Stop threats before they strike with TrendAI Vision One™ - the AI-powered enterprise cybersecurity platform built to predict, prevent, and respond to threats across AWS, hybrid, and multi-cloud environments. Gain unified visibility, streamline cloud risk management, accelerate cloud investigations, and empower your security teams with proactive, layered protection that works at cloud speed. Proactive security starts here.
TrendAI Vision One™ gives enterprises and security leaders the power to see, secure, and control their entire multi-cloud and hybrid environments from a single, unified platform. Gain complete visibility with real-time risk scoring, threat exposure mapping, and centralized monitoring all from one intuitive dashboard.
Backed by AI, machine learning, and predictive analytics, TrendAI Vision One™ empowers proactive cloud security by automating threat detection, risk mitigation, and response. Streamline operations, reduce security complexity, and offload the pressure on your teams with modern CNAPP capabilities so you can stay ahead of every attack.
Trusted by industry leaders and recognized as a 2024 Gartner Peer Insights™ Customers' Choice for CNAPP, Trend Vision One is proven to reduce operational costs by up to 79% and accelerate detection and response times by 70%. It's also a Leader in the 2025 Gartner® Magic Quadrant for Endpoint Protection Platforms, delivered a 100% detection rate in MITRE evaluations, and was named a Leader in the IDC MarketScape for Cloud-Native Application Protection Platforms 2025, solidifying its position as the most trusted platform for securing the cloud.
Confidently secure your cloud transformation with a platform built for the modern enterprise. From hybrid to multi-cloud, TrendAI Vision One™ delivers unmatched protection, visibility, and control - wherever your workloads live.
Trend provides custom pricing via Private Offer. Please contact us if you're interested in personalized pricing options.
Highlights
Identify and eliminate hidden cloud risks with unified Cyber Risk Exposure Management - discover assets, prioritize vulnerabilities, and manage posture and attack surface all from one place.
Stay steps ahead of threats with XDR for Cloud, which extends visibility into cloud environments and streamlines SOC investigations through powerful correlation and alerting.
Secure every application and workflow - from containers and code to S3 files and cloud workloads - with holistic protection via the integrated stack: Container Security, File Security, Workload Security, and Code Security.
Get personalized pricing in minutes - New
If qualified, an express private offer gets you custom pricing and terms. Finalize your purchase in the AWS Marketplace console.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy this platform through a contract and mix independent security modules based on what you protect. Cloud Risk Management bills per 500 resources per cloud account per hour. Container Security bills per node, instance, pod, or task per hour. Endpoint Security scales by workload type and size, from Essentials through Small, Medium, Large, and Non-Cloud units. File Security bills per file scan or per storage per hour across several deployment options. XDR for Cloud bills per gigabyte ingested. TrendAI Flex uses credits, letting you purchase and allocate across solutions flexibly.
Top-of-mind questions for buyers
What counts as one unit for Endpoint Security billing across the Small, Medium, and Large sizes?
Each protected instance counts as one unit. Small covers EC2 instances from micro to medium, WorkSpaces, or other cloud with 1 vCPU. Medium covers large EC2 or 2 vCPU instances. Large covers XL EC2 or 4 vCPU instances. Essentials covers a workload with anti-malware, web reputation, and XDR only.
How does Container Security cost change between a Kubernetes node and a serverless container pod?
You are billed separately for each type. Protected Kubernetes nodes or Amazon ECS instances meter per node or instance per hour. Serverless container pods or tasks meter per pod or task per hour. The two rates run independently, so your bill reflects the mix of container types you actually run.
How do File Security dimensions differ, and which metric drives the cost?
