Learn More

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 700 Ratings

Total
ease
features
design
support

Description

Quest Change Auditor is a real-time security auditing and threat monitoring solution for Active Directory and broader hybrid Microsoft environments. It monitors configuration changes, administrator actions, user activity, authentication events, and other security-relevant changes across on-premises and cloud systems. Supported environments include Active Directory, Azure AD, Office 365, Windows Server, Exchange, SQL Server, network-attached storage, SharePoint, and OneDrive for Business. Change Auditor detects indicators of compromise and suspicious activity while monitoring lateral movement and post-breach actions across systems such as file servers, Exchange, and Office 365. Threat prevention capabilities can block attackers from modifying critical groups, Group Policy settings and links, sensitive mailboxes, or extracting the Active Directory database to obtain credentials. The platform also identifies common Kerberos authentication vulnerabilities associated with Golden Ticket and Pass-the-Ticket attacks. Normalized audit records convert system activity into readable who, what, when, where, and workstation information together with before-and-after values. Threat timelines and related-event searches help investigators understand how individual changes connect with other security activity across the Microsoft environment. Change Auditor can integrate detailed activity logs with SIEM platforms such as Microsoft Sentinel, Splunk, ArcSight, and QRadar and can generate reports supporting compliance requirements including GDPR, PCI DSS, HIPAA, SOX, FISMA/NIST, and GLBA.

Description

ThreatLocker is a Zero Trust security platform that stops cyber threats by allowing only approved applications and activity to run. It removes standing admin rights, enforces least privilege, and gives organizations precise control over software behavior. With capabilities like application control, ringfencing, and device and storage restrictions, it prevents ransomware, zero day exploits, and unauthorized actions before they can execute. Purpose built for IT and security teams, ThreatLocker offers centralized management and full visibility across endpoints, users, and applications. It helps shrink the attack surface, restrict lateral movement, and meet compliance requirements with detailed auditing. Quick to deploy and easy to manage, the platform includes a large maintained application library and simplified approval workflows, enabling stronger security with less operational burden while keeping the business running smoothly.

API Access

Has API No 

API Access

Has API Yes 

Screenshots View All

Screenshots View All

Integrations

Splunk Cloud Platform Yes 
Active Directory Yes 
Auth0 No 
Azure-AD-External-Identities No 
Datto SaaS Protection No 
HaloPSA No 
IBM QRadar SIEM Yes 
IT Glue No 
Kaseya BMS No 
Microsoft 365 Yes 
Microsoft Entra ID Yes 
Microsoft Exchange Yes 
Microsoft OneDrive Yes 
Microsoft SharePoint Yes 
MyGlue No 
Network Glue No 
Okta No 
ServiceNow No 
Skype Yes 
Splunk Enterprise No 

Integrations

Splunk Cloud Platform Yes 
Active Directory No 
Auth0 Yes 
Azure-AD-External-Identities Yes 
Datto SaaS Protection Yes 
HaloPSA Yes 
IBM QRadar SIEM No 
IT Glue Yes 
Kaseya BMS Yes 
Microsoft 365 No 
Microsoft Entra ID No 
Microsoft Exchange No 
Microsoft OneDrive No 
Microsoft SharePoint No 
MyGlue Yes 
Network Glue Yes 
Okta Yes 
ServiceNow Yes 
Skype No 
Splunk Enterprise Yes 

Pricing Details

No price information available.
Free Trial Yes 
Free Version No 

Pricing Details

Pricing by endpoint
Free Trial Yes 
Free Version No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) Yes 
In Person Yes 

Vendor Details

Company Name

Quest Software

Founded

1987

Country

United States

Website

www.quest.com/change-auditor/

Vendor Details

Company Name

ThreatLocker

Founded

2017

Country

United States

Website

www.threatlocker.com

Product Features

Product Features

Cybersecurity

AI / Machine Learning Yes 
Behavioral Analytics No 
Endpoint Management Yes 
IOC Verification No 
Incident Management No 
Tokenization No 
Vulnerability Scanning Yes 
Whitelisting / Blacklisting Yes 

Data Loss Prevention

Compliance Reporting Yes 
Incident Management No 
Policy Management Yes 
Sensitive Data Identification No 
Web Threat Management Yes 
Whitelisting / Blacklisting Yes 

Endpoint Detection and Response (EDR)

Behavioral Analytics No 
Blacklisting/Whitelisting No 
Continuous Monitoring No 
Malware/Anomaly Detection No 
Prioritization No 
Remediation Management No 
Root Cause Analysis No 

Endpoint Protection

Activity Log Yes 
Antivirus No 
Application Security Yes 
Behavioral Analytics Yes 
Device Management Yes 
Encryption No 
Signature Matching Yes 
Web Threat Management Yes 
Whitelisting / Blacklisting Yes 

Firewall

Alerts / Notifications Yes 
Application Visibility / Control Yes 
Automated Testing Yes 
Intrusion Prevention Yes 
LDAP Integration No 
Physical / Virtual Environment Yes 
Sandbox / Threat Simulation Yes 
Threat Identification Yes 

IT Security

Anti Spam Yes 
Anti Virus No 
Email Attachment Protection Yes 
Event Tracking No 
IP Protection No 
Internet Usage Monitoring No 
Intrusion Detection System Yes 
Spyware Removal No 
Two-Factor Authentication Yes 
Vulnerability Scanning No 
Web Threat Management Yes 
Web Traffic Reporting No 

Network Access Control (NAC)

Authentication No 
Authorization No 
Automated Hotfix / Updates No 
Centralized Policy Management Yes 
Dashboard Yes 
Device Auto-Provisioning No 
Device Self-Registration No 
Posture Assessment No 
Quarantine / Remediation No 
Secure Guest Access No 

Privileged Access Management

Application Access Control Yes 
Behavioral Analytics No 
Credential Management No 
Endpoint Management Yes 
For MSPs Yes 
Granular Access Controls Yes 
Least Privilege Yes 
Multifactor Authentication No 
Password Management No 
Policy Management Yes 
Remote Access Management No 
Threat Intelligence No 
User Activity Monitoring Yes 

Alternatives

Alternatives

Cygna Auditor Reviews

Cygna Auditor

Cygna Labs
CrowdStrike Falcon Reviews

CrowdStrike Falcon

CrowdStrike