IT Security Product Group Tests | SC Media

Group Tests

About Product Reviews

In our Group Test each month, we look at several products around a common theme based on a predetermined set of SC Labs standards (performance, ease of use, features, documentation, support, and value for money).  There are roughly 50 individual criteria in the general test process. These criteria were developed by the SC Lab in cooperation with the Center for Regional and National Security at Eastern Michigan University.

The diligence and commitment to excellence made by these staff and other members of our editorial team have made our Product Reviews one of the most well-read sections of our magazine and website. As a result, they remain the most objective, thorough and best in the industry. For more information click here.

Group Test

BlackBerry Spark

Verdict: Overall, security pros should consider BlackBerry Spark an ideal endpoint security solution for those in the business of building in-house applications.

Quickview
FortiEDR 4.1

Verdict: Overall, we were impressed with Fortinet FortiEDR, especially considering it’s a relatively new Fortinet solution.

Quickview
F-Secure Protection Service for Business, Computer Protection Premium 20.1

Verdict: Overall, F-Secure delivers rich event context that helps analysts quickly identify malicious processes and understand their behaviors.

Quickview
McAfee MVISION Protect Plus EDR 10.7, 3.0

Verdict: Overall, security pros will consider MVISION Protect Plus EDR a particularly good option for enterprises that require a highly-scalable solution.

Quickview
Microsoft Defender Advanced Threat Protection

Verdict: Overall, security pros will find Microsoft Defender ATP a holistic, unified endpoint security solution that addresses the entire set of security capabilities necessary to protect against the modern threat landscape.

Quickview
SentinelOne EPP Jamaica#38 / Agent 4.0

Verdict: Overall, security pros will find SentinelOne EPP a solid, easy-to-use product that covers the spectrum of endpoint security expectations. Organizations in the MSSP market or large companies frequently involved in mergers and acquisitions will find this product ideal.

Quickview
Sophos Intercept X Advanced with EDR

Verdict: Overall, security pros will Sophos Intercept X a worthy, easy-to-install endpoint security solution that adds expertise by delivering enriched contextual information without adding to security team headcount.

Quickview
VMware Carbon Black Cloud

Verdict: Overall, security pros will find VMWare Carbon Black Cloud a solid endpoint security solution. The cloud-native platform stops all areas of malicious activities and turns detected behaviors into actionable prevention measures.

Quickview
BlackBerry Spark

Verdict: Overall, security pros should think of BlackBerry Spark as an ideal endpoint security solution for those in the business of building in-house applications.

Quickview
CrowdStrike Falcon 5.x

Verdict: Overall, security pros will find CrowdStrike Falcon a superb solution that does a great job of identifying suspicious behavior and delivering robust contextual event information.

Quickview
Cybereason Defense Platform 20.1

Verdict: Overall, consider Cybereason Defense Platform a solid, low footprint endpoint security option that issues alerts immediately without interrupting normal internal system processes.

Quickview
FireEye Endpoint Security v4.9

Verdict: Overall, FireEye Endpoint Security runs as a worthy contender in the endpoint security space. The seamless installation process lets FireEye coexist with other security products, offering the most value possible.

Quickview
Auth0

Verdict: The scalable Auth0 ecosystem enables and simplifies the use of any authentication or application lifecycle solution and is ideal for those looking to integrate identity management naturally into their developer workflow.

Quickview
JumpCloud

Verdict: This is a niche product especially suited for small and midsized businesses operating within cloud or Mac environments and without an active directory.

Quickview
LogMeIn LastPass Identity

Verdict: This solution is particularly ideal for small to midsized businesses. However, anyone would benefit from adding it to their security toolset.

Quickview
Microsoft Azure Active Directory (Azure AD)

Verdict: This is a popular end-to-end identity and access management solution that strongly focuses on security.

Quickview
Okta Identity Cloud

Verdict: This is a flexible solution with an extensive integration network that covers every identity use case and provides financial benefits for businesses across any industry.

Quickview
OneLogIn Trusted Experience Platform (TEP)

Verdict: This is a solid identity and access management solution that bridges cloud, on-premise, and legacy applications with hybrid support.

Quickview
Simeio Identity Orchestrator

Verdict: This is an extensible, standards-based platform that improves the identity and access management experience through automation.

Quickview
Yubico YubiKey 5Ci

Verdict: YubiKey 5Ci offers the easiest and the highest level of security available for an identity solution that is so consumer friendly.

Quickview
Beyond Security beSECURE 20.3

Verdict: Overall, Beyond Security beSECURE is a solid vulnerability management solution with robust automation capabilities and one-click integrations, reducing the manual effort security teams otherwise must put forth and allowing them to focus on remediation instead.

Quickview
Carson & SAINT SAINT Security Suite 9.7

Verdict: Overall, SAINT Security Suite is a solid tool that has evolved nicely after many years of development. This is a particularly good option for those looking for an advanced environmental scanning tool.

Quickview
Digital Defense Frontline Vulnerability Manager

Verdict: Overall, Digital Defense Frontline Vulnerability Manager makes it quick and easy to parse through accurate vulnerability data to extract specific information.

Quickview
Kenna Security Kenna.VM

Verdict: Overall, Kenna Security Kenna.VM offers undisputed, evidence-based, real-time threat intelligence and risk scoring focusing on active exploits.

