Listing Thumbnail

    TrendAI™ Enterprise Security Solutions

     Info
    Sold by: Trend Micro 
    Deployed on AWS
    Enterprise security solutions powered by TrendAI™ (a business unit of Trend Micro) to help protect users, data, and workloads. Contact us today to tailor a solution for your needs!
    4.3

    Overview

    Play video

    TrendAI™, a business unit of Trend Micro and a global AI security leader, makes the world safer for digital information exchange across enterprises, governments, and organizations. Powered by security expertise and innovation, TrendAI™ leverages artificial intelligence to protect over 500,000 enterprises and millions of individuals across AI, cloud, networks, endpoints, and devices. AI Fearlessly.

    TrendAI™ delivers adaptable enterprise security designed to enhance visibility, strengthen protection, and streamline response across complex environments. With deep threat intelligence and AI-driven analytics, TrendAI™ helps organizations reduce risk and confidently defend their digital operations.

    Looking for advanced detection and response capabilities across workloads, identities, endpoints, networks, and more? Check out TrendAI Vision One™, which also offers a flexible pay-as-you-go option.

    If you'd like support exploring the right security approach for your organization, please contact us at aws.marketplace@trendmicro.com .

    Highlights

    • Enterprise security solutions- including managed XDR. See more, respond faster.
    • Increase risk visibility while decreasing response times.
    • Greater Security Team Efficiency: one platform to respond faster with less resources and one source of truth

    Details

    Categories

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    TrendAI™ Enterprise Security Solutions

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    1-month contract (1)

     Info
    Dimension
    Description
    Cost/month
    Enterprise Solution
    Custom Security solutions - contact for more info and pricing
    $10,000.00

    AI Insights

     Info

    Dimensions summary

    This listing offers a single pricing option: a custom Enterprise Solution priced in units. Rather than fixed tiers or instance sizes, you work with the vendor to scope a security solution for your needs. Pricing is set through a contract and depends on what you configure, so you contact the vendor for details and a quote. The solution covers cloud security for your AWS environment, including workload, container, and file protection. Because pricing is tailored, there is no published per-unit rate to compare here.

    Top-of-mind questions for buyers

    A unit is not a fixed item like a server or user. This is a custom solution scoped with the vendor. The number of units depends on what you configure for your environment. Because the solution is tailored, you contact the vendor to learn how units map to your specific setup and quote.
    The solution secures your AWS environment across several areas. You get server and cloud workload protection, container security with image scanning and runtime protection, and file scanning for cloud objects in applications. It also centralizes visibility across multiple AWS accounts and helps detect misconfigurations against compliance frameworks.
    This is a contract-based pricing model, not usage metering. You do not pay per hour of running time. Instead, you agree on a scoped solution and quantity of units through a contract with the vendor. Because pricing is custom, you contact the vendor to define scope and terms.
    trendmicro.com
    Helpful?

    Vendor refund policy

    Refunds are not available at this time.

    Custom pricing options

    Request a private offer to receive a custom quote.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    Your purchase also includes 24x7 support from Trend Micro. If you experience any issues or have questions, please contact our AWS Cloud Security experts by email at aws.marketplace@trendmicro.com . aws.marketplace@trendmicro.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Security
    Top
    10
    In Managed Services
    Top
    10
    In Education & Research

