Try our new research platform with insights from 80,000+ expert users

Trellix Active Response vs VMware Carbon Black Cloud comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.5
Trellix Active Response improved threat detection, reduced incident response times, increased efficiency, and enhanced productivity with an intuitive interface.
Sentiment score
7.3
VMware Carbon Black Cloud offers cost savings, improved security, centralized protection, better efficiency, and quick ROI with automation features.
While we haven't yet quantified the financial benefits, we recognize that there has been a return on investment, particularly with operational efficiencies provided by the alerts.
 

Customer Service

Sentiment score
8.5
Trellix Active Response's technical support is praised, though customer interactions have decreased and users see room for improvement.
Sentiment score
6.6
Users typically find VMware Carbon Black Cloud support efficient, with no negative feedback reported and alternative contacts available for assistance.
 

Scalability Issues

Sentiment score
7.2
Trellix Active Response is scalable, integrates easily, handles large data seamlessly, and maintains performance and security with minimal latency.
Sentiment score
7.6
VMware Carbon Black Cloud is highly rated for scalability, performing well in diverse environments from small to enterprise businesses.
The scalability of Active Response is satisfactory.
 

Stability Issues

Sentiment score
8.3
Trellix Active Response is praised for reliability, efficient data handling, quick threat detection, adaptability, and stability with minimal downtime.
Sentiment score
7.0
VMware Carbon Black Cloud became reliable after initial instability, with high user satisfaction despite minor performance issues on large deployments.
 

Room For Improvement

Trellix Active Response requires enhanced resource management, advanced features like AI, better support, and optimization for improved performance.
VMware Carbon Black Cloud needs better false positive handling, agent efficiency, support improvement, and enhanced features, training, and global support.
We would like Trellix to optimize the technology for these systems similarly to how it is deployed for normal endpoints.
 

Valuable Features

Trellix Active Response is praised for robust threat detection, real-time incident response, easy integration, and comprehensive reporting features.
VMware Carbon Black Cloud offers cost-effective, real-time security with intrusion alerts, quarantine, host isolation, data search, and threat hunting.
They notify us immediately of any vulnerabilities on the endpoints, allowing us to deploy a response quickly.
 

Categories and Ranking

Trellix Active Response
Ranking in Endpoint Detection and Response (EDR)
50th
Average Rating
6.8
Reviews Sentiment
7.6
Number of Reviews
4
Ranking in other categories
No ranking in other categories
VMware Carbon Black Cloud
Ranking in Endpoint Detection and Response (EDR)
46th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
18
Ranking in other categories
Security Incident Response (6th)
 

Mindshare comparison

As of April 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of Trellix Active Response is 0.2%, up from 0.2% compared to the previous year. The mindshare of VMware Carbon Black Cloud is 0.2%, up from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Featured Reviews

ED
Operational efficiencies increase with immediate threat alerts for endpoints
We use Trellix Active Response primarily for our endpoints, including desktop computers. It monitors all the tools that our users use for their day-to-day work The alerts provided by Trellix Active Response are its most valuable feature. They notify us immediately of any vulnerabilities on the…
Tom Kar - PeerSpot reviewer
Shows promise for endpoint detection and response, with room for improvement in complexity and pricing
VMware Carbon Black Cloud is a user-friendly solution that can isolate machines from the rest of the network. When a machine is quarantined, it cannot communicate with any other machines on the network except for the Carbon Black Cloud server. This allows you to investigate the machine without the risk of malware escaping to the network. Carbon Black Cloud's server can communicate with the quarantined machine through DNS and VSCP. This allows you to collect data from the machine, such as system logs, process activity, and registry changes. This data can be used to investigate the infection and determine the next steps. CrowdStrike and Cybereason are also popular EDR solutions. They offer similar features to VMware Carbon Black Cloud but may have different strengths and weaknesses. It is important to evaluate all of your options before choosing an EDR solution. Additionally, it is complex to use, and the pricing should be improved.
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
848,396 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Government
17%
Financial Services Firm
14%
Comms Service Provider
11%
University
11%
Computer Software Company
18%
Financial Services Firm
12%
Real Estate/Law Firm
11%
Healthcare Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for McAfee Active Response?
Based on our evaluations, Trellix Active Response's pricing was the most feasible from a cost perspective. I rate the pricing between a six and an eight. It is justified.
What needs improvement with McAfee Active Response?
The only area for improvement is regarding operational technology devices, specifically the engineering automation systems. We would like Trellix to optimize the technology for these systems simila...
What is your primary use case for McAfee Active Response?
We use Trellix Active Response primarily for our endpoints, including desktop computers. It monitors all the tools that our users use for their day-to-day work.
What to choose: an endpoint antivirus, an EDR solution or both?
I can recommend Carbon Black, an award-winning next-gen anti-virus (NGAV) and endpoint detection and response (EDR) security solution. The CB Predictive Security Cloud platform combines multiple hi...
What's the difference between Carbon Black CB Response and Carbon Black CB Defense?
Carbon Black offers two different levels of Endpoint Detection and Response. One is the VM Carbon Black Cloud Endpoint Standard (CB Defense), and the other is the Carbon Black Endpoint Detection an...
What do you like most about Carbon Black CB Response?
Threat hunting is the most valuable feature of VMware Carbon Black Cloud.
 

Also Known As

McAfee Active Response
Carbon Black CB Response
 

Overview

 

Sample Customers

Liquor Control Board of Ontario
ALLETE belk
Find out what your peers are saying about Trellix Active Response vs. VMware Carbon Black Cloud and other solutions. Updated: April 2025.
848,396 professionals have used our research since 2012.