It's a little lighter compared to the older version, which was mostly signature-based.
Trellix Active Response significantly enhances threat detection capabilities and provides robust, automated threat response measures. It integrates seamlessly with existing security infrastructure and offers flexible deployment options. Highly configurable to meet specific security requirements, it does face some challenges, such as a lack of comprehensive documentation, slow response time for customer support, a complex configuration process, limited integration options with third-party tools, and high resource consumption.