Try our new research platform with insights from 80,000+ expert users
Prathamesh Samant - PeerSpot reviewer
Presales Manager at a tech services company with 51-200 employees
Real User
Top 20
Easy to set up with great policy configuration and is an excellent addition to the Palo Alto ecosystem
Pros and Cons
  • "It has pretty much everything we need and works well within the Palo Alto ecosystem."
  • "The GUI could be improved."

What is our primary use case?

The main use case was the integration with their Palo Alto firewall and Panorama. Apart from that, they also had integration with the FIM solution that they had. Overall, having it at the endpoint and having network integration for the overall threat scenario has been where we use it.

What is most valuable?

The policy configuration is great. The granularity of policies that are available is very helpful.

It is straightforward to set up.

It has pretty much everything we need and works well within the Palo Alto ecosystem.

What needs improvement?

The GUI could be improved. It's a little bit cumbersome. It could be more user-friendly.

For how long have I used the solution?

I've been using the solution for around two years. 

Buyer's Guide
Cortex XDR by Palo Alto Networks
July 2025
Learn what your peers think about Cortex XDR by Palo Alto Networks. Get advice and tips from experienced pros sharing their opinions. Updated: July 2025.
861,524 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is quite stable. The only hiccup we had experienced was related to some false alerts where there was no detection, yet still the product showed that it detected something. There were a few false positives. Apart from that, it is quite stable.

What do I think about the scalability of the solution?

For cloud purposes, scaling is not an issue. Even with the on-premises deployments, we have not faced any scaling issues. 

How are customer service and support?

Technical support is great. We haven't had any problems with them. 

How would you rate customer service and support?

Positive

How was the initial setup?

The solution is very simple and very straightforward to set up. It's not overly difficult or complex.

I'd rate it four out of five in terms of ease of setup.

What's my experience with pricing, setup cost, and licensing?

I do not deal with licensing costs. That is taken care of by our sales team.

What other advice do I have?

We do hybrid deployments. For some customers, it was on the cloud and for some, it was on-prem.

It's a good solution to go with. If you are dealing with the ecosystem of Palo Alto, like Palo Alto firewall, Palo Alto Prisma Access, and Palo Alto XDR, if you have a Palo Alto ecosystem, it's a must to have Cortex XDR. Individually, it also works well. However, having Palo Alto everywhere will be a better scenario or a better fit if you want to deploy Cortex.

I'd rate the solution eight out of ten. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1530651 - PeerSpot reviewer
EMEA IT Infrastructure Manager at a consumer goods company with 5,001-10,000 employees
Real User
Good management capabilities but has poor performance
Pros and Cons
  • "The management capabilities, allow an IT organization to get quite a good picture of attempted cyber attacks."
  • "Impact on system performance is horrible, adding a lot of delays for users."

What is our primary use case?

My primary use of this solution is as an endpoint security client.

How has it helped my organization?

This product has not improved my organization - in fact, we are in the process of moving back to another product as a result of Cortex's horrible impact on system performance.

What is most valuable?

The most valuable features of this product are the management capabilities, which allow an IT organization to get quite a good picture of attempted cyber attacks, and its out-of-the-box investigation capabilities.

What needs improvement?

The product's impact on system performance is horrible, adding a lot of delays for users. 

For how long have I used the solution?

I have been using this solution for four months.

How was the initial setup?

The onboarding process was quite cumbersome. It took some time to deploy as we had to investigate about 500 cases of clients who did not get the agent immediately.

What about the implementation team?

I implemented using a vendor team.

What other advice do I have?

I would rate this solution as five out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Cortex XDR by Palo Alto Networks
July 2025
Learn what your peers think about Cortex XDR by Palo Alto Networks. Get advice and tips from experienced pros sharing their opinions. Updated: July 2025.
861,524 professionals have used our research since 2012.
CyberSecurity Consultant at Information Technology Solutions- ITS
Real User
A stable and scalable solution with an easy setup and out-of-the-box playbooks and integration
Pros and Cons
  • "The integrations are out-of-the-box, as are the playbooks."
  • "The solution should offer more dashboards and they should be better customized."

