+
+

Related Products

  • ThreatLocker
    700 Ratings
    Visit Website
  • Blumira
    150 Ratings
    Visit Website
  • ManageEngine Log360
    190 Ratings
    Visit Website
  • Daylight
    11 Ratings
    Visit Website
  • SOCRadar Extended Threat Intelligence
    115 Ratings
    Visit Website
  • Adaptive Security
    91 Ratings
    Visit Website
  • Criminal IP
    457 Ratings
    Visit Website
  • NeuBird
    2 Ratings
    Visit Website
  • Iru
    1,385 Ratings
    Visit Website
  • Bitdefender Ultimate Small Business Security
    5 Ratings
    Visit Website

About

Together we can end cyber attacks at the endpoint, across the enterprise, to everywhere the battle moves. Cybereason delivers over-the-horizon visibility and high fidelity convictions of both known and unknown threats so defenders can leverage the power of true prevention. Cybereason provides the deep context and correlations from across the whole of the network to uncover stealthy operations and enable defenders to be expert threat hunters. Cybereason significantly reduces the time required for defenders to investigate and resolve attacks through both automated and guided remediation with just a click of the mouse. Cybereason analyzes 80 million events per second - that’s 100x the volume of other solutions on the market. Reduce investigation time by as much as 93% to eliminate emerging threats in a matter of minutes rather than days.

About

Rapid7 Incident Command is an AI-powered next-generation SIEM designed to deliver unified visibility and faster threat response across modern attack surfaces. It brings together logs, telemetry, asset context, and threat intelligence into a single, actionable view across cloud, SaaS, endpoints, and hybrid environments. Incident Command uses AI-driven behavioral detections and alert triage to cut through noise and surface the threats that matter most. Every alert is enriched with exposure, vulnerability, asset risk, and third-party intelligence to guide decisive action. Built-in SOAR automation and guided AI response workflows help reduce dwell time and accelerate containment. The platform supports advanced investigations with natural language search, attack path reconstruction, and MITRE ATT&CK alignment. Rapid7 Incident Command enables security teams to scale their SOC with speed, clarity, and confidence.

Platforms Supported

Windows Supported
Mac Supported
Linux Supported
Cloud Supported
On-Premises Not Supported
iPhone Supported
iPad Supported
Android Supported
Chromebook Not Supported

Platforms Supported

Windows Not Supported
Mac Not Supported
Linux Not Supported
Cloud Supported
On-Premises Not Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Audience

IT security teams

Audience

Rapid7 Incident Command is ideal for enterprise security teams, SOC analysts, and security leaders seeking an AI-powered SIEM to unify visibility, reduce alert fatigue, and accelerate threat detection and response across hybrid environments

Support

Phone Support Not Supported
24/7 Live Support Not Supported
Online Not Supported

Support

Phone Support Supported
24/7 Live Support Not Supported
Online Supported

API

Offers API Not Supported

API

Offers API Not Supported

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version Supported
Free Trial Supported

Pricing

No information available.
Free Version Not Supported
Free Trial Supported

Reviews/Ratings

Overall 5.0 / 5
ease 5.0 / 5
features 4.5 / 5
design 5.0 / 5
support 4.5 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Pros & Cons from Real Users

Pros

  • Cybereason EDR includes customizable automated response playbooks that allow teams to respond to threats in real-time. These playbooks can automatically quarantine infected endpoints, isolate processes, or alert security teams, reducing response times and minimizing manual intervention. Cybereason visual representation of attack timelines and paths helps security teams quickly understand the scope and impact of threats. The platform supports advanced threat hunting capabilities with a focus on proactive identification of threats.
  • Cybereason continuously integrates threat intelligence from multiple global sources. This keeps the platform up-to-date with the latest threat landscapes and attacker tactics, techniques, and procedures, improving its ability to detect novel threats faster than traditional EDR tools. Cybereason provides in-depth investigation and forensic capabilities, enabling security analysts to dive deep into the details of an attack. Cybereason detailed logging and data retention options support comprehensive post-incident analysis, helping teams improve defenses and learn from past incidents.

Cons

  • Due to the behavior-based detection system, Cybereason can sometimes produce a higher volume of false positives, particularly when analyzing complex environments. Cybereason is effective for large organizations, the cost can be high when deploying across thousands of endpoints.
  • Cybereason EDR offers advanced features and customization options, which can lead to a steep learning curve for new users. Initial setup and configuration can be complex, especially for organizations without experienced cybersecurity professionals, which may delay deployment and full operationalization.

Training

Documentation Not Supported
Webinars Not Supported
Live Online Not Supported
In Person Not Supported

Training

Documentation Supported
Webinars Not Supported
Live Online Supported
In Person Supported

Company Information

Cybereason
Founded: 2012
United States
www.cybereason.com

Company Information

Rapid7
Founded: 2000
United States
www.rapid7.com/products/siem/

Alternatives

Alternatives

Alert Logic

Alert Logic

Fortra

Categories

Categories

IT Security Features

Anti Spam Not Supported
Anti Virus Supported
Email Attachment Protection Not Supported
Event Tracking Not Supported
Internet Usage Monitoring Not Supported
Intrusion Detection System Not Supported
IP Protection Not Supported
Spyware Removal Not Supported
Two-Factor Authentication Not Supported
Vulnerability Scanning Not Supported
Web Threat Management Not Supported
Web Traffic Reporting Not Supported

Endpoint Detection and Response (EDR) Features

Behavioral Analytics Supported
Blacklisting/Whitelisting Not Supported
Continuous Monitoring Not Supported
Malware/Anomaly Detection Supported
Prioritization Not Supported
Remediation Management Supported
Root Cause Analysis Not Supported

SIEM Features

Application Security Not Supported
Behavioral Analytics Supported
Compliance Reporting Not Supported
Endpoint Management Supported
File Integrity Monitoring Not Supported
Forensic Analysis Not Supported
Log Management Supported
Network Monitoring Supported
Real Time Monitoring Supported
Threat Intelligence Supported
User Activity Monitoring Supported

Integrations

Armis Centrix Supported
Chronicle SOAR Supported
Google Digital Risk Protection Supported
NorthStar Navigator Supported
AWS AppFabric Not Supported
Axonius Supported
COZYROC SSIS+ Suite Supported
Cisco Duo Not Supported
Cynerio Not Supported
Imperva WAF Not Supported
Intellicta Not Supported
Medigate Not Supported
NXLog Not Supported
Optiv Managed XDR Not Supported
Rapid7 Command Platform Not Supported
Recorded Future Not Supported
Scuba Database Vulnerability Scanner Not Supported
StatusGator Not Supported
ThreatConnect Risk Quantifier (RQ) Supported

Integrations

Armis Centrix Supported
Chronicle SOAR Supported
Google Digital Risk Protection Supported
NorthStar Navigator Supported
AWS AppFabric Supported
Axonius Not Supported
COZYROC SSIS+ Suite Not Supported
Cisco Duo Supported
Cynerio Supported
Imperva WAF Supported
Intellicta Supported
Medigate Supported
NXLog Supported
Optiv Managed XDR Supported
Rapid7 Command Platform Supported
Recorded Future Supported
Scuba Database Vulnerability Scanner Supported
StatusGator Supported
ThreatConnect Risk Quantifier (RQ) Not Supported
Claim Cybereason and update features and information
Claim Cybereason and update features and information
Claim Rapid7 Incident Command and update features and information
Claim Rapid7 Incident Command and update features and information