No more typing reviews! Try our Samantha, our new voice AI agent.
Trellix Network Detection and Response Logo

Trellix Network Detection and Response pros and cons

Vendor: Trellix
4.2 out of 5

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Trellix Network Detection and Response significantly enhances malware protection, defense against zero-day threats, and improves network security.
MVX Engine is highly effective against threats, particularly in handling APTs.
Trellix provides valuable features such as MIR for inbound security checks and application filtering.
Trellix's sandboxing feature offers protection from signature-based and signature-less attacks, ensuring comprehensive network security.
Trellix aids in automatic incident response, seamlessly integrating with security tools like Palo Alto for enhanced organizational benefit.

CONS

There is significant room for improvement in pricing, detection capabilities, and reporting and policy management.
FireEye lacks proper integration with cloud services and advanced machine learning capabilities.
Documentation is limited for customers and needs significant improvement and accessibility.
Trellix Network Detection and Response faces challenges with technical support and integration capabilities with other vendor products.
There is a need for enhanced decryption capabilities and better technical packaging for network threats.
 

Trellix Network Detection and Response Pros review quotes

Jose Vargas - PeerSpot reviewer
Agente De Servicios Técnicos at a computer software company with 11-50 employees
Nov 6, 2025
Trellix Network Detection and Response is a great tool that integrates with a lot of security tools such as Palo Alto, which is a good firewall, and if you have these types of tools, your organization would benefit greatly.
BiswabhanuPanda - PeerSpot reviewer
Senior technical consultant at Hitachi Systems Micro Clinic
Apr 4, 2024
We wanted to cross-reference that activity with the network traffic just to be sure there was no lateral movement. With Trellix, we easily confirmed that there was no lateral network involvement and that nothing else was infected. It helped us correlate the events and feel confident in our containment.
Abdullah Al Hadi - PeerSpot reviewer
Information Security Engineer at Nhq Distribution Ltd
Feb 18, 2025
Trellix NDR provides an essential defense by automatically responding to network incidents that firewalls may not catch.
Learn what your peers think about Trellix Network Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,244 professionals have used our research since 2012.
AS
Information Security Senior Advisor at Eskom Ltd
Feb 22, 2024
Over the thirteen years of using the product, we have not experienced a single compromise in our environment. During the COVID period, we faced numerous DDoS attacks, and the tool proved highly effective in mitigating these threats.
YaserAljohani - PeerSpot reviewer
OT/ICS Information Security Specialist at SANS
Feb 12, 2024
The installation phase was easy.
KV
Senior Manager at a financial services firm with 10,001+ employees
Nov 28, 2022
Support is very helpful and responsive.
reviewer2392089 - PeerSpot reviewer
information security at a insurance company with 201-500 employees
Apr 26, 2024
The most valuable feature of the solution stems from how it allows users to do the investigation part. Another important part of the product that is valuable is associated with how it gives information to users in the form of a storyline.
AmgadYousry - PeerSpot reviewer
Head of Infrastructure at a tech services company with 11-50 employees
Aug 23, 2022
The solution can scale.
Hamada Elewa - PeerSpot reviewer
System Engineer - Security Presales at Raya Integration
Feb 16, 2022
The sandbox feature of FireEye Network Security is very good. The operating system itself has many features and it supports our design.
reviewer1581882 - PeerSpot reviewer
Sr Manager - Information Security & Researcher at a tech services company with 1,001-5,000 employees
Aug 31, 2021
Very functional and good for detecting malicious traffic.
 

Trellix Network Detection and Response Cons review quotes

Jose Vargas - PeerSpot reviewer
Agente De Servicios Técnicos at a computer software company with 11-50 employees
Nov 6, 2025
I would like to see in Trellix Network Detection and Response more explanation about some details of the threat, and I wish it had more actions that you can take to contain the host or move it somewhere else.
BiswabhanuPanda - PeerSpot reviewer
Senior technical consultant at Hitachi Systems Micro Clinic
Apr 4, 2024
The analytics could be better. It seems heavily influenced by the McAfee and FireEye integration, and that integration still isn't seamless.
Abdullah Al Hadi - PeerSpot reviewer
Information Security Engineer at Nhq Distribution Ltd
Feb 18, 2025
The Trellix solution could be improved by enhancing the Central Management Console for faster visibility, which would help in network detection response.
Learn what your peers think about Trellix Network Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,244 professionals have used our research since 2012.
AS
Information Security Senior Advisor at Eskom Ltd
Feb 22, 2024
Certain features in Trellix Network Detection and Response, such as using AL-type commands, may initially pose a challenge for those unfamiliar with such commands. However, once users become accustomed to the system, it becomes easier to use.
YaserAljohani - PeerSpot reviewer
OT/ICS Information Security Specialist at SANS
Feb 12, 2024
The product's integration capabilities are an area of concern where improvements are required.
KV
Senior Manager at a financial services firm with 10,001+ employees
Nov 28, 2022
We'd like the potential for better scaling.
reviewer2392089 - PeerSpot reviewer
information security at a insurance company with 201-500 employees
Apr 26, 2024
If you want to search the hashes in the environment, you need to put in IOCs one by one, making it a very hectic job.
AmgadYousry - PeerSpot reviewer
Head of Infrastructure at a tech services company with 11-50 employees
Aug 23, 2022
It is an expensive solution.
Hamada Elewa - PeerSpot reviewer
System Engineer - Security Presales at Raya Integration
Feb 16, 2022
FireEye Network Security should have better integration with other vendors' firewalls or proxies, such as Palo Alto and Fortinet. Files that are being submitted should happen through the API or automatically.
reviewer1581882 - PeerSpot reviewer
Sr Manager - Information Security & Researcher at a tech services company with 1,001-5,000 employees
Aug 31, 2021
Technical support could be improved.