No more typing reviews! Try our Samantha, our new voice AI agent.

Symantec Advanced Threat Protection vs Trellix Network Detection and Response comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Symantec Advanced Threat Pr...
Ranking in Advanced Threat Protection (ATP)
22nd
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
16
Ranking in other categories
No ranking in other categories
Trellix Network Detection a...
Ranking in Advanced Threat Protection (ATP)
17th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
40
Ranking in other categories
Network Detection and Response (NDR) (13th)
 

Mindshare comparison

As of May 2026, in the Advanced Threat Protection (ATP) category, the mindshare of Symantec Advanced Threat Protection is 2.2%, up from 1.6% compared to the previous year. The mindshare of Trellix Network Detection and Response is 4.1%, up from 3.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Advanced Threat Protection (ATP) Mindshare Distribution
ProductMindshare (%)
Trellix Network Detection and Response4.1%
Symantec Advanced Threat Protection2.2%
Other93.7%
Advanced Threat Protection (ATP)
 

Featured Reviews

TapabrataSamanta - PeerSpot reviewer
Lead Architect at Zones
Reliable platform with effective integration capabilities
Our primary use case for the product is to provide advanced threat protection to our clients, primarily in the banking and financial sectors Symantec ATP has been beneficial in ensuring robust security for our clients. Its effectiveness in detecting and mitigating threats has improved customer…
Jose Vargas - PeerSpot reviewer
Agente De Servicios Técnicos at a computer software company with 11-50 employees
Has improved threat detection workflows and supports seamless customer monitoring
The best features Trellix Network Detection and Response offers include very good threat detection, and I believe that it is one of the best XDR tools. For example, ePO and XDR components are very comfortable and similar to many other tools for this type of monitoring, and I have received very good feedback for this tool. What makes Trellix Network Detection and Response stand out for me compared to other tools is the way you can detect threats. It is very easy and comfortable to use, and the detection shows clearly on the screen, which is very easy to understand. Regarding the features, I think that the integration with other platforms is very comfortable with the customer because we can integrate it with any switch or firewall, and it is comfortable to add this tool. Trellix Network Detection and Response has positively impacted my organization as I have improved my knowledge about detection and response. I have already used some other tools such as CrowdStrike and Umbrella, but Trellix is one of the best that I have tested. I believe that for my organization, Trellix has helped a lot with detection and supported our customers effectively. Trellix Network Detection and Response is a great tool that integrates with a lot of security tools such as Palo Alto, which is a good firewall. If you have these types of tools, your organization would benefit greatly.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"They manage to solve detection quite nicely, with rather elaborate detection compared to other providers, and Symantec also provides a useful set of information linked to each of the attacked computers."
"Their integrations are pretty good as are their Sandbox solutions, their proxies, and their LTAs with API or ICAP protocols."
"What I like most about Symantec Advanced Threat Protection is its notification capability."
"All of the solution's features are quite valuable for us, and we especially like the threat protection it provides."
"The great advantage in using this product is it creates multiple services."
"Currently we have 800-plus nodes connected with this solution, without any issues."
"All of the solution's features are quite valuable for us. We especially like the threat protection it provides."
"You don't have to buy a separate email security platform. You can enable that using their endpoint, and I like that. You don't have to have two agents running on the same box."
"The feature that I find most valuable is the MIR (Mandiant Incident Response) for checks on our inbound security."
"Application categorization is the most valuable feature for us. Application filtering is very interesting because other products don't give you full application filtering capabilities."
"Trellix NDR provides an essential defense by automatically responding to network incidents that firewalls may not catch."
"Both for our clients and for ourselves, ROI was almost 200% more than we expected."
"We wanted to cross-reference that activity with the network traffic just to be sure there was no lateral movement. With Trellix, we easily confirmed that there was no lateral network involvement and that nothing else was infected. It helped us correlate the events and feel confident in our containment."
"The most valuable feature is the network security module."
"The product has helped improve our organization by being easy to use and integrate. This saves time, trouble and money."
"It allows us to be more hands off in checking on emails and networking traffic, as we can set up a bunch of different alerts and have it alert us, giving us a better view of our network and our email environment."
 