File Security SDK, Storage, Virtual Appliance, and Containerized Scanner all meter per file scan, so scan volume drives cost. Storage also offers per cloud storage per hour billing. Appliance and Containerized Scanner options add a per-scanner charge. You pick the deployment that matches where your files live.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Your purchase also includes 24x7 support from Trend Micro. You can log a support ticket for any issues directly from your TrendAI Vision One™ console. If you experience any issues or have questions, please contact our AWS Security experts by email at aws.marketplace@trendmicro.com.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Centralized cyber risk exposure management with asset discovery, vulnerability prioritization, and attack surface management from a single dashboard
Extended Detection and Response for Cloud
XDR capabilities that extend visibility into cloud environments with correlation and alerting to streamline security operations center investigations
AI-Powered Threat Detection
Machine learning and predictive analytics for automated threat detection, risk mitigation, and response across multi-cloud and hybrid environments
Comprehensive Application Security
Integrated security stack covering container security, file security, workload security, and code security for end-to-end application protection
Real-Time Risk Scoring and Monitoring
Real-time risk scoring and threat exposure mapping with centralized monitoring capabilities across AWS, hybrid, and multi-cloud environments
Attack Surface Management
Aggregates comprehensive attack surface visibility across hybrid environments with external attack surface scans to provide 360-degree view of entire attack surface
Vulnerability Management
Delivers complete visibility across on-premise and remote endpoints to identify, communicate, and remediate vulnerabilities, misconfigurations, and risks
Cloud Security
Provides code-to-cloud protection for cloud-native applications with seamless CI/CD pipeline integration and agentless risk assessment based on reachability, exploitability, and potential impact
Next-Generation SIEM and XDR
Delivers accelerated detection and response with SaaS deployment, intuitive interface, out-of-the-box detections informed by MDR SOC, and built-in automation capabilities
Threat Intelligence
Delivers high-fidelity actionable threat intelligence infused with proprietary threat and vulnerability research from Rapid7 Labs and community-driven tools
Offensive Security Engine
Simulates external exploits to produce Verified Exploit Paths for prioritizing exposures that are reachable by outside attackers and reducing cloud attack surface.
Cloud Security Posture Management
Continuously monitors and manages security of AWS configurations to prevent public exposure and ensure compliance.
Secrets Scanning
Identifies more than 750 types of secrets across public and private repositories.
Cloud Infrastructure Entitlements Management
Detects and manages excessive or unused permissions to mitigate the risk of privilege escalation.
Real-Time Malware Detection
Detects malware including zero-days in milliseconds with scanning performed directly in cloud environment for object storage services like Amazon S3 and file storage services.
Centralized detection has reduced false positives and improves ransomware and email threat response
Reviewed on Aug 17, 2026
Review provided by PeerSpot
What is our primary use case?
A common use case for TrendAI Vision One is ransomware detection and response, and we also use it for business email compromise. Our SOC team uses it for advanced threat hunting and insider threat detections.
Recently, my team used TrendAI Vision One for ransomware detection and response when a user executed a malicious attachment, leading to the detection of suspicious process executions. TrendAI Vision One helps us by correlating emails with endpoints, identifying host details, network activity, user device activity, and infected sources, allowing for quick resolution of threats in the organization.
We have also been using TrendAI Vision One for identifying suspicious or compromised emails and insider threat detections, which aids us in quickly identifying and investigating malicious emails.
What is most valuable?
TrendAI Vision One offers excellent extended detection and response capabilities through EDR and XDR solutions, as it is a complete package for organizational threat protection across email, endpoints, cloud networks, servers, and data centers. It helps us quickly identify attacks and provides deep insights into attacker movements as well as a centralized investigation workbench from a single dashboard.
Having everything in one dashboard allows our SOC team to quickly identify details across the network or organization level, such as the number of created tickets, false positives, true positives, actions taken, SLAs, threat metrics, and attack path details. It reduces alert fatigue for SOC analysts by providing a consolidated view of all details across the organization.
TrendAI Vision One has positively impacted our organization by identifying real-time threats and proactively isolating threats while alerting the SOC team for further investigations and remediation actions.
Since implementing TrendAI Vision One, it has reduced noise from false positive alerts by 80% and enabled the SOC team to focus on true positives, thus improving incident response and operational efficiency. TrendAI Vision One is highly reliable; it provides centralized visibility across protection layers and is stable and scalable, making it a suitable solution for organizations looking for thorough threat detection and response capabilities.
What needs improvement?
I believe that if the reporting features of TrendAI Vision One could be improved, it would help SOC analysts retrieve comprehensive reports detailing true positive incidents, top email threats, quarantined emails, and common malware, enhancing our analytics capabilities.
The TrendAI Vision One support system is not very good. They charge extra for premium support, while basic support does not adequately assist with investigations and troubleshooting. Improvements in this area are needed, and there should also be enhancements in third-party integrations to reduce alert noise and false positives.
TrendAI Vision One's governance and security capabilities are excellent, and while the security is always very good, they can still improve on compliance and regulations.
