No more typing reviews! Try our Samantha, our new voice AI agent.

Trellix Endpoint Security Platform vs ZoneAlarm comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
112
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (6th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Trellix Endpoint Security P...
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
168
Ranking in other categories
Endpoint Protection Platform (EPP) (7th), Endpoint Detection and Response (EDR) (9th), Extended Detection and Response (XDR) (8th)
ZoneAlarm
Average Rating
8.0
Reviews Sentiment
6.6
Number of Reviews
13
Ranking in other categories
Anti-Malware Tools (21st)
 

Mindshare comparison

Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Trellix Endpoint Security Platform3.4%
Microsoft Defender for Endpoint6.8%
CrowdStrike Falcon6.0%
Other83.8%
Endpoint Protection Platform (EPP)
Anti-Malware Tools Mindshare Distribution
ProductMindshare (%)
ZoneAlarm1.6%
Microsoft Defender for Endpoint6.5%
VirusTotal3.0%
Other88.9%
Anti-Malware Tools
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
PankajKumar24 - PeerSpot reviewer
IT Manager at Gigabit Technologies Pvt Ltd
Advanced threat prevention has strengthened incident response and customized security workflows
The biggest advantage of Trellix Endpoint Security Platform is the ATP solution, which provides advanced threat prevention. Machine learning algorithms are available in the product as part of the threat anti-malware, including predictive machine learning and behavioral analysis, which are integral to the anti-malware module of EPP. In terms of my experience with the machine learning algorithms for analysis and threat detection, we are analyzing logs provided by Trellix, but we are not able to conduct specific machine learning analysis on those logs. The automated response mechanisms in the products help with incident management because we have to create playbooks in Trellix console for automation, which we need to enable. The customizable dashboard of Trellix Endpoint Security Platform definitely contributes to the decision-making process, as we customize the dashboard according to customer requirements. When it comes to integration aspects, we are able to integrate Trellix Endpoint Security Platform with SIEM or SOAR solutions using the ePO console, which enhances threat detection capabilities. Reporting and analytics aspects have an impact on security posture assessment, as we are able to fetch reports in the ePO console customized according to customer requirements for downloading and sending via email.
Bala_Krishna - PeerSpot reviewer
Director at esupport Solutions Pvt ltd
Security suite has protected individual devices from threats, while installation and network features require improvements
BIG-IP is actually the LTM, Link Load Balancer, which comes with ASM, meaning Application Security Module. It consists of multiple modules, such as ASM, SWG, and a domain DNS manager. ZoneAlarm allows defining trusted and public networks, which helps maintain security in public Wi-Fi environments. It offers comprehensive protection, securing PCs against threats. Users do not experience any system slowdowns while scanning. Harmony Browser protects all your browsing activity and is bundled with Harmony Endpoint and Harmony Connect. It provides a small but effective security layer and sometimes comes packaged with the larger Harmony suite.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The ability to kind of stitch everything together and see the actual complete picture is very useful. I guess you'd call it a playbook. Some people call it the forensics analysis of what was happening on particular endpoints when they detected some malicious behavior, and what transpired before that to cause that. It is also very user friendly. The way they have done everything and integrated all the solutions that they've purchased over the years to make it a very seamless, effective product is very good. One thing about Palo Alto is that they take the products or services that they purchase and make them seamless for the end user as compared to some companies that purchase other companies and then just kind of have their products off to the side or keep different interfaces. Palo Alto doesn't do that."
"The protection offered by this product is good, as is the endpoint reporting."
"Automation and playbooks have helped me significantly, as Cortex Xnor's playbooks predefine the workflow of the automation, such as response processes, alert triggering, and enriching the context, efficiently detecting and blocking malicious attacks with firewalls while eliminating workload and speeding responses for next-generation operations."
"Palo Alto is one of the tech vendors that always provides top-of-the-line products."
"The main benefit of using Cortex XDR by Palo Alto Networks while employing Palo Alto Firewall at the internet edge is that it improves security on our endpoint devices, integrating seamlessly with Palo Alto Firewalls to deliver comprehensive network, analyst, and security details all in a single dashboard, which allows us to manage everything from our network devices."
"It is easy to use."
"Monitoring is most valuable."
"We use Cortex XDR by Palo Alto Networks for its ability to detect based on behavior rather than simple virus scan to prevent malicious activities."
"If the network has seen something, we can use that to put a block to all the endpoints."
"I would recommend this solution."
"The solution includes a good combination of features for both signature and signature-less."
"It is a stable solution...The solution's technical support is good."
"It's quite stable; there are no performance issues or concerns that we have received so far."
"When Intel acquired McAfee they worked on the protocol so that all vendors can work on the same platform, which is a very big improvement because all McAfee products talk to each other and other vendors' products can join this platform as well so it makes it more powerful on the enterprise side for McAfee."
"The primary reason the solution is good is because of its ease-of-use."
"FireEye Endpoint Security is easy to use and lightweight compared to others."
"ZoneAlarm protects all computers from viruses, spyware, and hackers."
"The phone access scan stands out as the most valuable feature for me."
"This antivirus is regularly updated, and the updates can be scheduled."
"ZoneAlarm is one of the best rated security products from Checkpoint, which comprises of inbuilt antivirus, anti spyware, anti phishing, and advanced threat protection features."
"It is easy to use through interfaces and easy to configure each of the customizations we created based on the characteristics that we wanted."
"The solution maintains reasonable scalability."
"The product's most valuable feature is the detection engine due to its ability to identify threats."
"It is quick and easy to configure."
 

