No more typing reviews! Try our Samantha, our new voice AI agent.

Palo Alto Networks WildFire vs Proofpoint Email Protection vs Trellix Network Detection and Response comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.1
Organizations report quick ROI from WildFire, enhancing security, reducing false positives, and lowering costs by 25-30%.
Sentiment score
5.2
Proofpoint Email Protection boosts financial savings and efficiency by reducing manual work, security incidents, and enhancing threat protection.
Sentiment score
7.6
Trellix enhances security and productivity, offering nearly 200% ROI, faster threat detection, and broad client satisfaction.
The service generates a low rate of false positives, reducing the overhead of managing false positive events.
Presale Engineer at Westcon-Comstor
The ideal situation would be to have all these portals combined into one unified dashboard.
Information Security Architect at Loews Hotels
The time required for email investigations and responses has changed with Proofpoint Email Protection's visibility and automation.
Sr Security Engineer at a comms service provider with 201-500 employees
If you implement these kinds of solutions in your security stack, the first beneficial thing will be that you will not suffer any malware, and you will not face attacks, which ultimately leads to financial benefit.
Senior Security Engineer at DCIPHERS IT SOLUTIONS (P) LTD
 

Customer Service

Sentiment score
6.7
Customer service is mixed, with large companies excelling, slow response times for some, and premium tiers offering better support.
Sentiment score
7.0
Proofpoint Email Protection customer service receives mixed reviews for responsiveness and reliability, with some users noting delays and inefficiencies.
Sentiment score
7.2
Trellix Network Detection and Response offers reliable 24/7 support, though some users desire quicker response times during incidents.
There is a lack of SLA adherence, and third-party partners do not provide prompt responses.
Technical Superintendent at Indian Institute Of Technology, Patna
We have had some open tickets for months, maybe half a year, and there is no real answer.
IT Security Specialist at a tech services company with 11-50 employees
The service response times are aligned with standards, responding within a few hours based on the problem's criticality.
Presale Engineer at Westcon-Comstor
I am familiar with the granular policy control feature of Proofpoint Email Protection, and I find their support excellent for modifying those policies.
Senior Cybersecurity Specialist at a retailer with 10,001+ employees
Even the engineers have been helpful, and if we open a case, they get back to us right away.
Information Security Analyst at a government with 11-50 employees
We always contact them if we need support, whether it's for setting up features or technical support, which is very responsive.
System Administrator at Tutt Bryant Group
Technical support needs improvement as sometimes engineers are not available promptly, especially during high-severity incidents.
Information Security Engineer at Nhq Distribution Ltd
The customer support for Trellix Network Detection and Response is great.
Agente De Servicios Técnicos at a computer software company with 11-50 employees
 

Scalability Issues

Sentiment score
8.0
Palo Alto Networks WildFire offers scalable, adaptable integration for various networks, seamlessly accommodating growth, though on-premises scaling may incur costs.
Sentiment score
7.4
Proofpoint Email Protection is cloud-based, scalable, and efficiently handles large email volumes, suitable for diverse enterprises despite licensing concerns.
Sentiment score
7.9
Trellix Network Detection and Response offers reliable cloud scalability, supporting diverse industries with high satisfaction despite varied admin support.
Wildfire is highly scalable.
Technical Superintendent at Indian Institute Of Technology, Patna
Palo Alto Networks WildFire is scalable, and I give it a nine for scalability.
Content Specialist at PeerSpot
The on-premises version is expensive to scale as it might need an additional device to be installed in the setup.
IT Security Specialist at a tech services company with 11-50 employees
Proofpoint is scalable for multi-site organizations with thousands of users.
Products and solutions director at ITVikings
The solution provides a graphical representation and dashboard view showing how many threats are getting blocked on a daily and monthly basis.
Information Technology Team Lead at a manufacturing company with 201-500 employees
Proofpoint Email Protection is considered to be highly scalable, designed for large enterprises, with a cloud-based architecture that offers an enormous number of options, including multi-organization support and high-volume email handling.
Senior Solution Delivery Lead Cybersecurity at International Olympic Committee – IOC
 

