

Trellix Endpoint Security Platform and NetWitness NDR are two prominent solutions in the endpoint security space. Trellix has an advantage due to its broader feature set and favorable pricing structure, especially in endpoint protection.
Features: Trellix Endpoint Security Platform is known for its comprehensive endpoint security features, including dual containment, integrated DLP, and robust reporting. Users value its scalability and seamless integration with other systems, along with its centralized management and access protection. NetWitness NDR delivers extensive network activity visibility and effective network threat detection capabilities.
Room for Improvement:Trellix Endpoint Security users note challenges with resource consumption, complex policy configurations, and inadequate technical support. It also lacks platform support for Mac and Linux. NetWitness NDR needs enhancements in threat intelligence and integration capabilities, with users citing less effective reporting and scalability compared to other solutions. Both products could improve user interfaces and support response times.
Ease of Deployment and Customer Service: Trellix Endpoint Security supports deployment across hybrid and public clouds and is seen as straightforward to deploy, though initial setups may be complex. Customer service is generally positive but occasionally faces response delays. NetWitness NDR is on-premises, praised for technical support but also requires improvements in response times and local support presence.
Pricing and ROI: Trellix Endpoint Security is competitively priced, offering cost-effectiveness, particularly for larger deployments due to volume discounts. It provides significant ROI by reducing security incidents and streamlining management. In contrast, NetWitness NDR is considered expensive with a less flexible pricing model, and some users feel its cost doesn't match the features offered. While both solutions deliver ROI, Trellix's pricing structure is more user-friendly.
We have saved money and required fewer employees because of the complicated architecture.
Clients appreciate the solution’s customization capabilities and ongoing product improvements.
There are two parts: one is the encryption which is standard and no AI is needed, but the data protection part could benefit from AI to detect new types of data and protect it.
I would rate their customer service nine out of ten.
I rate the support from Trellix a perfect ten.
The response time is a notable issue.
I would rate the scalability of the solution as a six out of ten, indicating some challenges due to downtime requirements.
Trellix Endpoint Security is scalable.
I would rate its stability as nine out of ten.
I would rate the stability of Trellix Endpoint Security as near perfect, close to ten out of ten.
I think it's stable enough; earlier it had glitches, but now it's stable enough.
It would also help if detection specifics were identified more quickly and the problem-solving process accelerated, especially to meet larger clients' expectations.
The dashboard of Trellix Endpoint Security Platform is a bit difficult to understand, and it takes a lot of time to comprehend the tools and policies compared to other tools.
The product does not seem to be cloud-native.
My experience with pricing, setup cost, and licensing is good; compared to other tools, Trellix Endpoint Security Platform provides lower costs.
Trellix Endpoint Security is cost-effective and provides excellent value for money.
The license costs are very reasonable, around 1,000 to 1,200 rupees per year.
The detection capability of Trellix Endpoint Security is higher than traditional antivirus solutions.
Trellix Endpoint Security Platform has positively impacted our organization with strong protection against malware and ransomware, greatly improving our ability to detect and block threats in real time, and features like ATP and Exploit Prevention help reduce malware and zero-day attacks.
Including options like Application Control (formerly Solidcore), integrated monitoring, change control, DLP, and advanced threat protection, the solution offers comprehensive security.
| Product | Market Share (%) |
|---|---|
| Trellix Endpoint Security Platform | 3.8% |
| NetWitness NDR | 0.5% |
| Other | 95.7% |

| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 2 |
| Large Enterprise | 5 |
| Company Size | Count |
|---|---|
| Small Business | 67 |
| Midsize Enterprise | 36 |
| Large Enterprise | 61 |
Using a centralized combination of network and endpoint analysis, behavioral analysis, data science techniques and threat intelligence, NetWitness NDR helps analysts detect and resolve known and unknown attacks while automating and orchestrating the incident response lifecycle. With these capabilities on one platform, security teams can collapse disparate tools and data into a powerful, blazingly fast user interface.
Trellix Endpoint Security Platform offers essential features like centralized management, threat prevention, and encryption, facilitating seamless scaling and integration with other systems while prioritizing user security.
This comprehensive platform focuses on endpoint protection, antivirus capabilities, and malware defense. It enhances cybersecurity with data loss prevention, advanced threat detection, and AI-driven features for reliable protection without impacting performance. Central management and advanced reporting streamline integration and ease of use. Flexible policy deployment through the management console and its robust security measures, such as DLP and device control, further increase protection. Challenges include high CPU and memory usage affecting performance, a complex interface, and lengthy deployment. Third-party integration and Windows Hello support need improvement. Additional concerns involve improved threat detection and faster technical support responses.
What are the key features of Trellix Endpoint Security Platform?Trellix Endpoint Security Platform is widely implemented in industries such as banking and government for securing mobile and desktop devices. Its capabilities cover network security, device control, and remote access protection, catering to diverse environments by offering robust cybersecurity management against advanced threats.
We monitor all Endpoint Protection Platform (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.