Try our new research platform with insights from 80,000+ expert users

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the category report

Prominent pros & cons

PROS

Mandiant Advantage provides detailed information on threat actors, different attacks, tactics, and general threat information.
It offers value by operating outside of regular business hours, providing coverage when staff is unavailable.
Directory monitoring is highly valuable, alerting users to potential threats in advance, allowing time to prepare.
The live IOC feed efficiently identifies the type, technique, and tactics used in attacks.
Mandiant Advantage excels in scalability, with a perfect score of ten out of ten.

CONS

Mandiant's support could be improved, as the move towards a portal system is not very helpful.
The on-prem client is processor-intensive, causing strain on the local CPU and slowing other tasks during scans.
Data query for cloud language needs enhancement, as querying actual data from the platform is difficult.
Collaboration of data becomes clogged, requiring effort to understand visually.
False positives cause excessive noise when dealing with widely recognized companies.
 

Mandiant Advantage Pros review quotes

MB
Feb 22, 2023
The advantage of the solution is being able to go look up threat actors and get a lot of detailed information about different attacks and different tactics and general information about threats.
PP
Mar 12, 2023
The feature I have found most valuable is directory monitoring. We experienced an instance of threat actors trying to ensure a complex and massive attack against our customer's infrastructure on the forum. That is, they were animating people on a formum. The solution alerted us to this two days ahead of the attack, which gave us plenty of time to prepare for it.
reviewer2646066 - PeerSpot reviewer
Jan 30, 2025
Mandiant Advantage is excellent at providing the full context and all the information, where the information was found, and the full data, including the raw data that was uploaded onto the Internet.
Find out what your peers are saying about Mandiant, CrowdStrike, Microsoft and others in Extended Detection and Response (XDR). Updated: January 2025.
838,713 professionals have used our research since 2012.
Joshua Garnett - PeerSpot reviewer
Mar 9, 2023
It is so valuable to have someone performing these functions outside of our business hours when we don't have staff in the building. We've seen a lot of solid metrics on the amount of malware that it's detecting and resolving. We're pleased with it so far.
SameepAgarwal - PeerSpot reviewer
Jan 28, 2025
The live IOC feed identifies the type, technique, and tactics used.
 

Mandiant Advantage Cons review quotes

MB
Feb 22, 2023
They could have better support. Now that they've merged, they are moving towards a portal system, which isn't very helpful.
PP
Mar 12, 2023
I think that the data query that is used for data cloud language should be improved. It's really hard to query actual data from the platform.
reviewer2646066 - PeerSpot reviewer
Jan 30, 2025
Sometimes Mandiant Advantage becomes noisy when dealing with widely recognized companies due to false positives.
Find out what your peers are saying about Mandiant, CrowdStrike, Microsoft and others in Extended Detection and Response (XDR). Updated: January 2025.
838,713 professionals have used our research since 2012.
Joshua Garnett - PeerSpot reviewer
Mar 9, 2023
Mandiant's on-prem client is too processor-intensive, so it's putting a strain on the local device's CPU. When a scan is running on the device, the other processing tasks slow to a crawl. We're still trying to figure out the correct settings for the client.
SameepAgarwal - PeerSpot reviewer
Jan 28, 2025
Collaboration of data in my view becomes a bit clogged, requiring effort to understand visually.