Try our new research platform with insights from 80,000+ expert users

Trellix DLP vs Zscaler Zero Trust Exchange Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 8, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare One
Sponsored
Ranking in Data Loss Prevention (DLP)
21st
Average Rating
8.8
Reviews Sentiment
6.7
Number of Reviews
22
Ranking in other categories
Email Security (20th), Secure Web Gateways (SWG) (15th), Cloud Access Security Brokers (CASB) (11th), Distributed Denial-of-Service (DDoS) Protection (7th), Software Defined WAN (SD-WAN) Solutions (13th), Access Management (12th), Bot Management (3rd), ZTNA as a Service (8th), ZTNA (3rd), Secure Access Service Edge (SASE) (10th), Remote Browser Isolation (RBI) (3rd)
Trellix DLP
Ranking in Data Loss Prevention (DLP)
8th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
17
Ranking in other categories
No ranking in other categories
Zscaler Zero Trust Exchange...
Ranking in Data Loss Prevention (DLP)
6th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
66
Ranking in other categories
Cloud Access Security Brokers (CASB) (9th), Application Control (6th), ZTNA as a Service (1st), Secure Access Service Edge (SASE) (4th), Remote Browser Isolation (RBI) (1st)
 

Mindshare comparison

As of March 2026, in the Data Loss Prevention (DLP) category, the mindshare of Cloudflare One is 1.7%, up from 1.3% compared to the previous year. The mindshare of Trellix DLP is 3.1%, down from 4.6% compared to the previous year. The mindshare of Zscaler Zero Trust Exchange Platform is 4.4%, down from 6.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Data Loss Prevention (DLP) Mindshare Distribution
ProductMindshare (%)
Zscaler Zero Trust Exchange Platform4.4%
Trellix DLP3.1%
Cloudflare One1.7%
Other90.8%
Data Loss Prevention (DLP)
 

Featured Reviews

CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.
GANESAN K - PeerSpot reviewer
Senior Technical Engineer at Safezone Secure Solutions Private Limited
Distributors highly benefit from advanced data monitoring and seamless integration features
The Machine Learning capability could be improved, particularly in data discovery. When given sensitive data expressions, the system retrieves files that are not always related. The system should adhere strictly to the given expression rather than just focusing on keywords within the expression. In endpoint features, while the detection rate is good, there could be improvements in remediation and rollback solutions during attacks. Other solutions now include such options since providing 100% security is impossible. The flexibility varies across environments. Enterprise customers find the product performs well without affecting their data, with scans running as scheduled. However, SMB customers experience some performance issues during scanning. Since EDR is integrated, users must access the EDR console to check endpoint detections. It would be beneficial if this functionality were incorporated within the EPO console, as the current threat graphs link doesn't display endpoint threat graphs.
Zaheer_Khan - PeerSpot reviewer
Cybersecurity Senior Program Manager at Dayforce
Secure access has improved remote work and has reduced vulnerabilities across our workforce
Zscaler Zero Trust Exchange Platform probably needs to be more efficient because scanning takes a lot of time. Some vulnerabilities create issues, and when we wanted to identify the source of the vulnerabilities, specifically focusing on mobile ID and related areas, it was unable to provide assistance. However, according to discussions with Zscaler Zero Trust Exchange Platform, they said that by the end of mid-2026, they are exploring these features, and probably those features can be incorporated or embedded into this particular system. That is the only major negative point.In terms of responses, Zscaler Zero Trust Exchange Platform is good. In terms of controlling vulnerability, it is good. The only cons I have noticed is that it is a bit slower, and sometimes it is unable to identify the source. These are the key areas for improvement.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It will take the blow rather than our applications should an attack occur."
"Cloudflare DDoS mitigates DDoS attacks."
"I'm very satisfied with the environment and the dashboard."
"Cloudflare DDoS is better than its competitors for its security, deployment, and scalability."
"Clover is the best product globally."
"For Cloudflare Access, I am using the free plan...The most valuable feature is their protection."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
"The solution has different options that can be used to differentiate DDoS attacks."
"Trellix can transfer the data through the cloud. The storage device control is an important feature."
"Preventively blocking any type of data leakage, whether via USB devices, peripheral devices, cloud applications, or through any web application, is what I consider to be the best features that Trellix DLP offers."
"Trellix DLP has an agent that continuously scans the endpoint and sends the data to the portal. From there, it continuously leverages data from its threat intelligence."
"I rate the product an eight out of ten."
"The best thing about Trellix DLP is its unified console that allows us to manage all products from endpoint protection to email protection, DLP, and many more, including SIM."
"It prevents enterprises from installing external software and devices and can block specific network pathways."
"Trellix DLP helps handle false positives, but it depends on your configuration. It is quite overwhelming in terms of its dashboard."
"The most effective aspect of Trellix DLP is that it does what it's supposed to do."
"I like its ease of use. It has a single pane of glass for the ZIA and ZPA pieces. It is very manageable. It is also very easy to deploy for secure access, and it gives half-decent coverage for visibility in terms of what the users use and what data is being proxied through the access gateway."
"The most valuable features of Zscaler Private Access are its ability to integrate with multiple IDPs and application segmentation."
"The scalability of the solution is great."
"The most valuable feature of Zscaler Private Access is we do not have to connect to a VPN, it is seamless. It is more convenient for us because we use one agent to cover the internet and VPN access."
"The product provides a seamless user experience."
"Zscaler Private Access is a platform that eliminates the complexity of VPN configuration."
"The solution offers a simplified network infrastructure and security functions and it enables secure remote access for the users"
"The customer service and support are very good."
 

