Based on 5 verified reviews published in the last 18 months
Cisco XDR is reported to have a positive impact on business objectives, primarily through enhancing security operations and providing greater visibility. A significant majority of reviewers, 4 of 5, highlight its effectiveness in improving incident detection and response capabilities, which directly contributes to reducing the business impact of security events. This enhanced detection is complemented by improvements in operational efficiency, noted by 2 of 5 reviewers, who specifically mention time savings for security analysts. Furthermore, the platform's ability to offer real-time visibility into security risks and facilitate threat mitigation is appreciated by 2 of 5 reviewers. The integrated nature of the solution, providing a unified interface, is also seen as a positive factor in streamlining security management.
Reviewers frequently commend Cisco XDR for its ability to significantly improve security incident detection and respons…
Reviewers frequently commend Cisco XDR for its ability to significantly improve security incident detection and response. This enhancement is crucial for minimizing the impact of security events, as the system accelerates the detection process and aids in containing threats. This capability directly helps reduce the time required to identify and address malware, thereby safeguarding business operations.
Cisco XDR contributes positively to operational efficiency within security teams. Specifically, 2 of 5 reviewers note t…
Cisco XDR contributes positively to operational efficiency within security teams. Specifically, 2 of 5 reviewers note that the platform saves time for security analysts, allowing them to focus on more critical tasks. This improvement in efficiency stems from streamlined processes and potentially automated functions within the XDR solution.
The platform is recognized for providing enhanced visibility into an organization's security posture and facilitating e…
The platform is recognized for providing enhanced visibility into an organization's security posture and facilitating effective risk mitigation. Two of 5 reviewers indicate that Cisco XDR offers real-time insights, enabling businesses to be promptly alerted to security risks. This visibility is coupled with tools and functionalities that help in actively mitigating identified threats.
Reviewers appreciate the integration capabilities and the unified interface offered by Cisco XDR. Two of 5 reviewers hi…
Reviewers appreciate the integration capabilities and the unified interface offered by Cisco XDR. Two of 5 reviewers highlight that the system's integrations contribute to a more cohesive security environment. This consolidation provides a 'single pane of glass' view, simplifying management and improving overall situational awareness for security teams.
Reviewers frequently mention two specific software solutions used regularly alongside Cisco XDR: Cisco Secure Endpoint and the Cisco Firepower Series. Cisco Secure Endpoint is cited by three of five reviewers, indicating its common presence in environments leveraging Cisco's security ecosystem. While the specific reasons for its use were not detailed in the provided feedback, overall sentiment regarding this product was mixed. Similarly, the Cisco Firepower Series, encompassing models like the 2100 and 4100, was mentioned by two of five reviewers, also reflecting a mixed sentiment regarding its performance and utility. The limited detail in the reviews suggests that while these products are part of the operational toolkit for a significant portion of the surveyed users, further specifics on their strengths, weaknesses, or user experience were not elaborated, leading to an overall mixed assessment for both solutions.
Cisco Secure Endpoint is a regularly used software, appearing in the feedback of three reviewers. While its specific fu…
Cisco Secure Endpoint is a regularly used software, appearing in the feedback of three reviewers. While its specific functionalities or user experiences were not detailed, the collective sentiment regarding its performance and value was mixed. This suggests that users encounter both positive aspects and areas for improvement with the product.
The Cisco Firepower Series, including specific models like the 2100 and 4100, is another software solution regularly us…
The Cisco Firepower Series, including specific models like the 2100 and 4100, is another software solution regularly used by reviewers, with two of five reviewers mentioning it. Similar to Cisco Secure Endpoint, the overall sentiment for the Firepower Series was mixed, implying that users experience a range of satisfaction levels without specifying the contributing factors. This indicates that while the product is in active use, its reception is not uniformly positive.
Cisco XDR is primarily deployed for security incident management and response, a use case highlighted by 3 of 5 reviewers. Organizations leverage the platform to detect threats, correlate suspicious activities, and conduct forensic analysis during incident response, providing essential visibility for Security Operations Centers (SOCs). Additionally, 2 of 5 reviewers noted the product's effectiveness in data integration, simplifying access to multiple data streams and serving as a comprehensive security hub or a supplement to existing Security Information and Event Management (SIEM) solutions. While 2 of 5 reviewers also utilize Cisco XDR for device protection and proactive monitoring, one reviewer specifically from Brazil raised concerns regarding the high cost and integration challenges with SIEM tools in their market, indicating that competitive and more affordable alternatives exist for this particular application.
