No more typing reviews! Try our Samantha, our new voice AI agent.
Trellix Endpoint Detection and Response (EDR) Logo

Trellix Endpoint Detection and Response (EDR) pros and cons

Vendor: Trellix
3.8 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Trellix Endpoint Detection and Response (EDR) is praised for its stability and scalability, offering a reliable experience for users.
The product is highly valued for its guided analytics, threat detection, and response capabilities, which significantly improve efficiency and security.
Positive impacts include business risk reduction, faster incident response, and enhanced endpoint security posture.
Key features noted are endpoint visibility, behavior-based detection, AI-guided investigations, and advanced threat protection.
The setup process is straightforward, making it easy to integrate into existing systems while providing comprehensive detection and response tools.

CONS

High CPU and RAM consumption is a major drawback, especially for servers, as it impacts performance.
Trellix Endpoint Detection and Response (EDR) often faces criticism for poor customer support, reportedly being slow and understaffed.
Historical search capabilities of McAfee MVISION Endpoint Detection and Response are lacking, hindering effective information retrieval.
There are integration issues with external platforms, reducing the effectiveness of McAfee MVISION Endpoint Detection and Response for comprehensive threat detection.
Alerts system of McAfee MVISION Endpoint Detection and Response requires manual system log-in, lacking automated alert notifications.
 

Trellix Endpoint Detection and Response (EDR) Pros review quotes

Duncan  Kims - PeerSpot reviewer
Business Development Manager at a retailer with 10,001+ employees
Apr 14, 2026
Trellix Endpoint Detection and Response (EDR) has positively impacted my organization with threat exchange and intel, low false positive ratios, and very high uptime values for both inline and spam modes, along with advanced detection and mitigation capabilities ensuring the highest level of protection and proper detection for command and control and bot attacks.
Domit-Molina - PeerSpot reviewer
Especialista Sr Seguridad Endpoint at Total Cyber Sec
Jun 23, 2026
Trellix Endpoint Detection and Response (EDR) scores highly because of its sheer depth of endpoint visibility, the precision of its behavior-based detection, and the massive time savings we get from its AI-guided investigations.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 7, 2026
Trellix Endpoint Detection and Response (EDR) is valuable because we have a Wide Area Network with many sites, and the EDR is cross-site since it is installed and managed from the cloud.
Learn what your peers think about Trellix Endpoint Detection and Response (EDR). Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
906,829 professionals have used our research since 2012.
Abubakar Bello - PeerSpot reviewer
Security Administrator at a insurance company with 1,001-5,000 employees
Mar 19, 2026
Trellix Endpoint Detection and Response (EDR) does everything; it saves time, it saves money, and of course, it provides peace of mind.
IM
Senior Information Security Specialist at a consultancy with 51-200 employees
Jun 13, 2026
My advice for others considering Trellix Endpoint Detection and Response (EDR) is to use it, or any other Trellix products, as I believe they are excellent.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 3, 2025
The product and the services we have are quite good.
RiaanDu Preez - PeerSpot reviewer
Senior Cyber Security Specialist Architect at a outsourcing company with 11-50 employees
Aug 15, 2024
The most useful features are behavior monitoring, DLP, and access control. The automation has gotten much better in the last two years than when it was McAfee. It works better now and integrates more smoothly.
RR
Head of Data Link at Telecom Egypt
Nov 30, 2023
The product's initial setup phase was very straightforward since you just need to install it, and it works.
Juan Muriel - PeerSpot reviewer
IT Management Specialist at a computer software company with 10,001+ employees
Feb 22, 2024
When Trellix detects some threats, the device is isolated in a quarantine zone for examination.
Hung-LE - PeerSpot reviewer
Group IT Manager at Discova
Nov 9, 2023
Trellix Endpoint Detection and Response (EDR) offers endpoint protection and helps collect information while also allowing users to investigate malicious files in an IT environment...It is a stable solution...It is a scalable solution.
 

Trellix Endpoint Detection and Response (EDR) Cons review quotes

Duncan  Kims - PeerSpot reviewer
Business Development Manager at a retailer with 10,001+ employees
Apr 14, 2026
One area where Trellix Endpoint Detection and Response (EDR) can be improved is the lack of device or user mapping.
Domit-Molina - PeerSpot reviewer
Especialista Sr Seguridad Endpoint at Total Cyber Sec
Jun 23, 2026
From an operational standpoint, the first area of improvement would be agent resource optimization, especially for high-load servers, because Trellix Endpoint Detection and Response (EDR) captures an incredible depth of telemetry and real-time forensics.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 7, 2026
The tools are not useful for that.
Learn what your peers think about Trellix Endpoint Detection and Response (EDR). Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
906,829 professionals have used our research since 2012.
Abubakar Bello - PeerSpot reviewer
Security Administrator at a insurance company with 1,001-5,000 employees
Mar 19, 2026
Initially, I was using it on servers, but it consumes a lot of resources on servers.
IM
Senior Information Security Specialist at a consultancy with 51-200 employees
Jun 13, 2026
I also think performance needs improvement, especially for servers, as the Trellix HX module uses high CPU, scans constantly, and negatively impacts the performance for our clients' users or our servers.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 3, 2025
I need some protection, possibly multi-factor authentication improvements.
RiaanDu Preez - PeerSpot reviewer
Senior Cyber Security Specialist Architect at a outsourcing company with 11-50 employees
Aug 15, 2024
I'd like the tool to become more like an XDR, with one management system and endpoint activation.
RR
Head of Data Link at Telecom Egypt
Nov 30, 2023
One of the issues about the product stems from the failure to work on its administrative scalability. The aforementioned area can be considered for improvement.
Juan Muriel - PeerSpot reviewer
IT Management Specialist at a computer software company with 10,001+ employees
Feb 22, 2024
The technical support must be improved.
Hung-LE - PeerSpot reviewer
Group IT Manager at Discova
Nov 9, 2023
The solution's downside stems from the fact that Trellix Endpoint Detection and Response (EDR) and McAfee MVISION Endpoint are not combined into a single solution, so from an improvement perspective, they need to be combined into a single solution.