Try our new research platform with insights from 80,000+ expert users
Vikas Ingle - PeerSpot reviewer
Infrastructure and Security Lead at a program development consultancy with 201-500 employees
Real User
Top 5
Mar 6, 2024
Easy to manage, competitive price, and good protection
Pros and Cons
  • "Device control works well, and the anti-malware updates are also pretty good. Every two or three weeks, you get updates. The frequency of the release of new definitions is quite good. We had peace of mind."
  • "Trend Micro's encryption is not up to the mark. We tried their encryption product, but we did not like it. Encryption was difficult to manage."

What is our primary use case?

We were using it for our endpoints. We had more than 1,000 points. 

We were using it for anti-malware, DLP, and device control. We also used encryption, which did not work well, but the anti-malware, DLP, and device control capabilities worked very well.

How has it helped my organization?

By implementing Apex One, we wanted malware protection for our endpoints. We also had a requirement for a data loss prevention solution. It was integrated into the Trend Micro suite, so we got three capabilities: malware protection, DLP, and device control. The Trend Micro suite worked for these three use cases for us.

Device control worked as expected. We tried other solutions too, but they did not work the way we configured them, whereas with Trend Micro, it was not difficult.

Apex One was good at defending endpoints against threats such as malware, ransomware, and malicious scripts. In the five to six years that I used it, I did not have a single issue. All the endpoints were protected. I did not have any outbreak or anything else. It was effective.

Apex One had advanced protection capabilities that adapted to protect against unknown and stealthy new threats. It was pretty good. In the reports, we could see the outbreaks mitigated by Trend Micro. It automatically provided an alert.

Apex One provided us with a single console for cross-layer detection and investigation, but I am not sure about threat hunting. As I understand, threat hunting is something that comes under the SIEM solution. I am not sure whether it has threat-hunting capabilities or not. I did not deal with that.

Apex One integrated well with other security products. It was good. We integrated it with our SIEM solution. It was seamless. When a threat was detected, it deployed rapid updates to endpoints. It was very critical. I could see that every two hours, definitions were getting updated.

Apex One has consistently been a good product. It consistently performed well for me. It kept getting updated for any new evolving threats and ransomware. I did not have any issues.

Apex One provides virtual patching to protect against vulnerabilities even before a patch is available for the source of the issue. Because we did not have any issues, we were not very concerned about that, but the feature was there.

What is most valuable?

Device control works well, and the anti-malware updates are also pretty good. Every two or three weeks, you get updates. The frequency of the release of new definitions is quite good. We had peace of mind.

It was easy to administer. It was easy and user-friendly. When new technicians joined, we just provided access to them. They could efficiently manage it. It was not very difficult to train them.

What needs improvement?

Trend Micro's encryption is not up to the mark. We tried their encryption product, but we did not like it. Encryption was difficult to manage.

Other than that, I do not have any input. We did not go into XDR. We were planning, but then we moved to another solution. The product is stable, and they should keep working on handling new threats.

Buyer's Guide
Trend Vision One Endpoint Security
December 2025
Learn what your peers think about Trend Vision One Endpoint Security. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,422 professionals have used our research since 2012.

For how long have I used the solution?

I used it for five to six years. I stopped using it three months ago.

What do I think about the stability of the solution?

It was pretty stable. We never had any problem related to stability, where it was not performing or not updating. 

What do I think about the scalability of the solution?

It is easily scalable. If an organization has 500 endpoints and they are expanding to 1,500 endpoints, the migration is not very difficult. It is easy.

How are customer service and support?

We had a support partner to support us. Whenever there was a technical issue, they helped to resolve it. I never went very deep into it because our partner used to handle the technical support service.

Which solution did I use previously and why did I switch?

We were using McAfee. We switched because the pricing of Trend Micro was competitive at the time. 

We were happy with McAfee, and we were happy with Trend Micro. We did not have any issues with either product. We did not see any reduction in viruses and malware after moving to Apex One.

How was the initial setup?

It was an on-premises solution. My team and I were involved in its deployment.

It took us about three to four months to completely implement it. We took our time. We first implemented it on some of the machines and saw the results. We then implemented it on other machines. Within one year of implementing it, we could realize its benefits.

What about the implementation team?

We work with a consultant. He supported us with any technical issues. The initial configuration and installation on a certain number of machines was done by the consultants, and later on, my team handled it. Overall, we had seven to eight people who were involved in its deployment.

For managing it, I had two resources for managing servers and different applications. They could manage Trend Micro along with them. I did not have to have a separate resource for it. The same two people could handle it along with their other responsibilities. They were responsible for monitoring, updating clients, and checking the client status. They checked how many clients were updated and troubleshooted the ones that were not updated. They looked at the compliance reports and alerts.

