No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco IOS Security vs Trellix Intrusion Prevention System comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 19, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco IOS Security
Ranking in Intrusion Detection and Prevention Software (IDPS)
16th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
49
Ranking in other categories
Firewalls (39th)
Trellix Intrusion Preventio...
Ranking in Intrusion Detection and Prevention Software (IDPS)
13th
Average Rating
8.4
Reviews Sentiment
6.6
Number of Reviews
16
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Cisco IOS Security is 2.3%, up from 0.9% compared to the previous year. The mindshare of Trellix Intrusion Prevention System is 3.1%, up from 2.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS) Mindshare Distribution
ProductMindshare (%)
Trellix Intrusion Prevention System3.1%
Cisco IOS Security2.3%
Other94.6%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Danijel Cerovecki - PeerSpot reviewer
Head of Cyber Defense Department and Network Technologies Department at Verso Altima
Have faced challenges in keeping licensing clear and consistent while ensuring reliable network protection
We are a Gold Partner with Cisco. Our customers come from various industries, including service providers, and we target service providers and enterprise customers.We do not extensively use Zone-Based Firewalls in Cisco IOS Security, instead typically deploying standalone firewalls such as Cisco FTDs or Cisco ASA devices. For threat analytics and vulnerability scanning, we utilize third-party vendors with dedicated devices and software. We use products such as Tenable from Nessus for this type of analysis. We have implemented Secure Access Control Server in Cisco IOS Security, which combines multiple security mechanisms including AAA, 802.1X for network access control with Cisco ICE, TrustSec for identity-based segmentation, and Cisco DNA Center. Cisco IOS Security's VPN support is comprehensive and increasingly important in daily communication, from basic site-to-site tunnels to remote access VPNs and SD-WAN secure VPNs. Protecting and encrypting communication is essential in modern networks. The challenges with Cisco IOS Security are more operational than product-related. There is an understaffing issue, making automation and orchestration capabilities particularly valuable. For the products themselves, we only encounter routine operational matters such as addressing new vulnerabilities and patching. For those considering Cisco IOS Security, it is important to understand that Cisco offers a complete ecosystem. When embracing the Cisco ecosystem fully, customers receive excellent products and comprehensive solutions. On a scale of 1-10, I rate Cisco IOS Security a 9.
BS
Large account Manager at Softcell Technologies Limited
Has offered reliable threat protection and detailed network insights but could expand features beyond existing capabilities
The best features of Trellix Intrusion Prevention System include advanced ATP (Advanced Threat Protection), which uses signatures, behavior analysis, and machine learning to stop zero-day exploits and malware advanced persistent threats (APTs). They track and collect data from APTs, which allows them to track malicious files entering the environment. The system offers inline prevention and real-time automatic blocking of malicious packets before they reach the network. It integrates with the Trellix ecosystem and provides application visibility and control. The solution provides deep insight into network traffic, applications, and protocols for better information. All packets coming through the application are analyzed and reported. They share intelligence updates regularly to protect from different malicious files and sector-specific threats. It supports both on-premise and cloud environments.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We are able to filter a lot of traffic especially when a lot of the traffic is in layer 7."
"The Intrusion Firewall is a valuable feature."
"This OS has changed the definition of network security by using the router."
"Cisco IOS Security gives us a level of trust at the edge as far as being the first line of defense for anything that's trying to get into our network."
"The VPN is the most valuable feature."
"The solution is easy to use."
"Cisco IOS allows us to keep the same security features as our principal offices."
"Cisco IOS Security is a mature product with extensive capabilities, serving as the base for the defense layer. It offers good network visibility, which helps in rapid response through the Rapid Threat Containment feature. Its deployment and configuration are straightforward."
"The product is worth the investment."
"We feel safer now."
"The best features of Trellix Intrusion Prevention System include advanced ATP (Advanced Threat Protection), which uses signatures, behavior analysis, and machine learning to stop zero-day exploits and malware advanced persistent threats (APTs)."
"The most valuable features are the customization of the signature and the unlimited amount of custom signatures in IPS."
"It has a lot of functions, such as firewall, we create rules to protect our network, monitor traffic in and out, have disk encryption on-premises, and when we detect malware, we scan the PC and can delete or block it."
"It works very well overall, and is excellent for enterprise-level businesses."
"The solution can scale."
"The initial setup is straightforward."
 

