Try our new research platform with insights from 80,000+ expert users

Palo Alto Networks Cortex XSOAR vs Sumo Logic Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.4
Palo Alto Networks Cortex XSOAR enhances ROI through automation, integration, and efficient mature SOC processes, reducing investigation time.
Sentiment score
7.6
Sumo Logic Security improves troubleshooting and operational efficiency, with users finding ROI generally justifies its continued use.
 

Customer Service

Sentiment score
6.4
Palo Alto Networks Cortex XSOAR support is knowledgeable but varies in response times and service quality, needing possible improvements.
Sentiment score
7.4
Sumo Logic Security's support is responsive and helpful but can occasionally delay up to 48 hours; no phone support mentioned.
They have a response time of forty-eight hours, which is not instant support.
 

Scalability Issues

Sentiment score
7.4
Palo Alto Networks Cortex XSOAR is scalable, integrating well with APIs, though large deployments may face challenges and latency issues.
Sentiment score
8.1
Sumo Logic Security offers scalable, cloud-based solutions praised for integration, performance, and flexibility across diverse infrastructures, with positive user feedback.
The tool has high scalability because everything is based in the cloud.
 

Stability Issues

Sentiment score
7.7
Palo Alto Networks Cortex XSOAR is stable and reliable, though minor bugs occur during updates and with oversized storage environments.
Sentiment score
8.1
Sumo Logic Security is highly praised for stability, reliability, and maintaining performance under load, with minimal latency issues.
If there are many records, the system may stop or the UI may become unresponsive.
 

Room For Improvement

Cortex XSOAR requires easier setup, better IoT support, improved UI, more connectors, flexible pricing, and enhanced documentation.
Sumo Logic Security faces challenges in performance, automation, support, API integration, and high costs, needing improvements across multiple areas.
The deployment requires integration and the development of integration modules.
The correlation rules and log mapping are not as mature compared to other SIM tools like Splunk.
This is crucial to sell to the government and financial sectors as they require data retention within each country.
 

Setup Cost

Cortex XSOAR is seen as expensive yet valuable for security, with variable pricing and discounts post-Palo Alto acquisition.
Sumo Logic Security users find AWS Marketplace simplifies billing and offers a competitive, cost-effective pricing structure despite scalability concerns.
This makes it more cost-effective because other solutions often include a third element in their pricing.
 

Valuable Features

Cortex XSOAR offers user-friendly automation, integration, and playbook creation with efficient remediation, security features, and AI-enhanced threat intelligence.
Sumo Logic Security offers robust threat intelligence, real-time observability, and seamless integrations, making it essential for SecOps teams.
Execution of automatic tasks for collecting, enriching, and correlating security events from hundreds of different technologies.
If we cannot find the data in other tools, like email security or NDR, we can fetch those logs in the Log Analytics platform of Sumo Logic.
Sumo Logic Security offers a single dashboard and customization, which are the most valuable features.
 

Categories and Ranking

Palo Alto Networks Cortex X...
Ranking in Security Orchestration Automation and Response (SOAR)
2nd
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
46
Ranking in other categories
SOC as a Service (2nd)
Sumo Logic Security
Ranking in Security Orchestration Automation and Response (SOAR)
15th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
20
Ranking in other categories
Log Management (21st), Security Information and Event Management (SIEM) (20th)
 

Mindshare comparison

As of March 2025, in the Security Orchestration Automation and Response (SOAR) category, the mindshare of Palo Alto Networks Cortex XSOAR is 11.1%, down from 13.0% compared to the previous year. The mindshare of Sumo Logic Security is 0.9%, down from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Orchestration Automation and Response (SOAR)
 

Featured Reviews

NikhilSharma2 - PeerSpot reviewer
Ability to multiple playbooks to fetch data from multiple firewalls and utomated several tasks, including vulnerability scans and SOCL (Security Orchestration, Automation
Recently, they started implementing microservices in XSOAR, which has improved quality and addressed previous issues. However, they should focus more on licensing costs. The user licensing fees are quite high. For example, I received a quote for XSOAR, and it was $12,000 per user per year. If you have a SOC team of 30 members/analysts, you're looking at a substantial expense. They should consider reducing these costs since this high pricing seems to be more about profit. So, there is room for improvement in the pricing. Moreover, the reporting and dashboard features are decent but could be improved. The user interface (UI) is quite heavy and takes time to load, which is a major drawback.
WilsonAitan - PeerSpot reviewer
Offers a single dashboard with customizable features and a cost-effective pricing structure
Sumo Logic Security offers a single dashboard and customization, which are the most valuable features. Additionally, it has a cost-effective structure because it is based on data storage and the number of scans, rather than uploading data. This cost model impacts the customers positively by offering a more straightforward pricing structure.
report
Use our free recommendation engine to learn which Security Orchestration Automation and Response (SOAR) solutions are best for your needs.
842,592 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
12%
Manufacturing Company
9%
Government
9%
Computer Software Company
15%
Financial Services Firm
11%
Government
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for Palo Alto Networks Cortex XSOAR?
Even though customers often comment on the price, the potential savings come from managing a large number of security events with a limited number of analysts. This leads to economic advantages des...
What needs improvement with Palo Alto Networks Cortex XSOAR?
The complexity of Cortex XSOAR has a trade-off with its versatility. The product can be tailored for each deployment to respond to specific customer needs, and this complexity may be seen as a down...
What do you like most about Sumo Logic Security?
Sumo Logic Security is a good solution for searching the logs and identifying the issues.
What is your experience regarding pricing and costs for Sumo Logic Security?
The pricing structure for Sumo Logic Security is based on two elements: data storage and the number of scans. This makes it more cost-effective because other solutions often include a third element...
What needs improvement with Sumo Logic Security?
In terms of improvement, feedback indicates there is a need for a local data center in my country. This is crucial to sell to the government and financial sectors as they require data retention wit...
 

Also Known As

Demisto Enterprise, Cortex XSOAR, Demisto
No data available
 

Overview

 

Sample Customers

Cellcom Israel, Blue Cross and Blue Shield of Kansas City, esri, Cylance, Flatiron Health, Veeva, ADT Cybersecurity
Information Not Available
Find out what your peers are saying about Palo Alto Networks Cortex XSOAR vs. Sumo Logic Security and other solutions. Updated: March 2025.
842,592 professionals have used our research since 2012.