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    4 reviews
    Insufficient data
    Insufficient data
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Extended Detection and Response
    Managed XDR capabilities for detecting and responding to threats across multiple security domains
    AI-Driven Threat Analytics
    Artificial intelligence-powered analytics for threat detection and analysis across enterprise environments
    Unified Security Platform
    Centralized platform providing single source of truth for security operations across workloads, identities, endpoints, and networks
    Threat Intelligence Integration
    Deep threat intelligence capabilities integrated into security operations for enhanced threat context and decision-making
    Multi-Domain Protection
    Security coverage spanning AI, cloud, networks, endpoints, and devices within complex enterprise environments
    Extended Detection and Response (XDR) Technology
    XDR technology with full coverage across endpoints, network, users, and cloud environments powered by proprietary Threat Intelligence and Detection Engine
    Unlimited Data Ingestion and Retention
    Unlimited data ingestion capability with 13 months of data storage for comprehensive investigation and threat visibility
    24/7 Threat Hunting and Incident Response
    Round-the-clock monitoring, triage, investigation, threat hunting, and incident response services delivered by security experts
    Vulnerability and Exposure Management
    Integrated vulnerability management and exposure management capabilities to identify and prioritize risks for remediation
    Digital Forensics and Investigation
    Unlimited end-to-end digital forensics and incident response capabilities regardless of investigation complexity or duration
    Endpoint Detection and Response
    Sophisticated EDR capabilities enabling detection, investigation, and response to multi-stage threats across all key attack vectors
    Extended Detection and Response
    Unified XDR platform detecting and responding to multi-stage threats across network, cloud, endpoint, identity, and email data sources
    Managed Detection and Response
    24/7 ransomware and breach prevention services delivered as a managed service with breach warranty and integration capabilities
    Threat Prevention Technology
    Prevention-first approach using sophisticated technologies to block a broad range of attacks across multiple vectors
    Security Posture Management
    Deployment capabilities with default-enabled strong protection and drift identification for security posture assessment

    Contract

     Info
    Standard contract
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.3
    120 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    59%
    37%
    3%
    0%
    1%
    25 AWS reviews
    |
    95 external reviews
    External reviews are from G2  and PeerSpot .
    Vivekkumar Jaiswal

    Centralized detection has reduced false positives and improves ransomware and email threat response

    Reviewed on Aug 17, 2026
    Review provided by PeerSpot

    What is our primary use case?

    A common use case for TrendAI Vision One is ransomware detection and response, and we also use it for business email compromise. Our SOC team uses it for advanced threat hunting and insider threat detections.

    Recently, my team used TrendAI Vision One for ransomware detection and response when a user executed a malicious attachment, leading to the detection of suspicious process executions. TrendAI Vision One helps us by correlating emails with endpoints, identifying host details, network activity, user device activity, and infected sources, allowing for quick resolution of threats in the organization.

    We have also been using TrendAI Vision One for identifying suspicious or compromised emails and insider threat detections, which aids us in quickly identifying and investigating malicious emails.

    What is most valuable?

    TrendAI Vision One offers excellent extended detection and response capabilities through EDR and XDR solutions, as it is a complete package for organizational threat protection across email, endpoints, cloud networks, servers, and data centers. It helps us quickly identify attacks and provides deep insights into attacker movements as well as a centralized investigation workbench from a single dashboard.

    Having everything in one dashboard allows our SOC team to quickly identify details across the network or organization level, such as the number of created tickets, false positives, true positives, actions taken, SLAs, threat metrics, and attack path details. It reduces alert fatigue for SOC analysts by providing a consolidated view of all details across the organization.

    TrendAI Vision One has positively impacted our organization by identifying real-time threats and proactively isolating threats while alerting the SOC team for further investigations and remediation actions.

    Since implementing TrendAI Vision One, it has reduced noise from false positive alerts by 80% and enabled the SOC team to focus on true positives, thus improving incident response and operational efficiency. TrendAI Vision One is highly reliable; it provides centralized visibility across protection layers and is stable and scalable, making it a suitable solution for organizations looking for thorough threat detection and response capabilities.

    What needs improvement?

    I believe that if the reporting features of TrendAI Vision One could be improved, it would help SOC analysts retrieve comprehensive reports detailing true positive incidents, top email threats, quarantined emails, and common malware, enhancing our analytics capabilities.

    The TrendAI Vision One support system is not very good. They charge extra for premium support, while basic support does not adequately assist with investigations and troubleshooting. Improvements in this area are needed, and there should also be enhancements in third-party integrations to reduce alert noise and false positives.

    TrendAI Vision One's governance and security capabilities are excellent, and while the security is always very good, they can still improve on compliance and regulations.

    If they fix automated root cause analysis reports and AI-generated incident summaries, it can enhance capabilities further and reduce investigation times.

    For how long have I used the solution?

    I have been using TrendAI Vision One for more than two years.

    What do I think about the stability of the solution?

    TrendAI Vision One is stable.

    What do I think about the scalability of the solution?

    TrendAI Vision One is highly scalable as per our requirements, as user licenses can be improved if we have a greater number of users.

    How are customer service and support?

    The customer support is not very good, and they need to improve their premium license support.

