

Trellix Network Detection and Response and Gigamon Deep Observability Pipeline compete in the network security and visibility category. Trellix appears to have the upper hand due to its advanced threat detection capabilities, though both products show strengths and weaknesses in different areas.
Features: Trellix Network Detection and Response offers zero-day protection, robust sandboxing, and deep malware analysis, providing significant network visibility and ease of maintenance. Gigamon Deep Observability Pipeline excels with packet filtering, encryption enhancements, and improved network visibility, although it lacks intelligence for traffic flow analysis.
Room for Improvement: Trellix requires enhancements in file replication, machine learning integration, and better customization for sandboxes and VMs. Its analytics are impacted by the McAfee and FireEye integration, necessitating further refinement. Gigamon needs to address cloud monitoring challenges and integrate traffic flow visibility features to minimize dependency on other tools.
Ease of Deployment and Customer Service: Trellix offers flexible deployment options across on-premises and public cloud environments, scoring high in customer service with extensive contact options and a dependable support network. Gigamon focuses on on-premises and hybrid cloud setups, with good technical support, though customer service opinions vary, indicating room for improvement.
Pricing and ROI: Both Trellix and Gigamon are perceived as expensive but provide high ROI. Trellix's pricing reflects its comprehensive threat detection capabilities, justified by effectively preventing breaches. Gigamon's pricing is considered high; however, its network visibility enhancements are acknowledged as valuable, significantly reducing response times and increasing productivity.
The technical support by Gigamon Deep Observability Pipeline is good because it has a local architect in my area.
Technical support needs improvement as sometimes engineers are not available promptly, especially during high-severity incidents.
The customer support for Trellix Network Detection and Response is great.
There should be improvements in AI intelligence, faster decision-making, and a more responsive technical support team.
I would like to see in Trellix Network Detection and Response more explanation about some details of the threat.
The Pipeline's Comprehensive Insights into data flows have helped improve operational efficiency and security.
Trellix NDR provides an essential defense by automatically responding to network incidents that firewalls may not catch.
What makes Trellix Network Detection and Response stand out for me compared to other tools is the way you can detect threats. It is very easy and comfortable to use, and the detection shows clearly on the screen, which is very easy to understand.
| Product | Mindshare (%) |
|---|---|
| Trellix Network Detection and Response | 4.1% |
| Gigamon Deep Observability Pipeline | 1.9% |
| Other | 94.0% |

| Company Size | Count |
|---|---|
| Small Business | 3 |
| Midsize Enterprise | 1 |
| Large Enterprise | 5 |
| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 8 |
| Large Enterprise | 19 |
Gigamon Deep Observability Pipeline boosts network visibility and performance through features like NetFlow and deduplication, facilitating data flow insights and improved security. It supports traffic monitoring and management across various infrastructures.
Gigamon Deep Observability Pipeline enhances network management by offering features such as NetFlow, deduplication, header stripping, and packet filtering. These capabilities are instrumental in optimizing performance, offering users stability and improved encryption processes. Despite its robust hardware capabilities, it requires enhancements in security, filtering, and delivery time for hardware. Users note challenges with monitoring cloud networks and insufficient cluster capacity. There is also a call for improved interface design and internal traffic flow visualization.
What are the essential features of Gigamon Deep Observability Pipeline?Gigamon Deep Observability Pipeline finds application across industries for network visibility and management. It is used extensively for traffic monitoring, SSL inspection, mobile network oversight, and data center operations. Organizations leverage its capabilities to address network issues, enhance security, and streamline performance monitoring processes. Its ability to group traffic aids significantly in problem-solving and SSL detection.
Trellix Network Detection and Response provides robust threat protection with advanced detection of zero-day attacks and APTs. Its user-friendly dashboard and real-time response capabilities enhance security and visibility across networks.
Trellix Network Detection and Response stands out with its MVX engine, leveraging virtual machines for comprehensive behavioral analysis. The solution supports detection of advanced cyber threats through features like sandboxing and application filtering, offering real-time response and packet capture for detailed contextual insights. Companies benefit from seamless integration with other platforms, enhancing usability and overall protection. User-friendly interfaces improve network visibility, while stability and ease of configuration safeguard against both signature-based and signature-less threats.
What key features does Trellix offer?Companies in sectors like finance, healthcare, and enterprise security utilize Trellix Network Detection and Response for tasks such as network intrusion detection, endpoint protection, and securing data transmission paths. It aids in threat investigations, pre-sales demos, and network forensics, reducing risks by protecting against cyber threats like phishing.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.