Cons

"When there are any dynamic changes in complex applications, the tool takes a lot of time, making its analytics-related area a major matter of concern where improvements are needed."
"The onboarding process can be improved a little bit."
"There are premium tier live service and lower tier live service, so we opted for the lower tier. But there is no medium tier where we pay a little extra and get a bit more service. So if that can be improved."
"The tool should provide on-premise versions. Currently, all versions are cloud-based."
"From a logging perspective, it is still a bit difficult to see exactly what users are being blocked with the current views."
"Cloudflare Zero Trust Platform needs to improve its documentation. It took time to do the implementation."
"Operating and tuning the product is difficult."
"The initial onboarding was causing us some confusion."
"Having someone within a region who understands the countries and how they approach data and information security is sometimes where the problem lies."
"Trellix is incompatible with Linux, and its DLP part is incompatible with Mac. Sometimes, it does not work on Windows, either."
"When cases are raised, partners perform initial L1 or L2 troubleshooting. However, ticket resolution times are often too long, with new engineers sometimes requesting the same logs repeatedly."
"The main issue I have currently is with technical support."
"Coverage for Mac OS is lacking as features like clipboard and print protection don't function as expected. The agents often affect endpoint performance negatively and do not behave consistently across all machines."
"I would rate the solution seven out of ten based on my last experience within the last six months. It's a bit of a fallback, and I know they are working on improving scalability."
"It's not very user-friendly for a beginner, so it would be easier if the platform or console were manageable or user-friendly. The dashboard could be simplified."
"The bugs need improvement."
"To enhance their offering, it is advisable for them to focus on strengthening the foundation of their architecture. Additionally, they should consider integrating a broader range of services that go beyond what managed service providers typically offer independently."
"We have issues with the tool's maintenance and networking. It should be able to work in offline mode as well."
"The only issue with Zscaler Cloud DLP is that it only gives you DLP protection from web traffic, which is flowing out, while a full-blown DLP solution such as Forcepoint or Symantec gives you DLP coverage for multiple channels. Zscaler Cloud DLP doesn't give you coverage for email, fax, and USB channels, and this is the only challenge or room for improvement in the solution. It's just an extension on top of what you're buying on the proxy, so it's just an added layer, and it doesn't cover DLP on a very broad level. I'm unsure if Zcaler is in the business of competing with a full-blown DLP solution, and if there's a plan to expand the features of Zscaler Cloud DLP beyond the web channel because you'll have to deploy a full-blown agent for it. I'm unsure if this is on the cards because the solution is just an added layer that you get with your proxy. I've asked the Zcaler team whether there's a plan to go full DLP in the future, but I didn't get a positive response. There isn't any feature I'd like added to Zscaler Cloud DLP currently, because anything you could think of that should be in cloud or SaaS solutions is already there, except for machine learning, as it's the only functionality that seems to be lacking in the solution. Machine learning is an additional policy available in other DLP solutions in the market, but my team didn't find it in Zscaler Cloud DLP."
"There are latency issues with the solution. They are small, however, they are there when you compare it to other vendors."
"It's an expensive solution."
"I can't speak to any missing features."
"Another area of improvement is implementation through non-client connectors. The solution can be implemented in two ways. One uses the back file; the other one uses client connectors. So the client connector is pretty fast, but when it comes to non-client connectors and procedures, it's kind of delayed and slow."
"Zscaler Private Access could improve by improving external access. If external parties want to access locally to my company's services, we need to onboard them into our domain, otherwise, it doesn't work. Additionally, if their company also has Zscaler Private Access, then it doesn't work. They need to log in with our domain ID, not their company ID."
 