    Which solution did I use previously and why did I switch?

    Previously we were using a different endpoint solution due to setup cost and support issues, so we switched to TrendAI Vision One for better SOC capabilities for threat detection.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup cost, and licensing was very good. The top leadership is engaged in identifying pricing and licensing features, although licensing renewal is challenging and the setup cost can be high, but it remains manageable for quality solutions.

    Which other solutions did I evaluate?

    We evaluated other options such as FireEye Helix, Symantec, and Microsoft Sentinel during our assessment process.

    What other advice do I have?

    My advice to others looking into using TrendAI Vision One is to definitely proceed with this solution as it is a complete package for SOC teams regarding threat identification and remediation, although there is room for improvement in support. This review has a rating of 9.

    Niranjan Prajapati

    Integrated security platform has strengthened threat detection and improved risk prioritization

    Reviewed on Aug 13, 2026
    Review provided by PeerSpot

    What is our primary use case?

    In terms of the VDR, we are doing the Sophos entire solutions. We are doing the firewall, as well as endpoint, as well as email security.

    When it comes to SophosLabs Intelix or Sophos Cloud Optix, basically, we are working with Sophos XDR and MDR right now.

    As a partner, we have so many clients who are serving the Extended Detection and Response, and some users are just selling the Sophos Managed Detection and Response services. Basically, it's XDR, it's a tool, and MDR is managed by the Sophos security team 24/7. So, we are selling the Sophos MDR.

    On the firewall side, we are doing the Sophos firewall, SonicWall firewall, and FortiGate.

    We are dealing with Trend Micro for EDR and XDR.

    We have been doing this product for the last 10 years, actually. Ten plus years we have been doing this product—Sophos entire solution and Trend Micro entire solution. Trend Micro has so many products, including anti-APT and IDS, IPS device.

    For TrendAI Vision One, I have many corporate users who are using it for their servers' security, as well as the IDS, IPS device and TippingPoint, SMS gateway, and so on.

    TrendAI Vision One has core features, such as endpoint, email, identity, servers, cloud workloads, and networks. When we talk about endpoint security, it includes anti-malware, anti-ransomware, behavioral analysis, exploit protections, device control, application control, post firewall, and EDR capabilities for the threat investigation and response. These are the TrendAI Vision One features.

    Regarding TrendAI CReM capabilities, the threat hunting includes searching across telemetry data, IOC sweeping, root cause analysis, and advanced investigation tools. When we talk about the CReM features, they provide visibility into endpoints, server, cloud workloads, and identities. They help to identify unknown or exposed assets in the environment, then asset discovery, vulnerability management, and attack surface management.

    My impressions of TrendAI Vision One include risk prioritization analysis, security posture, and assessment. Right now, I am working with Sophos in Sophos XDR.

    I just appreciate the Sophos server protection and its lockdown features. When I whitelisted some applications, other executable files or any files do not run in the environment. I compare Sophos EDR with Sophos XDR, Endpoint Detection and Response, and Extended Detection and Response. When we're going with Sophos XDR, they have email, identity, firewall, cloud, and any third-party integrations.

    I am focusing on the Sophos product, but as per the client requirement, I recommend Sophos because the clients are using a parameter gateway with a Sophos firewall. I pitch Sophos because they enable Heartbeat security, so the firewall and endpoint communicate effectively. It's a good bundle when combining Sophos firewall with Sophos endpoint.

    Some users using Sophos require on-premises solutions and do not move to the cloud. So many reasons exist for this, which is why we pitch server solutions. Trend Micro server protection is a really good product, but my query always relates to support; I cannot get immediate support from Trend Micro.

    What is most valuable?

    For TrendAI Vision One, I have many corporate users who are using it for their servers' security, as well as the IDS, IPS device and TippingPoint, SMS gateway, and so on.

    TrendAI Vision One has core features, such as endpoint, email, identity, servers, cloud workloads, and networks. When we talk about endpoint security, it includes anti-malware, anti-ransomware, behavioral analysis, exploit protections, device control, application control, post firewall, and EDR capabilities for the threat investigation and response. These are the TrendAI Vision One features.

