We use Trend Vision One for our endpoint detection and antivirus solution.
The endpoint agents are deployed locally on our computers and the centralized controller is in the cloud.
We use Trend Vision One for our endpoint detection and antivirus solution.
The endpoint agents are deployed locally on our computers and the centralized controller is in the cloud.
Trend Vision One's centralized view boosts our visibility into harmful malware, viruses, and ransomware. Before Trend Vision One it was impossible to protect against attacks but the centralized management now makes it easy for us to focus on one platform.
The centralized visibility and management across protection layers have improved our efficiency. Now we have multiple tools to monitor our computers across our enterprise.
The executive dashboard is important because it allows us to dive into advanced functions.
I use the risk index feature daily and report the information weekly. This helps us address the risk factors.
Ransomware and intrusion attacks are common these days and Trend Vision One has helped us protect our devices and prevent these types of attacks.
The attack surface risk management eliminates blind spots.
Trend Micro XDR helps decrease our time to detect and respond because everything is available in one dashboard eliminating the need to use multiple dashboards and look at multiple locations.
Trend Vision One has saved us 80 percent of our time by constantly monitoring our environment and reducing our investigation time.
The automatic EDR system that notifies us when something is wrong is valuable.
The information captured by Trend Vision One needs to be more detailed.
I have been using Trend Vision One for two years.
Trend Vision One is stable and I would rate it ten out of ten.
Trend Vision One is scalable.
The technical support is good but 20 percent of the time the response is slow or they assume our issue is solved so they stop communicating with me.
Positive
The initial deployment is straightforward. We run the program and it deploys automatically.
We used a reseller for the implementation.
We have seen a return on investment.
The price for Trend Vision One is reasonable compared to Microsoft and Symantec.
I would rate Trend Vision One a nine out of ten.
We have Trend Vision One deployed across 250 endpoints.
Minimal maintenance is required.
I recommend Trend Vision One because it is easy to deploy and includes rich content.
Its real-time analysis has impacted our security incident response time. We use the Workbench console and dashboards. We are normally able to analyze an incident in a few hours, understand what is going on, and provide a specific solution for any type of incident.
A few days ago, a user opened something with malware on their machine. In a few seconds, I received an email, and I received a pop-up in the console. To mitigate this, we removed the machine from the network and checked it.
In terms of integration, we intend to integrate more solutions with Trend Micro, but so far, we have just integrated the firewall.
Telemetry is very useful. They provide all the information. I can see specific details about any malware and various types of attacks. I can prevent my environment from different types of attacks based on what I see in the Vision One console.
Log inspection is also very useful for me. We check the logs all the time. In certain cases, it is necessary to analyze with more detail. It is very useful to understand what is going on in my environment with log inspection.
It is very expensive.
I have been using this solution for ten years.
We do not have any problems with the stability of this solution.
It scales well. We do not have any problems with scalability.
At the moment, we do not have any plans to increase its usage.
Their technical support is good. They take some time to give me the answers, but in the end, they fix and solve all my problems. I would rate their support a nine out of ten.
Positive
We were not using any other solution previously. We have been using Trend Micro's solutions from the beginning of our operations in Brazil.
It is a SaaS solution. Its initial setup is not complex. It is very easy to deploy. It is not complicated. It is very user-friendly. It took around 15 days.
In terms of implementation strategy, we prepared some test machines and servers. After that, we deployed it for the entire company.
They do the maintenance, but we do not have any downtime in this maintenance mode.
We had a Brazilian reseller.
We have not seen an ROI.
Trend Micro's cost is higher than other solutions. That is the main reason why we need to switch to another solution.
We are using a full license that provides different types of features, but CrowdStrike does not provide some of the features such as MDM or anti-spam. We do not have these options or features with CrowdStrike. If we switch to CrowdStrike, we would have to buy other solutions to have a complete solution.
In addition to the license, there are no extra costs.
Its cost is high for us, so we are checking other options and other companies to provide the same solution. We are evaluating CrowdStrike, Trellix, McAfee, and Sophos. We have not yet received the quotation, but their cost is lower than Trend Micro.
Trend Vision One is very useful. It has many functionalities and integrations. Its integration with other products is growing. In the future, it will probably be the biggest console in the world.
