Try our new research platform with insights from 80,000+ expert users

Share your experience using Trellix XDR

The easiest route - we'll conduct a 15 minute phone interview and write up the review for you.

Use our online form to submit your review. It's quick and you can post anonymously.

Your review helps others learn about this solution
The PeerSpot community is built upon trust and sharing with peers.
It's good for your career
In today's digital world, your review shows you have valuable expertise.
You can influence the market
Vendors read their reviews and make improvements based on your feedback.
Examples of the 94,000+ reviews on PeerSpot:

Abdullah Al Hadi - PeerSpot reviewer
Information Security Engineer at Nhq Distribution Ltd
Real User
Top 5Leaderboard
Enhance cyber threat detection with advanced analytics and machine learning
Pros and Cons
  • "The analytics assessment and flexibility of the platform are valuable."
  • "Trellix XDR is an excellent solution that is continually improving."
  • "The EdgeGear solution is an area that requires attention, specifically regarding AI solutions and intelligence features."
  • "Technical support is crucial, especially when facing critical issues. It's rated six out of ten. Improvements are needed in the support sector, with a focus on providing expert assistance during production periods."

What is our primary use case?

I am working with EDR and XDR, focusing on migrating on-premises solutions to cloud-based solutions. We are utilizing XDR for cyber threat detection and response.

What is most valuable?

The analytics assessment and flexibility of the platform are valuable. Trellix XDR integrates with other systems like SIEM, improving forensic analysis and visualization of cyber activities. It features embedded machine learning and cyber intelligence capabilities.

What needs improvement?

The EdgeGear solution is an area that requires attention, specifically regarding AI solutions and intelligence features. We are still investigating how XDR performs and will identify areas for improvement as we deploy it further.

For how long have I used the solution?

I have been working with Trellix solutions for eight and a half years.

What do I think about the stability of the solution?

Trellix XDR is highly stable, and I would rate it a ten out of ten for stability.

What do I think about the scalability of the solution?

I would rate the scalability of Trellix XDR as eight out of ten.

How are customer service and support?

Technical support is crucial, especially when facing critical issues. It's rated six out of ten. Improvements are needed in the support sector, with a focus on providing expert assistance during production periods.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup is not complex. Every solution needs an initial analysis to understand the features, simplifying the eventual deployment.

What's my experience with pricing, setup cost, and licensing?

Since I'm a technical engineer, I don't deal with pricing or licensing. Our sales team handles those aspects.

What other advice do I have?

Trellix XDR is an excellent solution that is continually improving. Given the evolving nature of cyber threats, it is essential to update the solution regularly. 

I rate the solution overall an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Flag as inappropriate
Zaw Htun - PeerSpot reviewer
Cybersecurity Manager at PHH
Real User
Top 10
Provides valuable detection capabilities and efficient automated response features
Pros and Cons
  • "It contributes to our system's robust event detection and analysis, enabling us to respond effectively to incidents."
  • "The platform should enhance compatibility with all other SIEM solutions."

What is our primary use case?

We utilize the platform for airborne protection and redirection to enhance the environment's environment and that of our clients. Our primary focus is on this solution, and I am looking for more coverage for our security framework, particularly for our CGP program. Currently, HSA only covers host information, leaving us with limited visibility of system and network activity. Therefore, we need another SIEM solution to understand our system and network activities comprehensively.

How has it helped my organization?

The product's threat intelligence integration is extremely important. It enhances our ability to anticipate and respond to threats effectively, improving our security posture.

What is most valuable?

The solution's detection capabilities are very efficient. It contributes to our system's robust event detection and analysis, enabling us to respond effectively to incidents.

What needs improvement?

The platform should enhance compatibility with all other SIEM solutions. Customers should not feel constrained to using only Trellix products due to integration challenges, as this limits their options.

Future updates should prioritize enhanced integration features with third-party SIEMs and broader threat intelligence capabilities to improve the platform's adaptability in diverse environments.

For how long have I used the solution?

I have been using Trellix XDR for at least two years.

How are customer service and support?

The technical support team is responsive and helpful, particularly when addressing technical issues during deployment or usage.

How would you rate customer service and support?

Positive

How was the initial setup?

The deployment is straightforward, and the interface is user-friendly, making it easy for security analysts and engineers to adapt to the platform. However, the functionality is not significantly different from other vendors' offerings.

What's my experience with pricing, setup cost, and licensing?

From my perspective, Trellix XDR is competitively priced, given its detection capabilities, but the added cost for compatibility with other platforms can be a consideration for budget-conscious organizations.

Which other solutions did I evaluate?

We are exploring additional SIEM solutions to complement this platform, especially to gain insights into system and network activities.

What other advice do I have?

Trellix provided initial training sessions and documentation. However, more comprehensive training resources could further enhance the team's proficiency in utilizing the platform effectively.

Its automated response is effective but has some limitations regarding integrating other platforms. Our agents are not fully compatible with other solutions, which restricts our ability to respond to threats across different systems.

I recommend this solution, particularly its robust detection capabilities and user-friendly interface. However, organizations should evaluate their specific integration needs to ensure compatibility with existing solutions.

Overall, I rate the product an eight out of ten. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate