Try our new research platform with insights from 80,000+ expert users

BlackBerry Cylance Cybersecurity vs TrendAI Vision One – Endpoint Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 26, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cortex XDR by Palo Alto Net...
Sponsored
Ranking in Endpoint Protection Platform (EPP)
5th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
106
Ranking in other categories
Endpoint Detection and Response (EDR) (7th), Extended Detection and Response (XDR) (6th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (2nd)
BlackBerry Cylance Cybersec...
Ranking in Endpoint Protection Platform (EPP)
24th
Average Rating
8.0
Reviews Sentiment
4.6
Number of Reviews
44
Ranking in other categories
No ranking in other categories
TrendAI Vision One – Endpoi...
Ranking in Endpoint Protection Platform (EPP)
8th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
134
Ranking in other categories
Endpoint Compliance (4th), Endpoint Detection and Response (EDR) (9th)
 

Mindshare comparison

As of March 2026, in the Endpoint Protection Platform (EPP) category, the mindshare of Cortex XDR by Palo Alto Networks is 3.5%, down from 4.0% compared to the previous year. The mindshare of BlackBerry Cylance Cybersecurity is 1.3%, up from 1.2% compared to the previous year. The mindshare of TrendAI Vision One – Endpoint Security is 1.8%, down from 1.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Protection Platform (EPP) Mindshare Distribution
ProductMindshare (%)
Cortex XDR by Palo Alto Networks3.5%
TrendAI Vision One – Endpoint Security1.8%
BlackBerry Cylance Cybersecurity1.3%
Other93.4%
Endpoint Protection Platform (EPP)
 

Featured Reviews

ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
Sooraj Makkancherrry - PeerSpot reviewer
Security Operations Manager at Philips
Doesn't have daily updates, which is important for healthcare IT
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we contact support, they tell us to update the latest agent, but we can't do that immediately due to medical device protocols and validation testing. I wish support would try to understand our issues better instead of giving this standard response. The machine learning feature they use often tells us to upgrade the agent or add things to the exclusion list, which isn't unacceptable. It's a very good and new technology as a tool and antivirus. But sometimes, it doesn't work properly with our medical devices and products, quarantining files it shouldn't even after we add them to exclusions. This is tricky for us.
Oleksii Pavlyk - PeerSpot reviewer
Head of security of digital systems, electronic databases and networks at Ukreximbank
Centralized console has improved visibility while setup remains quick on diverse environments
I don't know why I find it valuable; my colleague administrated it, but I was the chief of a team of six people, and one of them administered this product, which worked well for defending our servers. I don't know what the best features of Trend Vision One Endpoint Security are; it performs well compared to other products, and I am curious about it, but I cannot think of specific features. Perhaps my colleagues could provide that information, but I do not have that knowledge. The centralized console helps my team greatly; it is very convenient as everything is all in one console, not only EDR but many other products, such as email security and XDR features. Trend Vision One Endpoint Security positively impacts our organization as it is very simple to install on Windows and Linux servers; it is not very difficult to install.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is an easy-to-use tool."
"The protection offered by this product is good, as is the endpoint reporting."
"Traps is quite a stable product. Once it was properly deployed and configured, you have nothing to be worried about."
"We can use Cortex XDR to get the entire graph of the incidents from source to destination, and we can take remedial action."
"Their XDR agent and their behavioral indicators of compromise (BIOC) are pretty nice. Their managed threat hunting is also pretty nice. They also have WildFire, which is a service for actively looking for malware. It's quite useful."
"Cortex covers everything I need. It's a perfect solution. Cortex provides a different level of visibility because it's an extended EDR, allowing you to grab logs from the network and firewalls. Palo Alto invented the concept of the extended EDR or XDR."
"The solution's stability is generally good."
"The most valuable feature is that you can select remote access of any machine for sandboxing."
"Its setup is simple if you have a Windows device; it is executable."
"I've found the AI engine in CylancePROTECT to be particularly effective for technology and in preventing unknown threats."
"Blackberry Protect offers endpoint protection. It's easy to deploy. It's scalable and stable."
"CylancePROTECT is a fairly decent antivirus."
"Two or three years ago when the WannaCry virus struck, the people that were on Cylance were the ones that weren't affected."
"Does malware analysis. Blocks WannaCry and other attacks that have come out."
"​Very easy to deploy. It can be done one by one or deployed by customizing an MSI file for GPO push.​"
"On the management side, we liked the way it displays things."
"The features that I have found most valuable are the endpoint security with the zero-day vulnerability. They have an on-premise sandboxing solution which prevents any of those zero-day vulnerability issues."
"Trend Micro Apex One has good features and is lightweight."
"The number of accessories included is the most valuable feature."
"I have found Trend Micro Apex One to be secure."
"Trend Micro Apex One is a seamless solution compared to others."
"The end user perspective is very good because the solution isn't complex to learn and support is readily available."
"One of the advantages for me is that it is very easy to use."
"This solution protects us from virus attacks before they affect the organization."
 