What is our primary use case?

I have deployed some customized playbooks and modified ones which are out-of-the-box with more integration with SIEM solutions such as ArcSight, QRadar, ADRs and Trend Micro.

What needs improvement?

The solution should offer more dashboards and they should be better customized. The case number of items should be addressed. 

I have found the interface of Azure to be more simple and customizable than that of the solution. 

For how long have I used the solution?

I have worked on Cortex XDR by Palo Alto Networks with my customers for a number of weeks. 

What do I think about the stability of the solution?

The stability is good. 

What do I think about the scalability of the solution?

The scalability is fine. 

We have plans to increase the usage. 

How was the initial setup?

The initial setup was simple. 

The deployment took no more than two hours. 

What's my experience with pricing, setup cost, and licensing?

So far, I have made use of the free license which is offered. Once it ended, I was able to buy a license based on the number of users or divisions. The license varies with the number of users or applications involved. 

If one wishes to work with another team or large number of users at a future point, he must purchase a license for them. 

Which other solutions did I evaluate?

The interface of Azure is more simple and customizable than Cortex XDR by Palo Alto Networks.

What other advice do I have?

I have found the solution to be very easy in respect of the integration and configurable. The integrations are out-of-the-box, as are the playbooks. 

The solution is deployed solely on-premises on a single server. 

As of now, there are six users making use of the solution. 

My advice is that the on-premises environments for the product's use should be increased. 

I rate Cortex XDR by Palo Alto Networks as an eight out of ten. 

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1663611 - PeerSpot reviewer
IT manager at a computer software company with 11-50 employees
Reseller
Provides ability to see what's going on with your assets and react to cyber attacks
Pros and Cons
  • "Its ability to react to cyber data attacks is awesome. That is pretty much the use of it. What blows your mind is the ability to access your assets remotely and see what is actually going on with them. You can not only see them in a console. You can also react very rapidly to your assets that are compromised."
  • "It should support more mobile operating systems. That is one of the cons of their infrastructure right now."

What is our primary use case?

I use it for visibility, mitigation, and analysis of advanced threat attacks.

What is most valuable?

Its ability to react to cyber data attacks is awesome. That is pretty much the use of it. What blows your mind is the ability to access your assets remotely and see what is actually going on with them. You can not only see them in a console. You can also react very rapidly to your assets that are compromised.

What needs improvement?

It should support more mobile operating systems. That is one of the cons of their infrastructure right now.

For how long have I used the solution?

I have been using this solution for more than four years.

What do I think about the stability of the solution?

It has been extremely stable.

What do I think about the scalability of the solution?

It is easily scalable. For example, if you have version 2, Palo Alto upgrades it automatically. The agents for your assets are also scalable for new operating systems. So, it is very scalable.

How are customer service and technical support?

Their technical support is very agile and very good. I would rate them a nine out of 10.

How was the initial setup?

It is way too easy to deploy it and set it up.

What other advice do I have?

I would highly recommend it unless you have iOS assets on your network.

I would rate Cortex XDR an eight out of 10.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Assistant PhD at Stefan Cel Mare University of Suceava
Real User
Good technical support , reasonable pricing, and has good detection capabilities
Pros and Cons
  • "Threat identification and detection are the most valuable features of this solution."
  • "I would like to see some additional features related to email protection included."

What is most valuable?

Threat identification and detection are the most valuable features of this solution.

What needs improvement?

I would like the Panorama module included. It's another solution that is provided by Palo Alto and we are interested in that.

I would like to see some additional features related to email protection included.

For how long have I used the solution?

I have been working with Cortex XDR for a year and a half.

How are customer service and technical support?

Technical support is okay.

What's my experience with pricing, setup cost, and licensing?

