VMware Carbon Black Endpoint and Splunk SOAR compete in the cybersecurity solutions category. VMware Carbon Black Endpoint has the upper hand in user satisfaction due to its deep inspection, control, and cloud-based detection capabilities, while Splunk SOAR is preferred for its strong automation and integration capabilities.
Features: VMware Carbon Black Endpoint provides low resource consumption, behavioral monitoring, and powerful threat hunting driven by cloud-based detections. Its EDR capabilities offer detailed analysis and immediate response, which is advantageous for environments with complex software. Splunk SOAR is recognized for its automation strength and seamless integration with other tools, enhancing security orchestration and management efficiency.
Room for Improvement: VMware Carbon Black Endpoint could enhance mobile support, refine its EDR capabilities, and streamline compatibility. Users are looking for more intuitive alert management and better educational support. Splunk SOAR requires advances in integration capabilities, playbook management, and reporting features, as some users find the setup complex and challenging.
Ease of Deployment and Customer Service: VMware Carbon Black Endpoint supports diverse deployment modes, including on-premises and cloud solutions. However, users sometimes face challenges with technical support response times. Its community portal is useful for self-service learning. Splunk SOAR has straightforward cloud deployments, but users have noted the need for more comprehensive technical assistance and smoother integration processes.
Pricing and ROI: VMware Carbon Black Endpoint is often perceived as expensive, but users find its cost justified by a strong ROI through security incident reduction. Pricing is considered flexible with MSP options. Splunk SOAR's pricing is seen as high for smaller enterprises. However, its robust automation capabilities can lead to long-term cost savings and improved operational efficiency.
| Product | Market Share (%) |
|---|---|
| Splunk SOAR | 7.8% |
| Microsoft Sentinel | 13.0% |
| Palo Alto Networks Cortex XSOAR | 8.9% |
| Other | 70.3% |
| Product | Market Share (%) |
|---|---|
| VMware Carbon Black Endpoint | 1.8% |
| Microsoft Defender for Endpoint | 8.1% |
| CrowdStrike Falcon | 7.0% |
| Other | 83.1% |

| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 7 |
| Large Enterprise | 31 |
| Company Size | Count |
|---|---|
| Small Business | 31 |
| Midsize Enterprise | 9 |
| Large Enterprise | 31 |
Torq is the enterprise AI SOC solution that effectively combines adaptive insights and automation to handle critical threats efficiently. It manages threat lifecycles, swiftly moving from triage to response, ensuring effective risk management.
Torq is designed to streamline security operations by aggregating telemetry across your security stack. It investigates significant risks and manages threats from triage to containment and remediation. This AI-driven tool enhances the capabilities of your SecOps team, allowing them to achieve more impactful results without introducing complicated processes.
What are the key features of Torq?In industries like finance and healthcare, Torq shows effectiveness by adapting to specific risk scenarios often encountered in these fields. Its integration with existing infrastructures makes it a valuable asset for maintaining stringent security standards, essential for protecting critical data and operations in diverse high-stakes environments.
Splunk SOAR offers features like automation and orchestration of manual tasks, speeding up work, detection and response to advanced and emerging threats.
Automate manual tasks. Address every alert, every day. Establish repeatable procedures that allow security analysts to stop being reactive and focus on mission-critical objectives to protect your business.
Orchestrate and automate repetitive tasks, investigation and response to increase efficiency and productivity, and do more with the people you already have. Make a team of three feel like a team of 10.
Work faster with Splunk SOAR. Respond to threats in seconds. Lower your mean time to respond (MTTR) by automating security tasks and workflows across all of your security tools.
Take advantage of Splunk Enterprise Security and Splunk SOAR joining forces to provide a seamless and intuitive SecOps platform to prevent, detect and respond to advanced and emerging threats.
VMware Carbon Black Endpoint enhances endpoint security with its robust EDR, threat detection, and live response features. The cloud-based architecture supports remote management and easy setup while behavioral monitoring and dynamic grouping minimize security risks.
VMware Carbon Black Endpoint is designed for those seeking comprehensive endpoint protection. With its cloud-based deployment, organizations experience streamlined remote control and simplified rollout processes. Its behavioral monitoring, incident response capabilities, and firewall integration deliver advanced security measures. Although it addresses many security challenges, areas like manual alert management, on-demand scanning, and integration with systems like AlienVault USM require refinement. Improved UI, EDR components, and flexible pricing models would enhance user satisfaction. On-premise deployment infrastructure and compatibility issues with some operating systems need attention. Enhanced reporting, container security, and multi-tenancy support are also essential for fulfilling industry needs. AI-driven analysis and threat isolation empower companies by fostering proactive management.
What are the key features of VMware Carbon Black Endpoint?
What benefits should users look for when evaluating VMware Carbon Black Endpoint?
VMware Carbon Black Endpoint finds extensive application in industries focused on stringent security requirements. Managed security service providers leverage its capabilities to deliver comprehensive protection to multiple clients worldwide. Organizations use it primarily for antivirus protection and incident management, integrating it with their existing security frameworks to strengthen endpoint visibility and real-time threat prevention. Its advanced detection and application control features make it a preferred choice in industries that prioritize robust security measures. However, it requires improvements in terms of system compatibility and customization flexibility to better serve diverse industry environments.
We monitor all Security Orchestration Automation and Response (SOAR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.