Intercept X Endpoint vs Trend Vision One comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Microsoft Defender XDR
Sponsored
Ranking in Endpoint Detection and Response (EDR)
7th
Ranking in Extended Detection and Response (XDR)
5th
Average Rating
8.4
Number of Reviews
86
Ranking in other categories
Microsoft Security Suite (1st)
Intercept X Endpoint
Ranking in Endpoint Detection and Response (EDR)
4th
Ranking in Extended Detection and Response (XDR)
8th
Average Rating
8.4
Number of Reviews
101
Ranking in other categories
Endpoint Protection Platform (EPP) (7th), ZTNA (8th), Managed Detection and Response (MDR) (9th), Ransomware Protection (3rd)
Trend Vision One
Ranking in Endpoint Detection and Response (EDR)
5th
Ranking in Extended Detection and Response (XDR)
6th
Average Rating
8.6
Number of Reviews
44
Ranking in other categories
Attack Surface Management (ASM) (4th)
 

Mindshare comparison

As of June 2024, in the Endpoint Detection and Response (EDR) category, the mindshare of Microsoft Defender XDR is 8.4%, up from 0.9% compared to the previous year. The mindshare of Intercept X Endpoint is 4.1%, down from 10.6% compared to the previous year. The mindshare of Trend Vision One is 4.1%, up from 3.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
Unique Categories:
Extended Detection and Response (XDR)
23.3%
Microsoft Security Suite
4.9%
Endpoint Protection Platform (EPP)
2.4%
Attack Surface Management (ASM)
1.6%
 

Featured Reviews

Kyaw Htay - PeerSpot reviewer
Apr 5, 2022
Malware and endpoint security solution that is easy to use compared with other similar solutions
We make use of Microsoft Defender for Office 365 for endpoint security and email and we use Defender umbrella for impersonation and sales. Under Defender umbrella, we use a lot of products depending on the customer requirements. As a company, we use Defender for email as well as for endpoint…
Alex Clerici - PeerSpot reviewer
Apr 3, 2024
Offers centralized controller providing access to every aspect of the deployment and works very well against ransomware
I appreciate the ability to use the latest endpoint protection features in case of an infection or cyber threat. This is especially true when using the product with a Sophos firewall solution, like the XG series. They collaborate effectively in the event of a cyber threat. Its ability to continuously query the data lake is beneficial. So, the deep learning technology in Intercept X Endpoint enhances threat detection capability. However, the automated threat response for incident response times can be better if the user subscribes to Sophos service called EDR... I think it's called Managed Threat Response (MTR). There is a higher layer of support available. For big customers, this could a good option.
AndrewAdams - PeerSpot reviewer
Dec 18, 2023
The observed attack techniques feature lets you see what an attacker is doing or how malicious code is operating
I like Vision One's observed attack techniques feature. It lets you see what an attacker is doing, how they have tried to exploit a machine, or how malicious code is operating. It helps us discover indicators of compromise so we can write better rules for detection. Migrating to the Vision One platform helped us because we no longer need to look at eight different screens to find data. It's all just consolidated into one location. Having everything in one place is critical. I've been in the industry for almost a decade now, and it's a struggle to find that single pane of glass for all my alerts, logs, and anomalies like random users clicking on a link or downloading a file. It's nice to have it all in one location. Having centralized visibility saves the time we would spend checking various systems to look for things. I can also correlate data points more effectively and make data-driven decisions about the remediation and mitigation of any internal or external threats discovered. The executive dashboard is nice. It's consolidating all of the tools into the Vision One platform, giving you a high-level overview. Executives love dashboards and pretty colors. The ability to drill down into XDR detection from the executive dashboard his handy. I don't have to go fishing. We get an alert that says a machine did X, and I can fire it up. It's on the dashboard, so I can click on that machine, and it lets me drill down into the logs. It cuts down on the time required to do any kind of forensic analysis on anomalous alerts or behavior. The Risk Index gives you an overview of the risk and how it compares with others in your industry. It's nice to be able to quantify the risk, and it enables you to justify the spending on these tools to your executives by showing that it pays off. Also, if we start plugging in more data points and the risk score goes up, we can conclude that there are some issues with the new data source that we just hooked up to our platform. The goal is to have a risk level of zero, but that will be hard to achieve.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The portal is quite user-friendly. There is integration with Office, Intune, and other products from the same portal. From there, we can see which policies are installed on a particular machine. We also can manage devices, groups, and tagging."
"My clients like Defender's file integrity monitoring. They're monitoring Windows and Linux system files."
"We can use Defender to block and monitor for security purposes without needing multiple other products to do different tasks."
"The incident threat response and its ability to facilitate effective remediation against threats are the standout features."
"We are able to consolidate licences and make use of many Microsoft products using this solution. If we have any Microsoft customers, we encourage them to use this solution for enterprise defence."
"Defender XDR has a feature called the timeline that lets you track all activities. It helps a lot with investigations."
"For me, the advanced hunting capabilities have been really great. It allowed querying the dataset with their own language, which is KQL or Kusto Query Language. That has allowed me to get much more insight into the events that have occurred. The whole power of 365 Defender is that you can get the whole story. It allows you to query an email-based activity and then correlate it with an endpoint-based activity."
"Microsoft 365 Defender's most valuable feature is the ability to control the shadow IP."
"It is a very scalable solution."
"Everything in Intercept X Endpoints is much centralised which makes it easy for our team to work with. The functions are in a single portal."
"It is very easy to set up and easy to use. It is also not resource-intensive."
"There are additional security features in Sophos Intercept X as well as proxy rules and settings that help us in minimizing the sites that our agents can go to, even after their work hours."
"The most valuable feature is the behavioral, non-signature-based threat detection."
"Offers artificial intelligence, security metrics and a lot of information gathered to make decisions."
"A valuable feature offered by Sophos is called Naked Security, and it entails the control managed by the firewall on the site regarding the desktop client interfacing with our cloud client."
"The initial setup is pretty straightforward."
"We haven't had any issues with configurations or customizations."
"It helps a lot to understand where the threat is coming from, where is it going, how is it being dealt with, et cetera."
"It has good vulnerability protection."
"It has the feature to track an attack back. If there is an incident or an attack occurs, you can get a bird's eye view of that attack. You can see how the attackers came in and how they managed the attack. You can trace an attack. If you are giving a presentation to the management, you can easily show it to them in a live environment how the attackers came, which is amazing."
"The automatic EDR system that notifies us when something is wrong is valuable."
"We had a quick deployment. The solution is easy to set up."
"Scaling is not a problem at all."
"The telemetric report is the most valuable feature."
 

