We use Trellix in an OT environment where it is being used as an orchestrator to deploy endpoint security and application controls in our network. We are using its DLP product in OT end points.
Instrument and Control Engineer at Reliance Industries Ltd
Our main antivirus tool and offers adaptive threat prevention tool
Pros and Cons
- "The activation of features within ENS and the collection of threats into a single console is a strong point."
- "The technical support needs some improvement. When product distribution errors occur, we have to contact technical support, which is a very tedious task."
What is our primary use case?
How has it helped my organization?
We use ENS as our main antivirus tool. The activation of features within ENS and the collection of threats into a single console is a strong point. There are some features we're not using, mainly related to IT environments. For us, ENS is primarily an antivirus and adaptive threat prevention tool. The threats received from endpoints received in ePO consoles which can be relayed on SMTP server to get real time updates on threats.
What is most valuable?
The deployment of products through ePO is very useful in managing multiple endpoints and deploying policies as per organizational requirements . Working manually on those endpoints is time-consuming and tedious. Threats and case management, Automation tasks, generating reports, those are some good points to be considered.
What needs improvement?
The technical support needs some improvement. When product distribution errors occur, we have to contact technical support, which is a very tedious and time consuming task. After raising the call onto the technical support portal, usually receive a notification after 24 hours. It usually takes 3 to 4 days to conclude and resolve the issue. If 24/7 online support or a phone line where we could speak directly with technical support for real-time troubleshooting, that would be very helpful.
Licensing is another aspect where trellix should look into. Different purchases are grouped together in single user account get mixed up. Categorization of purchases and their grant numbers is not available to end user.
Buyer's Guide
Trellix Endpoint Security Platform
June 2025

Learn what your peers think about Trellix Endpoint Security Platform. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
863,641 professionals have used our research since 2012.
For how long have I used the solution?
I have been using it for eight years.
What do I think about the stability of the solution?
It's very stable. If configured correctly, it's very smooth and doesn't cause frequent issues.
What do I think about the scalability of the solution?
We have like 500 installations. It is very scalable.
I would rate the scalability a nine out of ten.
How are customer service and support?
There is room for improvement in the customer service and support.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We had McAfee virus scan approved for OT endpoints but were using manual deployment methods. After introducing ePO architecture we have migrated to ENS, application control and DLP. Now, we've adopted more Trellix products.
We use symentec and txOne as well, but for standalone systems only.
How was the initial setup?
I would rate my experience with the initial setup a nine out of ten, with ten being easy and one being difficult.
The deployment takes moderate amount of time. Some of the products were installed quickly, but others remain in configuration. So, it's not too fast, but it's moderately quick.
So, it takes two to three hours.
What about the implementation team?
In house expertise is available for installation, deployment and management.
What's my experience with pricing, setup cost, and licensing?
The pricing is reasonable.
Which other solutions did I evaluate?
NA
What other advice do I have?
I would recommend Trellix because I am satisfied with its overall performance and functionality.
Overall, I would rate the solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Senior Manager INFOSEC AND Risk ASSESSMENT Engineering at Atlas Systems
Monitors our systems 24/7, offers robust threat scanning features and easy to use
Pros and Cons
- "The threat scanning is excellent. It uses predictive technology and I can utilize attack data to help us fine-tune our systems and network infrastructure. This protects us against current and future attacks."
- "There is room for improvement in the pricing. The price should be improved, it's high."
What is our primary use case?
FireEye offers a great suite of tools. I like its threat analyzer and other features.
We have FireEye Endpoint Security installed on all our desktops, laptops, and servers throughout the network.
It's been crucial to monitor threats 24/7, both external and internal.
It's capable of stopping ransomware at the gateway, preventing malware, and it can even protect against zero-day attacks.
How has it helped my organization?
When I implemented it for one of our clients, it improved their security by almost 70 to 80%. They were using a different solution before, but after implementing Trellix Endpoint Security, they were able to block threats that the earlier solution couldn't handle.
There are only about two to three percent false positives, which isn't much. So, this solution handles false positives quite well and minimizes disruption.
What is most valuable?
The threat scanning is excellent. It uses predictive technology and I can utilize attack data to help us fine-tune our systems and network infrastructure. This protects us against current and future attacks.
Trellix Endpoint Security is a really good product. It comes from industry veterans in the US, so their technology, ease of use, and support are all excellent.
When it comes to real-time analysis capabilities, I've seen many benefits.
Integration is very easy with any system, like firewalls or any network. I can also integrate it with our mobile client.
What needs improvement?