What's my experience with pricing, setup cost, and licensing?

Its price is competitive.

Which other solutions did I evaluate?

We did not evaluate other options because Apex One was already being used in other groups in my company. They were satisfied with it, and it also had better pricing, so we just went for it. We did not evaluate other products.

What other advice do I have?

It is pretty good. We did not have any surprises. We did not have any kind of attack. Trend Micro provided good protection. It gave us confidence.

It has a lightweight agent. The installation is not very difficult, but the partner should be competitive enough. The product is good. It does not require much maintenance, but you should have a good partner to support you. 

Overall, I would rate Apex One a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Endpoint Solutions Support at a consumer goods company with 10,001+ employees
Real User
Top 5
Dec 19, 2023
Has advanced protection capabilities that adapt to protect against unknown threats
Pros and Cons
  • "It's reduced administrative overhead."
  • "The role-based access control needs improvement."

What is our primary use case?

We protect our client's desktops, laptops, and other devices. The servers will be protected by cloud and workload security. It's a complete end-to-end inter-security solution.

How has it helped my organization?

The solution provides our customers with malware protection. It has a good level of malware protection to protect against malicious threats. It provides protection against a good number of threats, both known and unknown, and we do get more details to help us log and investigate.

What is most valuable?

We like that we can catch any malicious threats. We have device and application control. We have more features when we complete office scans.

The device and application control are quite valuable. If users use USB sticks, they can potentially infect devices. We have a list of approved corporate policies, and certain things can not be let through to the endpoints. It helps keep companies safe.

We have protection from malware and ransomware. We get notifications from the console and can take action if we see any malicious activity. 

One Endpoint Security has advanced protection capabilities that adapt to protect against unknown threats. It can protect clients from both known and unknown threats via machine learning. This is critical. We can't always expect certain attacks. Some threats may be very new. And clients are still protected. It can protect against behavior monitoring, for example, via machine learning. 

One Endpoint Security detects ransomware with runtime machine-learning capabilities. This is important. Clients need to know whether a program is trying to encrypt their files and, if so, if it's legitimate or malicious. It gives good protection to our customers to ensure their security is not violated.

One Endpoint Security provides our customers with a single console for cross-layer detection, threat hunting, and investigation. We depend on the Vision One console. With One Endpoint Security, we do have two consoles. There's one for managing policies and one for agent management. We used to have the central manager console, however, now we are using OPEX Central for policy management. On the other console, there is for agent management, threat hunting, and other remediation. Soon we'll have one console again that will centralize everything, including alerts, actions, auto-response, and remediation.

There are options to integrate with other products. However, we may not use any integrations. Any logs generated get passed to the SOC team. They get logs from Splunk also and centralize the management of logs. However, my understanding is that everything can be integrated. 

It's easy to learn One Endpoint Security. It does have user-friendly interfaces.

The Trend Micro portal allows you to access documentation and manuals.  It shows you, for example, how it can be configured and how to use certain features. We refer to the guidelines and articles a lot. 

There hasn't been any issue with administering the solution.

Once we implemented the solution, we immediately witnessed security benefits.

We've noted a reduction in issues as we have increased transparency, and we do have more control. Based on that, we can easily modify policies, have better control over enrollment, and have better visibility into infection threats and how issues may enter systems. We reduced the number of infections and the number of hosts getting infected. We've seen a 10% to 15% drop in threats. 

We are using One Endpoint Security as a Service. We do find that having endpoint deployment in the cloud is reducing people's workloads. The setup files can be downloaded so long as there is internet connectivity. We can do both online and offline installations now. With client enrollments spread across multiple locations, it may not be feasible for the IT team to be onsite to do deployments. It's much easier to have everything done online and this approach reduces a lot of work for the IT team (including traveling to locations, et cetera). Travel logistics can be completely avoided. We've likely saved more than 50% of our time having online deployments. 

It's also reduced administrative overhead. Many reports, for example, are now automated and sent directly to country administrators. We've saved around 50% of administrative overhead using One Endpoint Security. 

We use Trend Micro's managed XDR services in conjunction with One Endpoint Security. We get a lot of risk alerts and detailed information about events, including which endpoints were involved in which particular threats. We can get a lot of information directly from the XDR console. It's one of the best places to find more information about threats. We do threat hunting and management through the XDR console. 

What needs improvement?

The solution does not have virtual patching. 

