Regarding the use cases for Trellix Endpoint Security Platform, if we are going for the POC for the customer, we have multiple types of performed use cases, such as credential dumping, lateral movement of the EPP solution, ICAR performing, USB blocking, and we can allow specific USBs from Trellix.
We are able to exclude specific USBs, and there are seven to eight use cases we are performing for the customer environment.
The biggest advantage of Trellix Endpoint Security Platform is the ATP solution, which provides advanced threat prevention.
Machine learning algorithms are available in the product as part of the threat anti-malware, including predictive machine learning and behavioral analysis, which are integral to the anti-malware module of EPP.
In terms of my experience with the machine learning algorithms for analysis and threat detection, we are analyzing logs provided by Trellix, but we are not able to conduct specific machine learning analysis on those logs.
The automated response mechanisms in the products help with incident management because we have to create playbooks in Trellix console for automation, which we need to enable.
The customizable dashboard of Trellix Endpoint Security Platform definitely contributes to the decision-making process, as we customize the dashboard according to customer requirements.
When it comes to integration aspects, we are able to integrate Trellix Endpoint Security Platform with SIEM or SOAR solutions using the ePO console, which enhances threat detection capabilities.
Reporting and analytics aspects have an impact on security posture assessment, as we are able to fetch reports in the ePO console customized according to customer requirements for downloading and sending via email.
There is a need to enhance the expertise of the support portal and support engineers for Trellix Endpoint Security Platform, but overall, everything else is acceptable.
The support could be improved, particularly concerning response time.
Trellix Endpoint Security Platform is stable.
Trellix Endpoint Security Platform is a scalable product.
There are no limitations; the solution is easily scalable.
I would rate the support for this product as seven points out of 10.
In terms of implementation and selling, both Trellix and Trend Micro have similar price quotes for our customers, and the implementation cost does not come from the OEM, as we provide professional services from our organization.
In terms of implementation, I would say it is equally straightforward for both Trellix XDR and Trellix Endpoint Security Platform.
Regarding return on investment for Trellix Endpoint Security Platform, my assessment is a 10 to 15 ratio for ROI.
When I mention 10 to 15, I am talking about money saving as the percentage.
If we are talking about price for Trellix Endpoint Security Platform, for small or SMB businesses, the price is quite high, but for enterprise levels with 5,000 to 3,000 users, the price is affordable.
Comparing Trellix Endpoint Security Platform to other similar products such as Trend Micro, I see some differences.
The difference can relate to the selling perspective or implementation.
Based on everything that I have told you about the products, I give Trellix XDR nine points as a reseller, with 10 points being the best.
We have a mixed model that operates both on-cloud and on-prem.
My overall rating for this review is 9 out of 10.