Trend Micro is making some changes to the console. At the moment, it is a little bit confusing for our use case because we are using three or four consoles from Trend Micro. We intend to migrate to just one, which is the Vision One console, but at the moment, we are using the Apex One console for the workstations and the Cloud One console for the servers. I do not know if the integration is complicated for Trend Micro, but at this moment, it is not so easy for me to manage all devices.
I would rate Trend Vision One an eight out of ten.
We use Vision One together with the other products in the Trend Micro security stack, such as XDR, Site Management, and Apex One.
Vision One has made our detection and response time much faster. We have 30-plus integrations, helping us to identify the most critical threats. The more connections, the better. We can also identify and resolve false positives faster.
I like Vision One's workbench. It provides helpful logs that I can search, and the telemetry is excellent because I can see what's happening during an attack or potential attack.
Another one of my favorite features is attack surface risk management. It shows me faults and blind spots in my security. I also like the attack phase management. The model shows the risks in the corporation and provides considerable information about what is happening on the platform and the network, offering more visibility. There's also a risk index that shows me where I can improve my security.
Vision One provides centralized visibility and management across multiple layers. This is critical because I need to see what's happening. It also allows me to set separate rules and policies for some security areas.
Vision One's search could be improved. While the platform is very user-friendly, the search feature uses terms that aren't as intuitive. The automation is excellent, but I wish there were more templates to help me optimize more things.
I have used Vision One for nearly a year.
I rate Vision One nine out of 10 for stability. It has only crashed once.
I rate Trend Micro support six out of 10. They respond quickly but the answers aren't clear sometimes. They don't always understand the issue, so I need to explain a lot.
Neutral
I previously used the Microsoft 365 security stack, but I found Microsoft's XDR lacking. We also used Microsoft CASB and Defender for Endpoint. Vision One's threat intelligence and modeling are better. It has all the features like attack surface and risk management as well as the workbench. I also find Vision One easier to navigate.
Vision One is easy to deploy. It's mostly automatic, but we needed to deploy some of the agents manually. If you can deploy all of the agents to the endpoints automatically, it takes only about five minutes.
Vision One is expensive, but I think it's a typical market price.
I rate Visione One nine out of 10. I recommend fully exploring Vision One's features. It has many features that you don't need to pay extra for. There are so many things to explore. For example, they have free playbooks for third-party integration.
Normally, we use the solution for day-to-day investigations. We get alerts when something is going on in the environment. Right now, we are using that tool for the asset management team to identify services or applications that are not allowed for governance and all of these purposes. In addition to that, we use it for isolating devices. We also have a service with them, an MDR service. They analyze information, and they do investigations for us as well.
Mainly, we were concerned with the visibility of the environment. We didn't have a tool that was able to allow us to see or have visibility of what the endpoints were doing on the servers in the environment. That was the main reason to adopt this solution - to have visibility on the environment as, in the past, we didn't have that capability.
The isolation of devices has been really important. We like all the attack surface-managed NPEs. It's helping us to identify devices and protect us on the network. That's in combination with third-party integrations as well. We have integrations that are helping us to identify devices using our vulnerability management services. It's scanning the network and it's sending all that data to VisionOne. With that information, we identify devices that are protected on the network and the environment.
The reports are a really good feature for showing results to upper management levels.
The search features help us try to correlate information and identify any suspicious activity. That's another feature that has been really important.
We are using it everywhere except for the network, so we don't have the network discovery service from Trend Micro. However, we have it on endpoint servers and email and also the cloud as well. We use cloud conformity to connect that piece.
Trend Micro has a feature called Vision One, that provides us with centralized visibility management across all protection levels. That's helping us to have a centralized view of the console. That's the main reason why we still have that product.
Centralized visibility is important. When we are doing investigations, we can do everything in one console instead of moving to different screens or different windows. The centralized visibility and management across these protection levels helped with our efficiency. It helps us to identify quicker, any potential threat, or any special activity.
They have this feature called Risk Index which I use sometimes to validate the level of rates we have. We don’t use it often - maybe once every one or two weeks. We use it to rank our security operations overall. Mostly, we just check it out of curiosity.
We use the Managed XDR service that they have. It relieves a lot of workload especially during investigations or interim reports about any particular activity - especially with the coverage after hours. It is helping us with the capability there. Also, if something really bad is happening, we have eyes watching all the activity, which is nice.
Using this Managed XDR service enables our team to work on other tasks - especially when we, in certain ways, allocate some of the investigation pieces. We basically create a request for them to investigate things, and that allows us to focus on other things to optimize our security toolset. That's really helpful.