Reviewers frequently highlight Cisco XDR's role as a core tool for managing security incidents and performing incident…
Reviewers frequently highlight Cisco XDR's role as a core tool for managing security incidents and performing incident response. It is valued for its ability to detect threats, correlate suspicious activities to identify threat actors, and support forensic investigations, providing critical visibility for 24/7 SOC operations.
The platform is praised by 2 of 5 reviewers for its ability to simplify data integrations, consolidating multiple strea…
The platform is praised by 2 of 5 reviewers for its ability to simplify data integrations, consolidating multiple streams of security data into a single interface. This functionality allows it to act as a "SOC in a box" or effectively supplement existing SIEM tools, enhancing overall visibility.
Cisco XDR is used by 2 of 5 reviewers for device protection, enabling proactive management and monitoring for clients.…
Cisco XDR is used by 2 of 5 reviewers for device protection, enabling proactive management and monitoring for clients. However, one reviewer from Brazil noted significant challenges related to the high cost and integration complexities with SIEM tools, suggesting that more affordable alternatives are available in that market.
Reviews of Cisco XDR indicate several areas where the platform could be enhanced to better meet user needs. A significant concern, raised by 3 of 5 reviewers, pertains to the system's integration capabilities, with specific calls for broader and more robust connections to other security tools. Concurrently, a similar proportion of reviewers (3 of 5) highlighted a desire for greater customization and programmability, suggesting that the current iteration offers limited flexibility for tailoring the platform to specific operational requirements. Furthermore, incident management features were identified as needing improvement by 3 of 5 reviewers, who noted limitations in how incidents are created, mitigated, and comprehensively displayed within the platform. These observations collectively point to opportunities for Cisco XDR to evolve by expanding its ecosystem connectivity, offering deeper configurability, and refining its core incident handling workflows.
Reviewers frequently cited integration capabilities as an area requiring improvement, with 3 of 5 reviewers expressing…
Reviewers frequently cited integration capabilities as an area requiring improvement, with 3 of 5 reviewers expressing a need for more extensive and effective connections with other security tools. Specific feedback pointed to the desire for better integration with platforms like Splunk, indicating a gap in seamless data flow and interoperability within existing security infrastructures.
The platform's customization and programmability were identified as shortcomings by 3 of 5 reviewers. Users expressed a…
The platform's customization and programmability were identified as shortcomings by 3 of 5 reviewers. Users expressed a desire for greater flexibility to tailor the system, suggesting that current options for personalizing workflows or incident creation based on specific behaviors are limited.
Incident management features presented an area for improvement, according to 3 of 5 reviewers. Feedback indicated that…
Incident management features presented an area for improvement, according to 3 of 5 reviewers. Feedback indicated that the current system could benefit from more options for manual incident creation and enhanced capabilities to mitigate events, as not all relevant incidents consistently appear within Cisco XDR.
Reviewers highlight Cisco XDR's strengths primarily in its ability to enhance security operations through robust threat visibility and detection, alongside its strong integration capabilities. A significant majority of reviewers, 3 out of 5, specifically commend the platform for its comprehensive visibility and detection features. This includes its capacity to identify and track malicious activities, providing security teams with a clearer understanding of potential threats within their environment. Beyond threat identification, the system's architectural flexibility is also noted as a key advantage. Two out of five reviewers point to Cisco XDR's effective integration with other products, emphasizing its API-based connectivity. This suggests that the platform is not viewed in isolation but as a component that can seamlessly fit into and augment existing security ecosystems, allowing for a more unified and efficient security posture. The combined emphasis on deep threat insight and interoperability positions Cisco XDR as a valuable tool for organizations seeking to consolidate and improve their security defenses.
Reviewers frequently praise Cisco XDR for its ability to provide comprehensive insight into potential security risks. T…
Reviewers frequently praise Cisco XDR for its ability to provide comprehensive insight into potential security risks. Three out of five reviewers specifically noted its effectiveness in detecting and tracking malicious activities, which is critical for proactive threat management. This capability helps security teams understand the trajectory of threats, enabling more informed and timely responses.
A notable strength of Cisco XDR, cited by two out of five reviewers, is its seamless integration with other security to…
A notable strength of Cisco XDR, cited by two out of five reviewers, is its seamless integration with other security tools and platforms. Reviewers appreciate its API-based integration, which facilitates a more cohesive and interconnected security ecosystem. This feature allows organizations to leverage their existing investments while enhancing overall security orchestration and response.