Chief Information Security Officer at Saarni Cloud Oy
Real User
Top 20
2023-07-06T12:30:00Z
Jul 6, 2023
The solution's automated detection functionality could be better. It could be more optimal as it detects a certain number of false positives and some of these detections just keep repeating. Documentation is not very clear on how to avoid these kinds of false detections, although the automated machine learning logic has learned to avoid *some* of them. We have endpoint aliases defined on the endpoint protection side. These aliases are not shown on the EDR detection side, which makes wider investigations more cumbersome.
The monthly reporting feature of WithSecure can be improved. Since we have KPIs in our organization, we have to do a lot of manual work while preparing the monthly reports. Though I can see the installed software, I don't get a consolidated report on them. The solution's software inventory features can be improved to be more actionable. Although they have all the necessary information on the portal, it's not actionable enough.
Head of IT & Telecommunications at VA-Erzberg GmbH
Real User
Top 5
2023-04-11T14:00:53Z
Apr 11, 2023
The website rules are too complicated. I know it is a complicated system, however, it could be streamlined. Other products manage to simplify their websites. I can't be that hard.
IT Manager at a tech services company with 51-200 employees
Real User
2021-11-16T18:51:53Z
Nov 16, 2021
The only issue that we have today is with false positives. We have too many false positives with the solution. Now they block everything. Not everything has to be blocked, even if we white list some applications, still the endpoint detection will detect that there is something going on. They are working on it apparently, so probably it will be solved. Sometimes good emails got tossed into your spam folder and you have to look for them, which isn't fun.
Find out what your peers are saying about WithSecure, Microsoft, CrowdStrike and others in Endpoint Detection and Response (EDR). Updated: November 2024.
Endpoint Detection and Response (EDR) solutions designed to monitor endpoint and network events while recording and storing this information in a centralized database. EDR solutions are especially crucial for organizations involving endpoints like desktops, laptops, and mobile devices.
WithSecure Elements Endpoint Detection and Response need to improve pricing.
The solution's automated detection functionality could be better. It could be more optimal as it detects a certain number of false positives and some of these detections just keep repeating. Documentation is not very clear on how to avoid these kinds of false detections, although the automated machine learning logic has learned to avoid *some* of them. We have endpoint aliases defined on the endpoint protection side. These aliases are not shown on the EDR detection side, which makes wider investigations more cumbersome.
The monthly reporting feature of WithSecure can be improved. Since we have KPIs in our organization, we have to do a lot of manual work while preparing the monthly reports. Though I can see the installed software, I don't get a consolidated report on them. The solution's software inventory features can be improved to be more actionable. Although they have all the necessary information on the portal, it's not actionable enough.
The website rules are too complicated. I know it is a complicated system, however, it could be streamlined. Other products manage to simplify their websites. I can't be that hard.
The only issue that we have today is with false positives. We have too many false positives with the solution. Now they block everything. Not everything has to be blocked, even if we white list some applications, still the endpoint detection will detect that there is something going on. They are working on it apparently, so probably it will be solved. Sometimes good emails got tossed into your spam folder and you have to look for them, which isn't fun.