No more typing reviews! Try our Samantha, our new voice AI agent.

Abnormal Security vs Trellix Collaboration Security comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 3, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Abnormal Security
Ranking in Email Security
12th
Ranking in Secure Email Gateway (SEG)
5th
Average Rating
9.4
Reviews Sentiment
7.5
Number of Reviews
11
Ranking in other categories
No ranking in other categories
Trellix Collaboration Security
Ranking in Email Security
11th
Ranking in Secure Email Gateway (SEG)
6th
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
21
Ranking in other categories
Instant Communications Security and Compliance (2nd), AI Security (16th)
 

Mindshare comparison

As of September 2026, in the Email Security category, the mindshare of Abnormal Security is 3.3%, down from 6.8% compared to the previous year. The mindshare of Trellix Collaboration Security is 2.5%, up from 1.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Email Security Mindshare Distribution
ProductMindshare (%)
Trellix Collaboration Security2.5%
Abnormal Security3.3%
Other94.2%
Email Security
 

Featured Reviews

reviewer2251509 - PeerSpot reviewer
Senior Director, Information Technology at a insurance company with 51-200 employees
AI has helped classify threat types more accurately but product ownership can improve
Ease of use is important, and Abnormal Security's responsiveness and ability to deliver solutions when issues arise are crucial. However, there is always room for improvement, as achieving a perfect 10 means there is no more room for enhancement. For Abnormal Security, it's about leveraging AI even more, which they are already working on in their roadmap.
Jorge Abalo - PeerSpot reviewer
Endpoint Security Analyst at BNP Paribas
Endpoint protection has strengthened network control and has simplified global threat response
In my opinion, the best features Trellix Collaboration Security offers include the firewall, the on-access scan, and the ability to obtain daily signatures for the latest malware. These daily signatures, referred to as content, ensure that we are protected against the most recent malware threats recognized by other companies. Another feature I particularly enjoy is the capability to maintain different locations that can communicate with the fabric, or DXL fabric as I refer to it, allowing me to create something akin to an EDR for immediate responses to resolve issues. The DXL fabric has helped my organization by enabling communication between different locations, such as one in Europe, another in South America, and one here. This fabric communicates with a broker that interacts with the TIE servers, which maintain the reputation of files, certificates, and known signatures from various regions including Europe, South America, and Canada. When something suspicious occurs, such as a certificate appearing malicious on an application, I can easily click and indicate that I trust this file, and through the fabric, I can apply an exclusion for that application across all locations simultaneously. Other features I find valuable include the SSO integration with Trellix EPO, specifically SAML SSO, allowing people not to have to manage usernames and passwords if they already utilize an SSO service for SAML; I consider this functionality to be quite beneficial.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like Abnormal's threat protection with auto-remediation, but I also love its abuse mailbox feature, which automatically responds to the end user. That feature has a super-valuable security component and helps improve the user experience."
"I have never encountered any stability issues with Abnormal."
"One of the things that I love about them is that the setup and installation are super easy. All you do is give them access to your Microsoft 365 tenant, and through APIs, they are able to do their work. They are doing all this through APIs, so you do not have to install the software and take a month to get it all set up to even see the value of the solution. You could be up and running in less than an hour."
"Ease of use is undoubtedly one of the most valuable features of Abnormal Security."
"The features that appeal to me most are the combination of auto-remediation and Detection 360."
"Initial auto-remediation allows us to auto-remediate before the email lands in the end user's inbox for a split second."
"It does some really cool stuff that other tools aren't doing. We found it to be really effective, and the AI/ML functionality is really what differentiates them."
"It protects us from being business email compromised, which is invaluable for maintaining our security."
"The product helps reduce the number of malicious emails reaching the user's inbox."
"It is one of the greatest solutions to have or to complement any other security solution such as Proofpoint or IronPort."
"The major features of Trellix Collaboration Security are URL analysis and file inspection, which are considered the crown of the product."
"FireEye is good for malware depicting and security."
"One of the valuable features of the product stems from the fact that it is easy to implement the tool in our environment."
"FireEye ETP has blocked several campaigns that lead to the post compromise deployment of ransomware, Obfuscated Outlook Phishing impersonation, Attachment based Phishing."
"The accessibility is one of the features that I love; we can control it from the cloud and we can access it from anywhere."
"I rely on Trellix Collaboration Security because the sensors are highly reliable and high-performance sensors that can handle traffic efficiently."
 

