Try our new research platform with insights from 80,000+ expert users
Kulwinder Singh - PeerSpot reviewer
Network Security Associate Manager at Eir evo
Real User
Top 5
Provides complete end-to-end visibility of threats
Pros and Cons
  • "The most valuable feature of Trend Micro Deep Discovery is its complete end-to-end visibility of threats."
  • "Trend Micro Deep Discovery's technical support could be improved, and it could be made more active."

What is our primary use case?

We use Trend Micro Deep Discovery to identify ransomware attacks.

What is most valuable?

The most valuable feature of Trend Micro Deep Discovery is its complete end-to-end visibility of threats.

What needs improvement?

Trend Micro Deep Discovery's technical support could be improved, and it could be made more active.

For how long have I used the solution?

I have been using Trend Micro Deep Discovery for four to five months.

Buyer's Guide
Trend Micro Deep Discovery
March 2025
Learn what your peers think about Trend Micro Deep Discovery. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,690 professionals have used our research since 2012.

How was the initial setup?

Trend Micro Deep Discovery's initial setup is easy.

What other advice do I have?

Trend Micro Deep Discovery's interface and threat mechanism are very proactive.

Overall, I rate Trend Micro Deep Discovery a nine out of ten.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Security Consultant and Cybersecurity Support at a tech services company with 51-200 employees
Real User
Good HTML file sandboxing and great technical support, but stability isn't 100%
Pros and Cons
  • "The HTML file sandboxing is very good."
  • "The stability of the solution could be improved. It should be 100% stable, but it's not there right now."

What is our primary use case?

Normally we use the solution to send the traffic. We get traffic on it and once I get the traffic, I get the SPN diagnosis and all the network services diagnostics and whatever else that I run in the office file server. It scans through that. For example, when we download some files, in our portal we are uploading some of the activity documents, as well as Excel and Word documents, etc. They get scanned through and we have DDI Rules that are enabled for the file management. 

Basically, any uploading, downloading, etc. of items from our website server get scanned and analyzed. 

What is most valuable?

The HTML file sandboxing is very good.

Their technical support is very good and extremely responsive.

The solution, overall, offers very good features.

What needs improvement?

The licensing costs could be improved and simplified.

If they could integrate the solution with the endpoint agent, that would be ideal. I understand that's not possible currently.

Since this is a technical device, it would be great if they could just allow us to integrate it with some of the existing VMs or our existing devices. These are all central devices. If they can offer the solution on VM boxes, like virtual systems, that would be great. That way, our hardware costs, electricity costs, and database space costs and all can be lowered.

Currently, a solution called Apex One is on the market and it has features that allow for more integrated security. They should try to emulate this a bit more. It has better bundles.

The stability of the solution could be improved. It should be 100% stable, but it's not there right now.

For how long have I used the solution?

I've been using the solution for more than one and a half years.

What do I think about the stability of the solution?

Sometimes there needs to be a stability test done. We did tests and checked up to around 20 or 25 samples. Out of those tests, two missed. There were two things that the solution didn't detect but were later detected on the endpoint. It's therefore not completely stable. It misses things.

What do I think about the scalability of the solution?

The scalability of the solution is okay. It's fast.

All of our users are currently on the solution.

How are customer service and technical support?

The technical support is good. They're immediately in contact with us the moment we reach out to them. That's never been a problem. We've been quite satisfied with the level of service they've provided.

Which solution did I use previously and why did I switch?

We previously used McAfee.

How was the initial setup?

The solution doesn't have a very common setup. The initial implementation is a bit different. However, anyone can handle it as long as they review the necessary documentation. They just need to read the manual, and then they can handle the implementation. I would suggest it has a medium level of difficulty.

For us, deployment took about three days. That includes configuring the solution as well.

What about the implementation team?

I handled the implementation and the configuration myself with the assistance of the solution's manuals.

What's my experience with pricing, setup cost, and licensing?

I don't handle the licensing. I don't know what the costs are for the solution.

Which other solutions did I evaluate?

I haven't evaluated the solution, but something called Apex One is now on the market, and it offers better bundles and better integrations in comparison to Trend Micro.

What other advice do I have?

The solution is very nice, but I would suggest to others that they test as many use cases as they can at the beginning.

I'd rate the solution seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Trend Micro Deep Discovery
March 2025
Learn what your peers think about Trend Micro Deep Discovery. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,690 professionals have used our research since 2012.
OzgurEkinci3 - PeerSpot reviewer
Solutions Architect at NGN
Real User
Top 5
Ahead of its competitors in providing MSP services to customers

What is our primary use case?

We use the solution for its security features. Trend Micro has an MSP portal where you can create customer accounts, assign some licenses, and make your customers use those licenses from a portal. Trend Micro is ahead of its competitors in providing MSP services to customers.

