Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Trend Vision One

Trend Micro | 1

Reviews from AWS customer

2 AWS reviews
  • 5 star
    0
  • 2
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

259 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Mohammed Houssani

Good protection with centralized visibility and nice executive dashboards

  • December 11, 2023
  • Review provided by PeerSpot

What is our primary use case?

It offers very good ransomware protection. You have more visibility on the network.

How has it helped my organization?

It helps with compliance. We are also well-protected from ransomware and network attacks.

It's improved our organization in two ways: we can have more visibility and have more confidence in security. We also have better reporting for regulatory compliance. 

What is most valuable?

The endpoint protection is the most useful. It's powerful. I've faced issues with other products regarding ransomware; however, with Trend Micro, I have no fear of network attacks. I have experience with consistent protection. 

Customers have NDR and XDR protection, and it's very good for protection. There are also regulations within our country that require us to use XDR. 

The centralized visibility is good. It's great for the IT team as they have to export reports to management for compliance. It helps with reporting. It's essential. 

The centralized visibility and management across protection layers helped our efficiency. We have a limited number of security engineers. With Trend Micro and its centralized dashboard, it will show everything we've learned and reflect reporting on the dashboard and this helps when you have a limited amount of users. It simply reduces the number of people that need to be involved in the security effort. 

We use the executive dashboards on both sides. We can drill down on them right into XDR detection. It's essential when we have an incident. If we need to know more about the threat, we need to know where and how they are attacking. We can drill down and get forensic data. 

The solution's risk index feature is very good. It comes out of the box. Our customers can use it. 

The product has helped us decrease our time to detect and respond to threats. 

What needs improvement?

It took some time to realize the benefits, as we had some issues with support. It took us three to four months to realize its benefits. 

The support should be improved. 

We'd like to see deception features in the next release. It would help us to reduce false positive alerts. 

For how long have I used the solution?

I've been using the solution for seven years now.

What do I think about the stability of the solution?

The stability is good overall. 

What do I think about the scalability of the solution?

The solution is scalable. You simply need the resources on the VM, and you can easily change your license. 

How are customer service and support?

We've had issues with support. Their services could be improved. 

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have used Fidelis and found you can control the endpoints better. They also have a deception module, which is very powerful. You can manage your endpoints perfectly. It also offers very good network visibility. I use both products. It depends on the customer's needs and approach.

How was the initial setup?

I observed the deployment process. 

We had issues. It should be straightforward; however, with a customer, we faced a problem with technical support. It took us almost eight months to deploy. They had issues with the installation on the endpoints and on the network side. We had a problem with a few things, including use cases. 

The plan was to deploy in two weeks, and yet it took almost eight months.

From the customer side, there were three engineers, and from Trend Micro, there were one or two engineers working on the solution.

Almost every two weeks, there are maintenance calls. The customer has three people handling maintenance duties. 

What about the implementation team?

The solution was deployed by support. 

What's my experience with pricing, setup cost, and licensing?

The pricing is average. The costs are acceptable. It's good for small or medium-sized businesses. 

What other advice do I have?

I'm a partner. 

We're using the latest version of the solution. 

I'd rate the solution eight out of ten. 

For enterprise customers, I wouldn't recommend the solution. However, it's a good solution for small or medium customers. New users need to ensure they have the correct sizing and licensing. 

You need to talk to the right support engineers in order to have a smooth experience. 

Which deployment model are you using for this solution?

On-premises


    reviewer2288097

Gives good endpoint visibility and centralizes everything while decreasing time to detect

  • October 03, 2023
  • Review provided by PeerSpot

What is our primary use case?

We use the solution primarily for monitoring. It's for running investigations.

What is most valuable?

If we need any endpoint logs, we're able to access them. It helps us with investigations. We can see, for example, if we are investigating email, the processes running, and any anomalous activity. It detects that kind of stuff. 

We are using MicroVision One and it helps us with centralized visibility and management across protection layers. Having a centralized view is very helpful. If we have everything in one place, we can see in one display all of the virtual information and attack rates, et cetera.  It makes it easier for an engineer to monitor everything. 

We use the risk index feature for the endpoints. It helps with the analysis of malware. It can automate scanning for day-to-day activities. 

Trend Micro helped us to decrease our time to detect when responding to threats. It has also helped reduce the amount of time used to investigate false positive alerts.

