Try our new research platform with insights from 80,000+ expert users

Darktrace vs Trellix Endpoint Security (ENS) comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.3
Darktrace enhances security and threat prevention, offering cost-effective solutions with improved visibility and indirect savings despite quantification challenges.
Sentiment score
7.5
Trellix Endpoint Security offers robust protection with reduced threat response time and ROI, despite high costs and occasional inaccuracies.
Using this solution provides financial benefits by securing from server attacks, which offers indirect savings.
 

Customer Service

Sentiment score
7.7
Darktrace is praised for excellent, responsive tech support, offering prompt issue resolution and proactive assistance with global presence.
Sentiment score
7.9
Trellix ENS support is praised for 24/7 access but criticized for delays, regional disparities, and module compatibility issues.
My cases are promptly managed and resolved.
Darktrace provides excellent technical support with a monthly meeting to review platform incidents, ensuring the system functions as expected.
The technical support from Darktrace is of high quality.
They were fairly responsive and able to resolve the issue.
 

Scalability Issues

Sentiment score
7.6
Darktrace is highly scalable, supporting various company sizes and seamless integration, efficiently managing large traffic and endpoints.
Sentiment score
8.5
Trellix Endpoint Security is praised for its scalability and ease of deployment, though expertise is needed for optimal configuration.
Since it's cloud-based, it expands easily.
Darktrace has high scalability, and I would rate it a nine out of ten.
 

Stability Issues

Sentiment score
8.5
Darktrace is highly rated for its stability, reliability, and smooth performance, meeting security needs without network issues.
Sentiment score
7.5
Trellix Endpoint Security is generally stable and reliable, with deployment challenges but receiving regular updates and solid ratings.
The stability of Darktrace is excellent, rated ten out of ten.
The appliance itself has never let me down.
 

Room For Improvement

Darktrace needs better integration, automation, and interface improvements, plus enhanced pricing, endpoint protection, and user-friendliness for broader appeal.
Trellix ENS needs improved compatibility, UI, performance, customization, support, integration, pricing, and automation to meet user expectations.
There is no dedicated salesperson in Egypt, and having one would help to improve focus on this market.
The intelligence section and the incident view should be seamlessly connected in one view to avoid jumping between pages.
Darktrace could improve by integrating with email security gateways like Mimecast or Ironscales.
 

Setup Cost

Darktrace is often seen as costly, yet some justify it for its advanced features and customizable licensing.
Trellix ENS offers competitive pricing and value, with scalable discounts and essential features, despite not being the cheapest.
The licensing cost is approximately eight dollars a year.
The pricing is costly in USD, and they charge based on device counts.
The product is considered expensive compared to others.
 

Valuable Features

Darktrace excels in AI-driven threat detection, autonomous response, and user-friendly interface, making it a top cybersecurity solution.
Trellix Endpoint Security provides comprehensive threat protection, centralized management, and AI-driven capabilities for robust network security and usability.
If more than 2.5 gigabytes of data have been pulled in a few minutes, it engages by blocking for one-hour intervals, alerts, and extends the block until it goes into full isolation if the violation continues.
I do not need to manually process incidents as Darktrace provides an incident summary, potential detection paths, and other details, all exportable with just a click.
The most valuable features are the AI and advanced learning tools that distinguish it from other products.
Trellix Endpoint Security seems to do a good job in terms of protecting my infrastructure from malware.
 

