Try our new research platform with insights from 80,000+ expert users

NetWitness NDR vs Trend Vision One comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 15, 2024
 

Categories and Ranking

NetWitness NDR
Ranking in Endpoint Detection and Response (EDR)
59th
Ranking in Network Detection and Response (NDR)
18th
Ranking in Extended Detection and Response (XDR)
34th
Average Rating
8.0
Number of Reviews
15
Ranking in other categories
Endpoint Protection Platform (EPP) (59th), Threat Intelligence Platforms (33rd), Security Orchestration Automation and Response (SOAR) (27th)
Trend Vision One
Ranking in Endpoint Detection and Response (EDR)
4th
Ranking in Network Detection and Response (NDR)
3rd
Ranking in Extended Detection and Response (XDR)
6th
Average Rating
8.6
Reviews Sentiment
7.8
Number of Reviews
59
Ranking in other categories
Attack Surface Management (ASM) (2nd)
 

Featured Reviews

SupravatMaji - PeerSpot reviewer
Jun 23, 2022
Beneficial single unified dashboard, good native application integration, and high availability
The most valuable feature of RSA NetWitness Network is the single unified dashboard from which you can manage all the different products of RSA. Additionally, the integration with native applications is good RSA NetWitness Network could improve on integration with non-native application…
Matthew Guzzi - PeerSpot reviewer
Nov 17, 2023
Provides great visibility, saves us time, and integrates well
The dashboard provides great visibility into our risk profile. We receive a daily email report that outlines our risk score and identifies the machines with the highest risk. This information is based on usage patterns, vulnerabilities, and non-compliance issues. This helps us prioritize which machines require patching or further investigation. Drilling down further, we can analyze how our users are utilizing their workstations, including the websites they visit. While we don't track specific website URLs, we can categorize website types and identify any potentially risky or inappropriate usage patterns. This allows us to proactively address any potential security concerns. For instance, we identified a user who was using ChatGPT for work-related tasks. This flagged our system, and we were able to discuss the user's usage of ChatGPT to gain a better understanding of how our users are working and identify any areas that require additional attention.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the way it captures the traffic, and it contains every detail of the communication."
"The log correlation is good."
"The interface of this solution is very flexible and easy to use."
"RSA NetWitness does market analysis in a more granular form. It gives you full visibility."
"Ability to isolate the machine when there are malicious files."
"It's a scalable solution. We have around five to eight customers using RSA NetWitness Endpoint, and we hope to increase the number of users."
"Technical support is knowledgeable."
"It helps our security team respond more accurately when there are threats, then we get less false positives or negatives."
"They were one of the companies, early on, that spent a lot of time integrating their toolsets, and I was really impressed with that... the endpoint management system could reach out to the Deep Discovery system on the network and pick up something that it perceived as a suspicious object."
"The most significant recent change has been the addition of the new AI companion."
"We had previously deployed on-premises, and all we had to do was access the designated console and click a button to migrate all on-premises agents to cloud agents."
"The search features help us try to correlate information and identify any suspicious activity."
"We haven't had any issues with configurations or customizations."
"The proactive approach is the best feature."
"The most valuable feature is how the stack fully integrates all components of a solution."
"When we purchased Vision One, what set it apart was that it wasn't a traditional signature-based antivirus. It's a process-aware solution that provides real-time protection. That was a big differentiator three years ago, but now it's a given that every AV provider should be doing that. It combines signature-based telemetry with behavioral awareness and a detection-based solution, making it a good solution for us."
 

Cons

"The integration of the solution needs to be improved. The dashboard needs lots of updates as well. In the next release, we would like to see advanced fraud detection features."
"The initial setup requires a high level of skill."
"The solution lacks a reporting engine."
"The threat intelligence could improve in RSA NetWitness Endpoint."
"The deployment process is complex. I don't know why, but this solution will suddenly stop working. Logs stop coming. Often, one thing or another stops working. Most of the time, one of my team members is working with troubleshooting and working with technical support. Log passing is also one of the biggest challenge."
"This solution needs an upgrade in reporting. I have heard from RSA that they are working on this, but as of yet it is not available."
"I would like to see Security Orchestration and Response Automation (SOAR) integration."
"The contamination feature could be improved."
"A room for improvement is Trend Micro XDR's website. It's a very complicated website since finding the right point one wants to see is difficult."
"They should increase their potential for third-party integrations."
"Trend Vision One would be enhanced by incorporating an SIEM solution as a built-in feature."
"The solution could always be made to be more secure."
"One area that requires improvement is the installation process of the agents, as it is not seamless."
"I would like to have more integration with mobile device management."
"Expanding compatibility to include currently unsupported security tools, such as firewalls, would be beneficial."
"Vision One generates numerous false positives, forcing unnecessary investigations and highlighting a need for improved filtering options."
 

Pricing and Cost Advice

"The pricing is not very economical. It is a quite costly product for India. One thing is that when you purchase it, you have to purchase a module separately."
"We are on a three-year contract to use RSA NetWitness Network."
"They can easily adjust if you have the requirements which are required. If you have a budget cut or a budget constraint, they can bend."
"It is highly scalable. It can be bought based on your requirements."
"It is an expensive product."
"The price of the solution depends on the environment. If the environment is large then it will cost more. However, the larger the environment with more endpoints, you will receive an increased discount. If the environment is very small, then you might think it is expensive. It is always better to buy in bulk to receive a discount. The minimum number of assets is usually 500, with discounts on 1000 and 2000."
"I do not have any opinion on the pricing or licensing of the product."
"With RSA, there is flexibility in choosing the service, products, and the range that meets your requirement, as well as they are flexible in terms of pricing."
"Trend Micro's licensing is outsourced to third-party vendors, resulting in price variations depending on the vendor."
"It is costly. It is not that affordable for a small organization. Only big organizations can afford it. It is a new feature that has been added, so its price is fair. Its licensing is probably subscription-based. It is for one or two years."
"Trend Micro XDR has a good price, and on a scale of one to five, I would rate it a four out of five in terms of price."
"The pricing is competitive, and the cost aligns with the features we receive."
"The pricing is fair compared to other solutions."
"Trend Micro XDR is expensive, and you have to pay for it yearly."
"From a pricing standpoint, they're a really good negotiator and they'll work with you."
"Trend Micro XDR is reasonably priced for its value, comparable to other products like VMware Carbon Black."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
815,854 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Computer Software Company
16%
Government
9%
Manufacturing Company
8%
Educational Organization
29%
Computer Software Company
18%
Financial Services Firm
5%
Healthcare Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Ask a question
Earn 20 points
What do you like most about Trend Micro XDR?
I appreciate the value of real-time activity monitoring.
What is your experience regarding pricing and costs for Trend Micro XDR?
Trend Micro's licensing is outsourced to third-party vendors, resulting in price variations depending on the vendor. Since Trend Micro doesn't directly handle pricing, I cannot provide specific cos...
What needs improvement with Trend Micro XDR?
Trend Vision One requires several enhancements for optimal performance. The platform should allow users to create custom phishing templates directly within the console and improve logging capabilit...
 

Also Known As

RSA ECAT, NetWitness Network
Trend Micro XDR, Trend Micro XDR for Users, Trend Vision One - XDR for Networks
 

Learn More

Video not available
 

Interactive Demo

Demo not available
 

Overview

 

Sample Customers

ADP, Ameritas, Partners Healthcare
Panasonic North America, Decathlon, Fischer Homes, Banijay Benelux, Unigel, DHR Health,
Find out what your peers are saying about NetWitness NDR vs. Trend Vision One and other solutions. Updated: October 2024.
815,854 professionals have used our research since 2012.