Stability Issues

Sentiment score
8.5
Palo Alto Networks WildFire is highly reliable, scalable, and integrates seamlessly, offering robust malware filtering and network compatibility.
Sentiment score
8.3
Proofpoint Email Protection is stable and reliable, with occasional UI issues and rare outages, effectively managing email threats.
Sentiment score
7.8
Trellix Network Detection and Response is reliable, with minor issues in performance requiring maintenance and expertise for optimal use.
It performs filtering, malware blocking, and scanning.
Engineer at Taalumgroup
The solution is scalable and stable.
Technical Manager at PSR
If Proofpoint Email Protection has an outage, we are either not receiving emails or not blocking the right threats.
Senior Security Engineer at Cloudflare
Regarding the stability and performance of Proofpoint Email Protection, I have not experienced any crashes, downtimes, or performance issues.
Cyber Security Engineer at a financial services firm with 10,001+ employees
Proofpoint Email Protection is very stable and reliable, as it remains accessible at all times without issues, ensuring that data is available in real time.
Principal Consultant at Infosys
 

Room For Improvement

Users seek improvements in functionality, user interface, support, pricing, deployment complexity, automation, integration, and advanced capabilities.
Proofpoint Email Protection needs improved integration, user interface, reporting, AI, affordability, deployment, support, and admin features.
Trellix Network Detection and Response needs improved customization, integration, reporting, threat intelligence, AI, support, and dashboard visibility.
It should be easier to establish the Palo Alto Networks WildFire cluster between the devices.
IT Security Specialist at a tech services company with 11-50 employees
The dashboard should provide better visibility, especially in showing how many files are sent to Wildfire and their findings.
Technical Superintendent at Indian Institute Of Technology, Patna
It is a very good product.
Engineer at Taalumgroup
The older legacy user interface just took a little to work with, and the new unified interface, as it was able to do more and more of the functionality of the old one, the product just got easier and easier to use.
Sr Security Engineer at a comms service provider with 201-500 employees
In addition to the UI improvements, I would appreciate an increase in the speed of the tasks being processed on the pod.
Security Specialist at a leisure / travel company with 10,001+ employees
There are pros and cons to that, but I would suggest maintaining a good balance between security protection and operational impact.
Senior Security Engineer at Cloudflare
There should be improvements in AI intelligence, faster decision-making, and a more responsive technical support team.
Information Security Engineer at Nhq Distribution Ltd
I would like to see in Trellix Network Detection and Response more explanation about some details of the threat.
Agente De Servicios Técnicos at a computer software company with 11-50 employees
 

Setup Cost

Palo Alto Networks WildFire is an enterprise-focused, costly solution with robust threat prevention, offering various pricing tiers and a free trial.
Proofpoint Email Protection is a premium solution, costing more than competitors, but offers comprehensive security features that users value.
Trellix Network Detection and Response is perceived as costly, but valued for effective threat detection and competitive pricing.
I would rate it an eight out of ten in terms of affordability.
Presale Engineer at Westcon-Comstor
Customers pay around $90,000 yearly for a 1,000-user organization, with the subscription license being the main expense, apart from implementation fees.
Products and solutions director at ITVikings
Given my other experience with other vendors, I think they are a bit on the high end and a bit on the pricey end for the email security functionality that we were using.
Sr Security Engineer at a comms service provider with 201-500 employees
Although it is a bit costly compared to Mimecast, Defender, and Cofense Vision, it is efficient and strong in security, so I do not mind the cost because I will not reduce my security risk.
Senior Solution Delivery Lead Cybersecurity at International Olympic Committee – IOC
 

Valuable Features

Palo Alto Networks WildFire offers advanced malware detection, effective sandboxing, and robust integration with next-gen firewalls for threat protection.
Proofpoint Email Protection enhances security with filtering, sandboxing, and threat visibility, improving efficiency and protecting against phishing and malware.
Trellix excels in zero-day threat detection, automatic responses, and enhancing security infrastructure with user-friendly dashboards and sandboxing.
Integrating Palo Alto Networks WildFire with various security protocols similar to a firewall has significantly improved the overall threat detection capabilities in our organization.
Content Specialist at PeerSpot
The most valuable feature of Wildfire is its sandboxing capability for examining suspicious files or locations.
Technical Superintendent at Indian Institute Of Technology, Patna
The integration and working with third-party solutions was very seamless and smooth.
IT Security Specialist at a tech services company with 11-50 employees
Without Proofpoint Email Protection, most of these emails would have come through, slipped through Exchange, gotten into the user's mailbox, and created a lot of trouble for the organization.
Cyber Security Engineer at IT Naturally
Proofpoint Email Protection has positively impacted my organization by ensuring we are not at risk of a breach through email.
Release lead at a financial services firm with 10,001+ employees
TAP alerts, where Proofpoint Email Protection scans emails and sends alerts, provide the ability to review suspicious emails and validate them in a sandbox environment.
Infrastructure Analyst at a consultancy with 51-200 employees
Trellix NDR provides an essential defense by automatically responding to network incidents that firewalls may not catch.
Information Security Engineer at Nhq Distribution Ltd
What makes Trellix Network Detection and Response stand out for me compared to other tools is the way you can detect threats. It is very easy and comfortable to use, and the detection shows clearly on the screen, which is very easy to understand.
Agente De Servicios Técnicos at a computer software company with 11-50 employees
 