Cons

"It's a strange situation where the infrastructure of the consumer or customer is behind some kind of firewall and they have always used some kind of customized proxy. In this situation, the ATP has a very tough time to pass the information to the cloud and back. To fix, it requires a more elaborate and complex configuration for that particular case."
"Scalability could be better."
"There are limits with respect to blocking files by hash value or blocking IP addresses, and these limits should be removed."
"One area for improvement could be the pricing model."
"Scalability could be better."
"There are limits with respect to blocking files by hash value or blocking IP addresses, and these limits should be removed."
"The support team that Symantec offers didn't know how to solve issues even though they referred to themselves as "engineers"."
"The support has dropped down to a five out of ten."
"They can maybe consider supporting some compliance standards. When we are configuring rules and policies, it can guide whether they are compliant with a particular compliance authority. In addition, if I have configured some rules that have not been used, it should give a report saying that these rules have not been used in the last three months or six months so that I disable or delete those rules."
"Technical support could be improved."
"It would be a good idea if we could get an option to block based upon the content of an email, or the content of a file attachment."
"If you want to search the hashes in the environment, you need to put in IOCs one by one, making it a very hectic job."
"As far as future inclusions, it would be useful to display more threat intelligence, such as the actual area of the threat and the origin of the web crawling (Tor and Dark Web)."
"The problem with FireEye is that they don't allow VM or sandbox customization. The user doesn't have control of the VMs that are inside the box."
"A better depth of view, being able to see deeper into the management process, is what I'd like to see."
"Cluster option is not available in NX, and for false positives we need some customization configuration available, such as a whitelist."
 

Pricing and Cost Advice

"Pricing is good. It is nice to have a great product at a fair price."
"Symantec Endpoint Protection has an average price."
"The price is quite expensive."
"Symantec Advanced Threat Protection's pricing is comparable."
"The pricing of this solution is inexpensive and affordable."
"FireEye is comparable to other products, such as HX, but seems expensive. It may cause us to look at other products in the market."
"Pricing and licensing are reasonable compared to competitors."
"Because of what the FireEye product does, it has significantly decreased our mean time in being able to identify and detect malicious threats. The company that I work with is a very mature organization, and we have seen the meantime to analysis decrease by at least tenfold."
"The tool is a bit pricey."
"When you purchase FireEye Network Security NX, will need to purchase a megabit per second package. You must know your needs from day one."
"It's an expensive solution."
"Its price is a bit high. A small customer cannot buy it. Its licensing is on a yearly basis."
"When I compare this solution to its competitors in the market, I find that it is a little expensive."
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Marketing Services Firm
11%
Financial Services Firm
10%
University
9%
Construction Company
9%
Financial Services Firm
14%
Comms Service Provider
12%
Manufacturing Company
11%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise3
Large Enterprise13
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise8
Large Enterprise19
 

Questions from the Community

What is your experience regarding pricing and costs for Symantec Advanced Threat Protection?
The price is quite expensive because a different entity has taken over the company.
What needs improvement with Symantec Advanced Threat Protection?
One area for improvement could be the pricing model. Future releases could further enhance integration capabilities with other platforms and simplify the licensing model to compete more with Micros...
What is your primary use case for Symantec Advanced Threat Protection?
Our primary use case for the product is to provide advanced threat protection to our clients, primarily in the banking and financial sectors.
What do you like most about FireEye Network Security?
We wanted to cross-reference that activity with the network traffic just to be sure there was no lateral movement. With Trellix, we easily confirmed that there was no lateral network involvement an...
What is your experience regarding pricing and costs for FireEye Network Security?
My experience with pricing, setup cost, and licensing for Trellix Network Detection and Response is very great.
What needs improvement with FireEye Network Security?
I would like to see in Trellix Network Detection and Response more explanation about some details of the threat, and I wish it had more actions that you can take to contain the host or move it some...
 

Also Known As

No data available
FireEye Network Security, FireEye
 

Overview

 

Sample Customers

ECI
FFRDC, Finansbank, Japan Advanced Institute of Science and Technology, Investis, Kelsey-Seybold Clinic, Bank of Thailand, City of Miramar, Citizens National Bank, D-Wave Systems
Find out what your peers are saying about Symantec Advanced Threat Protection vs. Trellix Network Detection and Response and other solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.