No more typing reviews! Try our Samantha, our new voice AI agent.

BlackBerry Cylance Cybersecurity vs Trellix Endpoint Security Platform comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 22, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
4th
Average Rating
8.4
Reviews Sentiment
6.7
Number of Reviews
118
Ranking in other categories
Endpoint Detection and Response (EDR) (5th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
BlackBerry Cylance Cybersec...
Ranking in Endpoint Protection Platform (EPP)
30th
Average Rating
8.0
Reviews Sentiment
4.6
Number of Reviews
44
Ranking in other categories
No ranking in other categories
Trellix Endpoint Security P...
Ranking in Endpoint Protection Platform (EPP)
7th
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
167
Ranking in other categories
Endpoint Detection and Response (EDR) (8th), Extended Detection and Response (XDR) (7th)
 

Mindshare comparison

As of September 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.8%, up from 3.8% compared to the previous year. The mindshare of BlackBerry Cylance Cybersecurity is 1.6%, up from 1.1% compared to the previous year. The mindshare of Trellix Endpoint Security Platform is 3.3%, down from 3.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.8%
Trellix Endpoint Security Platform3.3%
BlackBerry Cylance Cybersecurity1.6%
Other91.3%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Sooraj Makkancherrry - PeerSpot reviewer
Security Operations Manager at Philips
Doesn't have daily updates, which is important for healthcare IT
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we contact support, they tell us to update the latest agent, but we can't do that immediately due to medical device protocols and validation testing. I wish support would try to understand our issues better instead of giving this standard response. The machine learning feature they use often tells us to upgrade the agent or add things to the exclusion list, which isn't unacceptable. It's a very good and new technology as a tool and antivirus. But sometimes, it doesn't work properly with our medical devices and products, quarantining files it shouldn't even after we add them to exclusions. This is tricky for us.
AmitKumar22 - PeerSpot reviewer
Product Manager at Frontier Business systems
Strong endpoint protection has simplified compliance and reduced effort for large user environments
One of the best features of Trellix Endpoint Security Platform is its endpoint security, and I have been using it for the last four and a half to five years, so I can say this is one of the best EDR endpoint security solutions I have ever seen. The features that make Trellix Endpoint Security Platform stand out for me are ease of use and analytics, which I really appreciate the most. Trellix Endpoint Security Platform positively impacts my organization, ensuring we are compliant with SOC 2, HIPAA, and all other compliance requirements, so there are no issues with that.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution allows us to make investigations. Other XDR solutions also provide similar capabilities but for investigation, Cortex XDR is better."
"Based on my experience with Cortex XDR by Palo Alto Networks, I highly recommend it due to its quick response to zero-day attacks and low utilization from end-user devices."
"Cortex XDR by Palo Alto Networks has helped lighten the load of our security analysts because it was the major tool that we were using and the one we utilized most."
"Being a cloud solution it is very flexible in serving internal and external connections and a broad range of devices."
"I generally believe that Cortex XDR by Palo Alto Networks is probably the best in the market right now."
"Stability is one of the features we like the most."
"Previously, we had to install endpoint protection per machine and then scan and update, but Cortex XDR basically does that centrally and predictably, so we have more time to do day-to-day work rather than spend time chasing those endpoints."
"We have found in our test Cortex XDR by Palo Alto Networks to be a very good tool."
"It handles situations that the other threat management tools wouldn't find. It has worked well covering the weaker sides of the other products that we're integrating."
"It is extremely simple to manage and deploy."
"It does a good job of protecting us."
"The solution runs in the background, and I do not need to care about it."
"The most functional item that we use is the process to turn off the false flags that it causes."
"The stability of the solution is awesome."
"It secures different entry points into the network."
"Does malware analysis. Blocks WannaCry and other attacks that have come out."
"The remote installation capabilities are very helpful for us."
"The most valuable feature of Trellix Endpoint Security is its extensive customization capability, which allows me to create and deploy policies autonomously, suiting my individual needs."
"The platform's most valuable features are AI capabilities and its quick updates."
"We receive good protection with this solution."
"The solution provides dashboard control, so we can centrally monitor the entire status of our organization."
"It provides a robust defense against cybersecurity threats while offering user-friendly features like notifications and approval prompts."
"The solution is easy to manage, easy to implement, easy to install, and the support is excellent."
"With this product, we can easily implement encryption for all our users in the company and deploy modules as and when needed through a central interface."
 

