Introducing G2.ai, the future of software buying.Try now

Expel Reviews & Product Details

Expel Overview

What is Expel?

Expel is the leading managed detection and response (MDR) provider trusted by some of the world’s most recognizable brands to expel their adversaries, minimize risk, and build security resilience. Expel’s 24x7x365 coverage spans the widest breadth of attack surfaces, including cloud, with 100% transparency. We combine world-class security practitioners and our AI-driven platform, Expel Workbench™, to ingest billions of events monthly and still achieve a 21-minute critical alert MTTR. Expel augments existing programs to help customers maximize their security investments and focus on building trust—with their customers, partners, and employees. Expel Managed Detection and Response delivers 24/7 decision support. We integrate with the tech you already have—across attack surfaces—to maximize your existing tech investments. Our platform automates analysis for your vendor alerts to filter out false positives. We’ll enrich the alerts that matter with context so we can resolve them with an average alert-to-fix of 21 minutes for critical alerts. Expel Threat Hunting provides peace of mind that your environment is secure and your defenses are optimized. Expel identifies attacks your automated detections missed, while providing insights that enable a stronger defensive strategy. You get clear guidance on how you can improve your defenses from a dedicated team of experts, without the strain on internal teams. Expel Vulnerability Prioritization accelerates your remediation process by letting you know exactly which vulnerabilities pose the greatest risk, with recommendations on next steps for immediate action. Expel Phishing takes complete ownership of your phishing inbox and provides remediation and guidance when threats enter via this critical attack vector. Unique data from your security technology helps Expel monitor and remove phishing emails from your inbox as well as protecting your entire environment from these attacks.

Expel Details
Product Website
Discussions
Expel Community
Languages Supported
English
Show LessShow More
Product Description

Expel offers managed detection and response (MDR) for on-prem, MDR for cloud infrastructure, MDR for SaaS apps, remediation, phishing, and threat hunting.


Seller

Expel

Description

Expel is the leading managed detection and response (MDR) provider trusted by some of the world’s most recognizable brands to expel their adversaries, minimize risk, and build security resilience. Expel’s
4/7/365 coverage spans the widest breadth of attack surfaces, including cloud, with 100% transparency. We combine world-class security practitioners and our AI-driven platform, Expel Workbench™, to ingest billions of events monthly and still achieve a
3-minute critical alert MTTR. Expel augments existing programs to help customers maximize their security investments and focus on building trust—with their customers, partners, and employees.

Overview Provided by:

Expel Integrations

(5)
Verified by Expel

Recent Expel Reviews

IW
Ian W.Enterprise (> 1000 emp.)
4.5 out of 5
"Expel Review"
The function perfectly as a external SOC. Super easy portal with actionable information. They have been very responsive in the creating of custom r...
RJ
RHYS J.Enterprise (> 1000 emp.)
5.0 out of 5
"Great response time from analysts"
Expel analysts are very prompt in response. Whenever I have a query, I always say @Ruxie and the analysts provide accurate information. 24/7 covera...
James M.
JM
James M.Mid-Market (51-1000 emp.)
5.0 out of 5
"Leaps and bounds better than competitors"
We’ve had a fantastic experience with Expel, and it has become an invaluable part of our security operations. From the start, the onboarding proces...

Pricing Insights

Averages based on real user reviews.

Time to Implement

2 months

Return on Investment

7 months

Average Discount

20%

Perceived Cost

$$$$$
View More Pricing Information

Expel Media

Expel Demo - Expel Alert Analysis Dashboard
It's not just about showing alerts to our users, Expel is analyzing their alerts so that customers know their weak points and what it is they are viewing rather than just overwhelming them with tons of alerts.
Expel Demo - Expel Findings Report
Expel Findings Report
Expel Demo - Expel Situation Report
Expel Situation Report
Play Expel Video
Play Expel Video
Play Expel Video

Official Downloads

Answer a few questions to help the Expel community
Have you used Expel before?
Yes

66 Expel Reviews

4.7 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
66 Expel Reviews
4.7 out of 5
66 Expel Reviews
4.7 out of 5

Expel Pros and Cons

How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Cons
G2 reviews are authentic and verified.
James M.
JM
Director of Information Security & Privacy
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Expel?

We’ve had a fantastic experience with Expel, and it has become an invaluable part of our security operations. From the start, the onboarding process was smooth and efficient, making it easy to get up and running without unnecessary complexity.

The platform itself is intuitive and user-friendly, allowing our team to quickly access insights, investigate alerts, and take action with minimal friction. The visibility and transparency Expel provides into security events make it far easier to understand what’s happening in our environment.

One of the standout aspects of working with Expel is the level of support they offer. Their team is responsive, knowledgeable, and genuinely invested in helping us succeed. Whether it’s answering questions, providing guidance, or proactively identifying potential issues, the support we receive is top-notch.

Overall, Expel has been a great fit for our needs. It simplifies security operations, provides valuable insights, and offers a seamless user experience. We highly recommend it to any organization looking for a reliable and well-supported security operations solution. Review collected by and hosted on G2.com.

What do you dislike about Expel?

