had some initial problems with our deployment, and they were more around uninstalling Sophos Basic and installing Sophos Intercept X. We had some challenges with some of the uninstallation scripts. They can improve the deployment of Sophos Intercept X when there is already an existing Sophos version. They can also provide more information in the form of best practices and lessons learned from previous findings. A knowledge base with this type of information would be helpful."
"I recommend that Intercept X Endpoint should include a patch assessment feature. Various vendors offer virtual patching solutions, which could be a game-changer, especially for the financial sector where frequent service restarts are challenging. These solutions allow patching servers without the need for restarts. Incorporating these features into Intercept X Endpoint would enhance its effectiveness in securing endpoints and servers."
"The integration would look better with other products, with other EDRs, with other firewalls, with other older versions of firewalls, and the versions of software and hardware."
"In terms of ROI, I'd be surprised if there is any investment return on the SIM."
"Secureworks Taegis ManagedXDR's query language and stability need improvement."
"It would be nice if the solution were a little more affordable."
"The integration with the Carbon Black sensor could be better. ManagedXDR doesn't seem to know how to extract the forensic data from an endpoint that was quarantined by Carbon Black."
"In the next release of this solution, I would like to see file integrity monitoring."
"Tamper-proofing or tamper protection is still pending in Secureworks. Tamper protection will make it more secure. If I'm an admin of a device, I can uninstall an agent without the knowledge of the security or Secureworks admin. If someone gets hold of one endpoint with admin credentials, he can remove anything, and an organization will lose visibility. They need to work on providing more visibility across endpoints. A couple of times it has happened that the cloak agent is there, but it did not get activated, or there were some issues. The machine was restarted, but the cloak agent didn't run. In such cases, you have to troubleshoot. It is a big issue if a cyber attack is happening, and your machine is rebooted, but the events are not captured."
"We did a PoC of their next-gen antivirus product, but it wasn't ready yet. It was underdeveloped and caused a lot of issues. We'd like to move away from Carbon Black, but they said that it's probably still not to a point where we'd be happy with it. Carbon Black and RedCloak seem to work fine for us."
 

Pricing and Cost Advice

"From the initial cost that Binary Defense came in with, we pared it down quite a bit over the course of 30 or 60 days. My leadership would say that their cost was high, but realistically, they were in line with the market."
"Binary Defense MDR is priced competitively and may be slightly lower than CrowdStrike."
"It's valued at the right price. Even with the number of endpoints we have, we don't feel that it's a lot more than any competitor. In fact, it might be less expensive when you look at the fact that you're getting a full flex SOC out of it along with the tools."
"After we acquired this platform, we met with a number of different vendors. Binary Defense came in with a proposal that was surprisingly affordable. In fact, we were able to recoup the cost of their services within a short period of time. This is because Binary Defense is able to provide the same level of security as a team of two or three in-house analysts but at a fraction of the cost. As a result, Binary Defense is saving us an estimated $250,000 to $300,000 per year."
"The pricing is very good. They are definitely competitive and they were lower at the time that we went with them."
"The pricing isn't that bad, it's very competitive. I don't feel that it's over-priced and I don't feel that it's under-priced."
"The pricing is on target. Working with their sales team on pricing negotiations was a pleasant process. They were very respectful of the constraints we had and I feel that we're paying a fair price."
"The solution's price is spot on; if anything, it's slightly below the norm for most services. Compared to building the same team internally, it would cost more to create the same amount of capability than what we get from an external team. Price-wise, Binary Defense is in a great spot."
"The price of the solution is average compared to the market."
"I find the pricing to be a little bit expensive, although it is acceptable, for now."
"One can pay for the license annually, or at two and five year intervals."
"The price of Sophos Intercept X is expensive. The license is paid on an annual basis. There are extra features that can be added depending on the endpoints. The solution is priced twice as much as the Comodo solution."
"The solution’s pricing is high."
"Licensing fees are paid monthly."
"The cost of Sophos Intercept X is reasonable."
"The solution offers both a three-year license and an annual license. I would rate the product's pricing a one out of ten."
"Secureworks Taegis ManagedXDR is very expensive and could be more cost-effective."
"The Red Cloak agent is free."
"The pricing for this solution is reasonable. One agent costs approximately 270 dirhams/70 USD for one year. There is a reduction in cost per licence as the number of licences used increases."
"It is expensive but there is no better product than this."
"The pricing of Dell Secureworks is very reasonable."
"The price is kind of on par. The licensing was comparable to other solutions. It's not particularly high or low."
"Initially, the cost was going to be something around $160 or $170. And eventually, I think they brought it down to $110 and they also threw in some endpoint protection platforms."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
801,634 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Healthcare Company
8%
Financial Services Firm
7%
Manufacturing Company
7%
Computer Software Company
20%
Government
6%
Educational Organization
6%
Manufacturing Company
6%
Computer Software Company
23%
Financial Services Firm
9%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Binary Defense MDR?
The most valuable feature is reviewing tickets and the notes added by technicians.
What is your experience regarding pricing and costs for Binary Defense MDR?
The pricing is very competitive; it's on par with or below others. For those sensitive to pricing, I'd advise that th...
What needs improvement with Binary Defense MDR?
Sometimes, something may not install right; however, whenever we have challenges, they are very solution-oriented and...
How does Crodwstrike Falcon compare with Sophos Intercept X?
I like that Crowdstrike Falcon allows me to easily correlate data between my firewalls. Its detection and machine lea...
What is your experience regarding pricing and costs for Sophos Intercept X?
The pricing is a little bit higher than that of other solutions.
What do you like most about Secureworks Taegis ManagedXDR?
The most valuable feature is the support. The support chat. It's always connecting to people. And you open the chat, ...
What is your experience regarding pricing and costs for Secureworks Taegis ManagedXDR?
It is worth the money. It is expensive but there is no better product than this.
What needs improvement with Secureworks Taegis ManagedXDR?
The integration would look better with other products, with other EDRs, with other firewalls, with other older versio...
 

Also Known As

Binary Defense Vision, Binary Defense Managed Detection and Response, Binary Defense Managed Detection & Response
Sophos Intercept X
Secureworks Red Cloak Managed Detection and Response, Dell Secureworks, SecureWorks Taegis Managed TDR
 

Overview

 

Sample Customers

Securitas USA, Black Hills Energy, Lincoln Electric,The J.M. Smuckers Company, New York Community Bank, State of Connecticut, NCR
Flexible Systems
RICOH, Owens and Minor
Find out what your peers are saying about Intercept X Endpoint vs. Secureworks Taegis Managed XDR / MDR and other solutions. Updated: July 2024.
801,634 professionals have used our research since 2012.