The disadvantages of Trellix Cloud Workload Security include some global aspects where minor improvements could be done. When doing pairwise comparisons between products on the same topic, such as posture management and how it is managed in Palo Alto, Check Point, Symantec, and Trellix, certain gaps emerge. One key limitation is that Trellix Cloud Workload Security will not provide support for China and Russia based cloud vendors. If a customer is an enterprise or global enterprise customer, this product cannot be suggested because the company does not deal with China's cloud providers. China has very good cloud options such as Alibaba Cloud and Tencent, and Trellix Cloud Workload Security does not support these platforms. Another limitation is related to CNAPP capabilities. In comparison with other CNAPP vendors, Trellix Cloud Workload Security has some drawbacks. The product does not provide full-fledged CNAPP like others do. It provides only top-level or top-layer information and lacks in-depth CNAPP capabilities, which is a key limitation. Regarding SIEM functionality, Trellix Cloud Workload Security has a native SIEM component, but it appears to be using a third-party SIEM functionality. The company is not providing their own SIEM tools but rather receiving a third-party tool and managing it. This is a disadvantage because the integration will not be as perfect as it would be with a native solution. The SIEM tool integration presents a problem. Pricing is another significant disadvantage, especially for small and medium-sized enterprises. SMEs will likely not choose Trellix Cloud Workload Security because it is very expensive. The product is not prominent in the Gartner market share rankings, and the numbers are very small. Trellix Cloud Workload Security is not competing with market leaders such as SentinelOne, which has a 5% market share. The company claims CWPP, which stands for Cloud Workload Platform Protection, but the market share is very small. The reason market share is less is because service-oriented companies with service-oriented mindsets look at who is providing the best services. They consult Gartner reports or Forrester reports, and if Trellix Cloud Workload Security is not present in those reports, they may not suggest this product to customers. Additionally, the product is expensive for SMEs, although enterprise customers can afford it. The minimum 25 user bundle requirement means licensing is sold in basic tiers of 25 users at a time.
Trellix Cloud Workload Security is working well in our environment, and we have not faced any lack of features; there is no requirement for changes as of now. If I could suggest improvements for Trellix Cloud Workload Security, I would say that the reporting could be more customizable so that more detailed documentation could be available.
I think Trellix Cloud Workload Security could improve by simplifying the initial deployment, as the initial setup requires an expert level of knowledge to deploy it.
Trellix Cloud Workload Security needs improvement to be more lightweight, as it consumes more RAM resources, so we need a lighter version of that security. Regarding needed improvements for Trellix Cloud Workload Security, there is a complexity in the configuration of policies compared to other OEMs where configuration is simpler. Here, it is module-wise, which requires configuring separate segments such as threat protection, data protection, firewall, device control, and application control.
When it comes to areas for improvement, there is a need, as per a comparison with Trend Micro, to provide a SIEM solution in Trellix Cloud Workload Security. Currently, there is no SIEM solution feature, and an integrated SIEM solution would be beneficial.
Learn what your peers think about Trellix Cloud Workload Security. Get advice and tips from experienced pros sharing their opinions. Updated: July 2026.
Cloud Security Lead at a security firm with 1-10 employees
Consultant
Oct 19, 2020
Its vulnerability assessment is not the best. We cannot identify the vulnerabilities that are related to the operating system by using McAfee Cloud Workload Security. I wish McAfee would add a vulnerability assessment tool that will not only identify the vulnerability but will also be able to generate a report so that the required patching can be done for the servers. Currently, McAfee Cloud Workload Security only integrates with AWS and Azure. If it can also integrate with GCP, Alibaba, and other cloud services available in the market, it would be good because not all people are using Azure and AWS.
Trellix Cloud Workload Security offers an advanced scalable and adaptable platform designed to secure cloud environments. It addresses cybersecurity challenges while providing seamless integration and robust protection for cloud-based applications and infrastructure.Designed for organizations requiring efficient cloud security, Trellix Cloud Workload Security integrates advanced threat detection and protection mechanisms to ensure continuous monitoring and instant threat responses. It...
The disadvantages of Trellix Cloud Workload Security include some global aspects where minor improvements could be done. When doing pairwise comparisons between products on the same topic, such as posture management and how it is managed in Palo Alto, Check Point, Symantec, and Trellix, certain gaps emerge. One key limitation is that Trellix Cloud Workload Security will not provide support for China and Russia based cloud vendors. If a customer is an enterprise or global enterprise customer, this product cannot be suggested because the company does not deal with China's cloud providers. China has very good cloud options such as Alibaba Cloud and Tencent, and Trellix Cloud Workload Security does not support these platforms. Another limitation is related to CNAPP capabilities. In comparison with other CNAPP vendors, Trellix Cloud Workload Security has some drawbacks. The product does not provide full-fledged CNAPP like others do. It provides only top-level or top-layer information and lacks in-depth CNAPP capabilities, which is a key limitation. Regarding SIEM functionality, Trellix Cloud Workload Security has a native SIEM component, but it appears to be using a third-party SIEM functionality. The company is not providing their own SIEM tools but rather receiving a third-party tool and managing it. This is a disadvantage because the integration will not be as perfect as it would be with a native solution. The SIEM tool integration presents a problem. Pricing is another significant disadvantage, especially for small and medium-sized enterprises. SMEs will likely not choose Trellix Cloud Workload Security because it is very expensive. The product is not prominent in the Gartner market share rankings, and the numbers are very small. Trellix Cloud Workload Security is not competing with market leaders such as SentinelOne, which has a 5% market share. The company claims CWPP, which stands for Cloud Workload Platform Protection, but the market share is very small. The reason market share is less is because service-oriented companies with service-oriented mindsets look at who is providing the best services. They consult Gartner reports or Forrester reports, and if Trellix Cloud Workload Security is not present in those reports, they may not suggest this product to customers. Additionally, the product is expensive for SMEs, although enterprise customers can afford it. The minimum 25 user bundle requirement means licensing is sold in basic tiers of 25 users at a time.
Trellix Cloud Workload Security is working well in our environment, and we have not faced any lack of features; there is no requirement for changes as of now. If I could suggest improvements for Trellix Cloud Workload Security, I would say that the reporting could be more customizable so that more detailed documentation could be available.
I think Trellix Cloud Workload Security could improve by simplifying the initial deployment, as the initial setup requires an expert level of knowledge to deploy it.
Trellix Cloud Workload Security needs improvement to be more lightweight, as it consumes more RAM resources, so we need a lighter version of that security. Regarding needed improvements for Trellix Cloud Workload Security, there is a complexity in the configuration of policies compared to other OEMs where configuration is simpler. Here, it is module-wise, which requires configuring separate segments such as threat protection, data protection, firewall, device control, and application control.
When it comes to areas for improvement, there is a need, as per a comparison with Trend Micro, to provide a SIEM solution in Trellix Cloud Workload Security. Currently, there is no SIEM solution feature, and an integrated SIEM solution would be beneficial.
There is room for improvement in the pricing model. The price could be a bit lower.
Its vulnerability assessment is not the best. We cannot identify the vulnerabilities that are related to the operating system by using McAfee Cloud Workload Security. I wish McAfee would add a vulnerability assessment tool that will not only identify the vulnerability but will also be able to generate a report so that the required patching can be done for the servers. Currently, McAfee Cloud Workload Security only integrates with AWS and Azure. If it can also integrate with GCP, Alibaba, and other cloud services available in the market, it would be good because not all people are using Azure and AWS.