One small limitation we’ve noticed with Expel is that while it offers GitHub integration, it currently doesn’t support Bitbucket. Since our team uses Bitbucket, having native integration would be a great addition. That said, the platform still provides excellent coverage, and we’ve been able to work around this gap with other security measures. Hopefully, Bitbucket support will be considered in future updates! Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel helps us streamline security operations by providing continuous monitoring, rapid detection, and expert analysis of potential threats. It reduces the burden on our internal team by handling alert triage and investigation, allowing us to focus on strategic security initiatives rather than chasing false positives. The transparent platform and actionable insights make it easy to understand and respond to incidents quickly, improving our overall security posture while saving time and resources. Review collected by and hosted on G2.com.

IW
Security Engineer
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Expel?

The function perfectly as a external SOC. Super easy portal with actionable information. They have been very responsive in the creating of custom rules for our environment and handle support tickets quickly. Review collected by and hosted on G2.com.

What do you dislike about Expel?

They are still working on many integrations for some of our tools, they have been transparent in timelines to achieve those goals. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel operations as our frontline SOC freeing up time for our work force to handle other issues. Review collected by and hosted on G2.com.

PR
Sr. Security Engineer
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Expel?

Expel is extremely communicative letting us know what they are seeing in our environment within a very short timeframe. Their representatives and engineers are always eager to assist and get the right people on calls so that an issue can be resolved promptly. Review collected by and hosted on G2.com.

What do you dislike about Expel?

I have not had any downfalls or issues with Expel at this time. My only small complaint is that sometimes after they have been notified of something they still report on it and open another ticket when we have already verified the issue and acknowledged it with them. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel is solving the problem of extending our security team so that we have less work to sift through on daily events. Review collected by and hosted on G2.com.

Jerry J.
JJ
Senior Technical Engineer
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
Rating Updated ()
What do you like best about Expel?

The SOC is excellent, very responsive and accurate. They filter out stuff that is safe or expected. Expel's Workbench is easy to deploy and use. They have a large library of integrations ready to go and adapt to integrations we need. We work with Expel on a daily basis and have not been disappointed. Review collected by and hosted on G2.com.

What do you dislike about Expel?

Some of our integrations require a SIEM and we are working to get those integrations up to speed. This is not really a dislike and was expected. Working with Expel to get these integrations has been great. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel frees up our engineers to do other duties, so this is a huge benefit. Review collected by and hosted on G2.com.

RJ
Information Security Engineer
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
Rating Updated ()
What do you like best about Expel?

Expel analysts are very prompt in response. Whenever I have a query, I always say @Ruxie and the analysts provide accurate information. 24/7 coverage is also very helpful.

It is easy to navigate around the platform. Easy to implement and there are enough guidelines to work on the integrations.

Customer support is prompt and easy to contact Review collected by and hosted on G2.com.

What do you dislike about Expel?

When it comes to resolving or troubleshooting, it takes a very long time. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel is quickly and accurately analysing all the alerts and incidents we have in Microsoft Defender. Review collected by and hosted on G2.com.

MB
Security operations manager
Industrial Automation
Small-Business(50 or fewer emp.)
Validated Reviewer
Review source: Seller invite
Incentivized Review
What do you like best about Expel?

But what grab my attention is the quick detection and response to security threats Expel provides. It’s saved a bunch of time in monitoring threats and even in incident response. This has also integrated nicely with our existing SIEM tools, so we haven’t had to make major changes to how we currently run. Furthermore their team insights and recommendations have allowed us to be a bit more proactive about security management. Review collected by and hosted on G2.com.

What do you dislike about Expel?

Expel is a kind of reliable solution, however, there are some aspects which deserve better mentioning. For example, alerting system has no customization, certain alerts are general, so it is challenging to prioritize the alerts received. Still, it is superb for overall security management, but there are some particular security issues that it doesn’t describe comprehensively, so we have to use some other tools to fill the gaps. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

We’ve been able to solve a lot of security management problems for us using Expel. By taking away a lot of our manual tasks, its ability to automatically detect and respond to threats has cut down a lot of time our team would otherwise spend on those manual tasks. The software has easily fitted in with our current setup, allowing us to respond faster and better to security incidents. This also helps our team lower on high value projects as we have continuous monitoring of the security side of things. Review collected by and hosted on G2.com.

HC
IoT Solutions Architect
Computer Software
Small-Business(50 or fewer emp.)
Validated Reviewer
Review source: Seller invite
Incentivized Review
What do you like best about Expel?

Without a doubt, I like Expel because it provides quite detailed actionable insights in order to make fast decisions. It is integrated with our other systems well enough so we have all our security related information in one place. I like how it’s able to deliver automatic threat detection, fast updates. In addition, being easy to use, the platform enables less experienced team members to handle it without requiring much training. Review collected by and hosted on G2.com.

What do you dislike about Expel?

