Try our new research platform with insights from 80,000+ expert users

Symantec Endpoint Detection and Response vs Trellix Active Response comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Symantec Endpoint Detection...
Ranking in Endpoint Detection and Response (EDR)
29th
Average Rating
7.6
Reviews Sentiment
7.2
Number of Reviews
30
Ranking in other categories
No ranking in other categories
Trellix Active Response
Ranking in Endpoint Detection and Response (EDR)
46th
Average Rating
6.8
Reviews Sentiment
7.6
Number of Reviews
4
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of Symantec Endpoint Detection and Response is 0.5%, up from 0.4% compared to the previous year. The mindshare of Trellix Active Response is 0.2%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Featured Reviews

YusufAhmed - PeerSpot reviewer
Easy to use and competitively priced
Honestly, the product needs to continue the way it is, and I feel that everything will be fine. I haven't had any reasons to complain about the product. The product doesn’t offer MDM functionality under its current licensing model. In the future, I want the product to offer MDM. It can allow me to manage my mobile device more efficiently and effectively. Currently, there is a need for a separate license to be added to Symantec Endpoint Detection and Response to be able to use the MDM part. If both are bundled up under the same license, the administration part can be made easier.
ED
Operational efficiencies increase with immediate threat alerts for endpoints
We use Trellix Active Response primarily for our endpoints, including desktop computers. It monitors all the tools that our users use for their day-to-day work The alerts provided by Trellix Active Response are its most valuable feature. They notify us immediately of any vulnerabilities on the…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution does its job with no issues."
"The solution is stable."
"It is very simple to use."
"The solution does all that we expect it to do."
"There are times when Symantec Endpoint Detection and Response tags an executable as malicious when it is trying to get executed on the machine. In this case, it prevents the execution and it gives you a process view of things where you can look into what has happened and whether it is a genuine process trying to access some system activities, or it's a malicious one. Depending upon the process, it gives you a clear identification, and we can do the containment from the interface itself and isolate the machine from the network. The process review on network isolation is good."
"The solution is scalable."
"The most valuable features are that it is easy to connect and global settings are good."
"The most valuable feature is that the same agent can act as the endpoint detection and response agent."
"It's a little lighter compared to the older version, which was mostly signature-based."
"We are hoping to automate detection and response and take advantage of user behavior analytics, given that we are working from home. About half of our workers are still remote, so Active Response gives us that visibility and lets us automate a number of those events."
"The solution is scalable."
"The alerts provided by Trellix Active Response are its most valuable feature."
"The alerts provided by Trellix Active Response are its most valuable feature."
 

Cons

"The interface has many issues."
"The product doesn’t offer MDM functionality under its current licensing model."
"Its UI could be more user-friendly."
"It would be beneficial to have more integration and compatibility with other platforms."
"One potential area for improvement in Symantec EDR is the reporting engine."
"The solution’s scalability and stability could be improved."
"The solution can always be more stable and more secure."
"In the future, it would be nice to have playbooks in the tool, to allow for some of the common activities to be automated. For example, some of the scannings of the malware can be too manual for a specific device. Additionally, a vulnerability manager would be beneficial."
"I also expected Active Response 's user interface to be much more analytical."
"While the product is good, we are currently facing support issues."
"There are some components on the cloud that should also reside in the on-prem deployment models but don't."
"The only area for improvement is regarding operational technology devices, specifically the engineering automation systems."
 

Pricing and Cost Advice

"It's a yearly subscription."
"We have a yearly subscription, and the pricing is fair."
"Compared to the tools of competitors, Symantec Endpoint Detection and Response is a cheaply priced product."
"Of late, because of the Broadcom purchase, its price has been increasing."
"The price is really high and it should be lower."
"The more devices we have the more expensive it becomes, which is where the challenge is."
"The price is okay, but it really depends on the customer's requirements."
"The price is reasonable."
"Our costs were somewhere around $600K in Trinidad dollars, which might be about $100K US. We have the ETP plus the EDR. Our recent renewal was 1800 licenses as opposed to the full amount. Our transaction cost was about $600K Trinidad dollars, which is somewhere around $90-100K US."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
856,807 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
13%
University
8%
Manufacturing Company
7%
Government
17%
Financial Services Firm
12%
Comms Service Provider
11%
University
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Symantec Endpoint Detection and Response?
I am not aware of the pricing details, as that falls under the management's responsibility.
What needs improvement with Symantec Endpoint Detection and Response?
There are several areas where Symantec Endpoint Detection and Response can improve, including shell features, web control, asset management, and device control. Specifically, the application contro...
What is your experience regarding pricing and costs for McAfee Active Response?
Based on our evaluations, Trellix Active Response's pricing was the most feasible from a cost perspective. I rate the pricing between a six and an eight. It is justified.
What needs improvement with McAfee Active Response?
The only area for improvement is regarding operational technology devices, specifically the engineering automation systems. We would like Trellix to optimize the technology for these systems simila...
What is your primary use case for McAfee Active Response?
We use Trellix Active Response primarily for our endpoints, including desktop computers. It monitors all the tools that our users use for their day-to-day work.
 

Also Known As

No data available
McAfee Active Response
 

Overview

 

Sample Customers

Information Not Available
Liquor Control Board of Ontario
Find out what your peers are saying about Symantec Endpoint Detection and Response vs. Trellix Active Response and other solutions. Updated: April 2025.
856,807 professionals have used our research since 2012.