What needs improvement?

The support has been delayed at times. They could improve that aspect of the solution. 

For how long have I used the solution?

I've been using the solution for about six months. 

What do I think about the stability of the solution?

The solution is stable. We've had a good experience. 

What do I think about the scalability of the solution?

The solution can scale. I'd rate the ability to scale eight out of ten.

How are customer service and support?

The support response can be delayed during investigations. 

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We did not previously use any other solutions. 

How was the initial setup?

We did not handle the deployment. It was handled by Trend Micro.

There is a bit of maintenance required. However, the vendor handles it. 

What about the implementation team?

Trend Micros handled the initial setup for us. 

What's my experience with pricing, setup cost, and licensing?

I'm on the client side. I don't deal with the licensing directly. 

What other advice do I have?

We use the solution across our network.

I'd rate the solution eight out of ten.

The information you get for the solution in terms of investigation, makes things easier. 

Which deployment model are you using for this solution?

Hybrid Cloud


    reviewer2285679

Great support, easy to set up, and offers good visibility

  • September 28, 2023
  • Review provided by PeerSpot

What is our primary use case?

Normally, we use the solution for day-to-day investigations. We get alerts when something is going on in the environment. Right now, we are using that tool for the asset management team to identify services or applications that are not allowed for governance and all of these purposes. In addition to that, we use it for isolating devices. We also have a service with them, an MDR service. They analyze information, and they do investigations for us as well.

How has it helped my organization?

Mainly, we were concerned with the visibility of the environment. We didn't have a tool that was able to allow us to see or have visibility of what the endpoints were doing on the servers in the environment. That was the main reason to adopt this solution - to have visibility on the environment as, in the past, we didn't have that capability.

What is most valuable?

The isolation of devices has been really important. We like all the attack surface-managed NPEs. It's helping us to identify devices and protect us on the network. That's in combination with third-party integrations as well. We have integrations that are helping us to identify devices using our vulnerability management services. It's scanning the network and it's sending all that data to VisionOne. With that information, we identify devices that are protected on the network and the environment.

The reports are a really good feature for showing results to upper management levels.

The search features help us try to correlate information and identify any suspicious activity. That's another feature that has been really important.

We are using it everywhere except for the network, so we don't have the network discovery service from Trend Micro. However, we have it on endpoint servers and email and also the cloud as well. We use cloud conformity to connect that piece.

Trend Micro has a feature called Vision One, that provides us with centralized visibility management across all protection levels. That's helping us to have a centralized view of the console. That's the main reason why we still have that product.

Centralized visibility is important. When we are doing investigations, we can do everything in one console instead of moving to different screens or different windows. The centralized visibility and management across these protection levels helped with our efficiency. It helps us to identify quicker, any potential threat, or any special activity.

They have this feature called Risk Index which I use sometimes to validate the level of rates we have. We don’t use it often - maybe once every one or two weeks. We use it to rank our security operations overall. Mostly, we just check it out of curiosity.

We use the Managed XDR service that they have. It relieves a lot of workload especially during investigations or interim reports about any particular activity - especially with the coverage after hours. It is helping us with the capability there. Also, if something really bad is happening, we have eyes watching all the activity, which is nice.

Using this Managed XDR service enables our team to work on other tasks - especially when we, in certain ways, allocate some of the investigation pieces. We basically create a request for them to investigate things, and that allows us to focus on other things to optimize our security toolset. That's really helpful.

We use the attack surface risk management capability they have. We use that heavily right now. It was a big use case in the past few months. We use it to identify multiple devices without protection, the applications that have been used by our users, and which ones are risky. We are using that on a regular basis. It's helped us identify blind spots and more assets. It's positively affected our security posture by improving a lot of our visibility.

XDR helped us decrease our time to detect or respond to threats. In the past, we didn't have that visibility. When we enabled that tool, at the beginning, it was a little bit noisy. That's something to be expected coming from a new tool. However, after testing through these years, things are improving, and now we can see better results, especially during investigation alerts.

The solution has helped us to reduce the amount of time we spend investigating false positive alerts. In the beginning, there was a large amount of false positives. Right now, we are day to day trying to reduce them. At this point, they are lower compared with the beginning of the implementation. Things are improving. We are reducing false positives as we go which is great.