There is room for improvement in the pricing. The price should be improved, it's high.
For how long have I used the solution?
I have a lot of experience with FireEye. It's a solid product with several components. It was acquired by another company.
We've been using it for the last few years.
What do I think about the stability of the solution?
It is a very stable product. It has been a well-known name in the industry for the last 30 years or so.
Trellix has a lot of top investors in the company.
What do I think about the scalability of the solution?
The scalability is very good. We can scale it anytime.
There are around 350 end users in our company.
How are customer service and support?
Support is very good; they have local partners everywhere, so there's no issue there.
For people who still use trellis, there's a toll-free number for each country. Support is accessible 24/7.
If you buy a normal license, gold support is included. There's no need to buy platinum support. The normal support lets you talk to any Trellix Endpoint Security (ENS) technical person 24/7.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is very straightforward and user-friendly.
It takes about 20 minutes to configure and run it.
For the deployment process, the product team itself provides a file. I get a download link in an email from the web browser. Once I start downloading, a key will be attached. You provide the names of your domains. We integrate it with Active Directory (AD), so it pulls all the users automatically.
What about the implementation team?
It's a good in-house solution; we can do it yourself. Deploying this doesn't need more than one person.
An L2 technician can manage the installation in a maximum of thirty minutes if they have access to Active Directory (AD) and the main server.
Everything is on the cloud now, so you can control and log in from anywhere, anytime. Alerts via email and mobile are easy to set up.
What was our ROI?
The return on investment is very good if you choose a three-year license.
What's my experience with pricing, setup cost, and licensing?
The license is a bit expensive.
What other advice do I have?
Overall, I would rate the solution an eight out of ten. If you are evaluating this product, go ahead and buy it. It's a very good product. There's nothing lacking – great technology, great approach, great support, great availability.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Trellix Endpoint Security Platform
June 2025

Learn what your peers think about Trellix Endpoint Security Platform. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
863,641 professionals have used our research since 2012.
Information Security Senior Advisor at Eskom Ltd
Enhances the visibility of events in the central management console, enabling us to identify events more effectively
Pros and Cons
- "The solution provides a data view of the Alpha systems with Trellix installs and makes small changes to the central management console. Nothing on the endpoints themselves works, but it focuses more on the management side."
What is our primary use case?
We use the solution for malware, fall behavior, and data loss prevention.
What is most valuable?
The Trellix Endpoint Security, when used in conjunction with EDR and Insight, enhances the visibility of events in the central management console, enabling us to identify events more effectively. Furthermore, Endpoint Security actively prevents threats from spreading. It reduced the action time a lot.
What needs improvement?
Trellix provides a data view of the Alpha systems with Trellix installs and makes small changes to the central management console. Nothing on the endpoints themselves works, but it focuses more on the management side.
For how long have I used the solution?
I have been using Trellix Endpoint Security for 14 years.
What do I think about the stability of the solution?
I rate the solution’s stability an eight out of ten.
What do I think about the scalability of the solution?
This solution is used by 33,000 users and covers different operating systems. I rate the solution’s scalability an eight out of ten.
How are customer service and support?
We do get quick responses from support. However, it sometimes takes a bit longer to reach the final solution, particularly if something unusual requires additional investigation time.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is very easy and takes two hours to complete.
What was our ROI?
Trellix Endpoint Security offers substantial cost savings by reducing recovery expenses. These savings can exceed three hundred percent at this stage.
What other advice do I have?
The AI portion is quite good. It is already built into the product; it does assist us.
We have five engineers to maintain the solution.
Overall, I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Product Manager at MCS
Good user behavioral analysis and helpful patching but needs better support services
Pros and Cons
- "The user behavioral analysis feature is great."
- "Technical support from the vendor is very bad."
What is our primary use case?
The endpoint of Trellix itself should be placed within an enterprise with more than 200 or 300 endpoints. And then, an administration council should be used to administrate these endpoints and get the updates, including any virtual batching needed, and so on. This is the most usual case for this product. However, of course, there are other supportive add-ons, or sensors, to be added to this endpoint - including the EDR, the endpoint detection response, sensor.
What is most valuable?
The user behavioral analysis feature is great.
It patches the operating system which is running on it until there is an available patch for the operating system itself.
What needs improvement?
The user experience of the administration has to be reviewed or refined. It's not friendly, not that easy.
If I could sell my customers the endpoint protection software in addition to the EDR software as a single package, that would be ideal.
Technical support needs improvement.
For how long have I used the solution?
I started using the solution around four years ago.
