Try our new research platform with insights from 80,000+ expert users

Sophos MDR vs WithSecure Countercept Managed Detection and Response comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Binary Defense MDR
Sponsored
Ranking in Managed Detection and Response (MDR)
7th
Average Rating
9.2
Number of Reviews
16
Ranking in other categories
No ranking in other categories
Sophos MDR
Ranking in Managed Detection and Response (MDR)
5th
Average Rating
8.4
Number of Reviews
29
Ranking in other categories
No ranking in other categories
WithSecure Countercept Mana...
Ranking in Managed Detection and Response (MDR)
28th
Average Rating
8.0
Number of Reviews
1
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of November 2024, in the Managed Detection and Response (MDR) category, the mindshare of Binary Defense MDR is 0.6%, up from 0.4% compared to the previous year. The mindshare of Sophos MDR is 6.3%, up from 6.2% compared to the previous year. The mindshare of WithSecure Countercept Managed Detection and Response is 0.3%, down from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR)
 

Featured Reviews

Rich Ullom - PeerSpot reviewer
Worth the money, fantastic communication, and fast service with an average response time of about four minutes on an alert
This is my third SOC. I have never had anybody react as well. So, it's hard for me to provide something that they could do better because I'm really happy with them. I just signed another three-year contract with them. I don't find any downside to them, but if I have to put one, it would be consistent manpower or staffing. The only area where the solution can be improved is going to be with people. As they grow, they are struggling with the same thing that every other company is, which is getting talent and getting that talent to stay, but they've just revised their tiering system to go from a flat analyst and manager to a three-tier solution where it goes through two or three before it gets elevated. That seems to have worked out well, so if one level misses it, the next one picks it up, and it works out fine. Consistent staffing is the only challenge they have because when you're hiring level-one analysts, you go through them pretty quickly. You'll probably hire them at 50K or 55K, and after they do it for a year, they find out they can make 85K somewhere else, and they bounce. So, their turnover is a little high, but that's it.
ManelAlvarez - PeerSpot reviewer
Quarantines and removes threats from the network
The most important aspect is a EC2 deployment which is a remote deployment done for new customers using Sophos. Approximately ninety-five percent of EC2 deployment is automated, requiring only a review or customization for the customer's needs. Another key feature is the centralized control of updates, allowing for scheduling any interaction with the endpoint. Additionally, the new platform and system operations, along with IOCs, are updated daily. Sophos has a very good policy at good prices. Since I have a local contact with the salespeople, they provide me discounts. It's very stable and competitive. When the customers have budget, they can opt for CrowdStrike. However, when the customers have budget constraints on daily servers, and when the customers prefer to integrate mobile platforms with different technologies, they can use this one technology. Overall, I rate the solution an eight out of ten.
reviewer2508555 - PeerSpot reviewer
We now benefit from regular account reviews and proactive event monitoring
It could improve the customer portal and possibly reduce prices slightly. It's very good because it includes user behavior analytics, detection rules, and thorough log investigation. They also have robust threat-hunting capabilities in the backend, which is crucial for me as a one-man band in the IT department. The managed service wraparound is essential, especially with pre-authorization for incident response

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features are the SIEM and the ticketing function; the latter is very smooth and easy to read and understand. We don't have any issues looking at the ticketing information when we're trying to identify what's going on."
"Our mean time to response has gone down. We're much faster with direct response and have more investigative capabilities than we did before."
"With Binary Defense, we don't just get an alert, but also a detailed rundown of why they're alerting us on it. They tell us what was executed, or the username, script, or IP. That way, we're not wasting time investigating."
"The speed at which their services are reactive is valuable. Nowadays, when a threat hits an endpoint, you've got minutes, not hours or days. Their average response time is about four minutes on an alert. For anything that needs to be sent to us, it's about fourteen minutes, which is pretty good. They're the third SOC that I've used in fifteen years. By far, they are the quickest ones to act. When you're looking at prevention, that's a key factor."
"The most valuable part of Binary Defense is its team of cybersecurity analysts. Their analysts filter out the noise and only forward the critical threats that require a response instead of false positives."
"Binary Defense has a human service department that provides live monitoring for our systems."
"Among the valuable features are the agent, continuous reporting, and dashboard. It has all the features we need and we haven't had to customize it, other than turning on certain features that we wanted."
"The customization has been the most valuable aspect and was really the reason we ended up selecting Binary Defense. They worked with us to provide exactly the level of support, features, response, and collaboration we needed."
"The product’s most valuable feature is ease of use."
"The product's most valuable feature is its ability to view environmental activities."
"The automated threat hunting feature and integration capabilities are valuable."
"It provides reliable protection and clear data on its performance metrics, enabling straightforward communication of its capabilities."
"The most valuable feature is the ability to integrate multiple functions into a single dashboard regardless of the vendors being integrated."
"Sophos MDR has improved the threat detection process by identifying and addressing the issues before they become severe."
"The product gives us good visibility into what is happening inside the company."
"The most valuable aspect of this solution is the ability to interact with the firewall and workstations seamlessly to shut down the threats. Additionally, you are able to control the workstations remotely."
"Our security posture has improved. We previously lacked intrusion detection and response capabilities, but now we benefit from regular account reviews and proactive event monitoring. Their portal provides a straightforward way to report suspicious activity, keeping us well-informed about potential threats."
 

