

Trellix Active Response and CylanceOPTICS are both advanced cybersecurity solutions. Users report better pricing and support with Trellix Active Response, but CylanceOPTICS seems superior due to its features, making it worth the price.
Features: Trellix Active Response users highlight real-time threat detection, automated remediation, and straightforward deployment. CylanceOPTICS is praised for its advanced AI-driven predictive analysis, minimal latency, and cloud deployment.
Room for Improvement: Trellix Active Response users suggest improving integration with other tools, user training resources, and reporting functionality. CylanceOPTICS users mention the need for enhanced reporting functionality, better documentation, and more responsive customer support.
Ease of Deployment and Customer Service: Trellix Active Response is noted for a straightforward deployment process and responsive customer service. CylanceOPTICS users value its easy cloud deployment but have mixed feelings about support responsiveness.
Pricing and ROI: Trellix Active Response is seen as competitively priced with a strong ROI. CylanceOPTICS, though more expensive, provides significant ROI due to its advanced features.
Many customers observe a return on investment with CylanceOPTICS since it works effectively without the need for an internet connection.
While we haven't yet quantified the financial benefits, we recognize that there has been a return on investment, particularly with operational efficiencies provided by the alerts.
When it comes to technical support provided by BlackBerry, my experience has been somewhat slow; if a problem arises, we often have to wait for a reply.
I would rate technical support from Trellix Active Response as a seven because sometimes we face difficulties finding engineers quickly, leading to customer frustration.
The scalability of Active Response is satisfactory.
Regarding stability, I have no complaints as CylanceOPTICS has proven to be totally stable, and as of now, we have not encountered any instability.
CylanceOPTICS is indeed easy to scale, but one issue I face is related to visibility; while it is scalable, the security teams struggle with limited visibility as we need to gather data from multiple sources.
We would like Trellix to optimize the technology for these systems similarly to how it is deployed for normal endpoints.
There is room for improvement in the platform area and security area to make the dashboard visibility clearer and easier for customers to monitor malicious activities occurring in their environment.
In terms of cost, I find CylanceOPTICS to be reasonable; it's not overly expensive, nor is it at the lower end of the market—it's positioned in the medium range.
Based on our evaluations, Trellix Active Response's pricing was the most feasible from a cost perspective.
They notify us immediately of any vulnerabilities on the endpoints, allowing us to deploy a response quickly.
The most valuable feature of Trellix Active Response is that whenever any incident occurs, it allows us to disconnect from that particular network or area and shut down the system using commands.


| Product | Market Share (%) | 
|---|---|
| CylanceOPTICS | 0.3% | 
| Trellix Active Response | 0.3% | 
| Other | 99.4% | 


| Company Size | Count | 
|---|---|
| Small Business | 7 | 
| Midsize Enterprise | 2 | 
| Large Enterprise | 4 | 







Our cloud-native BlackBerry® Optics provide visibility, on-device threat detection and remediation across your organization. In milliseconds. And our EDR approach effectively and efficiently hunts threats while eliminating response latency. It’s the difference between a minor security event—and one that’s widespread and uncontrolled.
Continuous Visibility into Your Endpoints:
Capture and monitor events, files, host flows, process objects, context, and system state changes that may be indicators of attack or dormant attack components.
Identify and Remediate Breaches Faster:
Access tools you need to quickly correct security issues. Send intelligence to analytics, operations, and forensic teams.
Target Critical Threats:
Get preconfigured and customizable actions when triggered, so you can target and eliminate threats.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.