We use the attack surface risk management capability they have. We use that heavily right now. It was a big use case in the past few months. We use it to identify multiple devices without protection, the applications that have been used by our users, and which ones are risky. We are using that on a regular basis. It's helped us identify blind spots and more assets. It's positively affected our security posture by improving a lot of our visibility.
XDR helped us decrease our time to detect or respond to threats. In the past, we didn't have that visibility. When we enabled that tool, at the beginning, it was a little bit noisy. That's something to be expected coming from a new tool. However, after testing through these years, things are improving, and now we can see better results, especially during investigation alerts.
The solution has helped us to reduce the amount of time we spend investigating false positive alerts. In the beginning, there was a large amount of false positives. Right now, we are day to day trying to reduce them. At this point, they are lower compared with the beginning of the implementation. Things are improving. We are reducing false positives as we go which is great.
We do use the automation capability a little. However, we noticed some limitations, especially on the playbook side. The API we use. We are integrating that with another product, a SOAR product. The playbooks are a little bit limited in what they can do at this point. Let's say that we want to connect on a specific API. The templates we cannot modify very well. When we noticed that limitation, we decided to go and use Trend Micro VisionOne API and connect it to other tools to develop that activity using another product.
Under attack surface management, when you go to the specific sites or applications that the users are accessing, the capability of downloading that report could be better. Let's say, as an example, we want to identify users using chatGPT, for example. We want to download that data through an API or through the GUI. Right now, it's not available as an option. Maybe having the capability of extracting data from VisionOne for specific areas of the tool could work. That's something that could be useful, especially if we want to generate that report and send it to specific teams. Often, we don't want to provide DX to all the people. Sometimes it's easier to just have that file and share that file with the people who need to have that information.
I've been using the solution for around three years now.
The stability is good. It's not very common to have any outages. Sometimes there may be a glitch, however, it's rare. Normally we have 95% stability.
The scalability is good, especially when we are talking about third-party integrations. We can have visibility and control of all different assets. So we can have good scalability and visibility and know more about the environment in places where we didn't have any idea things were happening. It's a SaaS tool, and we don't have to do any maintenance, and it's easy to deploy. It's pretty straightforward.
When we have specific issues or problems connecting some products we ask for support. They respond really fast. They always try to mitigate and resolve all the issues we have. If they cannot resolve the problem, they normally share some suggestions on how we can mitigate future problems.
Positive
We did not use other solutions, although we did use Apex One for a long time. We have also used an EDR product.
I was involved in the deployment. I was the one leading the data during the implementation. The process is pretty straightforward. It was a little tricky to reduce the false positive alerts, however, the portion of deploying to the environment and connecting the pieces was simple.
From our side, we had three or four people involved in the implementation.
We had some help with the deployment and we had some guidance in the beginning. We requested some support from our account manager.
The pricing is good if you look at all the compatibilities and features offered by the product. There are features that can increase the pricing. We can put some credits to some features, however, if we want to enable them. With the amount of credit we have, we are covered for all of our needs.
I'd rate the product eight out of ten.
It is a really good product and easy to deploy. They allow you to have more visibility on your environment, especially if you have any kind of XDR solution. It will increase the visibility of what's happening in the environment. Also, from the perspective of doing maintenance updates or patches, the cloud is the way to go. The product management team does a really good job of increasing the features, and they are listening really closely to what the customer needs via feedback.
We use Trend Micro XDR to enhance our security framework.
One of our partners was the victim of a major attack, and we realized that our environment was susceptible to the same thing because we were only using an antivirus solution.
Trend Micro XDR is deployed on-premises, and we use it on our core business servers, clients, and the management portal to protect all of our network nodes from attacks.
Trend Micro Vision One provides centralized visibility and management across protection layers, which is important. It is part of our monitoring tool. The visibility gives us a centralized view of our network nodes, activities, and possible attacks.
The risk index feature plays an important role in our KPIs, which we report to the management team. Our business is dependent on our systems running 24/7.
Trend Micro XDR has helped decrease our time to detect and respond to threats.
Trend Micro XDR has reduced the time we spend investigating false positive alerts by 50 percent.
The most valuable feature is the network protection shield on every server, which isolates attacks and prevents our clients from being affected.
The deployment process could be more streamlined over the existing infrastructure, as it was not as easy as we thought. We are working with an expert from Trend Micro to improve the rollout process, but it has taken some time and we do not yet have a concrete understanding of the issue. There are some features that we have to install repeatedly before they start running.