If they fix automated root cause analysis reports and AI-generated incident summaries, it can enhance capabilities further and reduce investigation times.
For how long have I used the solution?
I have been using TrendAI Vision One for more than two years.
What do I think about the stability of the solution?
TrendAI Vision One is stable.
What do I think about the scalability of the solution?
TrendAI Vision One is highly scalable as per our requirements, as user licenses can be improved if we have a greater number of users.
How are customer service and support?
The customer support is not very good, and they need to improve their premium license support.
Which solution did I use previously and why did I switch?
Previously we were using a different endpoint solution due to setup cost and support issues, so we switched to TrendAI Vision One for better SOC capabilities for threat detection.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing was very good. The top leadership is engaged in identifying pricing and licensing features, although licensing renewal is challenging and the setup cost can be high, but it remains manageable for quality solutions.
Which other solutions did I evaluate?
We evaluated other options such as FireEye Helix, Symantec, and Microsoft Sentinel during our assessment process.
What other advice do I have?
My advice to others looking into using TrendAI Vision One is to definitely proceed with this solution as it is a complete package for SOC teams regarding threat identification and remediation, although there is room for improvement in support. This review has a rating of 9.
Niranjan Prajapati
Integrated security platform has strengthened threat detection and improved risk prioritization
Reviewed on Aug 13, 2026
Review provided by PeerSpot
What is our primary use case?
In terms of the VDR, we are doing the Sophos entire solutions. We are doing the firewall, as well as endpoint, as well as email security.
When it comes to SophosLabs Intelix or Sophos Cloud Optix, basically, we are working with Sophos XDR and MDR right now.
As a partner, we have so many clients who are serving the Extended Detection and Response, and some users are just selling the Sophos Managed Detection and Response services. Basically, it's XDR, it's a tool, and MDR is managed by the Sophos security team 24/7. So, we are selling the Sophos MDR.
On the firewall side, we are doing the Sophos firewall, SonicWall firewall, and FortiGate.
We are dealing with Trend Micro for EDR and XDR.
We have been doing this product for the last 10 years, actually. Ten plus years we have been doing this product—Sophos entire solution and Trend Micro entire solution. Trend Micro has so many products, including anti-APT and IDS, IPS device.
For TrendAI Vision One, I have many corporate users who are using it for their servers' security, as well as the IDS, IPS device and TippingPoint, SMS gateway, and so on.
TrendAI Vision One has core features, such as endpoint, email, identity, servers, cloud workloads, and networks. When we talk about endpoint security, it includes anti-malware, anti-ransomware, behavioral analysis, exploit protections, device control, application control, post firewall, and EDR capabilities for the threat investigation and response. These are the TrendAI Vision One features.
Regarding TrendAI CReM capabilities, the threat hunting includes searching across telemetry data, IOC sweeping, root cause analysis, and advanced investigation tools. When we talk about the CReM features, they provide visibility into endpoints, server, cloud workloads, and identities. They help to identify unknown or exposed assets in the environment, then asset discovery, vulnerability management, and attack surface management.
My impressions of TrendAI Vision One include risk prioritization analysis, security posture, and assessment. Right now, I am working with Sophos in Sophos XDR.
I just appreciate the Sophos server protection and its lockdown features. When I whitelisted some applications, other executable files or any files do not run in the environment. I compare Sophos EDR with Sophos XDR, Endpoint Detection and Response, and Extended Detection and Response. When we're going with Sophos XDR, they have email, identity, firewall, cloud, and any third-party integrations.
I am focusing on the Sophos product, but as per the client requirement, I recommend Sophos because the clients are using a parameter gateway with a Sophos firewall. I pitch Sophos because they enable Heartbeat security, so the firewall and endpoint communicate effectively. It's a good bundle when combining Sophos firewall with Sophos endpoint.
Some users using Sophos require on-premises solutions and do not move to the cloud. So many reasons exist for this, which is why we pitch server solutions. Trend Micro server protection is a really good product, but my query always relates to support; I cannot get immediate support from Trend Micro.
What is most valuable?
For TrendAI Vision One, I have many corporate users who are using it for their servers' security, as well as the IDS, IPS device and TippingPoint, SMS gateway, and so on.