I don't have any issues with the pricing. We are satisfied with the price.

What other advice do I have?

I would rate Cortex XDR by Palo Alto Networks a ten out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
AndyChan3 - PeerSpot reviewer
General manager at a tech services company with 201-500 employees
Real User
Top 10
Highly scalable, effective intelligence, and reliable
Pros and Cons
  • "One of the main benefits of the solution is its intelligence to correlate the events into an incident."
  • "The solution could improve by providing better integration with their own products and others."

What is our primary use case?

I use the solution for endpoint protection.

What is most valuable?

One of the main benefits of the solution is its intelligence to correlate the events into an incident.

What needs improvement?

The solution could improve by providing better integration with their own products and others.

For how long have I used the solution?

I have been using this solution for approximately one year.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

It is one of the best in the market for scalability.

We have approximately 500 people using this solution in my organization and we plan to increase usage.

How was the initial setup?

The initial installation is easy.

What about the implementation team?

We did the implantation of the solution with integrators.

What's my experience with pricing, setup cost, and licensing?

The price of the solution is high for the license and in general.

Which other solutions did I evaluate?

We evaluated CrowedStrike and Darktrace.

What other advice do I have?

I would recommend this solution to others.

I rate Cortex XDR by Palo Alto Networks a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1387713 - PeerSpot reviewer
Relationship Manager at a financial services firm with 5,001-10,000 employees
Real User
Easy to use, but can have more security and integrations
Pros and Cons
  • "It is easy to use."
  • "Technology evolves every day, so it would be nice if it gets more secure. It can also have more integration with other platforms."

What is our primary use case?

We use it for malicious connections from malicious websites. There might also be some payloads that might be inside the traffic. We also use it to identify malicious processes or bugs that are running on the network and any activities that tend to lead to data infiltration.

What is most valuable?

It is easy to use.

What needs improvement?

Technology evolves every day, so it would be nice if it gets more secure. It can also have more integration with other platforms.

For how long have I used the solution?

I have been using this solution for about a year.

What do I think about the scalability of the solution?

We have maybe a thousand users of this solution because it is deployed on-prem.

How was the initial setup?

I don't think there were issues with the installation.

What's my experience with pricing, setup cost, and licensing?

It has a yearly renewal.

What other advice do I have?

I would recommend this solution. I would rate Cortex XDR a seven out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1411233 - PeerSpot reviewer
Security consultant at a computer software company with 1,001-5,000 employees
Real User
Top 20
Sophisticated user interface, stable, and scalable
Pros and Cons
  • "The user interface of the solution is sophisticated and straightforward."
  • "In an upcoming release, the solution could improve by proving hard disk encryption. If it could support this it would be a complete solution."

What is our primary use case?

We use this solution to protect our computer system against threats, such as exploits and malware.

What is most valuable?

The user interface of the solution is sophisticated and straightforward.

What needs improvement?

In an upcoming release, the solution could improve by proving hard disk encryption. If it could support this it would be a complete solution.

For how long have I used the solution?

I have been using this solution for approximately two months.

What do I think about the stability of the solution?

The solution is stable, we have not had any issues.

What do I think about the scalability of the solution?

We have over 5,000 employees and they are being managed through this solution. It is scalable.

How are customer service and technical support?

We have our own IT support teams.

Which solution did I use previously and why did I switch?

We were previously using McAfee and we switched to this solution because they failed to provide us proper protection.

How was the initial setup?

We have an IT support team in our organization and they are managing everything remotely, such as laptops.

What about the implementation team?

Our internal team did the implementation of the solution.

What other advice do I have?

I would recommend this solution to others.

I rate Cortex XDR by Palo Alto Networks an eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Cortex XDR by Palo Alto Networks Report and get advice and tips from experienced pros sharing their opinions.
Updated: July 2025
Buyer's Guide
Download our free Cortex XDR by Palo Alto Networks Report and get advice and tips from experienced pros sharing their opinions.