What needs improvement?

We do use the automation capability a little. However, we noticed some limitations, especially on the playbook side. The API we use. We are integrating that with another product, a SOAR product. The playbooks are a little bit limited in what they can do at this point. Let's say that we want to connect on a specific API. The templates we cannot modify very well. When we noticed that limitation, we decided to go and use Trend Micro VisionOne API and connect it to other tools to develop that activity using another product.

Under attack surface management, when you go to the specific sites or applications that the users are accessing, the capability of downloading that report could be better. Let's say, as an example, we want to identify users using chatGPT, for example. We want to download that data through an API or through the GUI. Right now, it's not available as an option. Maybe having the capability of extracting data from VisionOne for specific areas of the tool could work. That's something that could be useful, especially if we want to generate that report and send it to specific teams. Often, we don't want to provide DX to all the people. Sometimes it's easier to just have that file and share that file with the people who need to have that information. 

For how long have I used the solution?

I've been using the solution for around three years now. 

What do I think about the stability of the solution?

The stability is good. It's not very common to have any outages. Sometimes there may be a glitch, however, it's rare. Normally we have 95% stability.

What do I think about the scalability of the solution?

The scalability is good, especially when we are talking about third-party integrations. We can have visibility and control of all different assets. So we can have good scalability and visibility and know more about the environment in places where we didn't have any idea things were happening. It's a SaaS tool, and we don't have to do any maintenance, and it's easy to deploy. It's pretty straightforward.

How are customer service and support?

When we have specific issues or problems connecting some products we ask for support. They respond really fast. They always try to mitigate and resolve all the issues we have. If they cannot resolve the problem, they normally share some suggestions on how we can mitigate future problems.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We did not use other solutions, although we did use Apex One for a long time. We have also used an EDR product.

How was the initial setup?

I was involved in the deployment. I was the one leading the data during the implementation. The process is pretty straightforward. It was a little tricky to reduce the false positive alerts, however, the portion of deploying to the environment and connecting the pieces was simple. 

From our side, we had three or four people involved in the implementation. 

What about the implementation team?

We had some help with the deployment and we had some guidance in the beginning. We requested some support from our account manager.

What's my experience with pricing, setup cost, and licensing?

The pricing is good if you look at all the compatibilities and features offered by the product. There are features that can increase the pricing. We can put some credits to some features, however, if we want to enable them. With the amount of credit we have, we are covered for all of our needs.

What other advice do I have?

I'd rate the product eight out of ten.

It is a really good product and easy to deploy. They allow you to have more visibility on your environment, especially if you have any kind of XDR solution. It will increase the visibility of what's happening in the environment. Also, from the perspective of doing maintenance updates or patches, the cloud is the way to go. The product management team does a really good job of increasing the features, and they are listening really closely to what the customer needs via feedback. 

Which deployment model are you using for this solution?

Hybrid Cloud


    Dirk Osterkamp.

Great network protection, a centralized view, and user-friendly

  • September 28, 2023
  • Review provided by PeerSpot

What is our primary use case?

We use Trend Micro XDR to enhance our security framework.

One of our partners was the victim of a major attack, and we realized that our environment was susceptible to the same thing because we were only using an antivirus solution. 

Trend Micro XDR is deployed on-premises, and we use it on our core business servers, clients, and the management portal to protect all of our network nodes from attacks.

How has it helped my organization?

Trend Micro Vision One provides centralized visibility and management across protection layers, which is important. It is part of our monitoring tool. The visibility gives us a centralized view of our network nodes, activities, and possible attacks.

The risk index feature plays an important role in our KPIs, which we report to the management team. Our business is dependent on our systems running 24/7.

Trend Micro XDR has helped decrease our time to detect and respond to threats.

Trend Micro XDR has reduced the time we spend investigating false positive alerts by 50 percent.

What is most valuable?

The most valuable feature is the network protection shield on every server, which isolates attacks and prevents our clients from being affected.

What needs improvement?

The deployment process could be more streamlined over the existing infrastructure, as it was not as easy as we thought. We are working with an expert from Trend Micro to improve the rollout process, but it has taken some time and we do not yet have a concrete understanding of the issue. There are some features that we have to install repeatedly before they start running.

For how long have I used the solution?

I have been using Trend Micro XDR for one year.

