Trellix Network Detection and Response and ExtraHop Reveal(x) are competitors in the network security and monitoring space. ExtraHop Reveal(x) has the upper hand due to its strong network visibility and SSL decryption capabilities, which enhance real-time monitoring and integration options.
Features: Trellix Network Detection and Response provides zero-day attack detection, APT identification, and application filtering. It offers a reliable MVX engine, effective incident response, and a straightforward alert dashboard. ExtraHop Reveal(x) stands out with its network visibility, machine learning capabilities, and integration with various solutions. It provides customizable dashboards and can decrypt SSL traffic for anomaly detection.
Room for Improvement: Trellix Network Detection and Response needs enhancement in analytics, false positive reduction, and improved integration with other vendor tools and cloud support. ExtraHop Reveal(x) could improve with a longer look-back period, enhanced nesting in collections, and additional user training resources. Both products could benefit from improved support protocols and optimized pricing strategies.
Ease of Deployment and Customer Service: Trellix Network Detection and Response offers on-premises deployment with highly responsive customer service, known for its robust classic support system. ExtraHop Reveal(x) provides deployment options across hybrid, on-premises, and public cloud environments, with customer service also rated highly. Both could improve support and usability.
Pricing and ROI: Trellix Network Detection and Response is considered costly but delivers significant ROI by effectively preventing threats. ExtraHop Reveal(x) is also seen as expensive, requiring strategic planning for setup, yet provides good value by reducing breaches and enhancing productivity, affirming its ROI.
I would rate their technical support nine out of ten.
Currently, we have to check manually as we do not receive any notifications about new patches, maintenance, or firmware releases.
The solution offers a friendly GUI for security features.
ExtraHop Reveal(x) is a highly effective network traffic analysis (NTA) solution that leverages a cloud-native architecture to empower organizations to overcome a world filled with increasingly sophisticated threats. It identifies 25% more threats than its competitors. Additionally, organizations that employ Reveal(x) say they resolve issues 77% percent faster than they would if they were using other similar solutions.
ExtraHop Reveal(x) Benefits
Some of the ways that organizations can benefit by choosing to deploy ExtraHop Reveal(x) include:
ExtraHop Reveal(x) Features
Reviews from Real Users
ExtraHop Reveal(x) is a solution that stands out when compared to many other similar solutions. Two major advantages that it offers are its versatility and its ability to quickly identify the root cause of an application’s issues.
John B., the senior monitoring engineer at a financial services firm, says, “It's useful for different teams in our organization. The cybersecurity team uses it because it has got great analytics for anomaly detection, malware detection, and ransomware. It's used by the networking people because it's great to be able to get the three-way handshake between systems to see how your network is doing. The microservices for DNS use it because they like to be able to see how their DNS services are operating and how many DNS requests are being rejected, denied, or dropped. Application people love it because it fully decrypts their traffic.
Henry S., a systems engineer at LifePoint Health, writes, "When there are performance issues with an HTTP app, ExtraHop enables us to identify the causes within a few minutes. We can see what transactions are being impacted by something that may be happening within the server environment."
Detect the undetectable and stop evasive attacks. Trellix Network Detection and Response (NDR) helps your team focus on real attacks, contain intrusions with speed and intelligence, and eliminate your cybersecurity weak points.
We monitor all Network Detection and Response (NDR) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.