TrendAI Vision One has core features, such as endpoint, email, identity, servers, cloud workloads, and networks. When we talk about endpoint security, it includes anti-malware, anti-ransomware, behavioral analysis, exploit protections, device control, application control, post firewall, and EDR capabilities for the threat investigation and response. These are the TrendAI Vision One features.
Regarding TrendAI CReM capabilities, the threat hunting includes searching across telemetry data, IOC sweeping, root cause analysis, and advanced investigation tools. When we talk about the CReM features, they provide visibility into endpoints, server, cloud workloads, and identities. They help to identify unknown or exposed assets in the environment, then asset discovery, vulnerability management, and attack surface management.
I appreciate the Sophos server protection and its lockdown features. When I whitelisted some applications, other executable files or any files do not run in the environment. I compare Sophos EDR with Sophos XDR, Endpoint Detection and Response, and Extended Detection and Response. When we're going with Sophos XDR, they have email, identity, firewall, cloud, and any third-party integrations.
I am focusing on the Sophos product, but as per the client requirement, I recommend Sophos because the clients are using a parameter gateway with a Sophos firewall. I pitch Sophos because they enable Heartbeat security, so the firewall and endpoint communicate effectively. It's a good bundle when combining Sophos firewall with Sophos endpoint.
What needs improvement?
From my perspective, the only disadvantage in TrendAI Vision One is the support size.
The support takes too much time. When I email, I have to collect logs and submit them to the engineer, then wait for their reply. It takes too much time. The product is really good, but the support is not good in my perspective since it takes too long to receive help, especially when all the devices are in production.
The price is high when compared to the features. After installing the product, support is always required. Whenever we deploy any product, we need support, especially if an issue arises, support is a must.
We face lots of challenges, but the product itself is good. The main issues arise from support.
Some users using Sophos require on-premises solutions and do not move to the cloud. So many reasons exist for this, which is why we pitch server solutions. Trend Micro server protection is a really good product, but my query always relates to support; I cannot get immediate support from Trend Micro.
Trend Micro is a really good product, but I face challenges when not getting proper support; hence I feel helpless at times. The product itself is really good; I have no doubts about that.
For how long have I used the solution?
We have been doing this product for the last 10 years. Ten plus years we have been doing this product—Sophos entire solution and Trend Micro entire solution.
How are customer service and support?
The support takes too much time. When I email, I have to collect logs and submit them to the engineer, then wait for their reply. It takes too much time. The product is really good, but the support is not good in my perspective since it takes too long to receive help, especially when all the devices are in production.
From my perspective, the only disadvantage in TrendAI Vision One is the support size. Sophos support is really good, but when I require immediate support from Trend Micro, it is a challenge.
How was the initial setup?
TrendAI Vision One is easy; deployment is not a problem.
What other advice do I have?
We are dealing with Trend Micro for EDR and XDR.
My impressions of TrendAI Vision One include risk prioritization analysis, security posture, and assessment. Right now, I am working with Sophos in Sophos XDR.
When we talk about the CReM features, they provide visibility into endpoints.
I would rate Trend Micro support a six to seven, possibly seven to eight.
The interface and everything are good; my only query is on the support, which is not good from my perspective.
Some limited corporate users and some government users choose Trend Micro instead of Sophos.
Trend Micro is a really good product, but I face challenges when not getting proper support; hence I feel helpless at times. The product itself is really good; I have no doubts about that.
I would rate this review an eight overall.
Alex-Chen
XDR dashboard has unified threat response and has reduced false-positive noise across endpoints
Reviewed on Jul 31, 2026
Review from a verified AWS customer
What is our primary use case?
TrendAI Vision One, the XDR platform, includes endpoint protection, EDR, mail protection as a mail gateway, mail access, and access integration with API for Office 365 and Google Workspace. The endpoint protection and mail protection features work seamlessly, and integration with cloud solutions is very simple.
The solution provides endpoint protection, identity protection, mail protection, and XDR workbench solution with automatic playbooks all in one dashboard. TrendAI Vision One has been a historic solution from my previous work, which is the reason I chose it. It is one piece of the solution focused on XDR with an EDR agent and sensor agent. Sensor agents provide information about the endpoint, which demonstrates how critical this coverage is for my company network.
What is most valuable?
