No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Secure Workload vs Trellix Cloud Workload Security comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Qualys TotalCloud
Sponsored
Ranking in Cloud Workload Protection Platforms (CWPP)
9th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
46
Ranking in other categories
Vulnerability Management (10th), Container Security (11th), Cloud Security Posture Management (CSPM) (8th), SaaS Security Posture Management (SSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (7th)
Cisco Secure Workload
Ranking in Cloud Workload Protection Platforms (CWPP)
23rd
Average Rating
8.6
Reviews Sentiment
7.7
Number of Reviews
15
Ranking in other categories
Cloud and Data Center Security (9th), Microsegmentation Software (5th), Cisco Security Portfolio (9th)
Trellix Cloud Workload Secu...
Ranking in Cloud Workload Protection Platforms (CWPP)
17th
Average Rating
8.6
Reviews Sentiment
6.7
Number of Reviews
10
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2026, in the Cloud Workload Protection Platforms (CWPP) category, the mindshare of Qualys TotalCloud is 1.8%, up from 1.3% compared to the previous year. The mindshare of Cisco Secure Workload is 2.1%, down from 2.7% compared to the previous year. The mindshare of Trellix Cloud Workload Security is 0.7%, up from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Workload Protection Platforms (CWPP) Mindshare Distribution
ProductMindshare (%)
Qualys TotalCloud1.8%
Trellix Cloud Workload Security0.7%
Cisco Secure Workload2.1%
Other95.4%
Cloud Workload Protection Platforms (CWPP)
 