Categories and Ranking

Darktrace
Average Rating
8.2
Reviews Sentiment
7.2
Number of Reviews
79
Ranking in other categories
Email Security (9th), Intrusion Detection and Prevention Software (IDPS) (1st), Network Traffic Analysis (NTA) (1st), Network Detection and Response (NDR) (1st), Extended Detection and Response (XDR) (6th), AI-Powered Chatbots (2nd), Cloud Security Posture Management (CSPM) (15th), Cloud-Native Application Protection Platforms (CNAPP) (11th), Attack Surface Management (ASM) (3rd), AI-Powered Cybersecurity Platforms (2nd)
Trellix Endpoint Security (...
Average Rating
7.6
Reviews Sentiment
7.4
Number of Reviews
54
Ranking in other categories
Endpoint Protection Platform (EPP) (26th), Endpoint Detection and Response (EDR) (20th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Darktrace is designed for Extended Detection and Response (XDR) and holds a mindshare of 9.4%, down 10.0% compared to last year.
Trellix Endpoint Security (ENS), on the other hand, focuses on Endpoint Protection Platform (EPP), holds 1.5% mindshare, down 1.9% since last year.
Extended Detection and Response (XDR)
Endpoint Protection Platform (EPP)
 

Featured Reviews

Peter-Murphy - PeerSpot reviewer
Enables proactive threat detection and immediate response through AI monitoring
The most valuable feature of Darktrace is its ability to detect and counter threats before they occur. The autonomous response capability is always enabled, blocking threats immediately without hesitation. Additionally, the Darktrace email platform is a significant asset since it addresses incoming threats before they reach the network, enhancing our security measures. Protecting the business is essential, and ensuring security through 24/7 AI monitoring is invaluable.
Shreyansh Sharma - PeerSpot reviewer
Our main antivirus tool and offers adaptive threat prevention tool
The technical support needs some improvement. When product distribution errors occur, we have to contact technical support, which is a very tedious and time consuming task. After raising the call onto the technical support portal, usually receive a notification after 24 hours. It usually takes 3 to 4 days to conclude and resolve the issue. If 24/7 online support or a phone line where we could speak directly with technical support for real-time troubleshooting, that would be very helpful. Licensing is another aspect where trellix should look into. Different purchases are grouped together in single user account get mixed up. Categorization of purchases and their grant numbers is not available to end user.
report
Use our free recommendation engine to learn which Extended Detection and Response (XDR) solutions are best for your needs.
850,236 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Manufacturing Company
8%
Financial Services Firm
8%
Government
7%
Computer Software Company
15%
Financial Services Firm
13%
Government
12%
Manufacturing Company
11%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

How does Crowdstrike Falcon compare with Darktrace?
Both of these products perform similarly and have many outstanding attributes. CrowdStrike Falcon offers an amazing user interface that makes setup easy and seamless. CrowdStrike Falcon offers a cl...
Which is better - SentinelOne or Darktrace?
Which solution is better depends on which is more suitable specifically for your company. Darktrace, for example, is meant for smaller to medium-sized businesses. It is also a good option for organ...
What do you like most about Darktrace?
A very useful feature in Darktrace for real-time threat analysis is the packet inspection that analyzes the packet traffic in real time.
How does McAfee Endpoint Security compare with MVISION?
The flexible manageability of McAfee Endpoint Security is one of our favorite aspects of this solution. You can deploy various components as desired with McAfee Endpoint Security, whereas many othe...
How does Crowdstrike Falcon compare with FireEye Endpoint Security?
The Crowdstrike Falcon program has a simple to use user interface, making it both an easy to use as well as an effective program. Its graphical design is such that it makes an extremely useful too...
What do you like most about McAfee MVISION Endpoint?
The product's initial setup phase was straightforward.
 

Also Known As

No data available
McAfee MVISION Endpoint, Trellix Endpoint Security (HX)
 

Overview

 

Sample Customers

Irwin Mitchell, Open Energi, Wellcome Trust, FirstGroup plc, Virgin Trains, Drax, QUI! Group, DNK, CreaCard, Macrosynergy, Sisley, William Hill plc, Toyota Canada, Royal British Legion, Vitol, Allianz, KKR, AIRBUS, dpd, Billabong, Mclaren Group.
Tech Resources Limited, Globe Telecom, Rizal Commercial Banking Corporation
Find out what your peers are saying about CrowdStrike, SentinelOne, Wazuh and others in Extended Detection and Response (XDR). Updated: May 2025.
850,236 professionals have used our research since 2012.