What do I think about the stability of the solution?

Trend Micro XDR is stable.

What do I think about the scalability of the solution?

Trend Micro XDR is scalable.

How are customer service and support?

The technical support is good.

How would you rate customer service and support?

Positive

How was the initial setup?

The deployment took six to eight weeks to complete. We had around five part-time people involved in the deployment.

What's my experience with pricing, setup cost, and licensing?

Trend Micro XDR is expensive but we got a good deal from Trend Micro. We pay for an annual license.

Which other solutions did I evaluate?

Currently, we are researching the question of whether to use Trend Micro XDR when we switch from our classic NPLS internal corporate lines to an SD-WAN solution. Or if we should use an integrated solution from the SD-WAN and firewall provider, such as Palo Alto or Fortinet.

What other advice do I have?

I would rate Trend Micro XDR eight out of ten.

We have 300 people in our organization that use the solution.

Maintenance is easy and done by two people, who update, patch, and install new servers; client-side, they also update user stations and analyze logs.

I recommend Trend Micro XDR. It is user-friendly.

Which deployment model are you using for this solution?

On-premises


    jaybee T.

xdr help us on our security in our network.

  • May 10, 2023
  • Review provided by G2

What do you like best about the product?
Were using XDR as part of our security in our infra, helps us detect about malicoius and other cyber threat.
What do you dislike about the product?
In my side there is no downsides and it help us.
What problems is the product solving and how is that benefiting you?
Its detect not only threat but is useful for us to manage our server and infra.


    Rafael Joseph T.

Trend Micro Vision One Review

  • May 08, 2023
  • Review provided by G2

What do you like best about the product?
Customizable alerts directed to email and administrator friendly.
What do you dislike about the product?
Support from the partner in the country.
What problems is the product solving and how is that benefiting you?
Endpoint security and DLP for laptops, pc and mobile phone. Benefits us by alerting us on attacks to easily prevent threat from entering our network.


    Information Technology and Services

It serves maximum security to our users

  • May 04, 2023
  • Review provided by G2

What do you like best about the product?
It plays its role in providing security over our network and across our internet. Also, it is manageable and easy to use. It is convenient to our organization.
What do you dislike about the product?
The problem we encounter during using of this product is sometimes we encounter slowing of our unit / devices. Also, it blocks our external storage like flash drives.
What problems is the product solving and how is that benefiting you?
The security it puts on our network and filtering all malicious or unknown viruses it blocks. Even though our unit runs slow it benefits the security we needs for our safety.


    Food & Beverages

Efficent but improvable

  • April 13, 2023
  • Review provided by G2

What do you like best about the product?
Workbench menu and possibility to navigate in drop down to check how endpoint was affected
What do you dislike about the product?
false positive that about aletr that aren't recognized from Aopex One Security Agent
What problems is the product solving and how is that benefiting you?
prevent pshishing email and patching for 0-day vulnerability


    Ivo Edgar M.

Invaluable tool for security operation, incident response and early attack identification

  • April 11, 2023
  • Review provided by G2

What do you like best about the product?
The identification of environment vulnerabilities, as well as the risk level classification and mitigation suggestions make the IT security operation more dynamic and effective.
The correlation of events with the identification of coordinated actions allow the early prevention of incidents before they get out of control and gain large proportions.
What do you dislike about the product?
Some of the alerts sent by e-mail do not have enough information to understand the problem, it is necessary to access the web tool to obtain more information.
Even in the workbench, sometimes the information presented does not contain enough data to deal with the problem, making it necessary to consult the original source of the events.
What problems is the product solving and how is that benefiting you?
We use Trend Micro XDR primarily for correlating events collected from other security tools and for early detection of incidents.


    Alejandro F.

Outstanding solution.

  • April 10, 2023
  • Review provided by G2

What do you like best about the product?
XDR can detect and respond to various events automatically.You can find many sources to get data for analytics. Easy graphical interface. Deep analysis on every incident detected.
What do you dislike about the product?
Many new features are not properly documented, the console change from time to time with this new feeature in preview mode, you can use it, but not too much documentation.
What problems is the product solving and how is that benefiting you?
AV detection, inspection of EAST-WEST traffic, email solution integration. Workbench with some automatic response, isolation of endpoint, locking out user access, etc.