Mindshare comparison

As of April 2026, in the Advanced Threat Protection (ATP) category, the mindshare of Palo Alto Networks WildFire is 7.5%, down from 11.6% compared to the previous year. The mindshare of Proofpoint Email Protection is 5.3%, down from 12.0% compared to the previous year. The mindshare of Trellix Network Detection and Response is 3.5%, down from 3.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Advanced Threat Protection (ATP) Mindshare Distribution
ProductMindshare (%)
Palo Alto Networks WildFire7.5%
Proofpoint Email Protection5.3%
Trellix Network Detection and Response3.5%
Other83.7%
Advanced Threat Protection (ATP)
 

Featured Reviews

RK
Engineer at Taalumgroup
Achieve effective threat prevention and seamless integration with powerful technical support
Integration with third-party products is possible. For example, connecting a mail gateway with Palo Alto Networks WildFire allows them to handle prevention. Palo Alto Networks WildFire is a cloud-based sandboxing solution. The firewall is connected to WildFire, and XDR performs sandboxing from the cloud. WildFire conducts malware scanning and emulation, then informs the firewall to block threats based on the response. It also generates reports regarding malware and other issues. The sandboxing process involves sending sample files to the cloud for scanning, checking file authenticity, certificates, and detecting malicious code. WildFire performs multiple checks and informs the XDR agent about file status. This automatic process occurs within minutes or seconds. For unknown or suspicious files, immediate blocking occurs while samples are sent to WildFire for identification. I rate Palo Alto Networks WildFire a 9 out of 10.
AshishKochhar - PeerSpot reviewer
Information Technology Team Lead at a manufacturing company with 201-500 employees
Advanced email protection has blocked targeted attacks and reduces manual threat handling
I feel Proofpoint Email Protection is overpriced. I cannot say that the security level being provided does not justify the cost, but when comparing the similar level of security with other applications or security systems, it is overpriced. If Proofpoint could provide offers or discounts for customers who are already using the product or for new customers implementing it, along with some free services or add-ons, that would be helpful in terms of financial expense. Proofpoint Email Protection has recently introduced AI functionality in terms of data security capabilities and protecting AI assistance from targeted attacks. This is important since everything is now related to AI. The solution is doing threat detection and real-time threat detection and response pretty well. There are a few things I would like to see improved. Sometimes Proofpoint Email Protection takes time to analyze the workflow and the nature of the email. In this age of AI, the solution should analyze an email on the first receipt and determine whether it should pass or be marked as spam without checking previous data. Another improvement would be to have a more user-friendly dashboard. Additionally, if Proofpoint could add the same features in BCP as part of email protection in BCP, it would be helpful since I currently have to take a different add-on for BCP, and integrating it would save costs. I cannot say that threats have increased or decreased with Proofpoint Email Protection because it depends on the mail flow. The solution captures and filters out all threats, and the email threats vary every day depending on how many users are receiving how many emails per day. Today there might be 1,000 emails, tomorrow 5,000, and the day after 500. Proofpoint Email Protection does its job by scanning all emails and threats are reduced to some extent. Since I am aware that virus definitions are updated every day, I cannot blame Proofpoint Email Protection if they take time to determine the nature of an email being received. There are sometimes emails that are false positives, and Proofpoint Email Protection is a bit strict in analyzing false positives, sometimes stopping emails that are actually required. It analyzes the previous nature of an email and if a template looks like an informational template or related to spam, it blocks it because it looks similar to one blocked earlier. However, the template might actually be required. If I receive the same template today that is also blocked by Proofpoint Email Protection, that particular template might be useful and should not be blocked. In such cases, I have to raise it as a false positive stating that this is something in use or my users use and should be released. When AI starts doing its work, it analyzes the email from a sender with a particular template and releases it, but if the same email and template come from another sender, it blocks it according to the policies.
Jose Vargas - PeerSpot reviewer
Agente De Servicios Técnicos at a computer software company with 11-50 employees
Has improved threat detection workflows and supports seamless customer monitoring
The best features Trellix Network Detection and Response offers include very good threat detection, and I believe that it is one of the best XDR tools. For example, ePO and XDR components are very comfortable and similar to many other tools for this type of monitoring, and I have received very good feedback for this tool. What makes Trellix Network Detection and Response stand out for me compared to other tools is the way you can detect threats. It is very easy and comfortable to use, and the detection shows clearly on the screen, which is very easy to understand. Regarding the features, I think that the integration with other platforms is very comfortable with the customer because we can integrate it with any switch or firewall, and it is comfortable to add this tool. Trellix Network Detection and Response has positively impacted my organization as I have improved my knowledge about detection and response. I have already used some other tools such as CrowdStrike and Umbrella, but Trellix is one of the best that I have tested. I believe that for my organization, Trellix has helped a lot with detection and supported our customers effectively. Trellix Network Detection and Response is a great tool that integrates with a lot of security tools such as Palo Alto, which is a good firewall. If you have these types of tools, your organization would benefit greatly.
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
885,444 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Manufacturing Company
8%
Financial Services Firm
8%
Comms Service Provider
8%
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
9%
Comms Service Provider
6%
Comms Service Provider
13%
Manufacturing Company
11%
Financial Services Firm
10%
Government
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business37
Midsize Enterprise16
Large Enterprise29
By reviewers
Company SizeCount
Small Business28
Midsize Enterprise24
Large Enterprise43
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise8
Large Enterprise19
 