What do I think about the stability of the solution?
The stability depends on the version. I'd rate reliability eight out of ten. With some other versions, especially the old ones, you cannot even rate them five out of ten. The newer versions are much more stable?
What do I think about the scalability of the solution?
The scalability is okay. I'd rate it seven or eight out of ten in terms of ease of scaling.
We can just embed new features to the original package just to include everything so that you do not need to ask the customer to get full coverage by adding an add-on license, and so on.
Typically, enterprises use the solution. It's used, for example, within the financial sector and most of the customers are banks, FinTech companies, or financial organizations. Organizations may have 500 to 5,000 users.
How are customer service and support?
Some of our products have a first and second line owned by us. We are giving support services to the customers instead of the vendor. Some other products are supported directly by the technology vendor, however.
Technical support from the vendor is very bad.
Usually, when the customer submits a ticket, they put a severity level on the case. Whenever the case is very important, and there is a real malfunction in the product on the customer side, and there is something down that needs someone to have a look immediately, it takes more time than it should to even engage with the customer.
When someone has to contact the customer and have a remote session within the customer environment, they sometimes lack in terms of communication with the customer. The support centers are located in the East and not all have an acceptable level of English in order to communicate directly with the customer.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We did previously work with Trend Micro. We also worked with Kaspersky and also ended the contract.
Trend Micro is more attractive than Trellix from a sales perspective since most of the features are already gathered within it as one solution. The interface is much more user-friendly for the customers as well. In addition, the customer does not have to prepare a huge infrastructure requirement, to have the products already deployed. It's much easier to deal with and very stable as well. Some customers do not like Trend Micro since it doesn't have many integration points with other technology.
How was the initial setup?
The solution can be easy or complex. It depends on the environment in which we are going to implement or deploy the product on.
It becomes complex, especially when it's a virtualized environment.
The time it takes to deploy depends on the number of endpoints running within the organization. The initial setup for the administration part may take two business days.
There should be an updated operating system first, in order to host the administration console of the product. Then certain batches have to be installed, including batches on updates for the product itself. Then we usually install the main orchestrator of this product. After that, we generate the endpoint package to be distributed on other endpoints.
Usually, one to three people are needed to deploy the solution.
I'd rate the solution seven out of ten.
What about the implementation team?
We do have a technical arm. It's an independent professional service provider. It's a company itself. However, it's under the umbrella of the main one, which is acting as the technical arm of the main company. It typically handles the initial setup.
What's my experience with pricing, setup cost, and licensing?
Trellix may cost around $46 to $47 for a single license without an EDR. In contrast, Trend Micro may cost $23 to $25 USD without an EDR sensor. Trend Micro is much cheaper.
Trellix may have extra costs in terms of managed services. That might be around $200 to $250.
I'd rate the solution six or seven out of ten in terms of affordability.
What other advice do I have?
We're a partner and reseller.
We're working with the most recent three versions. It is 10.9 right now. Previously, it was 9.5 and then 8.7.
We have the solution deployed on-premises and on the cloud as well.
I'd advise potential new users to look at all packages before implementing Trellix and to look into configurations right at the outset.
I'd rate the solution seven out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner/Reseller
Senior Vice President IT at AS IT Consulting Pvt. Ltd.
Excellent threat detection and smooth maintenance with powerful AI utility integration
Pros and Cons
- "The solution is easy to manage, easy to implement, easy to install, and the support is excellent."
- "The detection capability of Trellix Endpoint Security is higher than traditional antivirus solutions."
- "The agent is very heavy, so we have to ensure that we have a lightweight agent for Windows systems."
- "The agent is very heavy, so we have to ensure that we have a lightweight agent for Windows systems."
What is our primary use case?
The company is using it for cybersecurity, malware, and anti-malware.
How has it helped my organization?
We have customers who were facing challenges with traditional security solutions such as Trend Micro or Symantec that were not working. They would receive reports indicating no malware in their network. However, when we implemented Trellix Endpoint Security in their network, multiple types of malware was detected.
What is most valuable?
The solution is easy to manage, easy to implement, easy to install, and the support is excellent.
The detection capability of Trellix Endpoint Security is higher than traditional antivirus solutions.
The AI functionality has proven quite useful with the new version. Trellix Endpoint Security has introduced the new MVISION solution, MVISION Endpoint, which works completely on AI and machine learning.
What needs improvement?
The agent is very heavy, so we have to ensure that we have a lightweight agent for Windows systems.
For how long have I used the solution?
We have been using the solution for almost 20 years now.
