Trellix Network Detection and Response and SentinelOne Singularity Identity are prominent in the cybersecurity domain. Trellix is favored for its integration and threat investigation tools, whereas SentinelOne is recognized for unified threat visibility and lightweight design, providing an edge in seamless endpoint management.
Features: Trellix enhances cybersecurity with advanced sandboxing, deep malware analysis, and adept zero-day attack detection. It integrates multiple security functions, offering insightful threat investigations. SentinelOne distinguishes itself through dynamic behavior-based threat detection, unified threat visibility, and strong prevention capabilities, bolstered by AI-driven features and streamlined endpoint management.
Room for Improvement: Trellix could improve integration with other solutions, analytics, and user-friendliness in endpoint security management. There's a desire for better cloud connectivity and advanced machine learning features. SentinelOne needs more user-friendly interfaces, improved support, and enhanced endpoint management, with attention to agent update management and comprehensive web filtering.
Ease of Deployment and Customer Service: Trellix operates on-premises, with users noting detailed technical support and a supportive setup. SentinelOne, focused on cloud deployment, is praised for its highly-rated customer service and ease of use, despite some concerns about first-level support responsiveness.
Pricing and ROI: Trellix is perceived as slightly expensive, with significant maintenance costs but notable threat detection capabilities. SentinelOne is deemed cost-effective, with competitive pricing, though there are concerns about price increases and the need for yearly licenses. Both products offer strong ROI, with Trellix improving analysis speed and SentinelOne enhancing threat prevention.
They have been responsive to our needs as integrators and those of the client.
Technical support needs improvement as sometimes engineers are not available promptly, especially during high-severity incidents.
There is a clear roadmap for improvements, including enhancing capabilities with AI and seamless functionality in an MSP model for deeper visibility across multiple agencies.
There should be improvements in AI intelligence, faster decision-making, and a more responsive technical support team.
With visibility into endpoint telemetry, SentinelOne does provide useful information to find threat actors and empowers those who are in the business of threat hunting.
Trellix NDR provides an essential defense by automatically responding to network incidents that firewalls may not catch.
Singularity Identity, a component of the Singularity platform, provides threat detection & response (ITDR) capabilities to defend Active Directory and domain-joined endpoints in real-time from adversaries aiming to gain persistent, elevated privilege and move covertly. Singularity Identity provides actionable, high-fidelity insight as attacks emerge from managed and unmanaged devices. It detects identity misuse and reconnaissance activity happening within endpoint processes targeting critical domain servers, service accounts, local credentials, local data, network data, and cloud data. On-agent cloaking and deception techniques slow the adversary down while providing situational awareness and halting adversarial attempts at lateral movement. Singularity Identity helps you detect and respond to identity-based attacks, providing early warning while misdirecting them away from production assets.
Singularity Identity’s primary use case is to protect credential data and disrupt identity-based attacks. The most valuable function of Singularity Identity is its ability to misdirect attackers by providing deceptive data to identity-based recon attacks. Additionally, it can hide and deny access to locally stored credentials or identity data on Active Directory domain controllers.
Singularity Identity also provides rapid detection and respond to identity attacks, capturing attack activity and feeding it directly to the Singularity platform’s Security DataLake for enterprise-wide analysis and response.
By implementing Singularity Identity, organizations benefit from enhanced security, reduced credential-related risks, and improved user productivity. It detects and responds to identity-based attacks, ensuring only authorized individuals can access critical identity data. With its cloaking capabilities to hide identity stored locally on endpoints or in the identity infrastructure and it’s ability to provide decoy results to identity-based attacks, organizations can effectively secure their sensitive or privileged identities, resulting in improved overall identity security.
Detect the undetectable and stop evasive attacks. Trellix Network Detection and Response (NDR) helps your team focus on real attacks, contain intrusions with speed and intelligence, and eliminate your cybersecurity weak points.
We monitor all Advanced Threat Protection (ATP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.