Architecture & Platform Foundation
Unified Underlying Data Engine
Tethered to vendor data platform
Proprietary SaaS backendProprietary Internal Communication Protocol
Standard APIs only
Standard APIs onlyMicroservice Architecture Footprint12 vCPU minimum
Heavy resource footprintVendor Lock-in Resistance
Pulls buyer into vendor stackMaster Engine Synchronization
DB-driven clusteringDistributed High Availability (HA)
Independent Storage Data Persistence
External DB cluster requiredCost & Licensing
Total Cost of Ownership (TCO)
High enterprise / volume-based cost
User / volume-based costDatabase Licensing Costs
Commercial DB license requiredDedicated Offline Licensing UI
Manual support ticket / CLI
N/ADeployment & Infrastructure
True Air-Gapped / Offline Support
Complex on-prem configuration
Cloud-first focusInstallation Scripting (Interactive CLI)
Multi-step / complex deployment
Vendor provisionedHardware Allocation Profiles3 tiers
Variable on loadMulti-OS SupportRHEL 8/9 & Ubuntu 22/24
RHEL/CentOS focus
SaaS / cloud appPre-compiled Source Deployments
Container / RPM / tarball only
SaaS onlyStandalone Centralized Deployment
Edge deploymentsGranular Service Traffic Binding
OS-level routingAutomation, AI & Playbooks
Artificial Intelligence (AI) Pillar
Separate SKU / add-on moduleCode Requirement for Playbooks
Moderate-to-heavy (JS/Python)Visual Playbook Flow Testing
Code execution focusPlaybook Execution Concurrency50+
Resource intensiveAutomated Defensive Maneuvers
Automated Data Classification
Playbook dependentIncident & Threat Operations
Unified Incident Management Lifecycle
Daily Incident Processing Volume2,500+
Scaling requires heavy hardwareThreat Intelligence Management
Add-on / companion app required
Integration requiredAttribute-based Incident Routing
Dynamic Severity & Priority Assignment
Actionable MTTR Reduction Tracking
Immediate Network Isolation Actions
Integrations, Collaboration & UX
Integration Flexibility
Custom app development requiredOut-of-the-Box Integrations250+
Third-Party Web Service Orchestration
Secure External API Authentication
Real-Time Collaboration Ecosystem
Limited (events only)