What do I think about the scalability of the solution?
The cloud management console ensures there are no limits on scalability. It's quite scalable with no restrictions.
How are customer service and support?
Support has been excellent overall.
How would you rate customer service and support?
Positive
How was the initial setup?
The solution has been easy to manage, easy to implement, and very easy to install.
What other advice do I have?
I'd rate the solution ten out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: May 12, 2025
Flag as inappropriateTechnical Manager at Jlogic Innovations
Offers a robust reporting feature and a user-friendly interface
Pros and Cons
- "The product has a robust reporting feature"
- "Patch management is unavailable"
What is our primary use case?
Trellix Endpoint Security is a reliable and developed product and our company's customers are satisfied with the security offered by the product.
What is most valuable?
The product has a robust reporting feature and a user-friendly interface. Using Trellix Endpoint Security, users can easily create customized, detailed reports and export them as PDF or Excel files. The solution's ePO console is highly efficient and does not get hanged.
The console of other competitor products from Kaspersky, Symantec, and Microsoft is very complicated. The comprehensive ePO feature of Trellix Endpoint Security is highly reliable for the management of systems and servers.
What needs improvement?
Patch management can be included as a feature in the solution.
For how long have I used the solution?
As part of our company, we have been working with the solution since 2008.
What do I think about the stability of the solution?
It's a very stable product.
What do I think about the scalability of the solution?
Our organization provides Trellix Endpoint Security as a solution to small, medium, and large enterprises.
How are customer service and support?
Tech support from Trellix Endpoint Security is better than that of its competitors. I would rate the tech support a seven out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
The deployment time of the solution depends on the number of nodes that need to be set up. For example, 100 nodes can be setup in 30 minutes. The solution agent works robustly in the network environment leading to shorter setup time, especially if a fast network setup already exists.
What's my experience with pricing, setup cost, and licensing?
Trellix Endpoint Security is an affordable tool. Its renewal price is also quite low. The product is available as a subscription license or a perpetual license.
Which other solutions did I evaluate?
At our company, we have also worked with CrowdStrike, Trend Micro, Microsoft and McAfee solutions. Trend Micro is the only tool that offers virtual patching.
What other advice do I have?
The tool offers automation in multiple segments of deployment, scanning, and fetching reports. FireEye can also be easily integrated with the tool, offering an efficient combination.
Trellix Endpoint Security offers NDR and NSP network security across platforms and device sensors by obtaining network information for threat detection. I would rate Trellix Endpoint Security a nine out of ten.
The solution's productivity, reliability, and manageability control are outstanding.
Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
Senior Technical Engineer at Safezone Secure Solutions Private Limited
Protects the productivity of users with a common service layer and our new anti-malware core engine that helps reduce the amount of resources and power required by a user
Pros and Cons
- "Trellix Endpoint Security offers robust access protection, addressing major concerns in prevention. It provides both application control and user access control within its access protection features."
- "Recently, Trellix has introduced a CDR, which involves more manual response than automatic. I believe they should enhance the system by adding features like automated response and the ability to create custom playbooks. This is crucial for an EDR solution, and currently, Trellix lacks this feature while other products offer it."
What is our primary use case?
Previously, before the transition to Trellix, we used McAfee. Following a merger, FireEye now collaborates with McAfee, utilizing its console and threat intelligence.
In terms of endpoint security, I would recommend Trellix Endpoint Security, especially for users prioritizing threat intelligence and seeking an internal solution. Trellix has proven effective in areas such as blocking capabilities, device control, and application control.
What is most valuable?
Trellix Endpoint Security offers robust access protection, addressing major concerns in prevention. It provides both application control and user access control within its access protection features.
What needs improvement?
Recently, Trellix has introduced a CDR, which involves more manual response than automatic. I believe they should enhance the system by adding features like automated response and the ability to create custom playbooks. This is crucial for an EDR solution, and currently, Trellix lacks this feature while other products offer it.
For how long have I used the solution?
I have been using this solution for the past five years.
What do I think about the stability of the solution?
Previously, I would have rated it around ten, but now it's more like seven. They need to enhance the EDR part and put in more effort.
What do I think about the scalability of the solution?
For on-premise implementation, I would rate it a six as there is a need for more scalable options during the initial setup. On the other hand, for cloud implementation, I would give it a nine because it offers enabled scalability options.
How are customer service and support?