Cons

"The MAC agent is not as robust feature-wise as the PC version."
"Dashboards do not allow everyone to see what's happening."
"The dashboard could use some significant improvement, just making it more useful with more information. It has a limited amount of information right now. It is customizable, but I'd love to see a better out-of-box dashboard."
"Cortex XDR by Palo Alto Networks could improve by offering remote management. It would be useful to look at the client's issue to fix it."
"It would be good if they could make an exception for applications. Sometimes, it can be a bit of a challenge to make exceptions for certain applications that have been used as rogue."
"The playbooks could be improved to include more functionalities or actions."
"It would be better if they could educate the customers more. Some sort of seminars and roadshows will help educate the customers and show what the product can do. The price could be better. It would also help if they had a team for deployment and support."
"A little bit more automation would be nice."
"One thing I could have used was a more detailed description of the HIPS signatures."
"The solution consumes a lot of end user memory and CPU. Trellix doesn't really focus much on the anti-malware side."
"The solution currently lacks mobile device management."
"I think it would be nice if Dynamic Application Control would come together with McAfee Endpoint Security."
"The solution's documentation is not streamlined and is in bits and pieces, which should be in a single format."
"The customer support is the worst part of Trellix Endpoint Security Platform. They do not support, they do not reply on time, and they take a lot of time when they have a ticket open."
"There should be better integration between the ePolicy Orchestrator and FireEye console. The integration of both consoles should be better."
"The solution has problematic encryption, which needs reforming."
"ZoneAlarm should be a light application that does not take too much memory in mobile phones."
"The solution's efficiency in threat containment and overall protection needs improvement."
"They need to update and improve the features available for Mac."
"We'd like better performance of the network equipment. There are high-speed environments where an immediate response is required."
"Some of our users say that the interface is a little bit outdated for 2020, and want it to be more modern and cozy."
"I would like it to be integrated with the Check Point centralization solution like Infinity Portal. It would be great to be able to manage it through the same website."
"Currently, the client is only available for the Windows Operating System but it would be good if it were released for Mac OS as well."
"They should release a single update with all the necessary characteristics to avoid being in a cycle of consecutive updates."
 

Pricing and Cost Advice

"The tool's price is moderate."
"The return on investment is from the user side because we have seen the performance of it increase the delivery time of the product if we are using too many web-based and on-premise applications. In indirect ways, we saw the return of investment in terms of performance and user satisfaction increase."
"Every customer has to pay for a license because it doesn't work with what you get from a managed services provider."
"The pricing is a little bit on the expensive side."
"I feel it is fairly priced."
"I don't like that they have different types of licenses."
"The price of the solution is high for the license and in general."
"It's way too expensive, but security is expensive. You pay for your licensing, and then you pay for someone to monitor the stuff."
"The pricing is reasonable."
"It provides good value by striking a balance between cost-effectiveness and feature richness."
"Licensing fees are billed on a yearly basis."
"We pay for the license on an annual basis."
"Licensing fees are paid yearly."
"It is not that expensive. There is no additional cost. We got the entire bundle together."
"Trellix Endpoint Security is neither a cheap nor an expensive solution."
"I am happy with the pricing."
"This is a freeware product and I recommend using it."
"We have to pay a yearly licensing fee for ZoneAlarm, which is cheap."
"We use the free version of the software, but it can be upgraded to the paid Extreme Security edition."
"The pricing is reasonable, with a yearly renewal license costing seventy dollars."
"I rate the product pricing a seven out of ten."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
9%
Manufacturing Company
11%
Financial Services Firm
11%
Government
9%
Comms Service Provider
8%
Comms Service Provider
12%
Hospitality Company
10%
Construction Company
8%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise20
Large Enterprise52
By reviewers
Company SizeCount
Small Business68
Midsize Enterprise39
Large Enterprise67
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise2
Large Enterprise4
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
How does McAfee Endpoint Security compare with MVISION?
The flexible manageability of McAfee Endpoint Security is one of our favorite aspects of this solution. You can deplo...
How does Crowdstrike Falcon compare with FireEye Endpoint Security?
The Crowdstrike Falcon program has a simple to use user interface, making it both an easy to use as well as an effec...
What is your experience regarding pricing and costs for McAfee Endpoint Security?
I don't have visibility on pricing because it is negotiated by a different team, as I look after the technical side.
What is your experience regarding pricing and costs for ZoneAlarm?
ZoneAlarm has an acceptable price. Not much detail can be provided as I am not the one to judge the price.
What needs improvement with ZoneAlarm?
Check Point support needs improvement. Currently rated at 9 out of 10, more support is required. There are some conce...
What is your primary use case for ZoneAlarm?
I work with vendors such as F5 and deal with F5 as a reseller. I work with F5 BIG-IP regarding F5 Shape Security. BIG...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
McAfee Endpoint Security, McAfee Endpoint Protection, Intel Security Total Protection for Endpoint, McAfee Complete Endpoint Protection, Trellix Endpoint Security (ENS)
No data available
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
inHouseIT, Seagate Technology
Terma, Optix, Samsung Research Amercia, SF Police Credit Union, Independence Care System, Mattias Thomsen, Carmel Partners, Desert Research Institute, CRIF, FXCM Inc, US State Agency
Find out what your peers are saying about CrowdStrike, Microsoft, SentinelOne and others in Endpoint Protection Platform (EPP). Updated: June 2026.
900,644 professionals have used our research since 2012.