

Trellix Active Response and Kaspersky Endpoint Detection and Response Expert compete in the endpoint security category. Trellix Active Response seems to have the upper hand in pricing and support, whereas Kaspersky excels in feature set, which users believe are worth the investment.
Features: Trellix Active Response offers powerful real-time monitoring, automated response capabilities, and strong support services. Kaspersky Endpoint Detection and Response Expert provides superior threat intelligence, comprehensive detection mechanisms, and advanced threat detection that users favor.
Room for Improvement: Trellix Active Response needs enhanced threat intelligence integration, improved reporting capabilities, and better analytics. Kaspersky Endpoint Detection and Response Expert could improve usability, integrate better with third-party tools, and simplify user interface.
Ease of Deployment and Customer Service: Trellix Active Response provides a straightforward deployment process supported by responsive customer service. Kaspersky Endpoint Detection and Response Expert has a more complex deployment but offers comprehensive support services.
Pricing and ROI: Trellix Active Response is cost-effective with a satisfactory ROI. Kaspersky Endpoint Detection and Response Expert is more expensive but provides value through its extensive features. Users find Trellix offers a better financial return, while Kaspersky's higher investment is justified by capabilities.
While we haven't yet quantified the financial benefits, we recognize that there has been a return on investment, particularly with operational efficiencies provided by the alerts.
I rate the technical support from Kaspersky a 10, as they respond quickly with engineers joining the conversation within three to five minutes.
I have my own independent team for Kaspersky deployment and operational support, so I am not dependent on Kaspersky's backend technical support.
From my perspective, the local team and the support team of Kaspersky Endpoint Detection and Response Expert need to be more accurate and more responsible.
I would rate technical support from Trellix Active Response as a seven because sometimes we face difficulties finding engineers quickly, leading to customer frustration.
Kaspersky Endpoint Detection and Response Expert is very scalable, working with high availability techniques across three main data centers in my organization.
I believe Kaspersky Endpoint Detection and Response Expert is scalable, as I can keep adding agents without hard limitations.
The scalability of Active Response is satisfactory.
It effectively detects new applications and requires whitelisting based on assessments discussed with the technical teams or vendors.
Customers using Kaspersky Endpoint Detection and Response Expert can manage environments with as few as 100 endpoints or as many as 5,000 endpoints very effectively.
I haven't found any issues with this particular solution, and there's no room for improvement for Kaspersky Endpoint Detection and Response Expert.
A centralized dashboard is a primary requirement, as it would facilitate easier management without needing to install multiple agents.
Deployment with the console directly, without depending on other workers to deploy the agents, would be beneficial.
Compared to my previous product, Kaspersky Endpoint Detection and Response Expert is not up to the mark; it's below my rating.
We would like Trellix to optimize the technology for these systems similarly to how it is deployed for normal endpoints.
There is room for improvement in the platform area and security area to make the dashboard visibility clearer and easier for customers to monitor malicious activities occurring in their environment.
The pricing is nominal when we compare it with other solutions.
Compared to other products, the pricing for Kaspersky Endpoint Detection and Response Expert is almost the same.
Based on our evaluations, Trellix Active Response's pricing was the most feasible from a cost perspective.
The ATP functionality is quite strong because it utilizes the behavioral analytics engine in the backend, which employs machine learning mechanisms to identify any kind of vulnerability or exploit running on the operating system level and the network level.
Almost all our clients use the Patch Management, vulnerability, and integration feature.
The product is strong enough and capable of handling the type of detections as protection and security.
They notify us immediately of any vulnerabilities on the endpoints, allowing us to deploy a response quickly.
The most valuable feature of Trellix Active Response is that whenever any incident occurs, it allows us to disconnect from that particular network or area and shut down the system using commands.
| Product | Market Share (%) |
|---|---|
| Kaspersky Endpoint Detection and Response Expert | 1.5% |
| Trellix Active Response | 0.4% |
| Other | 98.1% |

| Company Size | Count |
|---|---|
| Small Business | 30 |
| Midsize Enterprise | 4 |
| Large Enterprise | 18 |
Kaspersky Endpoint Detection and Response Expert is a comprehensive cybersecurity solution designed to detect and respond to advanced threats in real time. It combines advanced threat intelligence, machine learning algorithms, and behavioral analysis to provide proactive protection against sophisticated attacks.
With its centralized management console, security teams can easily monitor and investigate incidents, while automated response capabilities enable quick remediation. This solution offers deep visibility into endpoint activities, allowing organizations to identify and mitigate potential risks effectively. Kaspersky Endpoint Detection and Response Expert is a powerful tool for enhancing the overall security posture of businesses, ensuring the protection of critical assets and sensitive data.
Continuous Visibility into Your Endpoints:
Capture and monitor events, files, host flows, process objects, context, and system state changes that may be indicators of attack or dormant attack components.
Identify and Remediate Breaches Faster:
Access tools you need to quickly correct security issues. Send intelligence to analytics, operations, and forensic teams.
Target Critical Threats:
Get preconfigured and customizable actions when triggered, so you can target and eliminate threats.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.