No more typing reviews! Try our Samantha, our new voice AI agent.
Trellix Endpoint Detection and Response (EDR) Logo

Trellix Endpoint Detection and Response (EDR) pros and cons

Vendor: Trellix
3.8 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Trellix Endpoint Detection and Response (EDR) saves time and money while providing peace of mind.
Trellix EDR offers valuable features like guided analytics, isolation, quarantine, and ransomware detection capabilities.
Trellix EDR provides scalability and user-friendliness, making it easy to use and deploy.
Real-time search and investigative capabilities are crucial for comprehensive detection and response with Trellix EDR.
Trellix EDR enhances organizational efficiency, threat detection, and response capabilities, reducing business risk.

CONS

Trellix Endpoint Detection and Response (EDR) consumes a lot of resources, notably CPU and RAM, during operation.
Customer support for Trellix Endpoint Detection and Response (EDR) has been criticized for being slow and lacking sufficient engineers.
There is a lack of integration with external platforms, limiting its usefulness in diverse IT environments.
Trellix Endpoint Detection and Response (EDR) lacks detection capabilities for unknown fileless attacks, requiring improvements.
There is no support for Linux and Mac, limiting its applicability across different operating systems.
 

Trellix Endpoint Detection and Response (EDR) Pros review quotes

Duncan  Kims - PeerSpot reviewer
Business Development Manager at a retailer with 10,001+ employees
Apr 14, 2026
Trellix Endpoint Detection and Response (EDR) has positively impacted my organization with threat exchange and intel, low false positive ratios, and very high uptime values for both inline and spam modes, along with advanced detection and mitigation capabilities ensuring the highest level of protection and proper detection for command and control and bot attacks.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 7, 2026
Trellix Endpoint Detection and Response (EDR) is valuable because we have a Wide Area Network with many sites, and the EDR is cross-site since it is installed and managed from the cloud.
Abubakar Bello - PeerSpot reviewer
Security Administrator at a insurance company with 1,001-5,000 employees
Mar 19, 2026
Trellix Endpoint Detection and Response (EDR) does everything; it saves time, it saves money, and of course, it provides peace of mind.
Learn what your peers think about Trellix Endpoint Detection and Response (EDR). Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,244 professionals have used our research since 2012.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 3, 2025
The product and the services we have are quite good.
RiaanDu Preez - PeerSpot reviewer
Senior Cyber Security Specialist Architect at a outsourcing company with 11-50 employees
Aug 15, 2024
The most useful features are behavior monitoring, DLP, and access control. The automation has gotten much better in the last two years than when it was McAfee. It works better now and integrates more smoothly.
ObaseunAwoyinfa - PeerSpot reviewer
Security Consultant at Trinexia
Jun 5, 2024
It relies on external systems for detection and then asks the endpoint to handle blocking. However, the most crucial feature is its investigative capabilities. With real-time search and other functionalities, it enables comprehensive detection and response.
RR
Head of Data Link at Telecom Egypt
Nov 30, 2023
The product's initial setup phase was very straightforward since you just need to install it, and it works.
Juan Muriel - PeerSpot reviewer
IT Management Specialist at a computer software company with 10,001+ employees
Feb 22, 2024
When Trellix detects some threats, the device is isolated in a quarantine zone for examination.
Hung-LE - PeerSpot reviewer
Group IT Manager at Discova
Nov 9, 2023
Trellix Endpoint Detection and Response (EDR) offers endpoint protection and helps collect information while also allowing users to investigate malicious files in an IT environment...It is a stable solution...It is a scalable solution.
Sampath Acharya - PeerSpot reviewer
Technical Associate at Valuepoint Systems
Sep 6, 2024
The most valuable feature of the solution is its area for threat detection.
 

Trellix Endpoint Detection and Response (EDR) Cons review quotes

Duncan  Kims - PeerSpot reviewer
Business Development Manager at a retailer with 10,001+ employees
Apr 14, 2026
One area where Trellix Endpoint Detection and Response (EDR) can be improved is the lack of device or user mapping.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 7, 2026
The tools are not useful for that.
Abubakar Bello - PeerSpot reviewer
Security Administrator at a insurance company with 1,001-5,000 employees
Mar 19, 2026
Initially, I was using it on servers, but it consumes a lot of resources on servers.
Learn what your peers think about Trellix Endpoint Detection and Response (EDR). Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,244 professionals have used our research since 2012.
CESARCASTRO - PeerSpot reviewer
Committee Of IT Cybersececurity at a energy/utilities company with 51-200 employees
Jan 3, 2025
I need some protection, possibly multi-factor authentication improvements.
RiaanDu Preez - PeerSpot reviewer
Senior Cyber Security Specialist Architect at a outsourcing company with 11-50 employees
Aug 15, 2024
I'd like the tool to become more like an XDR, with one management system and endpoint activation.
ObaseunAwoyinfa - PeerSpot reviewer
Security Consultant at Trinexia
Jun 5, 2024
Trellix needs to focus on gaining traction with partners and building trust among users.
RR
Head of Data Link at Telecom Egypt
Nov 30, 2023
One of the issues about the product stems from the failure to work on its administrative scalability. The aforementioned area can be considered for improvement.
Juan Muriel - PeerSpot reviewer
IT Management Specialist at a computer software company with 10,001+ employees
Feb 22, 2024
The technical support must be improved.
Hung-LE - PeerSpot reviewer
Group IT Manager at Discova
Nov 9, 2023
The solution's downside stems from the fact that Trellix Endpoint Detection and Response (EDR) and McAfee MVISION Endpoint are not combined into a single solution, so from an improvement perspective, they need to be combined into a single solution.
Sampath Acharya - PeerSpot reviewer
Technical Associate at Valuepoint Systems
Sep 6, 2024
When it comes to some unknown fileless attacks, the tool is not able to detect them properly, making it an area where improvements are required.