Featured Reviews

reviewer2859021 - PeerSpot reviewer
Sr Security Engineer at a tech vendor with 5,001-10,000 employees
Risk-based triage has transformed container security and now prioritizes high-impact threats
The best features Qualys TotalCloud offers currently include managing cloud infrastructure and container security while facing major challenges such as alert fatigue. Traditional vulnerability scanners flag hundreds of CVEs on short-lived Kubernetes containers, some of which have no internet exposure or are gone before we can even triage them. I leverage Qualys TotalCloud to move beyond static CVSS. I use it to implement runtime exposure, correlation risk reprioritization, and shift-left integration. This notifies developers to fix a base image upstream rather than patching live ephemeral instances. In my work with cloud and container security, the biggest operational hurdle was alert fatigue. I use Qualys to shift left from static CVSS severity to context-aware risk prioritization. I correlated raw vulnerability data with real-time risk factors such as public network exposure, active runtime execution, or overly permissive IAM roles. This allows us to immediately drop the priority of isolated containers and escalate lower-severity CVEs that sit on an exposed, high-risk path. We can map these findings directly back to our CI/CD pipelines so developers can patch the root base images upstream. We have drastically cut down the signal-to-noise ratio, saved a lot of manual hours doing triage work, and ensured engineering effort goes directly towards high-impact risk reduction.
Raj Metkar - PeerSpot reviewer
Director, Head of Networks at MUFG, EMEA
Discover internal application dependencies and create a dependency map
We actively seek improvements in integrating the Infoblox DDI platform with Cisco Secure Workload. This integration allows Cisco Secure Workload to learn about our networks and network tags, providing valuable insights into vulnerabilities related to the operating system and various applications installed on our servers. Recently, Cisco announced a new product called HyperShield, an AI-based autonomous micro-segmentation solution. While Cisco has not stated that HyperShield will replace Cisco Secure Workload, it represents a natural evolution for the company. HyperShield features dynamic policy discovery and enforcement; however, once policies are enforced, they do not change until a discovery occurs, requiring a re-enforcement process. This new platform operates autonomously, minimizing the need for user or security engineer intervention. I would have expected Cisco to incorporate more automatic discovery and enforcement features within the existing Cisco Secure Workload product. Instead of enhancing the current product, they have introduced a new solution. Cisco plans to honor existing Tetration licenses, allowing users to transition to HyperShield without additional costs, reflecting the investment enterprises have already made. From Cisco’s perspective, this represents a natural progression in their product line. While the product name changes, it seems more of a rebranding effort. The enhancements are greater autonomy, improved discovery, and automatic enforcement, which are now being introduced in HyperShield. Cisco Secure Workload offers automatic policy enforcement but cannot adjust policies dynamically as the application needs to change. Having used the platform for the past five years, the recent announcement has been reassuring. Cisco has confirmed that our investment in the platform will not go to waste. They will honor our existing licenses, providing a natural migration path to the new solution without any disruption
Krishnakumar Mahadevan - PeerSpot reviewer
CISO at Spink Solutions Private Limited
Centralized visibility has improved cloud posture management and automated threat response
The disadvantages of Trellix Cloud Workload Security include some global aspects where minor improvements could be done. When doing pairwise comparisons between products on the same topic, such as posture management and how it is managed in Palo Alto, Check Point, Symantec, and Trellix, certain gaps emerge. One key limitation is that Trellix Cloud Workload Security will not provide support for China and Russia based cloud vendors. If a customer is an enterprise or global enterprise customer, this product cannot be suggested because the company does not deal with China's cloud providers. China has very good cloud options such as Alibaba Cloud and Tencent, and Trellix Cloud Workload Security does not support these platforms. Another limitation is related to CNAPP capabilities. In comparison with other CNAPP vendors, Trellix Cloud Workload Security has some drawbacks. The product does not provide full-fledged CNAPP like others do. It provides only top-level or top-layer information and lacks in-depth CNAPP capabilities, which is a key limitation. Regarding SIEM functionality, Trellix Cloud Workload Security has a native SIEM component, but it appears to be using a third-party SIEM functionality. The company is not providing their own SIEM tools but rather receiving a third-party tool and managing it. This is a disadvantage because the integration will not be as perfect as it would be with a native solution. The SIEM tool integration presents a problem. Pricing is another significant disadvantage, especially for small and medium-sized enterprises. SMEs will likely not choose Trellix Cloud Workload Security because it is very expensive. The product is not prominent in the Gartner market share rankings, and the numbers are very small. Trellix Cloud Workload Security is not competing with market leaders such as SentinelOne, which has a 5% market share. The company claims CWPP, which stands for Cloud Workload Platform Protection, but the market share is very small. The reason market share is less is because service-oriented companies with service-oriented mindsets look at who is providing the best services. They consult Gartner reports or Forrester reports, and if Trellix Cloud Workload Security is not present in those reports, they may not suggest this product to customers. Additionally, the product is expensive for SMEs, although enterprise customers can afford it. The minimum 25 user bundle requirement means licensing is sold in basic tiers of 25 users at a time.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like the web API security and IoT scanning features the most. The user-friendly design of TotalCloud's interface enables customers to navigate it and use its full potential easily"
"In my opinion, this is the best tool."
"I would rate Qualys TotalCloud ten out of ten."
"The most valuable feature is extensibility."
"I appreciate Qualys TotalCloud's ability to onboard any type of device with ease, including containers."
"Qualys TotalCloud's most valuable features are its security capabilities that help identify and mitigate risk factors."
"I depend heavily on the reports that I have from this tool."
"Its dashboards are brilliant. It provides in-depth insights."
"The most valuable feature is micro-segmentation, which is the most important with respect to visibility."
"It's stable."
"The most valuable feature of the solution is that we don't have to do packet captures on the network."
"The product provides multiple-device integration."
"Secure Workload's best feature is that it's an end-to-end offering from Cisco."
"The most valuable feature of this solution is security."
"Generally speaking, Cisco support is considered one of the best in the networking products and stack."
"Instead of proving that all the access control lists are in place and all the EPGs are correct, we can just point the auditor to a dashboard and point out that there aren't any escaped conversations. It saves an enormous, enormous amount of time."
"Trellix Cloud Workload Security has positively impacted our organization by improving our visibility across cloud and infrastructure, showing how many workloads we have and what is occurring with those workloads."
"The most valuable feature is the application control."
"All these things are beautifully done by McAfee Cloud Workload Security."
"The discovery feature is the most valuable. After you integrate your cloud environment, maybe an Azure or AWS, or a private environment hosted on VMware, it automatically starts discovering the number of servers that are running on that cloud and the number of services that you have done. It is a beautiful feature because, from a security standpoint, it is difficult to identify which VM is compliant or not when you keep on provisioning a number of VMs in the cloud. It also checks for compliance. It checks whether a system is compliant and whether antivirus is installed on a VM. If an antivirus is installed, it checks whether the antivirus is updated to the latest signature package or not. All these things are beautifully done by McAfee Cloud Workload Security. For communicating with the McAfee server, you need to install an agent on the VM. McAfee Cloud Workload Security gives you a direct opportunity to install an agent on a Windows machine. If you have a Windows cloud, you can directly push that agent onto the VM through your McAfee portal. It provides you a single dashboard view of all servers present in the cloud. It shows the servers on which the antivirus is already installed as well as the servers for which the antivirus installation is still pending. This dashboard view is a much-needed thing. It also has a centralized management, which makes it easy to use."
"Trellix Cloud Workload Security has positively impacted my organization because it has strengthened cloud security control, improved workload visibility, and reduced risk."
"In my opinion, it is easy to manage with our ePolicy Orchestrator, the policies, and everything, making it a one-stop access and dashboard to everything, which makes their life easier to maintain."
"We have seen great outcomes with Trellix Cloud Workload Security, such as a clear drop in the time it takes to spot and deal with security issues in our cloud environment since we started using this product, so overall it is saving our time and having a positive impact."
"The installation process of Trellix Cloud Workload Security is very easy because the ePolicy Orchestrator is integrated."
 