    Regarding TrendAI CReM capabilities, the threat hunting includes searching across telemetry data, IOC sweeping, root cause analysis, and advanced investigation tools. When we talk about the CReM features, they provide visibility into endpoints, server, cloud workloads, and identities. They help to identify unknown or exposed assets in the environment, then asset discovery, vulnerability management, and attack surface management.

    I appreciate the Sophos server protection and its lockdown features. When I whitelisted some applications, other executable files or any files do not run in the environment. I compare Sophos EDR with Sophos XDR, Endpoint Detection and Response, and Extended Detection and Response. When we're going with Sophos XDR, they have email, identity, firewall, cloud, and any third-party integrations.

    I am focusing on the Sophos product, but as per the client requirement, I recommend Sophos because the clients are using a parameter gateway with a Sophos firewall. I pitch Sophos because they enable Heartbeat security, so the firewall and endpoint communicate effectively. It's a good bundle when combining Sophos firewall with Sophos endpoint.

    What needs improvement?

    From my perspective, the only disadvantage in TrendAI Vision One is the support size.

    The support takes too much time. When I email, I have to collect logs and submit them to the engineer, then wait for their reply. It takes too much time. The product is really good, but the support is not good in my perspective since it takes too long to receive help, especially when all the devices are in production.

    The price is high when compared to the features. After installing the product, support is always required. Whenever we deploy any product, we need support, especially if an issue arises, support is a must.

    We face lots of challenges, but the product itself is good. The main issues arise from support.

    Some users using Sophos require on-premises solutions and do not move to the cloud. So many reasons exist for this, which is why we pitch server solutions. Trend Micro server protection is a really good product, but my query always relates to support; I cannot get immediate support from Trend Micro.

    Trend Micro is a really good product, but I face challenges when not getting proper support; hence I feel helpless at times. The product itself is really good; I have no doubts about that.

    For how long have I used the solution?

    We have been doing this product for the last 10 years. Ten plus years we have been doing this product—Sophos entire solution and Trend Micro entire solution.

    How are customer service and support?

    The support takes too much time. When I email, I have to collect logs and submit them to the engineer, then wait for their reply. It takes too much time. The product is really good, but the support is not good in my perspective since it takes too long to receive help, especially when all the devices are in production.

    From my perspective, the only disadvantage in TrendAI Vision One is the support size. Sophos support is really good, but when I require immediate support from Trend Micro, it is a challenge.

    How was the initial setup?

    TrendAI Vision One is easy; deployment is not a problem.

    What other advice do I have?

    We are dealing with Trend Micro for EDR and XDR.

    My impressions of TrendAI Vision One include risk prioritization analysis, security posture, and assessment. Right now, I am working with Sophos in Sophos XDR.

    When we talk about the CReM features, they provide visibility into endpoints.

    I would rate Trend Micro support a six to seven, possibly seven to eight.

    The interface and everything are good; my only query is on the support, which is not good from my perspective.

    Some limited corporate users and some government users choose Trend Micro instead of Sophos.

    Trend Micro is a really good product, but I face challenges when not getting proper support; hence I feel helpless at times. The product itself is really good; I have no doubts about that.

    I would rate this review an eight overall.

    Alex-Chen

    XDR dashboard has unified threat response and has reduced false-positive noise across endpoints

    Reviewed on Jul 31, 2026
    Review from a verified AWS customer

    What is our primary use case?

    TrendAI Vision One, the XDR platform, includes endpoint protection, EDR, mail protection as a mail gateway, mail access, and access integration with API for Office 365 and Google Workspace. The endpoint protection and mail protection features work seamlessly, and integration with cloud solutions is very simple.

    The solution provides endpoint protection, identity protection, mail protection, and XDR workbench solution with automatic playbooks all in one dashboard. TrendAI Vision One has been a historic solution from my previous work, which is the reason I chose it. It is one piece of the solution focused on XDR with an EDR agent and sensor agent. Sensor agents provide information about the endpoint, which demonstrates how critical this coverage is for my company network.

    What is most valuable?

    The product is very helpful for responding to threats and helps reduce time to detect and time to respond to threats significantly. It helps reduce noise from false positives, although you need to work with the system continuously to manage exclusions and manage the suspicion object list. There are false positives in mail, but under these managed conditions, the noise is reduced by approximately forty percent of the time.

