We have implemented ActiveWolf due to its more hands-off approach, suitable for our small IT team without dedicated security specialists.
Arctic Wolf Managed Detection and Response (MDR)
Arctic WolfExternal reviews
External reviews are not included in the AWS star rating for the product.
Hands-off approach works well with monthly security assistance for network
What is our primary use case?
What is most valuable?
The solution works well for our team as it offers a hands-off approach, which we need. The pricing is okay and comparable to other solutions. We value the hands-off approach as we don't have our own security team. We have monthly meetings with them, where they help us secure parts of our network, which is valuable to us.
What needs improvement?
The only frustrating aspect is the lack of support for Windows on ARM devices. We cannot fully secure these devices until they release an updated version of their agent software.
For how long have I used the solution?
I've used the solution for just over a year.
What do I think about the stability of the solution?
There is not much downtime, however, they are sometimes a bit slow in responding with more information when an issue is flagged.
How are customer service and support?
They are quite responsive overall. We have monthly meetings where they help us with network security. However, their response can be slow when we ask for more information.
How would you rate customer service and support?
Positive
How was the initial setup?
It took us about three to four weeks to bring it live as we had to ship the sensors to different sites. It probably took a month to be fully up to speed, but that was fine because we needed to onboard it anyway.
What's my experience with pricing, setup cost, and licensing?
The pricing is okay and comparable to other solutions, with competitive pricing obtained for most options. We value the ease of use and hands-off approach.
Which other solutions did I evaluate?
We looked at the Microsoft service and another solution, however, I can't remember the name of the latter.
What other advice do I have?
I rate the overall solution nine out of ten.
Amazing 24/7 SOC/NOC Support
Have up to 2 years of experience in Arctic Wolf
Offers AI features that help improve detection and response capabilities
What is our primary use case?
In my company, we have our own internal MDR as well. I am a salesperson, so I don't use the tool by myself.
I moved from telecom to IT earlier this year. I am very new to the tool, but it sounds great. For our company's clients, the tool increases visibility over the network. Arctic Wolf Managed Detection and Response plugs well into everything. Being able to have that sort of real-time, twenty-four-by-seven help desk that watches over your network and all your devices in case there is some attack or breach that it can contain is helpful.
How has it helped my organization?
Having or hiring someone locally to do all those things that Active Wolf and their team does would cost so much more for businesses. The tool definitely saves money for our company's customers. I think the tool saves time because the customers do not do much work, like doing certain things manually and going through logs.
What is most valuable?
The solution's most valuable feature is the certainty that someone is watching it, and that is the one key thing that I love about the product. Apart from the tool's own local team, somebody is always watching the tool and reducing any risks. The awareness training and all that stuff are good because Arctic Wolf Managed Detection and Response does it all by building such areas.
What needs improvement?
I have heard that the tool doesn't go right to the endpoints. With CrowdStrike, I don't think that it is a bad thing anymore.
For how long have I used the solution?
I have years of experience with Arctic Wolf Managed Detection and Response. As a salesperson, I am meant to sell it.
How are customer service and support?
I think the technical support for the solution is pretty good. I think it is all about setting expectations with your customers. Arctic Wolf is a global company, so you have to make sure that the customer knows that support will take as per whatever is mentioned in the SLA, which can take three days or whatever. I haven't heard any complaints from my customers about the tool's support team, but nobody is perfect. I rate the technical support an eight out of ten.
How would you rate customer service and support?
Positive
What was our ROI?
Considering the number of activities that customers have to indulge in, especially with the increase in attacks in New Zealand, I can say that the tool helps save a time frame of seven days.
What other advice do I have?
Speaking about the product's integration capabilities, I feel that I am probably not experienced enough to talk about it. Arctic Wolf Managed Detection and Response is still quite immature compared to other providers in the market. The tool sort of integrates with a few products, but it doesn't integrate with everything.
The AI-driven tool helps improve detection and response capabilities, but human beings also manage it. You need the best of both worlds because AI can't do everything. One can still get false positives with the tool, so you need a human being. You also need AI to protect yourself against attacks.
I probably haven't had enough experience to give a proper opinion, but with my experience this year, I think it is pretty good for its current market. It plays in both corporate and medium-sized companies and corporate-level businesses. The tool is not meant for an enterprise-sized business since there are other tools like CrowdStrike and Splunk, along with more mature solutions.
I rate the tool an eight out of ten.
Provides visibility into the environment, responds to threats quickly, and the documentation is pretty good
What is our primary use case?
The solution helps monitor our endpoints and network traffic. It alerts us whenever something's going down. It has been pretty helpful.
How has it helped my organization?
The product helps with visibility.
What is most valuable?
The agents that are installed help detect threats. The agents give pretty good visibility into what is happening at the endpoint. The response to threats is pretty quick. Depending on the severity, the team sends an email or gives us a direct call. The weekly and monthly reports through the dashboard are helpful.
What needs improvement?
It will be helpful if the dashboard is more granular. The vendor must allow us to see what they see on their end.
For how long have I used the solution?
I have been using the solution for three months.
What do I think about the stability of the solution?
I rate the tool’s stability a nine out of ten. The product hasn’t gone down since we have had it.
What do I think about the scalability of the solution?
We have around 1000 users.
How are customer service and support?
We have 24/7 support. It’s like an extension of the department. The technical support is pretty helpful. Someone's always there to help us.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is pretty straightforward. The documentation is pretty good. I rate the ease of setup an eight out of ten. It is a SaaS solution. Two network engineers can deploy the product. We have network engineers and analysts on our team. We make sure the agents are not degraded. Most of the maintenance is done by the vendor.
What's my experience with pricing, setup cost, and licensing?
The pricing is pretty competitive.
What other advice do I have?
I will recommend the solution to others. It provides more visibility into the environment. If the staff is pretty short-handed, it helps out. Overall, I rate the product a nine out of ten.
Excellent Endpoint Security product that revolutionized with Artificial Intelligence
- Its protection is based more on artificial intelligence residing in the agent and not on virus definition updates like other products in its range.
- It has a management console that is very user-friendly and easy to use and implement.
- It does not have installation through unattended deployment, and the deployment must be done from other external tools (via GPO if MSI, or through another product that deploys installations).
- Detailed personalized reports.
- From the EDR, it is used as an Application control by blocking executables.