Try our new research platform with insights from 80,000+ expert users

Rapid7 InsightIDR vs Trend Micro Deep Discovery comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Rapid7 InsightIDR
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
32
Ranking in other categories
Security Information and Event Management (SIEM) (15th), User Entity Behavior Analytics (UEBA) (7th), Endpoint Detection and Response (EDR) (22nd), Threat Deception Platforms (4th), Extended Detection and Response (XDR) (16th)
Trend Micro Deep Discovery
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
28
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (6th), Advanced Threat Protection (ATP) (17th), Network Detection and Response (NDR) (8th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Rapid7 InsightIDR is designed for Security Information and Event Management (SIEM) and holds a mindshare of 2.2%, down 2.6% compared to last year.
Trend Micro Deep Discovery, on the other hand, focuses on Intrusion Detection and Prevention Software (IDPS), holds 3.5% mindshare, down 4.7% since last year.
Security Information and Event Management (SIEM) Market Share Distribution
ProductMarket Share (%)
Rapid7 InsightIDR2.2%
Splunk Enterprise Security7.4%
Wazuh7.3%
Other83.1%
Security Information and Event Management (SIEM)
Intrusion Detection and Prevention Software (IDPS) Market Share Distribution
ProductMarket Share (%)
Trend Micro Deep Discovery3.5%
Fortinet FortiGate13.9%
Darktrace12.2%
Other70.4%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

SohailHyder - PeerSpot reviewer
Head of Cyber Security at Super Secure
Has supported compliance needs for mid-sized organizations but lacks customization and advanced integration
If we pitch Rapid7 InsightIDR against solutions such as SIEMs from Splunk or LogRhythm, it is not as customizable as a SIEM solution is. This is where it can improve if we keep in front the feature sets of a complete SIEM solution. Most common in the market is QRadar, but it is depleting now. It has been taken over by some other products such as Splunk and LogRhythm. If we compare these things with Rapid7 InsightIDR, then there are definitely some gaps that need to be filled. Data retention is also one concern because Rapid7 InsightIDR is cloud-based and operates on a subscription model. Whatever data you want to retain, it has to be paid for separately or it has a cost. Other solutions that are on-premises can have their own infrastructure or they provide some data retention for a month or in some capacity-wise, they provide that solution to them which makes them more attractive.
reviewer2266119 - PeerSpot reviewer
Senior IT Security Engineer at a financial services firm with 5,001-10,000 employees
Has improved email security through advanced filtration and timely threat detection
I work with Trend Micro Apex One. I have used the Deep Discovery's Sandbox analysis feature, and we utilize another appliance known as Deep Discovery Analyzer, abbreviated as DDA. This tool makes analysis for URLs and attachments contained in inbound emails, so whenever we receive an email with a URL or attachment, it will be analyzed by Trend Micro Deep Discovery Analyzer. In evaluating Deep Discovery's real-time visibility on network traffic, it is important to note that we applied our Deep Discovery Analyzer for Trend Micro to conduct sandboxing specifically for email channels only, and we do not utilize it for network channels. For network channel sandboxing, we use a solution called FortiAnalyzer, which belongs to another team called network security. I assess Deep Discovery's effectiveness in identifying sophisticated attack patterns by looking at how it handles high traffic loads, and how effectively it can use its instances and images to analyze numerous URLs and attachments simultaneously. Additionally, I evaluate its ability to maintain round-robin or load balancing across different analyses without leaving samples queued for analysis. The performance is critical when the product updates for signatures are up-to-date, as this aids in the detection and classification of URLs and attachments without delay in the analysis process. On a scale of one to ten, I rate Trend Micro Deep Discovery a nine.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It improved my organization by building a security alerting program."
"During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, its origin, and potential threats. For instance, it can identify if an application belongs to a known ransomware group. The system rates the threat, offering a clear detection ratio, such as 97 out of 100. It not only identifies threats but also illustrates the associated behaviors, helping us understand the potential risk to a particular endpoint."
"Very intuitive and easy to set up."
"I like that it's a cloud-based solution."
"Rapid7 is easy to use and deploy. It is a simple solution and has easy data pulling."
"I like the tool's user analysis feature."
"The ability to ingest Office 365 log files, then process them into events and display them on a map."
"I rate Rapid7 nine out of 10 for affordability"
"The tool's most valuable feature is its collaboration with other products. Integrating with other security products was simple and easy."
"One of the most valuable features is the performance, since, so far, we have not faced any issues with Deep Discovery."
"Trend Micro Deep Discovery Email Inspector includes its ability to perform mail detection and mail filtration against various email attacks such as phishing and spam, serving as an email gateway for both inbound and outbound traffic."
"Initial setup is easy. It can be done by yourself."
"I like the sales operations testing. and support."
"The HTML file sandboxing is very good."
"Sandboxing gives us a chance to identify malicious behavior, especially for unknown vulnerabilities, although it's rarely needed as a last resort after all other security measures have failed."
"The product is very easy to install."
 

