Trellix Network Detection and Response and Microsoft Defender for Cloud Apps compete in the network security and application monitoring space. Trellix seems to have an upper hand in detecting advanced threats, while Microsoft Defender benefits from strong integrations within the Microsoft ecosystem.
Features: Trellix Network Detection and Response stands out with its sandboxing technology, MVX engine, and a focus on advanced persistent threats and zero-day vulnerabilities. Its deep malware analysis capabilities exceed traditional SIEM solutions. Microsoft Defender for Cloud Apps offers strong integration with Microsoft's ecosystem, excels in application monitoring, and provides holistic security management with in-depth evaluations and alerting systems.
Room for Improvement: Trellix Network Detection and Response could improve its VM sandbox customization and integration with cloud solutions and better threat analysis management systems. Microsoft Defender for Cloud Apps may enhance its response times, integration with macOS, and provide more pre-configured reporting tools, along with better third-party solution integration and alert precision.
Ease of Deployment and Customer Service: Trellix Network Detection and Response primarily offers on-premises deployment, suitable for businesses with on-site needs but less flexible than Microsoft Defender for Cloud Apps, which supports public, private, and hybrid cloud deployments. Both products receive good support ratings, though Defender users note slightly better customer service.
Pricing and ROI: Trellix Network Detection and Response is often seen as pricey but delivers considerable ROI by reducing breach incidents. Microsoft Defender for Cloud Apps offers cost-effective pricing, especially when bundled with Microsoft 365, making it affordable upfront and improving ROI through reduced response times and increased productivity.
The biggest return on investment so far has been visibility, knowing what we have in our environment.
As a small team, Microsoft Defender for Cloud Apps allowed us to manage systems with just one or two people.
Their customer service is pretty good, but it's frustrating to go through three or four channels before reaching the right person.
There were instances where the engineers were knowledgeable and helpful, but at other times it felt like a ping pong game, with unnecessary transfers until the right person was found.
The support is excellent, and the speed of response is commendable.
Technical support needs improvement as sometimes engineers are not available promptly, especially during high-severity incidents.
The scalability may require additional resources for larger business operations.
For what I know about the log collector and how much data it can take in, it is super scalable and capable of handling high workloads.
Microsoft Defender for Cloud Apps is very scalable, provided you have the right subscription.
I would rate it a ten because I have not experienced any stability issues so far with Defender for Cloud Apps.
The current stability of Microsoft Defender for Cloud Apps is quite good.
Like any other Microsoft product, the uptime is good.
For data loss prevention, it would be useful to be able to drill down into the kind of data being transferred over CloudApp.
A significant improvement I would like to see is the integration into a single pane of glass.
Specifically, integration with CASB for on-premise and cloud did not work as anticipated back in 2019.
There should be improvements in AI intelligence, faster decision-making, and a more responsive technical support team.
If a product is of high quality, it justifies the expense.
My organization is currently revisiting pricing, but previously, the cost was a bit expensive, yet comparable to other solutions with similar functionalities and features.
It's not the cheapest, but also not the most expensive, placing it in the mid-level range.
The integration within the entire Defender suite is highly valuable because it allows for communication between different components and offers pretty decent correlations.
The most valuable features of Microsoft Defender for Cloud Apps include live, up-to-date information, which provided real-time alerts.
Microsoft Defender for Cloud Apps is very comprehensive, providing a complete 360-degree view of applications within an organization.
Trellix NDR provides an essential defense by automatically responding to network incidents that firewalls may not catch.
Microsoft Defender for Cloud Apps is a comprehensive security solution that provides protection for cloud-based applications and services. It offers real-time threat detection and response, as well as advanced analytics and reporting capabilities. With Defender for Cloud Apps, organizations can ensure the security of their cloud environments and safeguard against cyber threats. Whether you're running SaaS applications, IaaS workloads, or PaaS services, Microsoft Defender for Cloud Apps can help you secure your cloud environment and protect your business from cyber threats.
Reviews from Real Users
Ram-Krish, Cloud Security & Governance at a financial services firm, says that Microsoft Defender for Cloud Apps "Integrates well and helps us in protecting sensitive information, but takes time to scan and apply the policies and cannot detect everything we need".
PeerSpot user, Senior Cloud & Security Consultant at a tech services, writes that Microsoft Defender for Cloud Apps "Great for monitoring user activity and protecting data while integrating well with other applications".
Simon Burgess,Infrastructure Engineer at SBITSC, states that Microsoft Defender for Cloud Apps is "A fluid, intelligent product for great visibility, centralized management, and increased uptime".
Detect the undetectable and stop evasive attacks. Trellix Network Detection and Response (NDR) helps your team focus on real attacks, contain intrusions with speed and intelligence, and eliminate your cybersecurity weak points.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.