The role-based access control needs improvement. We have 40 countries in our environment. We do provide admin access to the countries and cities. A French admin may administrate endpoints in Germany, which is why we need better role-based controls. 

For how long have I used the solution?

We've used the solution for our clients for more than seven or eight years. 

What do I think about the stability of the solution?

The solution is very stable. Even when it's offline, it's not completely dependent on the cloud due to the agent. That way, you can protect your device even without the internet. And when you are connected, you have the SmartScan protection as well. 

What do I think about the scalability of the solution?

We have One Endpoint Security deployed across 40 countries and around 40,000 endpoints. 

We started deploying with 1,000 or 2,00 devices and now we have tens of thousands. It has good scalability. 

We may add more endpoints and increase usage. 

How are customer service and support?

Technical support is good. Sometimes there may be issues, and we can send them across to Trend Micro's technical team to investigate. From time to time we'll get troubleshooting recommendations from them.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I've previously worked with Symantec and McAfee. This is my third solution. I find Trend Micro to be very user-friendly. Everything is integrated under one solution. It's a host-based intrusion prevention system by default and we get protection of all four endpoints with it. 

We previously only used free business services such as lightweight protection and OfficeScan.

How was the initial setup?

The initial deployment of One Endpoint Security was straightforward. We have done both online and offline installations. If a local IT can deploy it they will. If not, it can be done online. The installation of the agent is very easy. If an agent is corrupted, we can use a tool to remove it and install the latest version of a new agent. It's very flexible in that sense. With other products, if an agent is corrupted, it's very hard to remove from the system. Here, it's very easy. You can just remove it and reinstall the agent package. 

With good internet connectivity, you can deploy the solution in 30 to 40 minutes. It's very fast. 

We'll download the MSA package from the console. That'll be given to the IT team, and what they do is push from the SCCM console. Once the systems are online, then they can push it to those systems. It can be done in silent mode without the knowledge of the user.

We have three people handling the deployment, and they are working with nearly 40,000 endpoints. Whoever handles implementation needs to have a good understanding of the endpoint protection software and its requirements and basic knowledge about the antivirus policies, as the policies may need to be altered or changed based on the country's requirements. Sometimes you need to have a scan exclusion and whitelist certain applications or URLs.

As a cloud solution, it doesn't require maintenance. 

What was our ROI?

We have seen ROI reflected in the good protection we're getting on endpoints. 

What's my experience with pricing, setup cost, and licensing?

The pricing is moderate. It's affordable. The costs are variable. You have the flexibility to choose between different options. 

Which other solutions did I evaluate?

We evaluated Windows Defender and Symantec. Trend Micro surpassed all other options. 

What other advice do I have?

We are an MSP, a managed service provider. We provide malware and security solutions. 

I'd rate the solution nine out of ten. It can protect desktops, laptops, and most other devices. I'd recommend it to others. It offers very good protection. You can scale it, and it offers many good features. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer. msp
PeerSpot user
Buyer's Guide
Trend Vision One Endpoint Security
December 2025
Learn what your peers think about Trend Vision One Endpoint Security. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,422 professionals have used our research since 2012.
Server Adminstrator at a educational organization with 201-500 employees
Real User
Top 20
May 12, 2024
Offers advanced protection features, is easy to use, and saves us time
Pros and Cons
  • "The policies, protection, and ease of use are the most valuable features of Trend Micro Apex One."
  • "When I create and implement a new policy , it takes a couple of hours to apply to the devices."

What is our primary use case?

We use Trend Micro Apex One for our organization to provide security between departments.

It was implemented to help with all the policies regarding our migration.

How has it helped my organization?

Trend Micro Apex One does a good job defending endpoints against threats such as malware, ransomware, and malicious scripts.

Its advanced protection features can adapt to safeguard against unforeseen and cleverly disguised new threats. This is particularly crucial in the education sector, where our staff and students frequently visit research websites that may harbor potential security risks.

Apex One can detect ransomware with runtime machine-learning capabilities. This is useful for us.

Apex One provides us with a single console for cross-layered detection, threat hunting, and investigation.

The single console provides end-to-end visibility into the entire IT security environment.

A single console streamlines our response times, allowing us to save up to two hours. Previously, investigating issues required navigating multiple portals, which was time-consuming.

It is easy to learn and use.

The main benefit is the protection of our devices and systems.

We have not received any viruses or malware since implemention.

Apex One has helped reduce our administrative overhead.

What is most valuable?

The policies, protection, and ease of use are the most valuable features of Trend Micro Apex One.

What needs improvement?

When I create and implement a new policy, it takes a couple of hours to apply to the devices.

