We performed a comparison between Rapid7 InsightIDR and Trend Vision One based on real PeerSpot user reviews.
Find out in this report how the two Endpoint Detection and Response (EDR) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The ability to integrate and observe a more cohesive narrative across the products is crucial."
"The ability to hunt that IM data set or the identity data set at the same time is valuable. As incident response professionals, we are very used to EDRs and having device process registry telemetry, but a lot of times, we do not have that identity data right there with us, so we have to go search for it in some other silo. Being able to cross-correlate via both datasets at the same time is something that we can only do in Def"
"The integration with other Microsoft solutions is the most valuable feature."
"Defender is easy to use. It has a nice console, and everything is all in one place."
"We are able to consolidate licences and make use of many Microsoft products using this solution. If we have any Microsoft customers, we encourage them to use this solution for enterprise defence."
"Setting up Microsoft 365 Defender is easy. It's a user-friendly solution that provides threat protection. It has good stability and scalability."
"Another noteworthy feature that I find appealing in Microsoft Defender is the credit-backed simulation. This feature enables organizations to train their users on effectively responding to phishing emails through a simulated training environment."
"The summarization of emails is a valuable feature."
"Rapid7 is easy to use and deploy. It is a simple solution and has easy data pulling."
"InsightIDR has allowed us to find potential security issues that we did not know existed, and get remediation quickly."
"Simple configuration and automatically syncs to the cloud platform."
"InsightIDR helps us investigate an environment to discover information about incidents."
"Great coverage of all systems within our network from endpoint to firewall."
"The ability to ingest Office 365 log files, then process them into events and display them on a map."
"Dashboards, including the main screen, provide much-needed information at a glance, without hours of coding and sifting through logs to find it. In case of an actual security incident, I have faith that insightIDR has retained all logs in a secure manner that prevents log tampering as well."
"Intelligent alerting to avoid the common problem of alert fatigue associated with traditional SIEMs."
"They were one of the companies, early on, that spent a lot of time integrating their toolsets, and I was really impressed with that... the endpoint management system could reach out to the Deep Discovery system on the network and pick up something that it perceived as a suspicious object."
"Drilling down further, we can analyze how our users are utilizing their workstations, including the websites they visit."
"The telemetric report is the most valuable feature."
"The proactive approach is the best feature."
"The solution is very easy to use."
"I'm satisfied with the level of coverage. The policies have been very useful and detailed."
"We've found the pricing to be reasonable."
"The setup is fairly simple."
"There is definitely scope for improvement in the automation area. Because the solution is a SaaS platform, we don't have the overall ability to automate stuff.... There is no direct way to go ahead because it's a SaaS platform."
"The price should be adjustable by region."
"When we do investigations, it would be better if Microsoft could populate the host dashboard more. When we open any host for investigation, we want the entire timeline of what is happening on the host, including all the users logging in, their hardware, Windows version, etc."
"Since all of our databases are updated and located in the cloud, I would like additional support for this."
"There could be a way to proactively monitor unusual activity ."
"The support from Microsoft could improve. There are times I have to wait for a response from a qualified specialist."
"The dashboard should be easier to use. There is also improvement needed in the reporting when it comes to exporting or scheduling reports."
"There are other SIEM solutions that are easier to use, mainly based on the creation of rules, use cases, and groups."
"They should add more configuration and security features to it."
"Customised alert recipients need to be added to allow better first-line action and quicker response. Configurable honeypots would be a welcome addition."
"The solution's XDR agents cannot compete with the XDR solutions out there yet."
"The ability to tune the collector for custom logs would greatly help."
"Sometimes, it is hard to get the right queries to use. Currently, the tool lacks a pre-made set of queries."
"I would like to see more development in InsightIDR towards building their SIEM solution and converting it to XDR."
"InsightIDR is only available in a cloud version. Some of our customers prefer an on-prem solution because they want to manage the security within their environment."
"One thing that springs to mind is easier API integration with ITSMs. We are evaluating a new ITSM and I would like to have InsightIDR create a ticket when an attack is identified, and the ticket would be closed in InsightIDR when the ITSM resolution is completed. This would take out the "single point of failure" we currently have, if the email recipient is somehow absent, in recording the risk appetite for the incident and the actions taken to mitigate or not."
"We've received some mild complaints that the documentation is sometimes not up to date."
"While the continuous addition of features is commendable, the sheer volume of changes makes it difficult to stay abreast of the latest developments."
"I'd like to see alert time reduction so that they show up on the dashboard faster."
"We do use the automation capability a little. However, we noticed some limitations, especially on the playbook side."
"Trend Micro doesn't have the next-generation firewall."
"The zero trust is a bit complicated compared to other parts of the solution."
"The deployment process could be more streamlined over the existing infrastructure, as it was not as easy as we thought."
"A room for improvement in Trend Micro XDR is more visibility into the alerts. We do get alerts from the solution, but when we are away, we need to have more visibility."
Rapid7 InsightIDR is ranked 21st in Endpoint Detection and Response (EDR) with 29 reviews while Trend Vision One is ranked 5th in Endpoint Detection and Response (EDR) with 42 reviews. Rapid7 InsightIDR is rated 8.4, while Trend Vision One is rated 8.6. The top reviewer of Rapid7 InsightIDR writes "An affordable product that is easy to use and has many advanced features and default templates". On the other hand, the top reviewer of Trend Vision One writes "The integration of toolsets is key, enabling automation, and vendor has been tremendous partner for us". Rapid7 InsightIDR is most compared with Darktrace, Microsoft Sentinel, Splunk Enterprise Security, Rapid7 InsightVM and IBM Security QRadar, whereas Trend Vision One is most compared with CrowdStrike Falcon, Trend Micro Apex One, SentinelOne Singularity Complete, Microsoft Defender for Endpoint and Fortinet FortiEDR. See our Rapid7 InsightIDR vs. Trend Vision One report.
See our list of best Endpoint Detection and Response (EDR) vendors, best Extended Detection and Response (XDR) vendors, and best Endpoint Detection and Response (EDR) vendors.
We monitor all Endpoint Detection and Response (EDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.