Cons

"There's a technology called SD-WAN that we would like to see. We are unable to handle multiple connections or to automatically load balance. I would like to have a feature that enables us to automatically prepare for load balancing."
"IOS security related IPS facility is not as strong as Cisco ASA and the signature file of IPS does not update automatically like Cisco ASA."
"I think the user interface for IOS Security needs to be improved."
"I would love it if it has a link-by-link feature, integration with Unified Threat Management (UTM), and load balancers. They haven't got any link-by-link feature right now, which can be a very attractive option. This link-by-link feature can also be made available for Cisco's UTM firewalls. The link-by-link feature is available in some of the other firewalls. Currently, integration with UTM is missing. Cisco IOS Security also doesn't have the load balancers and a few things that need to be done to get a good UTM firewall. Normally, other firewalls have UTM. As a next-generation firewall, it's good, but as a UTM, it has to do some work."
"In the security portfolio from Cisco, the issue is marketing. Cisco is still seen primarily as an enterprise network player rather than being acknowledged as a security vendor."
"With respect to user-friendliness, it is a command-line interface and those with such experience will get along just fine, whereas others may struggle."
"I would like to see much more embedded security that works and that isn't a bolt-on."
"It takes too much time to deploy a policy to FMC. It takes around eight minutes. You can't afford any downtime when you're changing policies."
"The Network Security Managers could be more stable, agile, and work faster. When it comes to instability, there is room for improvement."
"The technical support must be improved."
"In terms of high-security attacks, not all of them are developed. You cannot do a rule that includes all high severities."
"The solution needs to improve the graphical interface. They had a limitation in some of the sensor modems as well."
"The solution needs to improve the graphical interface. And they had a limitation in some of the sensor modems as well."
"The Network Security Managers could be more stable, agile, and work faster."
"The pricing could be improved."
"Integration with Global Thereat Intelligence could be better. Also, I think management solutions are end of life now at McAfee. Network threat analyzer may be used for endpoint quarantines. Integration between these sides, as well as endpoint APO, will help you quarantine the risky endpoints."
 

Pricing and Cost Advice

"They have smart licenses that can be provided for one year, two years, three years, five years, and seven years. Alternatively, they have perpetual licenses available."
"The cost may be around $5,000 to $10,000 a year. If you want support you have to pay at least this price."
"It is an expensive solution."
"We can purchase its licenses as per specific business requirements."
"You can get a better price if you commit to a longer-term license. Three years, five years, or even seven or ten years will be cheaper than a three-month or one-year term."
"Cisco IOS Security price could be reduced, it is more expensive than many of the other solutions, such as Sophos and Fortinet FortiGate."
"The price of the solution should be cheaper, and the license is purchase annually."
"The pricing is very expensive. Normally I do a yearly contract; I don't know the exact pricing, but it's around $75,000 USD per year. That's the standard licensing."
"I rate the product’s pricing an eight out of ten."
"The tool is competitively priced."
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
893,221 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Construction Company
9%
Manufacturing Company
8%
Comms Service Provider
8%
Manufacturing Company
12%
Comms Service Provider
11%
Financial Services Firm
11%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise14
Large Enterprise18
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise6
Large Enterprise6
 

Questions from the Community

What is your experience regarding pricing and costs for Cisco IOS Security?
The cost of Cisco IOS Security for customers is on the higher end of pricing compared to the competition, depending on the targeted customers.This can be a major issue as enterprise customers are o...
What needs improvement with Cisco IOS Security?
Regarding improvements in Cisco IOS Security, what consistently confuses me is the inability of Cisco to maintain a clear licensing policy.This is an issue that I have observed for years now. Cisco...
What is your primary use case for Cisco IOS Security?
The main use cases for Cisco IOS Security include elementary device hardening, access control, control-plane policing, AAA (Authentication, Authorization, and Accounting), network security, Layer 2...
What needs improvement with McAfee Network Security Platform?
Trellix Intrusion Prevention System does not provide virtual patching. Patching involves updates on the OS side to address vulnerabilities, which is a different functionality. Trellix Intrusion Pre...
What is your primary use case for McAfee Network Security Platform?
We do not use Trellix Intrusion Prevention System; rather, we sell the Trellix Intrusion Prevention System solution. The typical use case for our clients is to find out what vulnerable files exist....
What advice do you have for others considering McAfee Network Security Platform?
I have experience working with other tools, specifically Trellix solutions such as DLP, EDR, and MDR, as well as with other Imperva tools. My team has worked with Trellix Intrusion Prevention Syste...
 

Also Known As

IOS Security
McAfee Network Security Platform, McAfee NSP, IntruShield Network Intrusion Prevention System, IntruShield Network IPS
 

Overview

 

Sample Customers

Arup Group, Brunel University London, City of Biel, Gobierno de Castilla-La Mancha, K&L Gates , New South Wales Rural Fire Service, Offshore Northern Seas, Transplace
Desjardins Group, HollyFrontier, Nubia, Agbar, WNS Global Services, INAIL, Universidad de Las Américas Puebla (UDLAP), Cook County, China Pacific Insurance, Bank Central Asia, California Department of Corrections and Rehabilitation, City of Chicago, Macquarie Telecom, Sutherland Global Services, Texas Tech University Health Sciences Center, United Automotive Electronic Systems
Find out what your peers are saying about Cisco IOS Security vs. Trellix Intrusion Prevention System and other solutions. Updated: April 2026.
893,221 professionals have used our research since 2012.