I would like the ability to customize the report notifications and who they are sent to.

For how long have I used the solution?

I have been using Trend Micro Apex One for almost three years.

What do I think about the stability of the solution?

Trend Micro Apex One is stable.

What do I think about the scalability of the solution?

It is easily scalable.

How are customer service and support?

The technical support is good.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We previously used Symantec. 

What other advice do I have?

I would rate Trend Micro Apex One 9 out of 10.

We have 2 administrators for Apex One with 600 endpoints deployed across multiple departments in one location.

Maintaining Apex One is easy.

Trend Micro Apex One is a user-friendly solution with great features and I recommend it to others.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2354775 - PeerSpot reviewer
CIO at a insurance company with 201-500 employees
Real User
Top 20
Mar 12, 2024
Everything can be managed from one point
Pros and Cons
  • "Apex One offers a lot of bang for your buck. It includes an antivirus solution, DLP, app control, and all the other features found in endpoint protection solutions like Microsoft Defender. Many other solutions require additional licenses for different operating systems, but Trend Micro software bundles everything."
  • "We had issues with our system integrator who didn't have enough experience with Trend Micro. There aren't many enterprise customers in our country who use Trend Micro on the level that we are using it, so it might be a little too complex for them. Trend Micro is typically used in small companies that do not need all the advanced features that we are looking for. The integrators don't have experience deploying these features. The scope is broad, but Microsoft Defender is simpler."

What is our primary use case?

We use Apex One to protect our endpoints and servers against viruses. 

What is most valuable?

Apex One offers a lot of bang for your buck. It includes an antivirus solution, DLP, app control, and all the other features found in endpoint protection solutions like Microsoft Defender. Many other solutions require additional licenses for different operating systems, but Trend Micro software bundles everything.  Many other endpoint protection platforms are restricted by the operating system, but this is an all-in-one solution. The firewall and other aspects of endpoint protection can all be managed from one point.

We are pleased with the antivirus features and the overall experience. Trend Micro has enabled us to catch all the malware scripts and nasty things out there. We have a multilayered defense with different antivirus vendors and layers. It's easy to integrate Apex One with our other products. 

Once Apex One is set up, it isn't problematic to administer. The correct configuration and deployment is something that takes time. It isn't necessarily specific to Apex One. It's true of all vendors because you have guidelines and specific rules.

What needs improvement?

We had issues with our system integrator who didn't have enough experience with Trend Micro. There aren't many enterprise customers in our country who use Trend Micro on the level that we are using it, so it might be a little too complex for them. Trend Micro is typically used in small companies that do not need all the advanced features that we are looking for. The integrators don't have experience deploying these features. The scope is broad, but Microsoft Defender is simpler. 

Many vendors are pushing customers to the cloud for advanced XDR features. This drives costs up substantially and takes control out of the customer's hands. I would like Trend Micro and other vendors to make the advanced capabilities that are increasingly being deployed to the cloud also available on-premise.

For how long have I used the solution?

We have used Trend Micro endpoint protection products since 2010. We had OfficeScan and Deep Security at one point.

What do I think about the stability of the solution?

I rate Apex One nine out of ten for stability. 

What do I think about the scalability of the solution?

We haven't had any issues with scalability.

How are customer service and support?

I rate Trend Micro support seven out of ten. Like most vendors, Level 1 support is catastrophic. At Trend Micro, everything starts at Level 1, and the process of how quickly you get from Level 1 to Level 2 is something all vendors have issues with.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We were using Sophos. Trend Micro Apex One is bundled with other enterprise protection products, so it covers more than just antivirus.

How was the initial setup?

We had some initial challenges configuring high availability on our server, but it wasn't difficult otherwise. 

What about the implementation team?

We had help from a systems integrator and Trend Micro support. I rate the integrator two out of ten and Trend Micro seven out of ten. 

What was our ROI?

We have seen a return on investment. When we initially switched to Trend Micro, we reduced the licensing costs by decreasing the number of products we use. In three years, we recovered the initial investment, and our costs have been more optimal since then. 

What's my experience with pricing, setup cost, and licensing?

Apex One's pricing is highly competitive. That's one advantage. We compared the pricing of solutions that do everything we want, and others are more expensive than what we have. There are no additional maintenance fees, but we have a support contract that we renew annually. 

What other advice do I have?

