Try our new research platform with insights from 80,000+ expert users

Palo Alto Networks Cortex XSOAR vs Sumo Logic Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.4
Palo Alto Networks Cortex XSOAR enhances ROI through automation, integration, and efficient mature SOC processes, reducing investigation time.
Sentiment score
7.6
Sumo Logic Security enhances efficiency and ROI by streamlining troubleshooting and log access without needing widespread credential distribution.
 

Customer Service

Sentiment score
6.0
Palo Alto Networks Cortex XSOAR support is knowledgeable but varies in response times and service quality, needing possible improvements.
Sentiment score
7.4
Sumo Logic Security's customer support is praised for responsiveness and effectiveness, although some report slower responses and no phone support.
They have a response time of forty-eight hours, which is not instant support.
 

Scalability Issues

Sentiment score
7.4
Palo Alto Networks Cortex XSOAR is scalable, integrating well with APIs, though large deployments may face challenges and latency issues.
Sentiment score
8.0
Sumo Logic Security is highly scalable, efficiently accommodating diverse environments and data volumes, with users rating its scalability highly.
 

Stability Issues

Sentiment score
7.8
Palo Alto Networks Cortex XSOAR is stable and reliable, though minor bugs occur during updates and with oversized storage environments.
Sentiment score
8.1
Sumo Logic Security is stable and efficient, experiencing minimal issues, with stability ratings from seven to nine out of ten.
If there are many records, the system may stop or the UI may become unresponsive.
 

Room For Improvement

Cortex XSOAR requires easier setup, better IoT support, improved UI, more connectors, flexible pricing, and enhanced documentation.
Sumo Logic Security needs better dashboards, pricing, automation, scalability, log handling, correlation, mapping, and faster support response.
The deployment requires integration and the development of integration modules.
The correlation rules and log mapping are not as mature compared to other SIM tools like Splunk.
 

Setup Cost

Cortex XSOAR is seen as expensive yet valuable for security, with variable pricing and discounts post-Palo Alto acquisition.
Sumo Logic offers competitive pricing on AWS Marketplace, valued for simplicity and functionality but costly for smaller organizations.
 

Valuable Features

Cortex XSOAR offers user-friendly automation, integration, and playbook creation with efficient remediation, security features, and AI-enhanced threat intelligence.
Sumo Logic Security provides customizable alerts, real-time observability, and seamless integrations for comprehensive, scalable security monitoring and forensics.
Execution of automatic tasks for collecting, enriching, and correlating security events from hundreds of different technologies.
If we cannot find the data in other tools, like email security or NDR, we can fetch those logs in the Log Analytics platform of Sumo Logic.
 

Categories and Ranking

Palo Alto Networks Cortex X...
Ranking in Security Orchestration Automation and Response (SOAR)
2nd
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
46
Ranking in other categories
SOC as a Service (2nd)
Sumo Logic Security
Ranking in Security Orchestration Automation and Response (SOAR)
14th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
19
Ranking in other categories
Log Management (22nd), Security Information and Event Management (SIEM) (22nd)
 

Mindshare comparison

As of January 2025, in the Security Orchestration Automation and Response (SOAR) category, the mindshare of Palo Alto Networks Cortex XSOAR is 13.1%, down from 15.0% compared to the previous year. The mindshare of Sumo Logic Security is 0.8%, down from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Orchestration Automation and Response (SOAR)
 

Featured Reviews

NikhilSharma2 - PeerSpot reviewer
Ability to multiple playbooks to fetch data from multiple firewalls and utomated several tasks, including vulnerability scans and SOCL (Security Orchestration, Automation
Recently, they started implementing microservices in XSOAR, which has improved quality and addressed previous issues. However, they should focus more on licensing costs. The user licensing fees are quite high. For example, I received a quote for XSOAR, and it was $12,000 per user per year. If you have a SOC team of 30 members/analysts, you're looking at a substantial expense. They should consider reducing these costs since this high pricing seems to be more about profit. So, there is room for improvement in the pricing. Moreover, the reporting and dashboard features are decent but could be improved. The user interface (UI) is quite heavy and takes time to load, which is a major drawback.
Vinay Patel D N - PeerSpot reviewer
Effective with good log analytics but needs better rule correlation
The correlation rules and log mapping are not as mature compared to other SIM tools like Splunk. Sometimes logs will not fetch, and there are issues if the log volume exceeds a threshold. Not every tool is integrated with Sumo Logic. The response time for their support could be better, and it is not very user-friendly.
report
Use our free recommendation engine to learn which Security Orchestration Automation and Response (SOAR) solutions are best for your needs.
831,158 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
13%
Government
10%
Manufacturing Company
9%
Computer Software Company
15%
Financial Services Firm
11%
Government
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is your experience regarding pricing and costs for Palo Alto Networks Cortex XSOAR?
Even though customers often comment on the price, the potential savings come from managing a large number of security events with a limited number of analysts. This leads to economic advantages des...
What needs improvement with Palo Alto Networks Cortex XSOAR?
The complexity of Cortex XSOAR has a trade-off with its versatility. The product can be tailored for each deployment to respond to specific customer needs, and this complexity may be seen as a down...
What do you like most about Sumo Logic Security?
Sumo Logic Security is a good solution for searching the logs and identifying the issues.
What needs improvement with Sumo Logic Security?
The correlation rules and log mapping are not as mature compared to other SIM tools like Splunk. Sometimes logs will not fetch, and there are issues if the log volume exceeds a threshold. Not every...
 

Also Known As

Demisto Enterprise, Cortex XSOAR, Demisto
No data available
 

Overview

 

Sample Customers

Cellcom Israel, Blue Cross and Blue Shield of Kansas City, esri, Cylance, Flatiron Health, Veeva, ADT Cybersecurity
Information Not Available
Find out what your peers are saying about Palo Alto Networks Cortex XSOAR vs. Sumo Logic Security and other solutions. Updated: January 2025.
831,158 professionals have used our research since 2012.