    Even though it is expensive, it helps consolidate the use of security vendors and reduce silos. TrendAI Vision One provides one dashboard that can be used for many things, and it is also a network monitoring solution.

    What needs improvement?

    The agent for endpoints is very large and not easy to install, which is a significant disadvantage of the product. It is not one agent; you need to install two agents, and sometimes you have connectivity problems when installing and connecting to the XDR server, which presents a challenge during the installation process.

    TrendAI Vision One is not a cheap system and is very expensive when considering value for money and return on investment. It is possible to track any ROI with TrendAI Vision One. The two main problems are that the endpoint agent is very large and the price is very expensive. Apart from these problems, everything else functions well.

    For how long have I used the solution?

    I started using TrendAI Vision One five or six years ago.

    What do I think about the stability of the solution?

    I would rate the stability of the product as seven out of ten, where ten points represents very stable. I think the agent is very heavy, which is why I rate it seven.

    What do I think about the scalability of the solution?

    TrendAI Vision One is not optimized for scalability, where ten points represents very easy to scale up, and this is not my use case. I never had a chance to scale it.

    How are customer service and support?

    I am very happy with the customer support and customer service from TrendAI. I work closely with the Israel team, and it is very helpful. I would rate support as ten out of ten points.

    Which solution did I use previously and why did I switch?

    I have not worked closely with any similar products to TrendAI Vision One. I have the most experience with TrendAI, and with other products, not as much.

    What was our ROI?

    TrendAI Vision One is not a cheap system and is very expensive when considering value for money and return on investment. It is possible to track any ROI with TrendAI Vision One.

    What other advice do I have?

    TrendAI Vision One is an established solution and not new. The TrendAI Vision One XDR solution has a new name, but I continue to work with it. I have not been using the Cyber Risk Exposure Management, CREM capability.

    AWS and GCP are the cloud providers I am using. I did not purchase any TrendAI products from the AWS marketplace. I was working with TrendAI Vision One sensors.

    I do not know how much risk was reduced by switching to TrendAI Vision One platform. I know they have an AI model, but I do not use it currently because I do not need it.

    My overall review rating for this product is eight out of ten.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Igor Levicnik

    Centralized visibility and AI-driven threat correlation have improved daily incident response

    Reviewed on Jul 30, 2026
    Review provided by PeerSpot

    What is our primary use case?

    I use TrendAI Vision One for endpoint devices mostly, including antivirus, EDR, and XDR capabilities.

    TrendAI Vision One solved a problem for me when there is a vulnerability in some endpoint device. I use it for email security as well, as it stops phishing attacks and similar threats.

    Regarding my main use case for TrendAI Vision One, brand incident response serves as a central platform for day-to-day security operations.

    What is most valuable?

    I find particularly valuable features include centralized visibility, attack correlation, automated response, and reporting.

    I mostly rely on endpoint vendors because they are the most valuable for me and help clients protect their environments. Incident correlation and XDR investigation, along with centralized security visibility, are also great. Threat intelligence and risk analysis are important features as well.

    The network device functionality seems very interesting to me, as it allows me to see all the traffic in the environment. I must test it to understand how it works.

    On the endpoint devices, I see the benefits because they are the only antivirus that stopped crypto-virus on my environment. I trust this solution fully. I think it offers faster threat detection and response than other platforms, and I have more efficient incident investigation as a result.

    TrendAI Vision One provides a strong approach to governance and security by focusing on control, the use of AI, data protection, and responsible threat analysis. The AI capabilities help security teams analyze large amounts of security data. Overall, I think it is a solid solution.

    What needs improvement?

    The credits system is a little bit confusing to use. Licensing and feature management could be improved.

    There are too many things in the console, and I wish it would be more streamlined. I want a more intuitive and user-friendly console.

    I think the console could be more user-friendly and the credits system is confusing. Overall, I think it is great and has great transparency, but more customization options would be beneficial.

    For how long have I used the solution?

    I have been working with Trend Micro for about ten years.

    How are customer service and support?

    I purchased TrendAI Vision One with a partner called Exclusive Networks.

    What about the implementation team?

    The implementation partner is just the seller to me for licenses.

    What other advice do I have?