I rate Trend Micro Apex One eight out of ten. I would recommend Trend Micro to companies looking for more than basic antivirus protection. If you need firewalls, application control, device and USB control, Trend Micro bundles all of that. I would recommend Trend Micro to a company that needs to cover all those areas

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Asad Nafees - PeerSpot reviewer
Team Lead, Information Security (Manager) at a financial services firm with 1,001-5,000 employees
Real User
Top 10
Sep 25, 2024
Outstanding EDR solution with good efficiency and exceptional IPS control
Pros and Cons
  • "It's very good and efficient."
  • "Pricing could be improved."

What is our primary use case?

We are using their agents in our endpoints, almost 2,000 endpoints. We are using that as an EDR solution.

How has it helped my organization?

There is no other opinion; it's the best solution we have faced compared with Kaspersky and other solutions.

What is most valuable?

The best feature is IPS and IPS control base.

What needs improvement?

Pricing could be improved. It's a little bit expensive.

For how long have I used the solution?

We have been using Trend Vision One Endpoint Security for almost two years.

What do I think about the stability of the solution?

From one to ten, I would rate the stability as eight.

What do I think about the scalability of the solution?

It's very good and efficient. If I rate it out of ten, it would be seven to eight.

How are customer service and support?

Support is handled by the global team. In my experience, I would rate it seven to eight out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

In my previous organization, we used Kaspersky. This tool is better compared to Kaspersky.

How was the initial setup?

It's a user-friendly tool. I would rate it eight out of ten for ease of setup.

What about the implementation team?

The global team manages the implementation.

What's my experience with pricing, setup cost, and licensing?

Pricing could be improved as it's a little bit expensive.

Which other solutions did I evaluate?

In my previous organization, we used Kaspersky.

What other advice do I have?

I recommend it as the best tool for EDR and XDR solutions.

I'd rate the solution nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
System Administrator at a logistics company with 5,001-10,000 employees
Real User
Top 5Leaderboard
Oct 27, 2023
Provides web reputation, behavior monitoring, and advanced protection capabilities
Pros and Cons
  • "Web reputation and behavior monitoring are valuable features, as they allow us to control which websites users can visit and download from, and to protect against ransomware."
  • "The Apex One endpoint sensor has room for improvement."

What is our primary use case?

We use Trend Micro Apex One as our primary antivirus solution.

How has it helped my organization?

When we use Trend Micro, we can get pop-up messages about who is connecting additional USB hard drives or disks, and about cracked software that may be malware. We can also identify these issues from the client and from the central configuration manager. We can then push patches and behavioral monitoring to protect our custom clients.

With ransomware, malware, and other threats, behavioral monitoring can be a particular benefit because it can catch and quarantine ransomware or malware that is repeatedly using the same methods, even if the malware is new or unknown.

Apex One has advanced protection capabilities that adapt to protect against unknown and stealthy new threats, which is important for our clients, especially those who click on infected web content.

Apex One can detect most ransomware variants with real-time machine learning, which helps to detect threats before they spread.

We leveraged the practice sessions and Trend Micro's support to learn how to use Apex One which made it easy.

Administering Apex One is straightforward. We have a helpline available for the software, and the administrator user-level guide is accessible online.

Apex One has helped our organization improve its endpoint detection.

It has reduced the number of viruses and malware by more than 95 percent.

Apex One has reduced our administrative overhead by one hour per day because we can perform all administrative tasks from a single console.

What is most valuable?

Web reputation and behavior monitoring are valuable features, as they allow us to control which websites users can visit and download from, and to protect against ransomware.

What needs improvement?

The Apex One endpoint sensor has room for improvement.

For how long have I used the solution?

I have been using Trend Micro Apex One for three years.

What do I think about the stability of the solution?

Trend Micro Apex One is stable.

What do I think about the scalability of the solution?

We are managing 2,800 PCs and servers without any issues. With our current setup, Apex One can handle up to 5,000 PCs.

How are customer service and support?

The technical support team is available 24/7 and they are located in Dubai and India.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Our previous three antivirus solutions were Trend Micro 7, 8, and XP before we upgraded to Apex One.

How was the initial setup?

Our organization is responsible for the deployment of Apex One to all of our client's endpoints. The deployment is straightforward. The deployment took around five days. 

To deploy Apex One, we must first install it on the server. Then, open the firewall ports for all freelance clients. Next, check the availability of the client-server communication port. In the directory, place the login script and the existing agent. The client will then be automatically pushed to the Apex One Control Manager. The agent will be notified that there is new software available that needs to be migrated. The upgrade will take place, and the client will need to be restarted for the agent to be installed. The same process applies to roaming clients.

Eighteen people were involved in the deployment because there were 16 sites, including airports, landports, and seaports.

What's my experience with pricing, setup cost, and licensing?

Trend Micro Apex One is affordable. The licensing fee and support are bundled together.

