No more typing reviews! Try our Samantha, our new voice AI agent.

Tanium vs Trend Micro Smart Protection [EOL] comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
112
Ranking in other categories
Endpoint Protection Platform (EPP) (4th), Endpoint Detection and Response (EDR) (6th), Extended Detection and Response (XDR) (4th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (1st)
Tanium
Average Rating
7.8
Reviews Sentiment
6.2
Number of Reviews
22
Ranking in other categories
Server Monitoring (4th), Vulnerability Management (26th), Endpoint Protection Platform (EPP) (17th), Endpoint Detection and Response (EDR) (22nd), Unified Endpoint Management (UEM) (7th)
Trend Micro Smart Protectio...
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
45
Ranking in other categories
No ranking in other categories
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
MA
Division Manager, Information Technology at a legal firm with 51-200 employees
Centralized policies have improved remote endpoint control and have simplified data visibility
The integration is not simple and easy. It requires experienced users or people who have done the implementation. When certain policies are applied, they do not immediately push the policies. For example, we manage endpoint device USB access. We set a policy to block it, but it does not come into effect immediately. Sometimes it takes three or four days for it to reflect. That is a pain point. I have raised this issue with support as well, but they said that I need to limit the number of devices in the policy. In terms of application deployment, for us, it was seamless.
reviewer2759025 - PeerSpot reviewer
Information Technology Service Desk Manager at a tech vendor with 5,001-10,000 employees
Deep traffic inspection has strengthened threat detection and provides smooth zero day protection
I have been dealing with Deep Discovery that inspects incoming and outgoing traffic, and it is used for packet filtering. The most valuable features and functionalities in Deep Discovery are that it is used for monitoring malicious traffic, and it operates down to the firewall and inspects any malicious traffic. I have used Deep Discovery's sandbox analysis feature. The sandboxing feature helps our threat detection efforts as it internally inspects the malicious data and holds it in the sandbox, and after the analysis, the file is quarantined. I evaluate Deep Discovery's real-time visibility on network traffic as a better solution for inspecting traffic. In incident response, Deep Discovery captures zero-day threats easily and provides the best visibility on the console. I assess the effectiveness of Trend Micro's real-time analysis in my defense strategy as good, as it does not disturb any work and operates very smoothly in the background without any utilization.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"My advice for anybody who is considering Cortex XDR is that it is a complete solution, and has very good features."
"There has been a significant reduction of approximately 70% to 80% in our internal MTTR and MTTD metrics, now around five to eight minutes whereas previously it was hours, which has helped tremendously."
"The main benefit of using Cortex XDR by Palo Alto Networks while employing Palo Alto Firewall at the internet edge is that it improves security on our endpoint devices, integrating seamlessly with Palo Alto Firewalls to deliver comprehensive network, analyst, and security details all in a single dashboard, which allows us to manage everything from our network devices."
"Based on my experience, I would recommend Cortex XDR by Palo Alto Networks to other people."
"The level of security I get for my endpoints and servers is extremely valuable."
"We can use Cortex XDR to get the entire graph of the incidents from source to destination, and we can take remedial action."
"Palo Alto is constantly adding new features."
"They have a new GUI which is just fantastic."
"I would say Tanium is the best tool for vulnerability management."
"Tanium's most valuable feature is its instant discovery aspect."
"Tanium has made the process of detecting threats more proactive with its detection. So, the process is easier and more efficient."
"Tanium is used for endpoint management, specifically patching and configuration management."
"For inventory purposes, it's from one of the best things on the scene, as you can get live inventory."
"I find the inventory and compliance features of Tanium to be the most impressive."
"Threat hunting is a very good feature on Tanium. We have just started using it and have not used it extensively."
"I like the fact that you can create patching campaigns depending on the area of your network that you want to address first. I like the ability it has to make several campaigns that work in parallel."
"The configuration is easy."
"The most valuable features of Trend Micro Smart Protection are the email gateway and R & D which have contributed to their additional capability and development."
"Trend Micro Smart Protection has good features like malware analysis, C-to-C connection and detection, workbench, auto security play with features, and lots of DDI features."
"Here in Egypt, we like the technical support, and they have a very good reputation."
"The most valuable features are the behavior monitoring, behavior analysis, and web reputation service."
"Integrates easily with almost every third-party product"
"I like Trend Micro Smart Protection because it offers strong, all-around cybersecurity, is better than many others out there, and helps with vulnerability and patch management, making it easier to provide top-notch services to our customers."
"Trend Micro is easy to use and it has good security features."
 