The product is very helpful for responding to threats and helps reduce time to detect and time to respond to threats significantly. It helps reduce noise from false positives, although you need to work with the system continuously to manage exclusions and manage the suspicion object list. There are false positives in mail, but under these managed conditions, the noise is reduced by approximately forty percent of the time.
Even though it is expensive, it helps consolidate the use of security vendors and reduce silos. TrendAI Vision One provides one dashboard that can be used for many things, and it is also a network monitoring solution.
What needs improvement?
The agent for endpoints is very large and not easy to install, which is a significant disadvantage of the product. It is not one agent; you need to install two agents, and sometimes you have connectivity problems when installing and connecting to the XDR server, which presents a challenge during the installation process.
TrendAI Vision One is not a cheap system and is very expensive when considering value for money and return on investment. It is possible to track any ROI with TrendAI Vision One. The two main problems are that the endpoint agent is very large and the price is very expensive. Apart from these problems, everything else functions well.
For how long have I used the solution?
I started using TrendAI Vision One five or six years ago.
What do I think about the stability of the solution?
I would rate the stability of the product as seven out of ten, where ten points represents very stable. I think the agent is very heavy, which is why I rate it seven.
What do I think about the scalability of the solution?
TrendAI Vision One is not optimized for scalability, where ten points represents very easy to scale up, and this is not my use case. I never had a chance to scale it.
How are customer service and support?
I am very happy with the customer support and customer service from TrendAI. I work closely with the Israel team, and it is very helpful. I would rate support as ten out of ten points.
Which solution did I use previously and why did I switch?
I have not worked closely with any similar products to TrendAI Vision One. I have the most experience with TrendAI, and with other products, not as much.
What was our ROI?
TrendAI Vision One is not a cheap system and is very expensive when considering value for money and return on investment. It is possible to track any ROI with TrendAI Vision One.
What other advice do I have?
TrendAI Vision One is an established solution and not new. The TrendAI Vision One XDR solution has a new name, but I continue to work with it. I have not been using the Cyber Risk Exposure Management, CREM capability.
AWS and GCP are the cloud providers I am using. I did not purchase any TrendAI products from the AWS marketplace. I was working with TrendAI Vision One sensors.
I do not know how much risk was reduced by switching to TrendAI Vision One platform. I know they have an AI model, but I do not use it currently because I do not need it.
My overall review rating for this product is eight out of ten.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Igor Levicnik
Centralized visibility and AI-driven threat correlation have improved daily incident response
Reviewed on Jul 30, 2026
Review provided by PeerSpot
What is our primary use case?
I use TrendAI Vision One for endpoint devices mostly, including antivirus, EDR, and XDR capabilities.
TrendAI Vision One solved a problem for me when there is a vulnerability in some endpoint device. I use it for email security as well, as it stops phishing attacks and similar threats.
Regarding my main use case for TrendAI Vision One, brand incident response serves as a central platform for day-to-day security operations.
What is most valuable?
I find particularly valuable features include centralized visibility, attack correlation, automated response, and reporting.
I mostly rely on endpoint vendors because they are the most valuable for me and help clients protect their environments. Incident correlation and XDR investigation, along with centralized security visibility, are also great. Threat intelligence and risk analysis are important features as well.
The network device functionality seems very interesting to me, as it allows me to see all the traffic in the environment. I must test it to understand how it works.
On the endpoint devices, I see the benefits because they are the only antivirus that stopped crypto-virus on my environment. I trust this solution fully. I think it offers faster threat detection and response than other platforms, and I have more efficient incident investigation as a result.
TrendAI Vision One provides a strong approach to governance and security by focusing on control, the use of AI, data protection, and responsible threat analysis. The AI capabilities help security teams analyze large amounts of security data. Overall, I think it is a solid solution.
What needs improvement?
The credits system is a little bit confusing to use. Licensing and feature management could be improved.
There are too many things in the console, and I wish it would be more streamlined. I want a more intuitive and user-friendly console.
I think the console could be more user-friendly and the credits system is confusing. Overall, I think it is great and has great transparency, but more customization options would be beneficial.
For how long have I used the solution?
I have been working with Trend Micro for about ten years.
How are customer service and support?
I purchased TrendAI Vision One with a partner called Exclusive Networks.
What about the implementation team?
The implementation partner is just the seller to me for licenses.
What other advice do I have?