Cons

"It is an enterprise-level solution. Its price could be less expensive."
"The solution can never really be an on-premises solution based simply on the way it is set up. It needs metadata to run and improve. Having an on-premises solution would cut it off from making improvements."
"They've been having some issues with updating their endpoint agents, and it has been quite frustrating."
"Limited remote connection."
"There are some third-party solutions that are difficult to integrate with, which is something that can be improved."
"It is a complex solution to implement."
"The installation should be easier and the Palo Alto pre-sales and sales teams should have more information on the product because they don't know what they are selling."
"Cortex does not offer an on-premises solution. However, some customers would prefer not to be on the cloud. It would be ideal if it could offer something on-prem as well."
"An area for improvement in CylancePROTECT is its pricing, as it's a bit costly."
"It was not effective. There were a lot of false positives, even when we use Adobe, and everybody uses Adobe, which is not a threat."
"The high price of the product is an area of concern where improvements are required. The product's price should be more competitive."
"I would like to see a better UI in terms of sifting through more specific data and providing analytics. A little bit more would be nice."
"The product needs to continue to offer better alerts. In particular, around false positives. It needs to reduce them from happening."
"The solution’s user interface could be improved."
"Having worked with SentinelOne, Cylance is good, however, it probably needs to add a feature similar to SentinelOne's rollback functionality. With this feature, if you get infected, with a click, you can go back to the pre-infection state. If Cylance could add this functionality to their offering as well, that would be ideal."
"The security scripting needs improvement. It needs deeper security for scripting."
"The menus can be more user-friendly or easier. For example, if we want to enable access to the USB ports, it should be more user-friendly. It is not easy. We need to navigate through several menus to be able to give access."
"It should have a single agent as competitors are offering."
"There is room for improvement in next-gen attacks protection."
"We have servers on FreeBSD, and as I remember, there is no client for FreeBSD operating systems, which is not ideal for us."
"I would like to see a sandboxing feature in the next release - which is currently something being supported by a third party - in addition to EDR capability on the cloud applications."
"In the future, the solution should include the XDR feature."
"Apex One could improve endpoint patching. For example, Kaspersky can download Microsoft updates and install them. Having that feature in the cloud application would help a lot."
"I would suggest making the on-prem and cloud versions easier to manage via Apex One Central, a centralized management platform for customers and agents."
 

Pricing and Cost Advice

"I am using the Community edition."
"I don't have any issues with the pricing. We are satisfied with the price."
"It has a higher cost than other solutions, like CrowdStrike or Microsoft’s EDR tools, but it reduces the cost of our operations because it’s a new generation antivirus tool."
"It is present, but when compared to other competitive products, I would say it is not less expensive; however, when all of the other added values are considered, the price is reasonable."
"I don't recall what the cost was, but it wasn't really that expensive."
"The pricing is a little high. It is per user per year."
"Very costly product."
"It is "expensive" and flexible."
"The solution's pricing is around the same as most EDRs but slightly behind some of the major ones."
"The solution provides me with competitive pricing."
"We pay our license on a yearly basis and have just renewed for two years."
"CylancePROTECT is worth the money, but I'm not sure of its exact price. I can't remember off the top of my head."
"The initial end-point cost may seem a little high (~$55/device/year) but when you look at the total peace of mind that the solution provides, with no reboots for updates, and negligible performance impact, it is well worth it."
"My company is on a yearly CylancePROTECT subscription. Price-wise, the solution is slightly expensive, so I'd rate it as eight out of ten."
"Do not get hung up on price. You pay for what you get and expensive will hurt one time, where cheap will hurt forever, especially if you fall victim to a ransom attack, etc.​"
"It is expensive, but not unreasonable."
"The pricing was previously considered affordable, however, currently, it is on the rise due to a new licensing segregation policy."
"The licensing fee and support are bundled together."
"Pricing and licensing are competitive with other solutions on the market."
"Its price is competitive."
"I find the price of Apex One to be reasonable. The pricing varies from company to company. Your business will have a different price than what we have because the product's price depends on the number of users."
"The price of the solution was expensive in the first year we had it because we were purchasing it locally. This year we have a global discount for the license. There is an additional cost if you want maintenance support."
"The price of the solution is reasonable."
"The pricing of Trend Micro Apex One was reasonable. There is a license required to use the solution and we have upgraded the solution to include some additional features, such as XDR."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
884,108 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Financial Services Firm
9%
Manufacturing Company
9%
Comms Service Provider
7%
Computer Software Company
9%
Manufacturing Company
8%
University
6%
Government
6%
Computer Software Company
12%
Financial Services Firm
9%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business44
Midsize Enterprise20
Large Enterprise47
By reviewers
Company SizeCount
Small Business33
Midsize Enterprise5
Large Enterprise13
By reviewers
Company SizeCount
Small Business45
Midsize Enterprise36
Large Enterprise60
 

Questions from the Community

Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What do you like most about Blackberry Protect?
It is a good endpoint solution. It is very easy to manage and detect the threat immediately. It will take the necessa...
What is your experience regarding pricing and costs for Blackberry Protect?
The price is reasonable for us at the moment. I rate the overall solution an eight out of ten.
What needs improvement with Blackberry Protect?
I face challenges with the exclusion policy - it still scans folders we told it not to, causing issues. When we conta...
What's the difference between Trend Micro Deep Security and Trend Micro Apex One?
Trend Micro Deep Security offers a lot of features. It guarantees security for your data center, cloud, and container...
What do you like most about Trend Micro Apex One?
It is updated automatically without much intervention from our side. We can also get some reports easily.
What is your experience regarding pricing and costs for Trend Micro Apex One?
Regarding the price, there was a tender, and Trend Micro won; the price was good.
 

Also Known As

Cyvera, Cortex XDR, Palo Alto Networks Traps
Blackberry Protect
Trend Micro Apex One, OfficeScan, Trend Micro OfficeScan
 

Overview

 

Sample Customers

CBI Health Group, University Honda, VakifBank
Panasonic, Noble Energy, Apria Healthcare Group Inc., Charles River Laboratories, Rovi Corporation, Toyota, Kiewit
Atma Jaya Catholic University of Indonesia, A&W Food Services of Canada, Babou, Beth Israel Deaconess Care Organization (BO), DCI Donor Services, Evalueserve, Gulftainer, Hiroshima Prefectural Government, MEDHOST
Find out what your peers are saying about BlackBerry Cylance Cybersecurity vs. TrendAI Vision One – Endpoint Security and other solutions. Updated: March 2026.
884,108 professionals have used our research since 2012.