What other advice do I have?

I would rate Trend Micro Apex One eight out of ten.

Apex One is deployed across multiple locations, connecting endpoint servers, PCs, and laptops to the LAN network through fiber channels of the Ministry of Communication, landlines, and private networks to our centralized data center.

We use two people for maintenance to ensure that updates are automatically pushed through to the servers.

Endgame and SentinelOne provide more protection than Apex One.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Meleria Mangaring - PeerSpot reviewer
Solutions Engineer at a wholesaler/distributor with 501-1,000 employees
Real User
Top 20
Sep 7, 2023
Offers great integration, has valuable ransomware protection, and behavior monitoring
Pros and Cons
  • "The ransomware protection and behavior monitoring features of Trend Micro Apex One are actually good."
  • "One of Trend Micro's weaknesses is its high resource utilization."

What is our primary use case?

Many clients come to us after they have been attacked by ransomware. They often ask us to immediately remediate the situation, but this is not possible once a system has been compromised. However, we can usually install Trend Micro Apex One or a Cloud One product right away. This is our standard response to these situations.

Most of the clients I work with are hospitals. They have been using a different endpoint security solution, but they were attacked by ransomware and reached out to us for a different solution.

In one of the use cases we worked on, we simply installed an endpoint security solution. During the proof of concept, the hospital actually encountered a ransomware attack. There were two systems that were attacked: our test PC running Apex One and the other that was using the existing endpoint security solution. The Trend Micro-installed PC was able to navigate the attack, but the files on the other PC were corrupted.

We also simulate other attacks, such as ransomware or simple malware, using the Intelligent Content Analysis and Response tool. We then check the Device Control feature. Apex One also has data loss prevention and application control features. The DLP feature is not as comprehensive as a full-blown DLP solution, but it can be used to leverage regular expressions, specific keywords, and specific attributes. We also test the application control feature.

Our most recent testing has been with the new Vision One product. This is an extended detection and response platform that can be integrated with not only Trend Micro's other solutions, but also with other security solutions from different vendors, such as SIEM, firewalls, NDR, and vulnerability management systems.

When we test the integration of Apex One and Vision One, we focus on automation, remediation, and cost analysis. We can see how an attack was carried out, down to the file level, hostname, and user. If Vision One is integrated with Active Directory, we can also see who the user was at the time of the attack.

This is the scope of the usual use cases we perform during proof of concepts for Trend Micro Apex One.

How has it helped my organization?

I would rate Apex One nine out of ten for its ability to defend endpoints against malware, ransomware, and malicious scripts.

Apex One can defend against zero-day attacks and stealthy attacks. This is important because in-house applications can have many vulnerabilities, such as coding errors and misconfigurations, which attackers can exploit. Having Apex One as an advantage would give clients a head start in defending against unknown threats.

It uses runtime machine learning to detect ransomware. Machine learning allows us to monitor activities and suspicious behaviors running in our system, not only at the file transfer level but also at the library and registry level. This is important because it allows us to identify potential threats. Runtime machine learning can see any entry points that ransomware might use to infect a system.

Trend Micro has announced that they will be migrating the Apex One platform to Vision One, which can be integrated with an XDR.

Our clients have integrated Apex One with a vulnerability management firewall, SIEM, MFA solutions integrated with Azure AD, and the native security of Microsoft 365.

Apex One is user-friendly. For those familiar with an endpoint security solution, it will not be difficult to learn Trend Micro Apex One. However, for those who are new to the solution, they will need to take some time to learn the ropes.

Administering Apex One is straightforward, especially for the SaaS solution compared to the on-premises solution. This is because we only need to download the installer. The installer is large, around 400 MB. Once we install it on the system, we can communicate with the management console, which is the same for both solutions. We just need to make sure that all required communication ports, FQDNs, IP addresses, and ports are allowed on the firewall. We usually take into consideration the clients when we are doing POCs, and we need to work with the infrastructure team to check on this.

Apex One provides our clients with virtual patching to protect against vulnerabilities. From the perspective of an impending threat, if a client is able to patch the vulnerability in the meantime, Apex One can see the potential threat and take action to protect the client. This is done by identifying the signatures of the vulnerability and creating a virtual patch. It is important to make sure that clients understand that this is not an official patch, but rather a temporary measure that can be used while the official patch is being developed and applied.

Before using Trend Micro, many of our larger clients, which are hospitals, were constantly attacked by malware. However, after adopting Apex One, the viruses and malware have been significantly reduced or eliminated altogether. This is why they continue to renew their subscriptions to Trend Micro.

