Cybereason Defense Platform vs. NetWitness Cloud SIEM

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cybereason Defense Platform
Score 10.0 out of 10
N/A
Cybereason EDR consolidates intelligence about each attack into a Malop (malicious operation), a contextualized view of the full narrative of an attack. Each Malop organizes the relevant attack data into an easy-to-read, interactive graphical interface, providing a complete timeline, the flow of the attack in the network, and any malicious communications. Remediation actions can be automated or accomplished remotely with a click. The Cybereason Defense Platform empowers analysts of all…N/A
NetWitness Cloud SIEM
Score 6.1 out of 10
N/A
NetWitness Cloud SIEM delivers log management, retention, and analytics services in a simplified cloud form. It aims t o eliminate traditional deployment and administration requirements with a simple throughput-based licensing model, to make high-quality SIEM quick and easy to acquire without sacrificing capability or power.N/A
Pricing
Cybereason Defense PlatformNetWitness Cloud SIEM
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cybereason Defense PlatformNetWitness Cloud SIEM
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cybereason Defense PlatformNetWitness Cloud SIEM
Features
Cybereason Defense PlatformNetWitness Cloud SIEM
Endpoint Security
Comparison of Endpoint Security features of Product A and Product B
Cybereason Defense Platform
9.1
Ratings
6% above category average
NetWitness Cloud SIEM
-
Ratings
Anti-Exploit Technology8.30 Ratings00 Ratings
Endpoint Detection and Response (EDR)9.60 Ratings00 Ratings
Centralized Management9.60 Ratings00 Ratings
Hybrid Deployment Support6.00 Ratings00 Ratings
Infection Remediation10.00 Ratings00 Ratings
Vulnerability Management10.00 Ratings00 Ratings
Malware Detection10.00 Ratings00 Ratings
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Cybereason Defense Platform
-
Ratings
NetWitness Cloud SIEM
7.6
Ratings
2% below category average
Centralized event and log data collection00 Ratings8.00 Ratings
Correlation00 Ratings10.00 Ratings
Event and log normalization/management00 Ratings8.00 Ratings
Deployment flexibility00 Ratings10.00 Ratings
Integration with Identity and Access Management Tools00 Ratings7.00 Ratings
Custom dashboards and workspaces00 Ratings6.00 Ratings
Host and network-based intrusion detection00 Ratings4.00 Ratings
Best Alternatives
Cybereason Defense PlatformNetWitness Cloud SIEM
Small Businesses
ThreatLocker
ThreatLocker
Score 9.5 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 3.8 out of 10
Medium-sized Companies
BlackBerry Protect (CylancePROTECT)
BlackBerry Protect (CylancePROTECT)
Score 9.1 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
Enterprises
BeyondTrust Endpoint Privilege Management
BeyondTrust Endpoint Privilege Management
Score 9.8 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cybereason Defense PlatformNetWitness Cloud SIEM
Likelihood to Recommend
8.7
(0 ratings)
7.0
(0 ratings)
User Testimonials
Cybereason Defense PlatformNetWitness Cloud SIEM
Likelihood to Recommend
Cybereason is good at detections and has some false positives, but when we need their support, it's too slow. My team used to test Cybereason, submitting lots of malware and threats, trying to find problems, and for research purposes. In my experience, every time we found a bug, their support team denied the problems and took lots of weeks to give some answer when we insisted.
Read full review
It is really a robust platform that can be heavily customized to suit requirements. Good for advanced hunting and forensics. Robust automation features.
Read full review
Pros
  • EDR
  • Threat hunting
  • anti-malware
  • collecting telemetry
Read full review
  • Log collection and parsing.
  • Packet collection and parsing.
  • Enhanched analytics and alerting.
  • Robust integration.
Read full review
Cons
  • Slow support
  • Bugs on their interface
  • Log extraction
Read full review
  • Lacking out of the box best practice templates etc. It relies heavily on customization.
  • Lack of up to date threat feeds.
  • Difficult to learn and use initially.
Read full review
Alternatives Considered
Cybereason provides superior protection than either Microsoft or CrowdStrike and a better TCO. We receive less false positives than with Microsoft Defender and Cybereason is easier for level 1 users to use.
Read full review
Best in Class for us, and was a good choice since we already are using a lot of other RSA products(DLP, Archer etc.)
Read full review
Return on Investment
  • Helps on threat hunting
  • MalOps is very good
  • When we face a bug, it takes too much time for them to respond
Read full review
  • Hard to calculate ROI since it is not revenue based.
  • It is a expensive solution, bit very capable.
Read full review
ScreenShots