Quickview
NopSec Unified VRM 5

Verdict: It focuses on lifecycle management to optimally inventory assets, detect vulnerabilities, prioritize risk, remediate concerns and validate existing security controls and remediation efficacy.

Quickview
Rapid7 InsightVM 6.6.1

Verdict: Overall, Rapid7 InsightVM is a valuable vulnerability management solution and one of the better options we tested this month. It provides the visibility necessary to detect, prioritize and remediate vulnerabilities.

Quickview
RiskIQ Digital Footprint

Verdict: Overall, RiskIQ Digital Footprint is a unique vulnerability management solution with an unparalleled breadth of data. It bridges internal detection with external intelligence to provide total visibility into franchise security posture.

Quickview
RiskSense RBVM 8.15

Verdict: Overall, RiskSense RBVM is a noteworthy vulnerability management solution that empowers businesses with full visibility of threats and risk.

Quickview
Tenable.io and Tenable Lumin

Verdict: Overall, Tenable.io and Tenable Lumin is a solid vulnerability management tool that provides unified visibility into assets and quantifies cyber risk to optimize vulnerability management.

Quickview
Tripwire IP360 9.1.1

Verdict: Tripwire IP360 is a solid vulnerability management solution with a scalable enterprise architecture. It uniquely considers vulnerability age, risk and availability to pinpoint an environment’s greatest risks.

Quickview
ZeroNorth The ZeroNorth Platform

Verdict: Overall, the ZeroNorth Platform offers a significant return on investment by optimizing other security tool investments, expanding the scanning portfolio, and maximizing time-to-value. Businesses large and small, particularly those interested in PCI compliance, will appreciate ZeroNorth’s scalability, as well as its actionable, prioritized integration with DevOps environments.

Quickview
AT&T Cybersecurity USM Anywhere

Verdict: This SIEM is focused on threat detection and response and has several highly useful features that reduce the burden on security teams and eliminate the need for additional security tools.

Quickview
Exabeam Security Management Platform 2019.2

Verdict: The solution impressed us very much, especially its ability to link incidents accurately even when they are tied to different end-users.

Quickview
Fortinet FortiSIEM 5.2.6

Verdict: FortiSIEM is an ideal SIEM solution for MSSPs and those looking for high usability in a scalable architecture with robust out-of-the-box content.

Quickview
Core Security Event Manager 6.4

Verdict: This offering comes with a tremendous amount of intelligence and automated alerts, so security teams of any size can manage it with confidence.

Quickview
IBM Security QRadar 7.3.3

Verdict: This SIEM modernizes security frameworks and mitigates some of the global security skills shortage by maintaining data privacy and supporting regulatory compliance.

Quickview
McAfee Enterprise Security Manager (ESM) 11.3

Verdict: The automation, orchestration and extensive customizability in ESM effectively simplify security operations so that analysts can act on threats with confidence.

Quickview
Micro Focus ArcSight ESM 7.2

Verdict: The unparalleled dashboard graphics, intuitive navigation and compliance support make this highly flexible SIEM an ideal choice for any security team of any experience level.

Quickview
Microsoft Azure Sentinel

Verdict: This SIEM simply needs time to develop and mature and with some work on clarity and the simplicity of the interface, will become a powerhouse in the future.

Quickview
Netsurion EventTracker 9.2

Verdict: The platform maximizes productivity with unsupervised machine learning and a customizable interface that makes data correlation quick and simple.

Quickview
Rapid7 InsightIDR

Verdict: The high context visual investigations, detailed timelines and user-friendly interfaces give security teams the tools they need to maximize efficiency and respond to threats quickly and confidently.

Quickview
RSA Security NetWitness Platform 11.4

Verdict: RSA NetWitness Platform arms security teams with a multitude of native data sources that layer in endpoint data and provide threat detection and response across an environment.

Quickview
Splunk Enterprise Security 6.0

Verdict: The flexibility and performance of Enterprise Security impressed us and we believe it is a great choice for more developed security teams with mid-level analysts.

Quickview
Code42 Next-Gen Data Loss Protection

Verdict: This is a highly flexible and customizable solution uniquely focused on protection over prevention.

Quickview
Digital Guardian – Data Protection Platform 7.6

Verdict: Focused on content, context and user-based classifications resulting in powerful information used to identify, tag, and fingerprint sensitive data with the lowest possible false possible results.

Quickview
Fidelis Cybersecurity Fidelis Network 9.2.4

Verdict: The patented nature of this product inherently renders it unique in its recursive approach to decoding information and delving deep into areas and files within a network that may otherwise go unscanned and undetected.

Quickview
iStorage Limited cloudAshur–cloud data encryption module

Verdict: This is a very easy-to-use, highly customizable solution that eliminates security vulnerabilities by focusing on access control through a variety of means and authorizations.

Quickview
McAfee Total Protection for DLP 11.4

Verdict: The comprehensiveness and flexibility of this product renders it suitable for a variety of organizations looking for a DLP product with automation capabilities and robust content-based classification functionality.

Quickview
Zecurion DLP 9

Verdict: This comprehensive and customizable DLP solution features in-depth monitoring to secure content and identify misbehavior, resource misuse, and fraudulent practices.

Quickview
Abnormal Security – Abnormal Cloud Email Security Platform

Verdict: Leverages API-based integrations to combine relationship and content analysis to stop targeted attacks and reduce the number of false positives.

Quickview

Group Tests