I have been using Trend Micro XDR for one year.
Trend Micro XDR is stable.
Trend Micro XDR is scalable.
The technical support is good.
Positive
The deployment took six to eight weeks to complete. We had around five part-time people involved in the deployment.
Trend Micro XDR is expensive but we got a good deal from Trend Micro. We pay for an annual license.
Currently, we are researching the question of whether to use Trend Micro XDR when we switch from our classic NPLS internal corporate lines to an SD-WAN solution. Or if we should use an integrated solution from the SD-WAN and firewall provider, such as Palo Alto or Fortinet.
I would rate Trend Micro XDR eight out of ten.
We have 300 people in our organization that use the solution.
Maintenance is easy and done by two people, who update, patch, and install new servers; client-side, they also update user stations and analyze logs.
I recommend Trend Micro XDR. It is user-friendly.
The reason we invested in Trend Micro XDR was to consolidate security operations and monitoring. On top of that, we invested in their managed detection and response service, which they can provide on top of the ETA service, which makes our lives easier. You can say that with it, we need fewer hands.
We're able to gather a more simple view of what was going on in our infrastructure. Before this solution, we used a SIEM system. Trend Micro XDR made monitoring more simple, and we trusted them as a security partner.
It definitely has improved our visibility of all of our ongoing items in the infrastructure. We can get a good overview of what's going on across our network and what our security looks like.
Having everything under one management console and having them monitored from one place is the most beneficial.
It saves time and we do not have to invest in a lot of products to meet all of our use case needs.
It's quite simple to monitor everything under one console. It makes life simpler for our operations team.
We have the solution everywhere, including email, network, endpoints, and cloud. This is important to have this coverage. As a former incident response analyst, having visibility everywhere is really important. Having everything correlated into one place increases visibility.
We have centralized visibility and management across our production layers. They are also improving that from month to month. It's important for us. In security operations, the fewer places you need to go to have a look around, the easier it is. Back in the day, we had to open ten different consoles. Now we just open one.
The most important thing for us as a customer is that we can spend more time in other places as it's simpler to have that overview. We have much more time for other tasks.
We use the solution's executive dashboards. We like that we can drill down from the dashboards into XDR detections. It helps the C-suite understand. However, it also helps us drill down by allowing us to choose which views we want.
We have a trial version of the Risk Index. We have a daily look at it and it gives a nice overview of our vulnerability management and what the attack surface looks like. It helps us prioritize our daily tasks.
The Managed XDR service was great. It helped quite a lot. We had to get used to working with them and they with us, however, now it's quite an easy task and the advisory and alerts we get from them have been helpful. The availability to work on other tasks has helped us improve in other areas. It's positively affected our business. Having this product means that we are improving in a lot of different areas that we also need to focus on. They can do the monitoring better than we can do it ourselves. We don't have the manpower to do it on our own so it helps a lot to have them help with management.
We use the Attack Surface Risk Management capabilities, which are also in the trial period. It's absolutely helped us to identify blind spots in our environment. It made us realize that, for example, users were using their work email for private services such as Netflix or other services that, if they had a data breach, would be an issue. With this, we can reach out to those users and explain to them how to act on the Internet, not to use your work email for private services, et cetera.
It's helped decrease our time to detect and respond to threats. It's likely 80% faster now. It's also helped us reduce the time we spend investigating false positive alerts. They do a lot of the initial work for us and come back with the actions we need to do on our part (if any). It's helped us reduce false positive investigations by 50%.
We're using some of the automation capabilities of XDR. It's helped us save time. At the moment, it's likely helped us save 20% of the time we'd normally spend on manual processes.
They should increase their potential for third-party integrations. We'd like to see integrations with other IT security vendors that are not currently there.
I'd like to see central management of all products.
I've been using the solution since it came out, essentially. I've been working with it for eight or nine years.
The solution is quite stable.
We don't have branch offices, however we have 2200 clients and 800 servers.
It is easy to scale if you are a bigger organization. We do plan to scale further in the future.
We have Service One, which includes three-year support. It is 24/7/365 support and they are quite good.
Positive
Before Trend Micro, we used Splunk. The use case and monitoring were easier with Trend Micro. We found it easier to fulfill our needs using Trend Micro.
I was involved in the deployment process. Some of it was quite complex. Unfortunately, we had an on-prem environment that wasn't well taken care of. The migration was hard, however, that was more our fault. It could be easier to migrate, however.