Cons

"Inability to get access to compliance reports within the solution."
"I would like to see more development in InsightIDR towards building their SIEM solution and converting it to XDR."
"Sometimes, it is hard to get the right queries to use. Currently, the tool lacks a pre-made set of queries."
"I would like the ability to adjust the threshold of certain existing alerts. Currently the only option is to change the notifications or create my own alert."
"There is a future in AI with Rapid7, however, it is not fully operated. There are certain limitations with Rapid7 that I am working on."
"It takes time for the product's support team to resolve issues, making it an area of concern where improvements are required."
"There are certain limitations with Rapid7 that I am working on."
"The searching feature in Rapid7 InsightIDR needs to evolve"
"Trend Micro can improve the pricing in general. There is nothing else they can add or improve in the solution."
"This solution could be improved with faster technical support and cheaper licensing prices."
"I would like to see integration with third-party tools to improve the visibility of the dashboards."
"The solution needs improvement in terms of pricing."
"I would like the ability to analyze all files in our internal network, at the same time on different operating systems. Not just three of them, but as many as possible."
"The product's scalability feature needs to be improved, as it is an area in the product with certain shortcomings."
"All issues we faced related to false positives regarding many hashes and URLs specifically for mail gateway and sandboxing, which led us to open a threat ticket with Trend Micro support for validation."
"The price range is a little high."
 

Pricing and Cost Advice

"Rapid7 InsightIDR charges us based on the endpoints we connect to."
"The pricing of the solution depends on the user. But there is a yearly licensing cost."
"Licensing is straightforward. If, for some reason, you don’t meet the minimum licensing requirements, there is a third-party managed service that can help."
"It is on a yearly basis. For our own company, for about 250 users, it was 16,000 euros a year."
"The team is very willing to work with companies. My suggestion is to call the Rapid7 sales department and see how they can help.​"
"Rapid7 InsightIDR's pricing is reasonable but we have challenges with the Minimum Order Quantity. It is not reasonable for customers who have less than one hundred devices. If they can reduce Minimum Order Quantity, it is good. You have to pay around 5000-6000 dollars per year for the product. The pricing includes maintenance and support costs."
"Rapid7 InsightIDR is a cheaply priced product. On a scale of one to ten, where one is very expensive, and ten is very cheap, I rate the product's price at seven or eight."
"​Accurately predict your licensing counts as this is a subscription based product.​"
"The pricing is okay for some, and sometimes, some people find it expensive."
"Compared to its competitors, Trend Micro Deep Discovery is a little expensive."
"The licensing cost is a bit pricey. We pay a yearly subscription."
"The tool's licensing costs are yearly. There are no additional costs associated with the product."
"Trend Micro Deep Discovery is quite expensive compared to other endpoint security products."
"The tool’s licensing costs depend on the customers."
"Overall, the price is good."
"The price of the solution is lower compared to the competition."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
879,422 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
9%
Manufacturing Company
8%
Government
6%
Computer Software Company
12%
Financial Services Firm
8%
Healthcare Company
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise5
Large Enterprise6
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise6
Large Enterprise9
 

Questions from the Community

What SOC product do you recommend?
For tools I’d recommend: -SIEM- LogRhythm -SOAR- Palo Alto XSOAR Doing commercial w/o both (or at least an XDR) is asking to miss details that are critical, and ending up a statistic. Also, rememb...
What do you like most about Rapid7 InsightIDR?
During simulations or demonstrations, the tool generates alerts, providing details such as the specific application, its origin, and potential threats. For instance, it can identify if an applicati...
What do you like most about Trend Micro Deep Discovery?
The tool's most valuable feature is its collaboration with other products. Integrating with other security products was simple and easy.
What needs improvement with Trend Micro Deep Discovery?
Server Protect is not commonly used. When considering the Sandbox feature, it only inspects small files, and not all types of files are supported. The solution is very expensive. The solution is no...
 

Also Known As

InsightIDR
Trend Micro Deep Discovery Inspector, Trend Micro Deep Discovery Analyzer
 

Overview

 

Sample Customers

Liberty Wines, Pioneer Telephone, Visier
Allied Telesis, Atma Jaya Catholic University of Indonesia, Babou, Blekinge County Council, Delacour, Hiroshima Prefectural Government, Live Nation Entertainment Inc., Mazda Motor Logistics Europe, McGill University Health Centre, Mikuni Corporation, OKWAVE, Sinar Mas Land, SWICA, UTOC Corporation
Find out what your peers are saying about Splunk, Wazuh, IBM and others in Security Information and Event Management (SIEM). Updated: November 2025.
879,422 professionals have used our research since 2012.