Try our new research platform with insights from 80,000+ expert users
Cortex XDR by Palo Alto Networks Logo

Cortex XDR by Palo Alto Networks pros and cons

4.2 out of 5
Badge Leader
1,078 followers
Post review

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Cortex XDR by Palo Alto Networks offers advanced threat detection capabilities and significantly improves the ability to detect and respond to threats.
It ensures endpoint protection with a multi-layered defense system, providing security against exploits, ransomware, worms, and viruses.
The platform provides powerful integrations with other solutions and firewalls, enhancing protection by sharing threat intelligence.
Cortex XDR is highly scalable and flexible, serving both internal and external connections efficiently, catering to large enterprises' needs.
The platform features low system resource consumption while maintaining effective, high-performance threat detection and response capabilities.

CONS

There is a severe gap in functionality between Windows, Linux, and Mac versions, with certain features like folder restriction settings only available on Windows.
Support is difficult to reach, lacks expertise, and is slow in resolving issues.
There are integration challenges with third-party solutions and other Palo Alto products.
It lacks certain features, like SAML/LDAP integration and Network Detection Response.
The licensing model is complex, requiring expertise to understand, and unexpected changes in features and costs can occur.
 

Cortex XDR by Palo Alto Networks Pros review quotes

LT
Jan 17, 2019
The multi-layered approach to the product gives you confidence that it will stop exploits, ransomware, worms, or viruses from compromising endpoints, essentially providing peace of mind.
AK
Feb 7, 2019
After deploying Traps, we saw the performance of the network improve by 65 to 70 percent.
Netw9886 - PeerSpot reviewer
Feb 11, 2019
The most valuable features are the fact that it was running in the background and it would intercept any weird stuff, and the fact that it would send things directly to the cloud for sandboxing. It's quite practical.
Learn what your peers think about Cortex XDR by Palo Alto Networks. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
Ahmed Sief - PeerSpot reviewer
Jun 19, 2022
The initial setup is easy.
WA
Jun 30, 2021
I like the centralized console and the predictive analysis it does of malware. It is very stable and also scalable.
Mohammad Qaw - PeerSpot reviewer
Dec 15, 2022
From a single pane of glass, you can easily manage all of your endpoints.
it_user1237689 - PeerSpot reviewer
Oct 22, 2020
The initial setup is pretty easy.
OS
Feb 7, 2019
If the user leaves our premises or network, Palo Alto Traps will still be on that endpoint and will still apply our policies.
MP
Mar 21, 2024
If there are multiple alerts, the app will automatically create and rate an event instead of going through each one.
GA
Feb 11, 2022
When the pandemic started, Palo Alto came up with many solutions, which helped with the quick shift from on-premises to the cloud.
 

Cortex XDR by Palo Alto Networks Cons review quotes

LT
Jan 17, 2019
Previously, the endpoint would leave the environment, not being on our VPN, essentially unable to interact with the server to upload files. It was unable to retrieve new file verdicts. It was using a thing called "local analysis" to determine if something was a malicious file or not. There was no dynamic analysis.
AK
Feb 7, 2019
There are some default policies which sometimes affect our applications and cause them to run around. In the hotel industry, we use a different type of data versus Oracle and SQL. By default, there are some policies which stop us from running properly. Because of this, the support level is also not that strong. We have to wait to get a results.
Netw9886 - PeerSpot reviewer
Feb 11, 2019
There are some false positives. What our guys would have liked is that it would have been easier to manipulate as soon as they found a false positive that they knew was a false positive. How to do so was not obvious. Some people complained about it. The interface, the ESM, is not user-friendly.
Learn what your peers think about Cortex XDR by Palo Alto Networks. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
Ahmed Sief - PeerSpot reviewer
Jun 19, 2022
Every 30 or 40 days, there's a new version and we need to go and make sure our customer's laptops are upgraded.
WA
Jun 30, 2021
It would be good if they could make an exception for applications. Sometimes, it can be a bit of a challenge to make exceptions for certain applications that have been used as rogue.
Mohammad Qaw - PeerSpot reviewer
Dec 15, 2022
The solution should force customers to integrate with network traffic to see the full benefits of XDR.
it_user1237689 - PeerSpot reviewer
Oct 22, 2020
In reporting they should have a customizable dashboard due to the fact that C-level people don't like reporting to the IT department. They prefer to have a real-time dashboard. That kind of dashboard needs to have various customizations.
OS
Feb 7, 2019
Traps doesn't work with McAfee. You need to remove McAfee to install Traps. This is very common, and its nothing that should be an issue. Some antivirus engines recognize Traps as an threat component, so maybe they need to shake hands somewhere.
MP
Mar 21, 2024
The licensing model is complex to understand. It requires expertise to explain how the licensing works. You need expertise to guide you through the subscription plan.
GA
Feb 11, 2022
In general, the price could be more competitive.