What is most valuable?

Trend Micro Endpoint Encryption is stable and easy to use. It's very useful for an MSP company, making it easy and efficient to work with.

What needs improvement?

Security features could be improved.

For how long have I used the solution?

I have been using Trend Micro Endpoint Encryption for one year.

What do I think about the stability of the solution?

The product is very stable.

What do I think about the scalability of the solution?

The solution is scalable because it doesn't require an on-premise server installed. Everything is being monitored and managed from the cloud portal, irrespective of the number of agents. You can manage all from one portal.

How are customer service and support?

Vendors are locally present in our country. We contact them via email, etc. We are very flexible with vendor support.

How was the initial setup?

The initial setup is straightforward. One person is enough for it.

An MSP company creates customer accounts from Trend Micro's MSP portal. Then, the customer gets the key. After that, they can log in to the Trend Micro portal. They will see the agent to be downloaded for Windows and Linux. It takes about two or three minutes to deploy.

What about the implementation team?

Deployment can be done by yourself.

What's my experience with pricing, setup cost, and licensing?

The MSP's model and licensing is global and has very reasonable prices. Also, the perpetual license model is reasonable. It's cheap for the assembly companies. Licensing is very straightforward.

What other advice do I have?

Around five to ten technical persons are using the support. We will be able to sell those agents to more than 20 companies.

Only one technical person is enough for a large company for the installation and the management. In terms of management, many logs, alarms, and entries are happening in the portal.

Trend Micro can be a viable option for SMBs looking for a basic EDR or PRT solution. However, for larger organizations or those with highly complex security needs demanding advanced services and sophisticated department knowledge, Trend Micro's capabilities might not be sufficient.

Overall, I rate the solution a seven out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Reseller
Top 5
Advanced features, sandbox environments, and priced well
Pros and Cons
  • "The most valuable features are monitoring for advanced persistent threats, the system runs in a sandbox allowing for effective zero-day exploits management, and the Inspector has a built-in sandbox."
  • "The solution needs to be able to integrate better with third-party infrastructure."

What is our primary use case?

We are using this solution for network security.

What is most valuable?

The most valuable features are monitoring for advanced persistent threats, the system runs in a sandbox allowing for effective zero-day exploits management, and the Inspector has a built-in sandbox.

What needs improvement?

The solution needs to be able to integrate better with third-party infrastructure.

For how long have I used the solution?

I have been using this solution for approximately five years.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

We have customers that are small and enterprise-sized companies using this solution.

How was the initial setup?

The initial setup is at a moderate level of difficulty. However, we are qualified and for somebody quite new to the solution it could be more difficult. It is not usual for the end-user to start the process themselves. Usually, they are assisted with a partner or with Trend Micro themself. It is not a matter of how complex the solution is, but how much experience they have with the setup.

What's my experience with pricing, setup cost, and licensing?

The price of the solution is lower compared to the competition.

Which other solutions did I evaluate?

I have recently evaluated Darktrace.

What other advice do I have?

I would recommend this solution.

I rate Trend Micro Deep Discovery a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Ahmet Burak Aydin - PeerSpot reviewer
Security Engineer at Intertech Information Technology and Marketing Inc.
Real User
Useful for threat protection and to block phishing emails
Pros and Cons
  • "Initial setup is easy. It can be done by yourself."
  • "The solution could be more secure."

What is our primary use case?

This solution can be used as threat protection and to block phishing emails.

We are using version 6.0.

There are 15 people using this solution in my organization.

What needs improvement?

The solution could be more secure.

What do I think about the stability of the solution?

It's stable.

What do I think about the scalability of the solution?

It's scalable.

How are customer service and support?

We are using local technical support. We haven't had any problems with it.

How was the initial setup?

Initial setup is easy. It can be done by yourself.

What other advice do I have?

I would rate this solution 9 out of 10.

I would recommend this solution to anyone who wants to start using it.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Özden-Aydın - PeerSpot reviewer
Technology Consultant at Netwiser
Real User
Top 5Leaderboard
Good Ecosystem, and easy to manage
Pros and Cons
  • "I like the sales operations testing. and support."
  • "I would like to see integration with third-party tools to improve the visibility of the dashboards."

What is our primary use case?

We are integrators. We work on integrated systems.

Our clients use this solution to know what is happening in the network and to analyze it. 

What is most valuable?

Trend Micro is a good solution and our clients are happy with it.

I like the sales operations testing and support.

The ecosystem is good, it's the best. It's also simple to manage.

What needs improvement?

I would like to see integration with third-party tools to improve the visibility of the dashboards.

For how long have I used the solution?

I have been working with Trend Micro Deep Discovery Inspector for two years.