Cons

"Currently, we are monitoring all USB drives and ports but we would like to improve our device control capabilities."
"The solution lags to the real-time scenarios here and there."
"The solution should offer more dashboards and they should be better customized."
"When it comes to core analysis, and security analysis, Cortex needs to provide more information."
"The MAC agent is not as robust feature-wise as the PC version."
"There are some false positives. What our guys would have liked is that it would have been easier to manipulate as soon as they found a false positive that they knew was a false positive. How to do so was not obvious. Some people complained about it. The interface, the ESM, is not user-friendly."
"There is a severe gap in functionality between Windows, Linux, and Mac versions. For example all folder restriction settings are Windows only. Traps 5.0+ does not have SAML / LDAP integration."
"They've been having some issues with updating their endpoint agents, and it has been quite frustrating."
"There are some bugs in the product. The tool needs to improve in the area of reporting."
"The performance could improve in future releases. We have had performance issues in specialized web environments, but overall I think the problems are less than 2% of the computer systems being used."
"Tanium's limitations should be improved because although it is a great tool, it is limited to only a few classes during a session."
"We set a policy to block USB access. The moment a device is being set up on the network, I apply the policy, but it does not come into effect immediately."
"Most of the time, agent-relative issues have to be more equipped with self-healing features. At times, the agent is there, but for some reason, it doesn't report a status. It gives certain problems that are obviously agent-based."
"The solution can give a lot of false positives."
"There are downsides and drawbacks in Tanium, and there is room for improvement from my perspective."
"The problem or challenge is a pre-sales and go-to strategy for the SMB market delivered through a channel or model. It's very convoluted and vague, which leads to some confusion about the various types of modules, and the device-to-seat cost is extremely difficult to calculate."
"Trend Micro Smart Protection could improve the false positive with some integrations with other solutions and automated reporting. The reports should allow the user to set up some customer trigger alerts instead of the user having to look at the report manually. Additionally, the responses from sender detection and response feature could improve."
"The solution's device control options are not too beneficial."
"I cannot recall noticing any missing features."
"Recently our end users are feeling that their system resources are too occupied and slowed because of the Trend Micro agent - that the agent is doing lots and lots of background activities which include that Application Control, Advanced Threat Protection. We raised the complaint with them and are waiting for their technical support. The support could be faster for all the Trend Micro solutions."
"Trend Micro support needs more enhancement."
"The price of the solution could be improved."
"Nowadays, it is not possible to rely only on an anti-virus solution. This product would be improved if it had more monitoring capabilities so that it could stop threats before they break into the network and damage it."
"In the next release, I would like to see a combination of the different features from Apex One and OfficeScan in Trend Micro Smart, rather than as upgraded features."
 

Pricing and Cost Advice

"It's the most expensive solution, but features-wise, it's quite strong. It's very good for protection, so the results are very good in the case of protection. I would rate it a two out of ten in terms of pricing."
"The pricing is a little high. It is per user per year."
"The pricing is a little bit on the expensive side."
"This is an expensive solution."
"I don't like that they have different types of licenses."
"Cortex XDR's pricing is ok."
"Its pricing is kind of in line with its competitors and everybody else out there."
"Every customer has to pay for a license because it doesn't work with what you get from a managed services provider."
"It's an expensive solution. It would be nice if the cost were lower."
"Tanium is a more expensive solution in Latin America than some of the competitors, such as BigFix."
"The solution is expensive but it's a good investment."
"It is higher than some competitors in the market."
"The product's pricing differs from region to region depending on negotiations and the number of endpoints."
"There is an annual license required to use this solution."
"The solution offers value for money."
"Instead of going for monthly or yearly licensing models, it is better to go ahead with three-year or five-year licensing models as it can be cheaper."
"In terms of licensing cost, it falls within the average range compared to competitors, almost 7 out of 10."
"The price of Trend Micro Smart Protection is reasonable."
"In terms of pricing, in comparison to products like Kaspersky, Trend Micro's price might appear higher. However, this elevated cost can be rationalized due to the extensive features and detection engines that Trend Micro provides. The price may be a challenge for countries with economic conditions like Sri Lanka. If there was reasonable pricing for Sri Lanka, it would be a plus point."
"The tool's licensing costs are yearly."
"The price of the solution should be less expensive."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing a five out of ten."
"The product is not very expensive."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
9%
Financial Services Firm
14%
Government
10%
Manufacturing Company
9%
Healthcare Company
7%
Financial Services Firm
10%
Construction Company
9%
Manufacturing Company
9%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business46
Midsize Enterprise20
Large Enterprise52
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise3
Large Enterprise12
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise16
Large Enterprise17
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What needs improvement with Tanium?
While there is always room for improvement, I am pleased with Tanium.
What is your primary use case for Tanium?
The primary use case for Tanium ( /products/tanium-reviews ) is compliance, patching, and inventory as part of the co...
What advice do you have for others considering Tanium?
For smaller companies, Tanium is quite a big investment, and one needs to have a considerable setup to make it econom...
What is your experience regarding pricing and costs for Trend Micro Smart Protection?
I find that Trend Micro Smart Protection is affordable; I don't think it can be quite expensive.
What needs improvement with Trend Micro Smart Protection?
Trend Micro Smart Protection has been discontinued because it uses Linux CentOS OS, so currently we are using the ser...
What is your primary use case for Trend Micro Smart Protection?
We are using Deep Discovery Inspector in our banking environment, DDI. Many banking clients are using DDI, so it is w...
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Tanium Inc Cloud, Tanium XEM
Trend Micro Smart Protection Complete
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
JPMorgan Chase, eBay, Amazon, US Bank, MetLife, pwc, Cerner, Delphi, MGM Grand, New York Life
Atma Jaya Catholic University of Indonesia, Blekinge County Council, Bulgarian American Credit Bank, Cancer Research UK, Delacour, Evalueserve, Gulftainer, Hiroshima Red Cross Hospital & Atomic-bomb Survivors Hospital, Mazda Motor Logistics Europe, MEDHOST, Nikigolf, Ochsner Health System, SIAX Computing Solutions, Tegen
Find out what your peers are saying about CrowdStrike, Microsoft, SentinelOne and others in Endpoint Protection Platform (EPP). Updated: June 2026.
900,644 professionals have used our research since 2012.