Cons

"The web filtering solution needs to be improved because currently, it is very simple."
"The management features could be improved, particularly in terms of better integration with Intune, Microsoft's cloud-based management solution."
"The tool gives inconsistent answers and crashes a lot."
"365 Defender has multiple subsets, including Defender for Cloud Apps. When integrating Defender for Cloud Apps with apps on third-party cloud platforms like AWS or GCP, there are limitations on our ability to control user activities. If Microsoft added more control over third-party products, that would be a game-changer and help us quite a lot."
"It would be highly beneficial if CoPilot could identify anomalies within the network and notify the IT team."
"The initial time spent setting up and configuring Defender XDR is a bit longer than the other solutions. If everything were on one portal, the platforms for managing policies or alerts would be simpler. We must automate and manage policies on Intune rather than the same portal."
"The Defender agent itself is more compatible with Windows 10 and Windows 11. Other than these two lines, there are so many compatibility issues. Security is not only about Microsoft. The core technical aspects of it are quite good, but it would be good if they can better support non-Microsoft solutions in terms of putting the agents directly into VMware and other virtualization solutions. There should be more emphasis on RHEL and other operating systems that we use, other than Windows, in the server category."
"Microsoft Defender XDR is not a full-fledged EDR or XDR."
"The deployment part needs to be improved."
"The detection and the AI capabilities should be improved upon."
"Through Sophos Central I would like to see the ability to zero in and produce a report about the challenges being faced by a particular machine and user, to know if a virus is appearing only on that specific machine or also on others."
"The solution is expensive, and it could be made cheaper."
"Deployment on cloud needs to be carried out manually."
"Should include additional integration."
"I would like the solution to have more functions and to be more user-friendly."
"Sophos needs to create a YouTube channel with educational material for technicians or engineers."
"There isn't a lot I'd do to change it. The web interface could be improved to sort of make it a little easier to manage multiple clients out of one location. It could also be made a bit easier to sort of manage the licensing side of it."
"We'd like to see a few more integrations."
"Results were delayed."
"I'd like to see alert time reduction so that they show up on the dashboard faster."
"The solution only supports Windows and Mac. It would be helpful if it could support other OS, such as Linux."
"They are planning on adding the Security Playbooks as a complete feature. In the preview mode, it is available; however, it is not released."
"Trend Vision One has some usability issues."
"We do use the automation capability a little. However, we noticed some limitations, especially on the playbook side."
 

