Try our new research platform with insights from 80,000+ expert users

ArcSight Intelligence vs Trellix Helix comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 18, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
8.9
ArcSight Intelligence boosts security and ROI by automating threat detection, reducing false positives, and streamlining workflows with advanced analytics.
Sentiment score
6.2
Trellix Helix enhanced security, reduced costs, increased efficiency, minimized manual work, decreased downtime, and offered deeper security insights.
 

Customer Service

Sentiment score
6.7
ArcSight Intelligence has slow but capable customer support, with mixed user satisfaction regarding problem resolution and feedback sufficiency.
Sentiment score
6.8
Trellix Helix's support is praised for being responsive, efficient, professional, and knowledgeable, despite occasional delays.
We experienced some challenges due to the ongoing transformation and fusion of McAfee and FireEye, but we are committed to improving response times.
 

Scalability Issues

Sentiment score
6.3
ArcSight Intelligence is scalable but complex, with user ratings ranging from moderately to highly, influenced by partner support.
Sentiment score
7.8
Trellix Helix is scalable and favored by larger enterprises, though high costs may deter smaller businesses despite its strong ratings.
We support the largest companies in the world and can cater to large environments.
 

Stability Issues

Sentiment score
8.4
ArcSight Intelligence is highly rated for stability and consistent performance, with users giving it a nine out of ten.
Sentiment score
8.4
Trellix Helix is highly stable and reliable, though customers may need support with third-party log parsing and minor performance fixes.
The availability is high, which is critical for our customers who rely on a single panel of glass to operate.
 

Room For Improvement

ArcSight Intelligence requires frequent updates, improved usability, better speed, enhanced scalability, lower pricing, and higher ranking compared to QRadar and Splunk.
Trellix Helix needs a user-friendly interface, affordable licensing, efficient integrations, better support, and improved configuration and dashboard features.
We have just released the solutions to the market recently, making it a revolution in the cybersecurity sector.
 

Setup Cost

ArcSight Intelligence is costly, suited for enterprises, and offers various licensing options with extra charges for new features.
It is not the cheapest, but also not the most expensive solution.
 

Valuable Features

ArcSight Intelligence offers a powerful log correlation engine, customizable alerts, seamless dashboard, user-friendly interface, and easy rule creation.
Offers seamless API integration, low false positives, strong automation, easy setup, advanced detection, and prevention features for comprehensive security.
Trellix Helix, as an AI XDR platform, helps our organization by offering an extensive number of connectors for integration, enabling us to consolidate all information in a single dashboard.
 

Categories and Ranking

ArcSight Intelligence
Ranking in Security Information and Event Management (SIEM)
39th
Average Rating
8.0
Reviews Sentiment
6.6
Number of Reviews
5
Ranking in other categories
User Entity Behavior Analytics (UEBA) (15th)
Trellix Helix
Ranking in Security Information and Event Management (SIEM)
32nd
Average Rating
8.8
Reviews Sentiment
6.9
Number of Reviews
11
Ranking in other categories
Security Incident Response (7th)
 

Mindshare comparison

As of February 2025, in the Security Information and Event Management (SIEM) category, the mindshare of ArcSight Intelligence is 0.3%, down from 0.3% compared to the previous year. The mindshare of Trellix Helix is 0.5%, down from 0.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
 

Featured Reviews

Pravir KumarSinha - PeerSpot reviewer
Has essential threat detection capabilities, but the features for intelligence need enhancement
We integrated this tool with our security infrastructure. We installed it on a Linux server, where we have a Logger and ESM installed. With the Linux server as the hub, we manage all the configurations and rules, including those for email triggers. The logs are routed through a connector to the Logger, allowing us to monitor our infrastructure effectively. The platform helps us improve threat detection capabilities. I recommend it to others and rate it a seven out of ten.
BiswabhanuPanda - PeerSpot reviewer
You can use it for everything, incident response, automated responses, alerts, visibility
I would give the product an overall rating of eight out of 10. We have 10 people currently using this software. Six are on the list, plus two managers and two IR experts. It's not possible for just one person to maintain the solution, and it's not really allowed. It has to be a team effort, with two or three people. It's not about users. Helix works differently, collecting logs from 6,000 different sources integrated with the solution. The licensing is not based on users; it's based on APIs. It's more of a SIEM SGL type of platform. It collects logs from around 6,000. But have around 10 people maintaining that.
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Comparison Review

it_user186927 - PeerSpot reviewer
Feb 16, 2015
Cybereason vs. Interset vs. SQRRL
Capture DB - they all use NoSQL db and hence solve the ad hoc query and 'go back in time' problem with current best of breed SIEM and DLP solutions that rely on real time analysis of incoming logs (and don't store them). This means deeper and quicker iterative threat analysis and assessment…
 

Top Industries

By visitors reading reviews
Government
22%
Computer Software Company
19%
Financial Services Firm
10%
Manufacturing Company
7%
Computer Software Company
16%
Comms Service Provider
14%
Manufacturing Company
12%
Financial Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about ArcSight Interset / Intelligence?
The platform helps us improve threat detection capabilities.
What needs improvement with ArcSight Interset / Intelligence?
The product could be improved in several areas; it currently requires significant enhancement. Compared to QRadar and Splunk, ArcSight Intelligence falls behind, placing it as the third choice amon...
What do you like most about FireEye Helix?
Trellix Helix helps prevent email attacks, like phishing and email spoofing attacks.
What needs improvement with FireEye Helix?
There is room for improvement in the integration capabilities of third-party tools. It has no problem connecting all solutions to Helix. Right now, we only connect one of Trellix's appliances to th...
 

Also Known As

ArcSight Interset / Intelligence, FileTrek, Interset UEBA, Micro Focus Interset UEBA, Micro Focus Interset, ArcSight Interset
FireEye Helix, FireEye Threat Analytics
 

Overview

 

Sample Customers

Accuvant, Splunk Inc., NuTech, Box, rSolutions, Voodoo Technology Limited
Police Bank, Verisk Analytics, Teck Resources
Find out what your peers are saying about ArcSight Intelligence vs. Trellix Helix and other solutions. Updated: January 2025.
838,713 professionals have used our research since 2012.