

Cisco Sourcefire SNORT and Trellix Intrusion Prevention System are competitors in the intrusion prevention space. Trellix seems to have an edge due to its advanced capabilities and comprehensive security measures.
Features: Cisco Sourcefire SNORT's rule-based detection engine excels in customization and community involvement. It also benefits from its open-source nature, allowing flexible adjustments. Trellix offers AI-driven insights, behavioral analysis, and advanced threat detection, providing robust defense mechanisms and innovative security approaches.
Room for Improvement: Cisco Sourcefire SNORT could enhance its ease of use and documentation to make setup more intuitive. It may also benefit from integrating more advanced threat detection capabilities beyond rule-based systems. Trellix could improve by offering more cost-effective pricing options and simplifying customization within its platform. Additionally, Trellix might enhance its user interface for better accessibility and user experience.
Ease of Deployment and Customer Service: Cisco Sourcefire SNORT provides flexible deployment with significant community resources, helpful for technically adept teams. Trellix supports streamlined deployments along with dedicated customer service, allowing for efficient setup and swift problem resolution, beneficial for enterprises seeking professional integration.
Pricing and ROI: Cisco Sourcefire SNORT is known for cost-effectiveness with lower initial expenses, which appeals to budget-conscious organizations. Trellix, although more expensive, justifies its costs with enriched features and heightened security offerings that promise better long-term ROI through superior protection.
| Product | Mindshare (%) |
|---|---|
| Trellix Intrusion Prevention System | 3.0% |
| Cisco Sourcefire SNORT | 3.1% |
| Other | 93.9% |
| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 8 |
| Large Enterprise | 7 |
| Company Size | Count |
|---|---|
| Small Business | 6 |
| Midsize Enterprise | 6 |
| Large Enterprise | 6 |
Cisco Sourcefire SNORT is a versatile cybersecurity tool offering threat detection, scalability, and integration with Cisco tools. It is recognized for ease of configuration and comprehensive protection, making it suitable for intrusion prevention and firewall applications.
Cisco Sourcefire SNORT provides advanced malware protection and integrates seamlessly with Cisco products. It enables automatic IPS tuning, real-time visibility, and intelligent security automation, which together enhance network security. Users benefit from its URL filtering, email spam elimination, and it delivers low false positives. Though highly effective, feedback highlights a desire for improvements in stability, dashboard effectiveness, traffic blocking customizations, and integration with Cisco DNA Center. Cost concerns and calls for cloud-based deployments also emerge in user feedback. Technical support and performance are also discussed, with VPN configuration posing challenges.
What are the key features of Cisco Sourcefire SNORT?Organizations primarily deploy Cisco Sourcefire SNORT for network security in sectors like finance and healthcare. Used extensively in data centers with Cisco Firepower, it provides intrusion prevention, URL filtering, and VPN security. Pre-configured settings make it practical for on-premises deployment, ensuring secure user-to-server and server-to-server interactions.
Trellix Intrusion Prevention System provides robust network protection with signature-based detection, zero-day protection, and advanced threat prevention using machine learning and behavior analysis. It integrates with Trellix's ecosystem for detailed traffic insight and real-time threat blocking.
Businesses utilizing Trellix Intrusion Prevention System benefit from enhanced security in remote offices and data centers, comprehensive malware detection, and effective network monitoring. The system offers robust perimeter protection and Smart Blocking capabilities to detect and block harmful data. Companies favor Trellix for its endpoint security and vulnerability assessment functionalities. Despite its strong offerings, improvements are needed in AI-driven threat detection, user-friendliness of the management console, and flexibility in SaaS integration. Users highlight the absence of virtual patching and outdated GUI as areas for improvement.
What are the key features of Trellix Intrusion Prevention System?Trellix Intrusion Prevention System is implemented across industries such as finance, healthcare, and manufacturing for its ability to detect malware and enhance network safety. Its threat intelligence capabilities help sectors where data security and operational continuity are imperative, providing tailored protection solutions that align with specific industry needs.
We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.