What do I think about the stability of the solution?

The stability is good. We have not experienced any issues.

What do I think about the scalability of the solution?

Scalability with Trend Micro Deep Discovery Inspector is very good. We are satisfied with the scalability.

We do not have users in our company, we use the systems with our clients.

How are customer service and technical support?

The technical people are good.

We don't have any issues with technical support. 

Local technicians and global support are very good.

Which solution did I use previously and why did I switch?

We also use one other solution.

How was the initial setup?

The initial setup can be simple, and at times it can be complex when changing the solution.

It is less than a week to deploy Trend Micro, but it can change per the solution type. 

For some solutions, it can take a week, and for others solutions with complex projects, it can take a month. 

What's my experience with pricing, setup cost, and licensing?

Depending on the client's requirement, it can be cheap and at times, more expensive.

Overall, the price is good.

What other advice do I have?

For others who are interested in using this solution, I would recommend it.

I like working with this solution. I would rate Trend Micro Deep Discovery Inspector a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
PeerSpot user
it_user1328895 - PeerSpot reviewer
Consultant at a consultancy with 10,001+ employees
Consultant
Protection that limits the threat quickly and is easy to set up
Pros and Cons
  • "The most valuable features are the protection and that it is fast."
  • "I would like to see them create a rule where It could integrate with the network and start mitigating with auto-detection."

What is our primary use case?

The primary use case of this solution is to protect the equity, command, and control and botnet infections.

What is most valuable?

The most valuable features are the protection and that it is fast.

What needs improvement?

I would like to see them create a rule where It could integrate with the network and start mitigating with auto-detection.

For how long have I used the solution?

I have been working with this solution for six months.

What do I think about the stability of the solution?

This solution is stable we have not had any issues.

What do I think about the scalability of the solution?

We have plans to scale it to FortiGate. We have checked it to 10GB and it was fine.

I am the only user.

How are customer service and technical support?

I have not contacted technical support.

Which solution did I use previously and why did I switch?

Previously, we have tried an open-source SIEM solution. SIEM is a traffic analyzer, and conflicts can be fixed. With Trend Micro, you can only categorize it.

How was the initial setup?

The initial setup was easy.

This solution can be deployed in two days.

What about the implementation team?

I did not use a vendor to implement this solution. I did it myself.

What other advice do I have?

We are trying this solution as a POC.

It's a nice product and it has really helped limit the attacks.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Information Security Manager at a legal firm with 1,001-5,000 employees
Vendor
The built-in auto tuning system does a great job of detecting legitimate services and devices on the network.

What is most valuable?

Ease of use, just connect to a span port on your core switch and you're ready to go. Of course, you will see a bunch of white noise, but the built-in auto tuning system does a great job of detecting legitimate services and devices on the network, and from there you white-list the ones which you've confirmed to be known goods. Built in sandboxing provides an additional layer of defense to shake out suspicious objects and processes. This works especially well if you're running Trend Micro's Office Scan Endpoint Protection, where DDi is able to generate a new virus definition via the sandbox, and push it out to the Office Scan AV engine to provide protection across your network.

How has it helped my organization?

DDi rapidly discovers C2 traffic and pinpoints the offenders, source and recipient. It also provides a set of eyes to keep track of suspicious lateral movements between nodes. The out of the box rule set does a great job of hunting down previously unflagged threats, but can easily be customized for those that like to tweak and refine.

What needs improvement?

Not too much to complain about, really. There were a few instances where legitimate traffic (WPAD) was flagged as C2 communication. There were some challenges in white-listing it, which resulted in a bunch of alerts/noise.

For how long have I used the solution?

2 years

What was my experience with deployment of the solution?

No

What do I think about the stability of the solution?

Never

What do I think about the scalability of the solution?

It can get expensive if you wish to monitor all core switches across many satellite offices. My suggestion is to put one or more DDi appliances at core switches nearest to where your critical data is housed.

How are customer service and technical support?

Customer Service:

Customer service is very good.

Technical Support:

Very good.

Which solution did I use previously and why did I switch?

FireEye. Fire Eye is incredibly expensive, and requires multiple appliances which together, scan far less protocols than DDi. It also hasn't fared so well in terms of detection rates, in independent tests against competing products.

How was the initial setup?

Straightforward setup.

What about the implementation team?

Implemented in-house along with Trend's team.

What other advice do I have?

Be sure to implement Trend's Control Manager module (free) for more flexible reporting, along with integration with other Trend products (strongly suggest using this along with Office Scan and Deep Discovery Endpoint Sensor, which is an EDR solution).

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Trend Micro Deep Discovery Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2025
Buyer's Guide
Download our free Trend Micro Deep Discovery Report and get advice and tips from experienced pros sharing their opinions.