Most of the time, we recommend the SaaS version of Apex One because the on-premises solution from Trend Micro requires significant resources from the client. If they do not have the necessary monetary resources, they will need to take this into account. This is because when we build an on-premises Apex One, we need two servers: one for Apex One on-premises and one for Apex in Cloud. Additionally, if we leverage the entire SPE package, we will also need a server for mobile security and file and drive encryption.

The endpoint deployment in the cloud has helped our clients reduce their staff workload, especially on the maintenance side.

Apex One has helped reduce our client's administrative overhead.

Some of our clients use Trend Micro's managed XDR service and they love it because the automation makes things easier for them. 

What is most valuable?

The ransomware protection and behavior monitoring features of Trend Micro Apex One are actually good. All endpoint security solutions are in the market to defend against and remediate threats. However, Trend Micro is particularly quick to identify suspicious activities. Any malicious virus or malware that can be extracted from the system is something that they can leverage and work on. One way they do this is through virtual patching. Most of the time, vulnerabilities come from legacy operating systems. These operating systems cannot always be updated, such as Windows 7. If Microsoft announces that it will no longer update a specific operating system, there is nothing that can be done about it. However, Trend Micro can anticipate specific vulnerabilities that can be exploited due to the lack of updates. They can then leverage these vulnerabilities to create a virtual patch that can be applied to the specific system. I believe this is one of the many highlights of Trend Micro Apex One.

What needs improvement?

One of Trend Micro's weaknesses is its high resource utilization. Many of our clients have complained about this, and it is a valid concern. However, we assure our clients that the level of security that Trend Micro provides is worth the high resource utilization. Trend Micro is very fast at detecting and protecting against threats. For example, they were able to identify suspicious signatures for a ransomware attack that was happening worldwide months before the attack actually occurred. We believe that this level of threat intelligence is a major strength of Trend Micro. Of course, no security solution is perfect. There are always ups and downs. However, we believe that Trend Micro's strengths outweigh its weaknesses. However, we do not only offer Trend Micro for this reason.

For how long have I used the solution?

I have been using Trend Micro Apex One for four years.

What do I think about the stability of the solution?

Trend Micro has consistently been in Gartner's Leaders Program year after year. Apex One is stable.

What do I think about the scalability of the solution?

Apex One is scalable.

How was the initial setup?

The initial setup is straightforward. We usually plan and gather data before implementing. We ensure that there are no residual old endpoints installed in the system. We then set expectations with the client and proceed with setting up the management console. We install the system step-by-step and then work on the policies. We also integrate with other systems and transfer knowledge and troubleshooting skills. 

I usually complete the deployments on my own, but for our larger clients with over 2,000 endpoints in different locations, we need to be on-site. For a three-month deployment of those 2,000 endpoints, we allocated three engineers. There was also one time when we had to allocate a lot of engineers for a government agency with eight thousand employees.

What's my experience with pricing, setup cost, and licensing?

The pricing for Apex One is midrange, and worth the costs.

What other advice do I have?

I would rate Trend Micro Apex One an eight out of ten.

All security solutions require maintenance. But with SaaS deployment and SaaS security solutions, most of the maintenance is actually covered by the principal itself.

Apex One can be resource-intensive and have high utilization, but it does a great job protecting our clients' endpoints.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
PeerSpot user
Senior Manager at a manufacturing company with 1,001-5,000 employees
Real User
Top 20
Aug 24, 2023
A user-friendly solution that provides virtual patching to protect systems with old operating systems from attacks
Pros and Cons
  • "The most valuable feature of Trend Vision One Endpoint Security is the virtual patching it provides."
  • "The solution can be improved to utilize fewer system resources, like memory and hard disk, during scanning."

What is our primary use case?

We use Trend Vision One Endpoint Security for securing end-user systems, desktops, and laptops. We also use it to secure the data in the user system, which we officially provide to employees. It also supports backward compatibility by providing virtual patching to operating systems like Windows 8, whose end-of-life was declared by Microsoft.

How has it helped my organization?

Normally, all organizations have their own domain services. Employees who log in to the local LAN network are given unique login credentials to log in to the system and access applications. Without the solution, DDoS attacks could happen in the network, and unknown traffic could be generated from the endpoints. Sometimes, the malware uses up all the resources, generates traffic, and destabilizes the server or network connectivity.

Services like Trend Vision One Endpoint Security and endpoints security identify malware or viruses infecting the systems. We can disconnect them from the network and limit unknown traffic. The official work which needs to be done gets faster. Otherwise, it slows the network and affects the other systems by overloading the services and applications.