    I have been working with TrendAI Vision One for about two years. Before this, I was working with Worry-Free Business Security Services. My overall review rating for TrendAI Vision One is eight out of ten.

    reviewer2879538

    Focused host investigations have become faster and triage now cuts threat response time in half

    Reviewed on Jul 24, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for TrendAI Vision One is that I mostly rely on the Workbench section and working through alerts, viewing events. I also use XDR Data Explorer extensively, as well as the Response Management section.

    For example, we had a client who ran a script for the activation of Windows operating system and Office tools, but that script is somewhat illegal and sourced from GitHub. I received an alert that a script running from GitHub had been downloaded, so I opened my alert from the Workbench section and viewed the event. I saw the host name and searched the host name through the XDR Data Explorer to see how the user managed to access that GitHub repository. I discovered that it was actually a user execution, so the user genuinely performed that action. I made a response and also sent an email to my client explaining what happened.

    I use TrendAI Vision One extensively for response management in that way and for scanning the hosts for malware.

    What is most valuable?

    In my opinion, one of the best features of TrendAI Vision One is the fact that you can intuitively see what is happening on one host without getting a lot of noise in the way.

    There is not a specific function, but there is an option in XDR Data Explorer to investigate a certain host, so you can focus on one host and not query the whole environment.

    I have noticed that our triage with TrendAI Vision One is better, faster, and more concise.

    TrendAI Vision One helped us with its visualization. For example, when I view the event, there is a Process Timeline Tree, and I can see what happened. I can quickly see what assets are being affected by something.

    Regarding TrendAI Vision One's AI capabilities, I think its security aspect is strong because it gives you a good picture of how our sensors are deployed, the agents deployed, their versions, and if their versions are updated or not.

    I have used TrendAI Vision One's AI capabilities from time to time, and it is very good at explaining its events in a way that if I am not sure what happened in an event or alert, it can concisely tell me what is going on. I think it is pretty trustworthy since it is not jumping to conclusions.

    What needs improvement?

    TrendAI Vision One can definitely do better in the XDR Data Explorer part, where it could expand its query language to allow for summarizations or some kind of table view, not just simple operators like AND, OR, IS, and IS NOT. It could definitely improve by creating some sort of visualizations.

    When investigating a host, it might be better if the table shown is more readable or if the table would be exportable. When I investigate a host and it gives me a table, I could export the table and look at it through Excel.

    For how long have I used the solution?

    I have been working in my current field for about eight months.

    What do I think about the stability of the solution?

    TrendAI Vision One has been mostly reliable; it did have some downtimes, but they were temporary and short. They were not long-lasting, so I can say confidently that it has been pretty reliable.

    What do I think about the scalability of the solution?

    TrendAI Vision One's scalability handles growth and new clients well.

    How are customer service and support?

    Fewer employees are needed, but I do not have any other relevant metrics.

    Which solution did I use previously and why did I switch?

    We have not previously used different solutions for this client, so this is our first solution, and we are quite happy with it.

    How was the initial setup?

    I do not know which cloud provider is used; I was not on the engineering side when it was deployed, so I am not sure.

    What about the implementation team?

    The engineering team evaluated other options, but I do not know which ones.

    What was our ROI?

    TrendAI Vision One helped us reduce cyber risk through its metrics and telemetry; it showed us what kind of data we are dealing with when our clients are in question. We can focus on what matters and implement new filtering and rules to reduce the noise and focus on what is really important.

    TrendAI Vision One has helped reduce our time to detect and respond to threats by approximately 50%. It reduced the time to detect and respond because it has a really good way of showing what happened. The user interface is readable, and you get a lot of information just from the alert itself, so you do not need to do a lot of digging because the alerts are very detailed.

    What's my experience with pricing, setup cost, and licensing?

    I did not know about the pricing, setup cost, and licensing because I was not employed at the time when TrendAI Vision One was deployed and during the beginning of its use.

    Which other solutions did I evaluate?

    The engineering team evaluated other options, but I do not know which ones.

    What other advice do I have?

    Since I am not an engineer, I am not sure what kind of aspects someone would need to look for if they want to buy TrendAI Vision One, but I can say that I am happy using it as a SOC analyst.

    From an analyst perspective, TrendAI Vision One is useful for looking into alerts and incidents and exploring various data. I would say it is readable and easy to use, and also very intuitive. I would rate this product an 8.

    View all reviews