Cons

"We should be able to isolate devices faster. They should shorten the time between clicking on a device to contain it and carrying out the action. That would be a welcome improvement."
"It's sometimes difficult to know when to engage Binary Defense or TrustedSec, their sister company. TrustedSec is more focused on offensive security, as opposed to the defensive security that the MDR solution provides. It would be awesome if there were a better bridge between that relationship for when we need to get more proactive services or when we need to do a penetration test."
"I would like to get more reports from Binary Defense about what they're blocking."
"While my understanding is that they're working on this, I would like to see some more of the quantification or reporting."
"The only area I see for improvement with Binary Defense is their service portal. It could benefit from some enhancements."
"If I were shopping for an MDR solution today, I would not only look for a company that has the ability to alert, detect, and remediate, but also the ability to integrate vulnerability management. That's a big thing that they're lacking today."
"We found that an earlier version of the agent had high memory usage and that was a bit concerning, but we raised the concern with their support team and they immediately replied that they had noticed the same thing and had a candidate fix already available... it totally fixed the issue."
"The current reporting system could benefit from improvement."
"The solution is expensive for customers."
"One of the limitations that we have found is with communications and the languages in different countries."
"Multitenancy features of Sophos Managed Threat Response should be improved. You cannot use the solution for multiple clients."
"Sophos MDR could offer more integration packs and more vendor flexibility."
"There is room for improvement in performance and upgrades."
"The only challenge we face with the tool is the pricing. Clients often compare it with other products in the market and try to negotiate prices. This concern has caused some challenges in closing deals. Otherwise, as a product, we have no worries."
"Maybe the reporting needs improvement."
"The service could enhance its scope, particularly in managing firewalls."
"It could improve the customer portal and possibly reduce prices slightly. It's very good because it includes user behavior analytics, detection rules, and thorough log investigation."
 

Pricing and Cost Advice

"It's valued at the right price. Even with the number of endpoints we have, we don't feel that it's a lot more than any competitor. In fact, it might be less expensive when you look at the fact that you're getting a full flex SOC out of it along with the tools."
"After we acquired this platform, we met with a number of different vendors. Binary Defense came in with a proposal that was surprisingly affordable. In fact, we were able to recoup the cost of their services within a short period of time. This is because Binary Defense is able to provide the same level of security as a team of two or three in-house analysts but at a fraction of the cost. As a result, Binary Defense is saving us an estimated $250,000 to $300,000 per year."
"The pricing isn't that bad, it's very competitive. I don't feel that it's over-priced and I don't feel that it's under-priced."
"Binary Defense MDR is priced competitively and may be slightly lower than CrowdStrike."
"The pricing is very good. They are definitely competitive and they were lower at the time that we went with them."
"Binary Defense has changed its pricing model from being primarily based on the volume of data to one based on escalations and incidents they handle."
"The solution's price is spot on; if anything, it's slightly below the norm for most services. Compared to building the same team internally, it would cost more to create the same amount of capability than what we get from an external team. Price-wise, Binary Defense is in a great spot."
"From the initial cost that Binary Defense came in with, we pared it down quite a bit over the course of 30 or 60 days. My leadership would say that their cost was high, but realistically, they were in line with the market."
"Compared to other tools, Sophos has a pretty good price."
"MDR is a complete enterprise solution, and compared to other OEMs, it is one of the cheapest."
"I rate Sophos MDR’s pricing a seven or eight out of ten."
"Sophos MDR could be more affordable."
"The price falls somewhere in the middle range."
"The tool is too expensive for small companies."
"I would rate the price of Sophos MDR as a nine out of ten, with ten being the most expensive."
"The solution is expensive."
Information not available
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
816,406 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Healthcare Company
8%
Financial Services Firm
7%
Manufacturing Company
7%
Computer Software Company
21%
Manufacturing Company
7%
Government
6%
Comms Service Provider
5%
Security Firm
25%
Computer Software Company
14%
Manufacturing Company
11%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Binary Defense MDR?
The most valuable feature is reviewing tickets and the notes added by technicians.
What is your experience regarding pricing and costs for Binary Defense MDR?
The pricing is very competitive; it's on par with or below others. For those sensitive to pricing, I'd advise that th...
What needs improvement with Binary Defense MDR?
Sometimes, something may not install right; however, whenever we have challenges, they are very solution-oriented and...
What do you like most about Sophos MDR?
The user doesn't need a technician; it offers 24/7 support to identify and manage your infrastructure and take comple...
What needs improvement with Sophos MDR?
Maybe the reporting needs improvement.
What advice do you have for others considering Sophos MDR?
I would recommend Sophas MDR to others as long as they have another software solution like a firewall to combine with...
What needs improvement with WithSecure Countercept Managed Detection and Response?
It could improve the customer portal and possibly reduce prices slightly. It's very good because it includes user beh...
What advice do you have for others considering WithSecure Countercept Managed Detection and Response?
It's lighter than CrowdStrike, and it has met our security needs without any intrusions so far. Once our pen testers ...
 

Also Known As

Binary Defense Vision, Binary Defense Managed Detection and Response, Binary Defense Managed Detection & Response
Sophos Managed Threat Response
F-Secure Countercept
 

Learn More

Video not available
 

Overview

 

Sample Customers

Securitas USA, Black Hills Energy, Lincoln Electric,The J.M. Smuckers Company, New York Community Bank, State of Connecticut, NCR
Information Not Available
Information Not Available
Find out what your peers are saying about CrowdStrike, Arctic Wolf Networks, Huntress and others in Managed Detection and Response (MDR). Updated: November 2024.
816,406 professionals have used our research since 2012.