Cons

"There could be room for improvement in enhancing integration with other cybersecurity tools."
"I would like to have the ability to customize the auto-remediation feature."
"When we're working on something as engineers, and we find an idea or a method of doing something that would be greatly improved by doing it another way, there should be an ability for me to click the ideas button, type in an idea that I have, and submit it to a product review team or developers to have them think through the process a little bit more."
"I, as such, do not have anything that I do not like or would like to add, but you could argue that because they are doing it API-based, there is a chance that something could slip through temporarily before they are able to pull it out. In theory, it could happen just because of the nature of the system. They are not in line with the delivery of the mail. They are kind of asynchronous, which is a pro as well as a con. If it is synchronous, then I know it would always stop them, but because it is asynchronous, things could get through temporarily or because of some system issues on the Microsoft side or their side. It is the nature of the beast, but it is a little bit of a con."
"The ideal scenario would be for Abnormal Security to work in tandem with Microsoft to analyze incoming emails."
"For Abnormal Security as a product, I would say probably somewhere around a seven, as there are some other areas where they can improve to achieve a higher rating."
"One feature I'd love to see is outbound scanning."
"There could be more selectable options and more granular selections available."
"The spam detection feature could be better."
"I would rate them as a 1.5. The new hub created in India is not good."
"The reporting aspect of the solution needs improvement."
"The solution must provide features to scan QR codes for threats."
"Sometimes, integration can be challenging, impacting its stability, which is why I rate it a five out of ten."
"I deduct two points because while we are using it for insiders, we still rely on another solution for gateway level security, which makes us use two different solutions for the same purpose."
"I would like the solution to be able to automatically quarantine the malicious emails before getting to the user's mailbox and continue with regular email operations. This could result in the user clicking the email before the purge operation is completed."
"Sometimes especially zero-day spam emails can be passed to the user's inbox."
 

Pricing and Cost Advice

"The license is based on the user count, so the number of users that have an email address in the organization."
"The pricing appears fair, and they demonstrate a genuine willingness to work with us on it."
"Overall, we'd certainly prefer lower pricing, but Abnormal Security doesn't seem unreasonable compared to similar offerings in the market."
"Abnormal Security, on the other hand, provides the same level of functionality for just over $60,000 – that's half the price!"
"I rate the product price as nine out of ten, where ten is the most expensive, and one is the cheapest. There is no need to pay any extra charges apart from the licensing costs."
"The cost is very high."
"The licensing is on a yearly basis."
"The solution requires a license to be purchased for every user."
report
Use our free recommendation engine to learn which Email Security solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
10%
Financial Services Firm
9%
Computer Software Company
8%
Government
6%
Construction Company
15%
Healthcare Company
12%
Comms Service Provider
12%
Outsourcing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business1
Midsize Enterprise2
Large Enterprise8
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise7
Large Enterprise17
 

Questions from the Community

What is your experience regarding pricing and costs for Abnormal Security?
I find the pricing to be favorable, but I did not disclose the exact cost.
What needs improvement with Abnormal Security?
Ease of use is important, and Abnormal Security's responsiveness and ability to deliver solutions when issues arise are crucial. However, there is always room for improvement, as achieving a perfec...
What is your primary use case for Abnormal Security?
The main use case for Abnormal Security is as a spam filter and for mail hygiene. This use case is for the finance industry.
What needs improvement with FireEye Email Security?
A few areas stand out: Market coverage. The product needs to expand into markets it currently doesn't fully serve — North Africa in particular — and address the sales restrictions that exist in cer...
What is your primary use case for FireEye Email Security?
Trellix Collaboration Security is a tool used for file inspection, URL analysis, behavioral analysis, and integration with existing security tools. The product mainly serves the purpose of scanning...
What advice do you have for others considering FireEye Email Security?
Trellix Collaboration Security has seamless integration with most vendors, especially the SIEM solutions vendors, which is an advantage. There is, however, room for improvement in support services,...
 

Also Known As

No data available
FireEye Email Security
 

Overview

 

Sample Customers

Foot Lcoker, Xerox, Liberty Mutual, Mattel, Boston Scientific
Northshore Utility District, Luz Technologies, Air Academy Federal Credit Union, Bank Gutmann, Bank of Thailand, Penn State Health Milton S. Hershey Medical Center, State of Missouri, City and County of San Francisco, Denver Public Schools, Vodafone, Go Auto, Stater Bros. Market
Find out what your peers are saying about Abnormal Security vs. Trellix Collaboration Security and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.