It took us about nine months to fully deploy.
We already had some products in the cloud, however, we needed to migrate all of our endpoints. The on-premise agent needed to be placed in the cloud and we had some problems as some clients did not have an opening to the internet, et cera. There was some preparation we needed to do. We needed to do some upgrading before migrating.
There were two to four people performing the implementation.
The solution requires maintenance and we have a person that manages that.
We had help from Trend Micro professional services.
We have noted an ROI. Having them monitor our IT solutions allowed us to have fewer people on the team. It's saved us in man hours.
The solution is affordable. You do need to pay additional fees for some of the functionalities.
We also evaluated Microsoft's solutions.
I'm a customer and end-user.
We realized the benefits of the solution pretty fast - within a couple of weeks. We knew the benefits beforehand which is why we chose Trend Micro. The possibility of having the solution monitored by the vendor itself was quite helpful.
I'd rate the solution nine out of ten.
I would advise others to prepare your needs beforehand. If you know those, you will know Trend Micros is the right fit for you. It's great. If there's a problem with central management or monitoring, Trend Micros is quite useful.
We use Trend Micro XDR for endpoint detection, endpoint user protection, and virtual security.
We have deployed Trend Micro XDR across our entire environment, which is important for our organization's threat detection capabilities.
We use Trend Vision One to monitor our environment 24/7. Centralized visibility is very important to me and my management. In addition, management wants to see centralized dashboarding. This is very important.
The centralized visibility and management across our protection layers have improved our efficiency.
The executive dashboard is important to our organization. I use the dashboard each morning and evening.
Trend Micro XDR has helped our organization improve its defenses against external and internal threats.
The Managed XDR service has positively affected our team's workload by providing 24/7 monitoring. This has saved our team 20 percent of their time to focus on other tasks.
The time to detect is under one minute.
The proactive approach is the best feature. When Trend Micro XDR detects a virus in our system, it stops it and secures our branches.
The centralized dashboard has room for improvement.
I have been using Trend Micro XDR for almost two years.
Trend Micro XDR is stable.
Trend Micro XDR is scalable.
The technical support is good. We receive a response within ten minutes.
Positive
We switched to Trend Micro XDR from Kaspersky because it is a better product and we have not faced any issues.
The deployment took one week and required a few people to complete.
Trend Micro XDR is expensive.
I would rate Trend Micro XDR ten out of ten.
We have over 100 Trend Micro XDR users.
We use FireEye, Microsoft Defender, and Trend Micro for our endpoint solutions. Trend Micro.
We implemented Trend Vision One because we have many production servers and wanted to secure all endpoints.
We are planning to move our XDR to the cloud, but all of our production servers are currently on-premises.
Trend Vision One's ability to cover all our servers is important because we can detect and quarantine any vulnerabilities as well as block and isolate third-party applications from being installed on our servers.
The centralized visibility empowers us to monitor and manage all our servers from a single console. This includes generating reports, deploying security updates, and identifying offline or outdated servers.
The centralized visibility and management across protection layers have helped increase our efficiency. We receive alerts and make changes all from one place.
Trend Vision One helps us protect our servers, specifically our older servers that are not supported by Microsoft.
It has reduced our time to detect by 50 percent.
Trend Micro XDR has reduced the time spent on false positive alerts by up to 40 percent.
The zero-day vulnerability is valuable. As end users, we may not be aware of exploitations and Trend Micro makes suggestions to update to protect our endpoints from attack.
The automation capabilities on-premises could be improved, as we currently have to manually activate servers and push policies.
I would like the uninstall process of agents to require two-step verification.
I have been using Trend Vision One for ten months.
Trend Vision One is stable.
Trend Vision One is scalable.
The technical support is good but we sometimes face delays because they will only respond to our partner who then relays the information to us.
Positive
The migration from on-premises to the cloud allows us to access the cloud and on-premise servers from the cloud. The migration is not complicated but some rule-based ports require a lot of approvals and assistance from our network team.
The migration can be done in a few hours if all the ports are available.
Two people are required for the migration.
We used a third-party service from JVS for the migration.
I would rate Trend Vision One a nine out of ten.
For the on-premises deployment, maintenance is required because we have to manually check the connectivity of the agents. One person is required for the maintenance.
I recommend Trend Vision One, especially for older servers that are not supported by some other endpoint solutions.