Try our new research platform with insights from 80,000+ expert users
Trellix Endpoint Detection and Response (EDR) Logo

Trellix Endpoint Detection and Response (EDR) pros and cons

Vendor: Trellix
3.7 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Trellix Endpoint Detection and Response (EDR) offers a stable and scalable solution with guided analytics and EDR investigation capabilities.
The tool provides effective threat detection, isolation, and automatic alert generation for malicious behavior.
It integrates EDR and antivirus functionalities, offering one-click recovery of encrypted files.
Real-time search and comprehensive detection and response features enhance investigation and rule detection.
Behavior monitoring, DLP, and access control have significantly improved, with better automation and integration over time.

CONS

Resource consumption is high, impacting CPU and RAM usage during operations.
Historical search functionality is lacking, hindering efficient information retrieval.
Alerting system requires manual access, lacking automated alerts to users.
Integration capabilities with external platforms are limited, affecting adaptability.
Challenges with detection of unknown fileless attacks indicate areas for improvement.
 

Trellix Endpoint Detection and Response (EDR) Pros review quotes

ObaseunAwoyinfa - PeerSpot reviewer
Jun 5, 2024
It relies on external systems for detection and then asks the endpoint to handle blocking. However, the most crucial feature is its investigative capabilities. With real-time search and other functionalities, it enables comprehensive detection and response.
Abdullah Al Hadi - PeerSpot reviewer
Aug 12, 2024
The dashboard makes it easier and more effective to analyze data.
SK
Apr 27, 2022
The most valuable feature I found in McAfee MVISION Endpoint Detection and Response is the guided analytics or guided EDR investigation.
Learn what your peers think about Trellix Endpoint Detection and Response (EDR). Get advice and tips from experienced pros sharing their opinions. Updated: October 2025.
872,019 professionals have used our research since 2012.
Alex Lapinski - PeerSpot reviewer
Apr 11, 2023
It is a stable solution. Stability-wise, I rate the solution a nine out of ten...I rate the solution's technical support team a nine and a half or ten out of ten.
RR
Nov 30, 2023
The product's initial setup phase was very straightforward since you just need to install it, and it works.
AM
Jul 29, 2022
What we're using the most and what we found valuable in McAfee MVISION Endpoint Detection and Response are Web Control, Advanced Threat Protection, and Threat Prevention features.
CESARCASTRO - PeerSpot reviewer
Jan 3, 2025
The product and the services we have are quite good.
Hung-LE - PeerSpot reviewer
Nov 9, 2023
Trellix Endpoint Detection and Response (EDR) offers endpoint protection and helps collect information while also allowing users to investigate malicious files in an IT environment...It is a stable solution...It is a scalable solution.
Moizuddin Sayed - PeerSpot reviewer
Jul 3, 2022
It is a scalable solution and very easy to use.
Shashank-Gahoi - PeerSpot reviewer
Jul 18, 2023
If there is any malicious behavior in the workstation or server, the tool stops or isolates it automatically and generates alerts.
 

Trellix Endpoint Detection and Response (EDR) Cons review quotes

ObaseunAwoyinfa - PeerSpot reviewer
Jun 5, 2024
Trellix needs to focus on gaining traction with partners and building trust among users.
Abdullah Al Hadi - PeerSpot reviewer
Aug 12, 2024
The dashboard is split across different platforms. For example, if you want information on Incident Detection, you have to access one dashboard, and for DLP reporting, there's a separate platform. This fragmentation means you can't access everything from a single dashboard.
SK
Apr 27, 2022
An area for improvement in McAfee MVISION Endpoint Detection and Response is the historical search. For example: when you have information on the artifact and a precedent, you want to do a search, and that is a bit lacking in the tool.
Learn what your peers think about Trellix Endpoint Detection and Response (EDR). Get advice and tips from experienced pros sharing their opinions. Updated: October 2025.
872,019 professionals have used our research since 2012.
Alex Lapinski - PeerSpot reviewer
Apr 11, 2023
The solution lacks the ability to integrate with external platforms. In future releases of the solution, I would like to see the solution increase its integration capabilities with external platforms.
RR
Nov 30, 2023
One of the issues about the product stems from the failure to work on its administrative scalability. The aforementioned area can be considered for improvement.
AM
Jul 29, 2022
The alert feature of McAfee MVISION Endpoint Detection and Response needs improvement because for you to get the alerts, you have to log on to the portal. What my company needs is a tool that sends you alerts. For example, if it detects a threat on your machine, it should send you an alert. My company gets the alerts instead from the antivirus software rather than the EDR. If you want to see the alerts on McAfee MVISION Endpoint Detection and Response, you have to connect to the system manually. Another area for improvement in the tool is the reporting. My company needs weekly and monthly reports about the alerts, but you can't extract reports from McAfee MVISION Endpoint Detection and Response, so a decision was made to move to another EDR solution, particularly Microsoft Defender for Endpoint, next month. My company tested Microsoft Defender for Endpoint via a POC for one to three months. The resource usage of McAfee MVISION Endpoint Detection and Response is also an area for improvement because it consumes a lot of memory. For example, during the on-demand scan, you can't work because of the high CPU usage. You need to schedule the scans. McAfee MVISION Endpoint Detection and Response has a lot of modules, but my company doesn't use all modules.
CESARCASTRO - PeerSpot reviewer
Jan 3, 2025
I need some protection, possibly multi-factor authentication improvements.
Hung-LE - PeerSpot reviewer
Nov 9, 2023
The solution's downside stems from the fact that Trellix Endpoint Detection and Response (EDR) and McAfee MVISION Endpoint are not combined into a single solution, so from an improvement perspective, they need to be combined into a single solution.
Moizuddin Sayed - PeerSpot reviewer
Jul 3, 2022
The endpoints and utilization are too high, which impacts the production activity.
Shashank-Gahoi - PeerSpot reviewer
Jul 18, 2023
The console has a lot of bugs, and it creates many issues.