What I’ve seen as a drawback with Expel is that the way it reports could be more customizable. The default reports cover the basics, but options are few and far between when you want a little more specific or in depth insight. However, it can be a little hand limited, and if I need something slightly different, I wind up spending additional time tinkering with formatting and manually manipulating reports to work. It can slow down decision making and reduce workflows efficiencies. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

With Expel we solve several key issues in our security operations. It helps to detect threat more quickly and streamline threat detection, providing actionable insights and automated response, thus sped up process and save human error. Having all of the data in one interface has made receiving data from various sources so much easier for our team to analyze security risks and make decisions. This always eventually leads to better risk mitigation and faster resolution of security issues. Review collected by and hosted on G2.com.

Manish D.
MD
Staff Security Engineer - SecOps
Enterprise(> 1000 emp.)
Validated Reviewer
Verified Current User
Review source: Seller invite
Rating Updated ()
What do you like best about Expel?

Expel's workbench MDR platform is an extensive and feature rich service offering. It has out of the box integrations available for all major service offerings like AWS, Azure, Gsuite, Okta, GitHub, Office365, Crowdstrike and many more. You can easily implement detection and response capabilities for your computing infrastructure irrespective of on-prem, cloud or hybrid architectures. Expel's 24X7 advance SOC team is highly responsive and effcient in detection and response activities. Their Service support team is extremely attentive and responsive for any sort of issues raised by customer. Review collected by and hosted on G2.com.

What do you dislike about Expel?

They don't have any major downsides which I'm aware. The only thing which can be added to improve the offerings are automated workflows which can be helpful for remediation. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Every enterprise needs to have a next generation SOC capabilities to combat the ever growing threats and threat actors. Now building such capabilities in-house might take huge time and investment. Expel MDR is capable of providing such next generation SOC and monitoring capabilities right from the 1st day. Thanks to their experienced team of threat hunters and industry leading security tools & services. They all are trained really well and have years of experience in flagging suspicious activities in your digital infra. They also make use of AI/ML and automation to reduce the cyber dwell time and provide best in class service to its clients. Review collected by and hosted on G2.com.

Verified User in Computer Software
UC
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: G2 invite on behalf of seller
Incentivized Review
What do you like best about Expel?

The Expel team has a solid set of skills that span a reasonable breadth of what you would expect to find in a Security Operations organization and delivered via a technology platform that is both flexible and powerful. While implementation isn't necessarily simple, it is fairly straight-forward and what you would expect when looking at a service that needs to ingest things like various security platform logs. The documentation can be a mixed bag - some of the articles are fantastic and provide great details about the topics, while others feel outdated as a result of changes outside of Expel's control (e.g. when Google makes changes to how logging works, there is a lag to when Expel's documentation is updated to reflect those changes). Overall, Expel has done a great job of keeping up with our environment in terms of triaging and dispositioning alerts that come into the service. They have been responsive to additional context and information provided by our team as well.

One of the key areas of strength for Expel historically has been their responsiveness to support requests from our team. In the past, these requests were quickly acknowledged and the appropriate support resources are deployed to help. More recently, this experience has been less consistent and less straightforward, in part due to changes in how support gets engaged. That said, Expel has observed and identified the unexpected downsides to some of the recent changes, and they have made a point of working directly with customers to improve it. That is a promising approach that will, hopefully, lead to a more seamless and easier support experience. Review collected by and hosted on G2.com.

What do you dislike about Expel?

Despite the capabilities of the technical platform and the strength of the analysts providing the service, there is still a limit to the environmental/organizational knowledge inherent in the service. This leads to a fairly frequent need for engagement with our internal team to get clarification and verification. While seeking that verification is not necessarily a downside (some of these requests are absolutely necessary), they can become repetitive as a result of the lack of organizational knowledge retention within Expel specific to the customer environments.

More recently, there has been some shift in the thoroughness or evidence of human analysis prior to escalation/engagement with our internal team by Expel. While the automation capabilities of Expel are impressive, they often fall short of correlating with concurrent or historic activity, which is often a rich source of context. This may not always eliminate the need for direct engagement, but it would likely cut down on the frequency and limit it to higher-impact instances. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel is helping us monitor our enterprise environments for cybersecurity threats. This includes employee compute endpoints, cloud resources, and SaaS. Expel provides us with "24x7x365" coverage across all of these environments using a broad array of techniques and technologies. The primary benefit we get is the human coverage to ensure high criticality and impactful security alerts and incidents are handled in a timely and efficient manner. They are effectively a force-multiplier for our internal team by providing the first line of analysis, freeing up our internal resources to focus on higher order tasks and more involved incident response and threat detection analysis efforts. Review collected by and hosted on G2.com.

Verified User in Computer Software
UC
Mid-Market(51-1000 emp.)
Validated Reviewer
Verified Current User
Review source: Seller invite
Incentivized Review
What do you like best about Expel?

What I like best about Expel is that it provides me with security alerts and ways for me to contact support in situations where I need assistance. Review collected by and hosted on G2.com.

What do you dislike about Expel?

There are times when I receieve alerts where I have provided instructions that someone will be working in another country and so suppress those alerts but Expel still alerts about it. Support has been helpful where we follow up with those alerts to supress them. Review collected by and hosted on G2.com.

What problems is Expel solving and how is that benefiting you?

Expel provides security detection and response to allow our business to operate efficiently and securely since we are a small tech start up company. Review collected by and hosted on G2.com.