Cons

"In TotalCloud, I would suggest improvements in policy checks to cater to various inventory types like VPCs, subnets, S3 buckets, or IAMs. There is a lack of data segregation according to criticality or inventory."
"Areas that need improvement in every solution include the remediation part. The remediation steps should be simple enough for everyone to understand."
"Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA."
"To be honest, I would move out from this tool because it does not give a full view of vulnerability."
"Their customer support needs improvement."
"It has been working very well, but it would be helpful if the dashboard could generate reports tailored to specific compliance needs. For example, in India, we have to comply with RBI and SEBI guidelines. It w"
"With the growing integration of AI, I would like Qualys to enhance its service offerings to better accommodate AI-related risks."
"Qualys TotalCloud needs to improve its accuracy for non-Windows operating systems."
"The emailed notifications are either hard to find or they are not available. Search capabilities can be improved."
"Cisco Tetration needs more flags and system alerts that we should get with network capture."
"I'd like to see better documentation for advanced features. The documentation is fairly basic. I would also like to see better integration with other applications."
"The problem is that we can only deploy the particular solution where we have the hardware with Cisco."
"It is not so easy to use and configure. It needs a bunch of further resources to work, which is mainly the biggest downside of it. The deployment is huge."
"The product must be integrated with the cloud."
"They should scale down the hardware a bit. The initial hardware investment is two million dollars so it's a price point problem. The issue with the price comes from the fact that you have to have it with enormous storage and enormous computes."
"It is highly scalable, but there is a limitation that it is only available on Cisco devices."
"We experience limited customer support, typically requiring a minimum wait of three to four hours for ticket responses."
"There is room for improvement in the pricing model."
"The key issue from Trellix is a lack of knowledge about the product."
"The first is the limited CNAPP capabilities compared to other security solutions like Aqua and Wiz, as Trellix Cloud Workload Security lacks full CNAPP depth, with limited coverage such as CSPM, infrastructure as code scanning, and deep container security."
"I think Trellix Cloud Workload Security could improve by simplifying the initial deployment, as the initial setup requires an expert level of knowledge to deploy it."
"Trellix Cloud Workload Security can improve by searching for new ways to protect against AI threats."
"The time to detect or resolve is a concern, and I am not fully satisfied with that aspect."
"Its vulnerability assessment is not the best. We cannot identify the vulnerabilities that are related to the operating system by using McAfee Cloud Workload Security. I wish McAfee would add a vulnerability assessment tool that will not only identify the vulnerability but will also be able to generate a report so that the required patching can be done for the servers. Currently, McAfee Cloud Workload Security only integrates with AWS and Azure. If it can also integrate with GCP, Alibaba, and other cloud services available in the market, it would be good because not all people are using Azure and AWS."
 