Since we have installed the solution in the system, malware attacks get quarantined, and we get notifications on our dashboard. We get a notification on the solution's centralized dashboard, and then we take the needful action on that.

Trend Vision One Endpoint SecurityOne has advanced protection capabilities that adapt to protect against unknown and new threats.

The solution detects ransomware with run-time machine learning capabilities.

The solution's ransomware detection ability is very important to us.

The dashboard provides us with a single console for cross-layer detection, threat hunting, and investigation. It is very important to have a single console for cross-layer detection.

The solution does not provide end-to-end visibility into the entire IT security environment. It only provides visibility for the desktop part. There is a separate solution for the server part. However, the solution provides complete visibility for the end user part.

The solution integrates with other security products. As part of integrating with other security products, when a threat is detected in the network sandbox, the solution deploys rapid updates to the endpoint. We have scheduled updates. On the server, it gets automatically updated, but on the end user part, we have defined the schedule for when it should get updated.

Trend Vision One Endpoint Security is easy to learn because it's a web-based application. It gives a dashboard on the web, making it easy to identify the affected endpoint or port. So it's easy, and any technical person can use it in a simple way.

Administering it is just a one-time setup; if you have done it, you won't face any issues.

Trend Vision One Endpoint Security has reduced administrative overhead for us. Earlier, we used a different endpoint solution. So the administrative people involved with the old solution are also involved in the new solution.

We are using Trend Micro's managed XDR services in conjunction with Trend Vision One Endpoint Security, which has been quite useful for our Trend Vision One Endpoint Security deployment. It's an additional benefit to the Trend Vision Service.

Users can evaluate the product, and they can use it. We have been using it for the last six to seven years, and it's a stable solution. We haven't faced many issues. The functions we set are normal, and if the end-user faces any issue, we can easily rectify it.Trend Vision One Endpoint Security is a user-friendly solution that can be used by all organizations.

What is most valuable?

The most valuable feature of Trend Vision One Endpoint Security is the virtual patching it provides. If no patches are available for any operating system we use, the system becomes vulnerable to attacks. Trend Vision One Endpoint Security provides virtual patching services, which protect the system from any attack.

The virtual patching feature of Trend Vision One Endpoint Security is quite significant. While Microsoft has released new operating systems like Windows 10 and Windows 11, older operating systems like Windows 8 and Windows 7 are being used for specific purposes. It's not possible to immediately upgrade to a new operating system once it is released. In such a case, we can use the virtual patching feature, which helps limit any attacks on that system, and we can use it till we go for any replacement or upgrade of that machine.

What needs improvement?

The resources used by Trend Vision One Endpoint Security during scanning could be improved. Once the endpoint scanning starts, it may run up to two to three hours; and other applications slow down during that time. The solution can be improved to utilize fewer system resources, like memory and hard disk, during scanning.

For how long have I used the solution?

I have been using Trend Vision One Endpoint Security for the last six years.

What do I think about the stability of the solution?

Trend Vision One Endpoint Security is a stable solution.

I rate it a nine out of ten for stability.

What do I think about the scalability of the solution?

Trend Vision One Endpoint Security is a scalable solution.

I rate it an eight out of ten for scalability.

Which solution did I use previously and why did I switch?

We previously used McAfee. McAfee had some business changes as some other company took over, and there was no future roadmap for the next releases. I was unclear if I would get any updates or if the solution would introduce new versions or releases in the coming years.

How was the initial setup?

The solution's initial setup is straightforward. We have installed the solution on two virtual servers with high availability mode.

What about the implementation team?

We had support from Trend Micro, and a partner was also involved in the solution's deployment. So around four people were involved during the solution's one-time installation.

All the departments use Trend Vision One Endpoint Security in our organization. We have a separate contract for the maintenance of the solution on an on-call basis. If we face any maintenance issues, we open a ticket.

What was our ROI?

We have seen a return on investment with Trend Vision One Endpoint Security. We have seen a significant reduction of around 60 to 70% in viruses and malware since we started using Trend Vision One Endpoint Security.

What's my experience with pricing, setup cost, and licensing?

The subscription model is definitely on the expensive side. Earlier, we used to pay a one-time license fee and yearly support charges. However, with the subscription model, we have to pay more for the complete cost every year.

What other advice do I have?

Overall, I rate Trend Trend Vision One Endpoint Security an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Trend Vision One Endpoint Security Report and get advice and tips from experienced pros sharing their opinions.
Updated: December 2025
Buyer's Guide
Download our free Trend Vision One Endpoint Security Report and get advice and tips from experienced pros sharing their opinions.