Questions from the Community

How does Cisco Firepower NGFW Firewall compare with Palo Alto Networks Wildfire?
The Cisco Firepower NGFW Firewall is a very powerful and very complex piece of anti-viral software. When one conside...
Which is better - Wildfire or FortiGate?
FortiGate has a lot going for it and I consider it to be the best, most user-friendly firewall out there. What I like...
How does Cisco ASA Firewall compare with Palo Alto's WildFire?
When looking to change our ASA Firewall, we looked into Palo Alto’s WildFire. It works especially in preventing advan...
What is your experience regarding pricing and costs for Proofpoint Email Protection?
I do not handle the pricing, setup cost, and licensing for Proofpoint Email Protection, but I think it's a bit pricey...
What needs improvement with Proofpoint Email Protection?
Some of the old portal features of Proofpoint Email Protection are missing in the new portal, so some of the settings...
What is your primary use case for Proofpoint Email Protection?
Proofpoint Email Protection is primarily used for anti-spam purposes. As other companies receive a lot of malware, ph...
What do you like most about FireEye Network Security?
We wanted to cross-reference that activity with the network traffic just to be sure there was no lateral movement. Wi...
What is your experience regarding pricing and costs for FireEye Network Security?
My experience with pricing, setup cost, and licensing for Trellix Network Detection and Response is very great.
What needs improvement with FireEye Network Security?
I would like to see in Trellix Network Detection and Response more explanation about some details of the threat, and ...
 

Also Known As

No data available
Proofpoint Enterprise Protection, Proofpoint Digital Protection
FireEye Network Security, FireEye
 

Overview

 

Sample Customers

Novamedia, Nexon Asia Pacific, Lenovo, Samsonite, IOOF, Sinogrid, SanDisk Corporation
Blocket, University of Waterloo, Lincoln Memorial University, WellSpan Health, U-Haul, Carestream Health, Westinghouse
FFRDC, Finansbank, Japan Advanced Institute of Science and Technology, Investis, Kelsey-Seybold Clinic, Bank of Thailand, City of Miramar, Citizens National Bank, D-Wave Systems
Find out what your peers are saying about Palo Alto Networks, Microsoft, Proofpoint and others in Advanced Threat Protection (ATP). Updated: February 2026.
885,444 professionals have used our research since 2012.