- Best for
- Dell customers that want a large technology services provider to operate MDR around a supported XDR platform
They cover
- Endpoints
- Cloud Workloads
- Identity & Access
- Network
- SaaS Applications
Your team still owns
- Pre-approving which threat response actions Dell may take in the platform
- Keeping endpoint sensors, integrations, bandwidth, credentials and authorized contacts current
- Providing business context, files, logs and access during investigations
- Handling remediation beyond included threat response, security configuration and incident response hours
Pricing
| Line | Figure |
|---|---|
| Published price | Quote-based, per managed endpoint |
| Billing model | Per-endpoint, Custom |
| Contract | Not published |
| Onboarding | Not published |
Tradeoffs
Works well
- Clear contract language for onboarding, detection, response, quarterly reporting and incident response initiation
- Supports service-only buying when the customer already licenses required platform components
- Pre-approved platform response actions make the service more active than alert-only monitoring
- Dell's trust center lists MDR under Type 2 SOC 2 scope
Watch out for
- Public pricing does not show a numeric list price
- Service scope depends heavily on the platform and modules named in the order form
- Customers must maintain endpoint deployment, integrations, authorizations and investigation context
- Public customer review evidence for Dell MDR is limited compared with larger standalone MDR brands
What buyers say
Alert noise
Not assessed
Transparency
Not assessed
Reputation reads from public reviews, not vendor-published numbers.
Ask before buying
- Which platform version is in scope, and are CrowdStrike, Microsoft or Secureworks licenses included in the quote?
- Which response actions are pre-approved, and who can approve changes to those actions after onboarding?
- What happens after the included quarterly response support or annual incident response hours are used?
Integrations
Editorial notes
Why contain-threats lane
Dell service descriptions support analyst investigation plus pre-approved threat response actions in the platform. Public examples include host isolation and file blocking, so this goes beyond advice, but it is still narrower than co-managing the buyer's whole SOC.
Platform boundary
The service depends on the supported XDR or EDR platform in the order form. Buyers should not assume all Dell security products, backup security, vulnerability management or incident recovery retainers are included unless those services appear in the quote.
Response boundary
Dell can take agreed platform actions, but the customer still has to deploy sensors, maintain integrations, supply investigation context and handle work outside the included response and configuration hours.
Review evidence
Public customer review depth for Dell MDR is thin. G2 has only a small broad Dell Security review base, Gartner and TrustRadius category pages did not expose Dell MDR as a reviewed product and Reddit evidence was mostly category-level MDR buying advice.