Pricing and Cost Advice

"While Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive and may soon be considered overpriced."
"TotalCloud's price is about right where I would expect it to be."
"Qualys TotalCloud is expensive, but it offers a premier solution with no headaches."
"Qualys TotalCloud offers competitive pricing given its comprehensive suite of features, including integration, assessment, remediation, and detection capabilities, all within a single platform."
"Although Qualys TotalCloud is relatively expensive due to its unique automation features, its cost-effectiveness is rated an eight out of ten, with ten being the most costly."
"Its price seems higher compared to other tools, but it is worth it. If they could adjust the pricing and make it comparable with other tools, that would be great."
"The cost is high, but it meets our organizational needs."
"Qualys TotalCloud offers cost-effective licensing flexibility."
"The price is based on how many computers you're going to install it on."
"The pricing is a bit higher than we anticipated."
"The cost for the hardware is around 300k."
"The price is outrageous. If you have money to throw at the product, then do it."
"Pricing depends on the scope of the application and the features. Larger installations save more."
"It is not cheap and pricing may limit scalability."
"Regarding price, Cisco Secure Workload can be expensive if you don't have a budget. If you're not doing micro-segmentation, every extra security measure or enforcement you're putting on top of your existing environment will be an extra cost. It's not a cheap solution at all. But from my point of view, if you need to do micro-segmentation, this is one of the best tools I've seen for it. I can't compare that to Microsoft's solution because I haven't looked into it. I've looked into VMware and Cisco. Those are the only two that I know of. I didn't know that Microsoft could do micro-segmentation at all. Maybe they can, but I haven't heard anything about it."
"It is not an expensive product. I am in the Indian market, and it is one of the most reliable and cost-effective solutions."
report
Use our free recommendation engine to learn which Cloud Workload Protection Platforms (CWPP) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
16%
Outsourcing Company
12%
Manufacturing Company
11%
Financial Services Firm
10%
Manufacturing Company
13%
Financial Services Firm
9%
Government
8%
Outsourcing Company
8%
Outsourcing Company
21%
Healthcare Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise35
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise3
Large Enterprise8
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise2
Large Enterprise3
 

Questions from the Community

What needs improvement with Qualys TotalCloud?
In terms of improvement, remediation still belongs to the cloud team, which is one of the issues we faced with Qualys...
What is your primary use case for Qualys TotalCloud?
My main use case for Qualys TotalCloud is regarding the cloud visibility that we were not having previously. Previous...
What is your experience regarding pricing and costs for Cisco Secure Workload?
CloudStrike offers antivirus capabilities and firewall features for servers and VDI but lacks automatic policy discov...
What needs improvement with Cisco Secure Workload?
We actively seek improvements in integrating the Infoblox DDI platform with Cisco Secure Workload. This integration a...
What is your primary use case for Cisco Secure Workload?
When we onboarded Cisco Secure Workload, the usual use case was to discover internal application dependencies and cre...
What is your experience regarding pricing and costs for McAfee Cloud Workload Security?
We probably purchased it through AWS Marketplace, and we did. I think the licensing costs for Trellix Cloud Workload ...
What needs improvement with McAfee Cloud Workload Security?
The customer is not much happy with the MITRE part in Trellix Cloud Workload Security. The main issue is that custome...
What advice do you have for others considering McAfee Cloud Workload Security?
I would give a marking of ten out of ten for Trellix Cloud Workload Security dashboard in helping end-users to manage...
 

Also Known As

Qualys TotalCloud with FlexScan
Cisco Tetration
McAfee Cloud Workload Security
 

Overview

 

Sample Customers

Information Not Available
ADP, University of North Carolina Charlotte (UNCC)
Information Not Available
Find out what your peers are saying about Cisco Secure Workload vs. Trellix Cloud Workload Security and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.