I acknowledge their technical expertise in the product, but the support has not been as satisfactory as it was with McAfee. I believe there is a need for improvement, whether it's the team's capacity or response time. Previously, the response time was excellent, but now it has increased, causing frustration among customers and creating potential issues. Reducing this delay would be beneficial.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
If someone asks for a bundled solution with strong threat detection, I would recommend Trellix because it stands out as the only bundle solution with a decent amount of threat detection. While there are other bundled solutions in the market, Trellix excels in both access and detection capabilities.
How was the initial setup?
Regarding the initial setup of Trellix Endpoint Security, I am accustomed to executing it accurately. I would rate it around 8.5 or 9.I have successfully implemented Trellix Endpoint Security for up to five thousand endpoints, and the process took approximately four days. For smaller enterprises, it can be completed in about one day.
What's my experience with pricing, setup cost, and licensing?
I would rate the cost as four to five, considering it's normal compared to other products. I find it nominal and worth the money.
What other advice do I have?
The support phase needs improvement, specifically in reducing the time taken to respond to calls. Additionally, the EDR functionality in Intelix requires enhancement. While McAfee fulfilled product functionality even without strong support, the introduction of EDR seems to be partial and lacks automated response capabilities. The overall rating for Trellix Endpoint Security would be an eight.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Senior Consultant at Tata Consultancy
Reliable with good independent modules and a straightforward setup
Pros and Cons
- "The independent modules are very good."
- "The complexity of advanced modules can be improved."
What is our primary use case?
For some of our engagements, we have used MVISION, including data protection, threat intelligence, and DPP also.
We use McAfee MVISION primarily for endpoint protection, antivirus, and understanding the threat intel for end users.
What is most valuable?
It is very stable.
The independent modules are very good.
For the most part, the setup and deployment are simple.
What needs improvement?
The only challenge we found is the integration with its product modules. It has a DPP. That integration, we felt, is slightly complex. The complexity of advanced modules can be improved. They could do some improvements so that it is easier to deploy the advanced modules.
We would like more in their advanced modules or ATP.
For how long have I used the solution?
I've used the solution for a could of years.
What do I think about the stability of the solution?
The solution has been quite stable. It is reliable. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
I cannot comment on the scalability. I've never tried to scale the solution.
How are customer service and support?
For desktop support, they are pretty good.
Which solution did I use previously and why did I switch?
There are certain engagements where our customers are still using it. Now, however, we do see a common trend of people moving towards Defender service rather than using McAfee.
We also use Trend Micro. We would prefer Trend Micro and would rate Trend Micro top and then make McAfee next.
How was the initial setup?
The basic modules are straightforward to set up. We don't see many challenges there. However, when we talk about going into advanced ATP modules, et cetera, we do see certain amounts of complexity.
I did not work on the implementation and cannot say how long exactly it took to deploy. Likely, it would take between three and six months.
What's my experience with pricing, setup cost, and licensing?
We generally deal with annual licensing.
What other advice do I have?
I'd rate the solution seven out of ten. Having used Trend Micro as well, I would rate Trend Micro higher. However, I would still choose this product as a second option.
When we recommend a product, we would recommend something based on the fit of the product and customer requirements. We worked with Defender, we worked with Trend Micro, and we worked with McAfee. All of them almost overlap in multiple use cases. That said, we do see the customer IT strategy and where they're going, and they are adopting Azure more. We know there are certain limitations in their landscape where there may be some old legacy systems, and in that case, then we would either switch back to McAfee or Trend Micro instead of Defender.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner

Buyer's Guide
Download our free Trellix Endpoint Security Platform Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Endpoint Protection Platform (EPP) Endpoint Detection and Response (EDR) Extended Detection and Response (XDR)Popular Comparisons
CrowdStrike Falcon
Microsoft Defender for Endpoint
Fortinet FortiEDR
SentinelOne Singularity Complete
Microsoft Defender XDR
IBM Security QRadar
Cortex XDR by Palo Alto Networks
Fortinet FortiClient
HP Wolf Security
Elastic Security
Symantec Endpoint Security
Kaspersky Endpoint Security for Business
Buyer's Guide
Download our free Trellix Endpoint Security Platform Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Symantec Endpoint vs. McAfee Complete Endpoint Protection: Technical Comparison Between Data Loss Protection Solutions
- How does McAfee Endpoint Security compare with MVISION?
- How does Crowdstrike Falcon compare with FireEye Endpoint Security?
- Where can I get a fully paid for training course for McAfee MVISION Endpoint?
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?
- When evaluating Endpoint Security, what aspect do you think is the most important to look for?
- What's the best way to trial endpoint protection solutions?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- Which Endpoint Protection Solution offers Zero Trust (ZTN) as a feature?