Pricing and Cost Advice

"Cloudflare Zero Trust Platform's pricing is good."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"The solution is not that expensive."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"The prices are slightly expensive."
"The solution's pricing lacks transparency."
"The pricing depends on the number of users in a company."
"As per industry leads, Zscaler CASB is an expensive solution."
"It's an affordable solution"
"The product is a bit expensive."
"The pricing is quite high, especially when it comes to the gateway."
"Zscaler Private Access can be an expensive solution, depending on the license type you will purchase."
"The solution has increased prices this year."
"The technical support is good."
"Zscaler DLP solution is expensive, with a fixed pricing structure that is billed annually and monthly. There are no additional costs for licenses."
report
Use our free recommendation engine to learn which Data Loss Prevention (DLP) solutions are best for your needs.
884,933 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
9%
Financial Services Firm
8%
Manufacturing Company
8%
Financial Services Firm
13%
Manufacturing Company
9%
Comms Service Provider
8%
Government
7%
Financial Services Firm
13%
Computer Software Company
10%
Manufacturing Company
10%
Insurance Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise10
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise4
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise12
Large Enterprise42
 

Questions from the Community

What needs improvement with Cloudflare Access?
Cloudflare Access has strong integration with Microsoft, among other platforms. However, when it comes to Kaspersky, ...
What is your primary use case for Cloudflare Access?
Cloudflare Access provides secure access to internal applications for employees, external members of the organization...
What advice do you have for others considering Cloudflare Access?
Cloudflare Access is one of the best integrations available. While about two hundred vendors offer similar services, ...
What do you like most about Trellix?
Trellix can transfer the data through the cloud. The storage device control is an important feature.
What needs improvement with Trellix?
The management aspect is that its management is proprietary. You cannot integrate it with other platforms like a SIEM...
What advice do you have for others considering Trellix?
First, be clear about the scope of your DLP. Be very clear on the list and your inventory of assets to protect, becau...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Zscaler SASE?
The most valuable features of Zscaler Private Access are reliability, scalability, and availability.
What needs improvement with Zscaler SASE?
The solution needs to improve a lot of aspects.
 

Also Known As

Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
No data available
Zscaler SASE, Zscaler DLP, Zscaler CASB, Zscaler CSPM, Zscaler Browser Isolation, Zscaler Posture Control
 

Overview

 

Sample Customers

23andMe
Information Not Available
Siemens, AutoNation, GE, NOV
Find out what your peers are saying about Trellix DLP vs. Zscaler Zero Trust Exchange Platform and other solutions. Updated: March 2026.
884,933 professionals have used our research since 2012.