Pricing and Cost Advice

"It is fairly priced because we get complete integrated services with the E5 license."
"365 Defender can get expensive because you pay per gigabyte of data ingested. On the other hand, much of the data available in the other Microsoft security solutions are made available relatively cheaply—sometimes at cost or for free. Integrating only a limited set of third-party solutions with Sentinel would be cost-effective. It's much more affordable if companies only have Microsoft stuff."
"Understanding the subscription model has been a bit challenging, as every feature or requirement comes with an additional cost."
"I would like to have more security features in the lower licenses because not every customer is able to buy E5 licenses. The bundling isn't always easy for our customers to understand. Compared to other tools, it's a good price."
"Microsoft 365 Defender offers competitive pricing."
"The pricing of Microsoft 365 Defender is definitely on the costly side, but with the features and services that Microsoft provides, such as the seamless integration of all the Defender tools, while the price is on the higher side, there is no alternative."
"The solution is too expensive."
"Microsoft Defender falls within a mid-tier price range compared to other security solutions."
"The price of this solution is reasonable."
"The product is moderately priced."
"I would rate the price 7 out of 10, where 1 is most expensive and 10 is cheapest. Also, a little reduction in price can be a great move for Intercept X Endpoint."
"It is not very expensive but I don't have specific pricing details. The licensing is usually done on yearly basis."
"The pricing is average for software like this, but you can purchase additional services if you wish."
"On a per-user basis, my company has to pay a certain amount of money."
"It was fairly and reasonably priced."
"I find the pricing to be a little bit expensive, although it is acceptable, for now."
"Trend Micro XDR is expensive, and you have to pay for it yearly."
"Trend Micro's cost is higher than other solutions. That is the main reason why we need to switch to another solution."
"The pricing for Trend Vision One is reasonable."
"Trend Micro XDR has a good price, and on a scale of one to five, I would rate it a four out of five in terms of price."
"Trend Micro XDR is reasonably priced for its value, comparable to other products like VMware Carbon Black."
"The price for Trend Vision One is reasonable compared to Microsoft and Symantec."
"Trend Micro XDR is expensive."
"From a pricing standpoint, they're a really good negotiator and they'll work with you."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
787,817 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
10%
Government
8%
Manufacturing Company
8%
Computer Software Company
19%
Government
7%
Comms Service Provider
6%
Educational Organization
6%
Educational Organization
28%
Computer Software Company
18%
Financial Services Firm
5%
Healthcare Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Microsoft 365 Defender?
Microsoft Defender XDR provides strong identity protection with comprehensive insights into risky user behavior and p...
What is your experience regarding pricing and costs for Microsoft 365 Defender?
Microsoft Defender XDR is expensive, especially for the full suite functionality. However, when compared to buying mu...
What needs improvement with Microsoft 365 Defender?
Improving scalability, especially for very large tenants, could be beneficial for Microsoft Defender XDR. Additionall...
How does Crodwstrike Falcon compare with Sophos Intercept X?
I like that Crowdstrike Falcon allows me to easily correlate data between my firewalls. Its detection and machine lea...
What is your experience regarding pricing and costs for Sophos Intercept X?
The price of the product is okay, in my opinion. The tool's cost per user and per annum basis is around INR 700 to 800.
What do you like most about Trend Micro XDR?
I appreciate the value of real-time activity monitoring.
What is your experience regarding pricing and costs for Trend Micro XDR?
Vision One is expensive, but I think it's a typical market price.
What needs improvement with Trend Micro XDR?
Vision One's search could be improved. While the platform is very user-friendly, the search feature uses terms that a...
 

Also Known As

Microsoft 365 Defender, Microsoft Threat Protection, MS 365 Defender
Sophos Intercept X
Trend Micro XDR, Trend Micro XDR for Users
 

Interactive Demo

Demo not available
Demo not available
 

Overview

 

Sample Customers

Accenture, Deloitte, ExxonMobil, General Electric, IBM, Johnson & Johnson and many others.
Flexible Systems
Panasonic North America, Decathlon, Fischer Homes, Banijay Benelux, Unigel, DHR Health,
Find out what your peers are saying about Intercept X Endpoint vs. Trend Vision One and other solutions. Updated: May 2024.
787,817 professionals have used our research since 2012.