I have been working with TrendAI Vision One for about two years. Before this, I was working with Worry-Free Business Security Services. My overall review rating for TrendAI Vision One is eight out of ten.
reviewer2879538
Focused host investigations have become faster and triage now cuts threat response time in half
Reviewed on Jul 24, 2026
Review provided by PeerSpot
What is our primary use case?
My main use case for TrendAI Vision One is that I mostly rely on the Workbench section and working through alerts, viewing events. I also use XDR Data Explorer extensively, as well as the Response Management section.
For example, we had a client who ran a script for the activation of Windows operating system and Office tools, but that script is somewhat illegal and sourced from GitHub. I received an alert that a script running from GitHub had been downloaded, so I opened my alert from the Workbench section and viewed the event. I saw the host name and searched the host name through the XDR Data Explorer to see how the user managed to access that GitHub repository. I discovered that it was actually a user execution, so the user genuinely performed that action. I made a response and also sent an email to my client explaining what happened.
I use TrendAI Vision One extensively for response management in that way and for scanning the hosts for malware.
What is most valuable?
In my opinion, one of the best features of TrendAI Vision One is the fact that you can intuitively see what is happening on one host without getting a lot of noise in the way.
There is not a specific function, but there is an option in XDR Data Explorer to investigate a certain host, so you can focus on one host and not query the whole environment.
I have noticed that our triage with TrendAI Vision One is better, faster, and more concise.
TrendAI Vision One helped us with its visualization. For example, when I view the event, there is a Process Timeline Tree, and I can see what happened. I can quickly see what assets are being affected by something.
Regarding TrendAI Vision One's AI capabilities, I think its security aspect is strong because it gives you a good picture of how our sensors are deployed, the agents deployed, their versions, and if their versions are updated or not.
I have used TrendAI Vision One's AI capabilities from time to time, and it is very good at explaining its events in a way that if I am not sure what happened in an event or alert, it can concisely tell me what is going on. I think it is pretty trustworthy since it is not jumping to conclusions.
What needs improvement?
TrendAI Vision One can definitely do better in the XDR Data Explorer part, where it could expand its query language to allow for summarizations or some kind of table view, not just simple operators like AND, OR, IS, and IS NOT. It could definitely improve by creating some sort of visualizations.
When investigating a host, it might be better if the table shown is more readable or if the table would be exportable. When I investigate a host and it gives me a table, I could export the table and look at it through Excel.
For how long have I used the solution?
I have been working in my current field for about eight months.
What do I think about the stability of the solution?
TrendAI Vision One has been mostly reliable; it did have some downtimes, but they were temporary and short. They were not long-lasting, so I can say confidently that it has been pretty reliable.
What do I think about the scalability of the solution?
TrendAI Vision One's scalability handles growth and new clients well.
How are customer service and support?
Fewer employees are needed, but I do not have any other relevant metrics.
Which solution did I use previously and why did I switch?
We have not previously used different solutions for this client, so this is our first solution, and we are quite happy with it.
How was the initial setup?
I do not know which cloud provider is used; I was not on the engineering side when it was deployed, so I am not sure.
What about the implementation team?
The engineering team evaluated other options, but I do not know which ones.
What was our ROI?
TrendAI Vision One helped us reduce cyber risk through its metrics and telemetry; it showed us what kind of data we are dealing with when our clients are in question. We can focus on what matters and implement new filtering and rules to reduce the noise and focus on what is really important.
TrendAI Vision One has helped reduce our time to detect and respond to threats by approximately 50%. It reduced the time to detect and respond because it has a really good way of showing what happened. The user interface is readable, and you get a lot of information just from the alert itself, so you do not need to do a lot of digging because the alerts are very detailed.
What's my experience with pricing, setup cost, and licensing?
I did not know about the pricing, setup cost, and licensing because I was not employed at the time when TrendAI Vision One was deployed and during the beginning of its use.
Which other solutions did I evaluate?
The engineering team evaluated other options, but I do not know which ones.
What other advice do I have?
Since I am not an engineer, I am not sure what kind of aspects someone would need to look for if they want to buy TrendAI Vision One, but I can say that I am happy using it as a SOC analyst.
From an analyst perspective, TrendAI Vision One is useful for looking into alerts and incidents and exploring various data. I would say it is readable and easy to use, and also very intuitive. I would rate this product an 8.