Cons

"The setup is quite easy. We had appropriate support from the manager. One thing that was missing was the integration part."
"If he is using a smaller company, he can depend on some other tools because Cortex XDR by Palo Alto Networks is a bit expensive."
"There are some limitations on the Traps agents."
"Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth."
"I feel that it should not be a licensed activity because a feature should allow us to see applications running on end devices."
"The dashboard is the area that needs to improve so that we can have the ability to drill down without having to go elsewhere to verify results."
"Cortex XDR should have a lightweight agent, and the agent size should not be heavy."
"There are some third-party solutions that are difficult to integrate with, which is something that can be improved."
"The stability could be improved."
"It should provide more details about the events that they have detected."
"The company that sells us the licenses sometimes doesn't know how to do certain things."
"I would like to see a little bit of additional reporting or insight as to what it is doing exactly."
"The process of whitelisting a script that you want to be able to run can be a little bit difficult, or awkward."
"The user interface could be improved, it's very outdated."
"If they can improve the technical support SLA, that aspect of the product will be much appreciated."
"It's a good solution but some features just need to be updated."
"The solution's documentation is not streamlined and is in bits and pieces, which should be in a single format."
"When comparing the solution to others it is a bit expensive."
"A quicker turnaround with patches and updates would be good."
"While I cannot recall anything specific at the moment, there are many areas of the solution that I wish to see improved."
"I don't recommend McAfee for endpoint users."
"The initial setup isn't so easy. You need to know what you are doing."
"What could be better is the performance impact on some machines and the complexity of configuration."
"I wouldn't recommend it to others because it's not secure enough."
 

Pricing and Cost Advice

"It's about $55 per license on a yearly basis."
"The cost depends on your chosen license type, like Pro or other licenses."
"Cortex XDR by Palo Alto Networks is quite an expensive solution."
"The return on investment is from the user side because we have seen the performance of it increase the delivery time of the product if we are using too many web-based and on-premise applications. In indirect ways, we saw the return of investment in terms of performance and user satisfaction increase."
"The tool's price is moderate."
"Traps pays for itself within the first 16 months of a three-year subscription. This is attributed to OPEX savings, as security teams spent less time trying to identify and isolate malware for analysis as a result of a reduction in malware incidents, false positives, and breach avoidance."
"The pricing is okay, although direct support can be expensive."
"Cortex XDR's pricing is ok."
"The license price for this solution could be better. It's on the expensive side."
"This cost of the license is approximately $5 USD monthly per user."
"I think that the price we are paying is good for what it is."
"The monthly fee is $55 USD per user."
"CylancePROTECT is an affordable solution."
"Currently, we have competitive pricing for Cylance, which is affordable enough to consider."
"The licensing part of the product is too expensive compared to other solutions in the market."
"The tool is not that expensive."
"Annual license fee is good"
"Pricing for McAfee MVISION Endpoint is not very good, and I would rate its cost three out of five, though I won't be able to mention how much its actual price is."
"The pricing is comparable to other solutions on the market."
"I think Trellix is more on the higher side of the market, just on a general scale, but I also think it depends on what particular package you choose."
"Licensing fees are billed on a yearly basis."
"It is a yearly subscription-based product, which includes the license and hardware. There is also a subscription for technical support up to five years."
"Pricing is fair."
"It is not that expensive. There is no additional cost. We got the entire bundle together."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
914,109 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
12%
Comms Service Provider
12%
Construction Company
11%
Financial Services Firm
9%
Construction Company
12%
Outsourcing Company
11%
Comms Service Provider
7%
Financial Services Firm
7%
Outsourcing Company
14%
Financial Services Firm
9%
Manufacturing Company
9%
Construction Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise21
Large Enterprise55
By reviewers
Company SizeCount
Small Business33
Midsize Enterprise5
Large Enterprise14
By reviewers
Company SizeCount
Small Business68
Midsize Enterprise39
Large Enterprise67
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your experience regarding pricing and costs for Blackberry Protect?
The price is reasonable for us at the moment. I rate the overall solution an eight out of ten.
What needs improvement with Blackberry Protect?
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we conta...
What is your primary use case for Blackberry Protect?
I am using CylancePROTECT as an active learning algorithm. We installed it on almost 20,000 servers and virtual machi...
How does McAfee Endpoint Security compare with MVISION?
The flexible manageability of McAfee Endpoint Security is one of our favorite aspects of this solution. You can deplo...
How does Crowdstrike Falcon compare with FireEye Endpoint Security?
The Crowdstrike Falcon program has a simple to use user interface, making it both an easy to use as well as an effec...
What is your experience regarding pricing and costs for McAfee Endpoint Security?
I don't have visibility on pricing because it is negotiated by a different team, as I look after the technical side.
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Blackberry Protect
McAfee Endpoint Security, McAfee Endpoint Protection, Intel Security Total Protection for Endpoint, McAfee Complete Endpoint Protection, Trellix Endpoint Security (ENS)
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Panasonic, Noble Energy, Apria Healthcare Group Inc., Charles River Laboratories, Rovi Corporation, Toyota, Kiewit
inHouseIT, Seagate Technology
Find out what your peers are saying about BlackBerry Cylance Cybersecurity vs. Trellix Endpoint Security Platform and other solutions. Updated: September 2026.
914,109 professionals have used our research since 2012.