Trend Micro Vision one review
What do you like best about the product?
Good Advanced Threat Detection with XDR-Excellent for tracking lateral movement and multi-stage attacks, Strong Integration Capabilities,
User-Friendly Interface & Reporting & Gives security teams a single pane of glass view
What do you dislike about the product?
Require more stability & more enhancement
What problems is the product solving and how is that benefiting you?
Problems Solved by Trend Vision One-Alert Fatigue,Slow Incident Response,Limited Visibility into Advanced Threats & Compliance & Reporting Challenges.
Benefits -Faster, more accurate threat detection and response,Reduced workload for SOC teams,Improved security posture across hybrid environments & Proactive defense against zero-day threats and ransomware.
Vision one XDR
What do you like best about the product?
Vision One is a valuable tool for security analysts managing multiple platforms. It streamlines operations by correlating security events in a centralized view, which is a significant advantage. Its response actions are also effective and reliable. Trend Micro’s implementation and integration with various platforms are well-executed. I frequently use the console for reviewing security findings and conducting threat hunting activities.
What do you dislike about the product?
Ticket creation and current support experience have highlighted that Trend Micro is falling behind in certain areas. License utilization and credit management need to be redefined for better clarity and efficiency. Additionally, there is a need for new reports and dashboards to enhance visibility and tracking.
What problems is the product solving and how is that benefiting you?
solving several critical challenges in our security operations by providing Extended Detection and Response (XDR) capabilities that go beyond traditional Endpoint Detection and Response (EDR). While EDR focuses primarily on endpoints, Trend Vision One integrates data from email, endpoints, servers, network, and cloud workloads, offering a broader and more correlated view of threats.
TrendMicro Vision One
What do you like best about the product?
Trend Vision One is liked for its comprehensive approach to cybersecurity, offering a single platform that combines risk management, security operations, and robust threat protection
What do you dislike about the product?
Trend Vision One is a powerful security platform, but the initial setup and configuration is bit complex and time-consuming, requiring specialized knowledge.
What problems is the product solving and how is that benefiting you?
The Attack surface feature is useful in tackling initial threats in a device and network.
Vision One is a game changer in XDR world
What do you like best about the product?
Attack Surface Discovery and Workbench alerts.
What do you dislike about the product?
Vision One Agent should have all AV capabilities to work as a single solution as its a strong solution in comparison to Apex One Agent.
What problems is the product solving and how is that benefiting you?
In terms of detections, Vision One is doing great job. However in reporting part some improvements required as its not showing the smart scan agent pattern and agent installation date.
Trend Micro Vision One Review
What do you like best about the product?
User interface and easy to use. Detection of threats.
What do you dislike about the product?
Need more stability and enhancement. Need more automations.
What problems is the product solving and how is that benefiting you?
Detection of emerging threats, SOC, API integration,
Best in class Cyber Security Product!
What do you like best about the product?
Ease to use and user-friendly interface.
What do you dislike about the product?
Trend Agent size could have been lighter.
What problems is the product solving and how is that benefiting you?
With Trend Vision one I am able to monitor my complete end point and also Deep Security for Servers is one of the finest cyber security products I have ever used.
Good experience using Vision One XDR
What do you like best about the product?
We are using multiple solutions from Trend micro. we upgraded to the XDR last year, the implementation was fairly easy and found it to be useful in our day to day operations. Good thing we saw was the features has increased from the time we have onboarded the solution.
What do you dislike about the product?
Can improve technical support Turn around time
What problems is the product solving and how is that benefiting you?
We wanted a central visibility for email & endpoint security. This solution has solved exactly that without much changes in the environment
Great service - for the cost
What do you like best about the product?
A lot of information, The DDI catches everything. Highly responsive, and notifies relevent parties immedietly.
The dashboard provides great insight on risky devices so as to not waste time patching lower priority items.
We install clients easily and information comes in seamlessly.
What do you dislike about the product?
Wish the workbenches provided more details, provides very high level information.
Would love information about specific browsers, applications used etc.
I.E deepfake alerts for a computer, but would not specify how it was happening. (It was on MS Teams)
Cost is also a factor. This service costs a lot.
What problems is the product solving and how is that benefiting you?
Makes managing network security easier. Lets me focus on other tasks.
Centralized management and quick threat response improve security posture
What is our primary use case?
My use cases for Trend Vision One are typically reactive, letting it scan and monitor our environment, and we typically respond quickly to any workbenches that come up.
We also try to adapt to the Cyber Risk Index or the security score, keeping that at the lowest amount possible on a weekly or bi-weekly basis as we push out updates and do maintenance.
What is most valuable?
My favorite features in Trend Vision One include the Cyber Risk Index, which breaks down various pieces of info into one easily digestible score. I appreciate the workbenches. They provide a visual of how they operate for the most part, and I value the in-depth details they offer since we can mostly operate off of that, giving us enough info to crunch and figure out what's happening.
While it's not an actual feature of the application, I appreciate the clinics and seminars that Trend provides, as I went to one last year that got me from zero to beginner, and I hope to advance to intermediate with another seminar series this year.
Trend Vision One helps reduce my mean time to detect and respond to threats as without it, we would be scrambling and confused with not much information to go off of for threat hunting. I'm not sure what we were using previously. As long as I've been here, it's been Trend Vision One, and we're very happy with it. We're hesitant to shop around for any other provider since we think it's a very good product, and we appreciate the speed and breadth of data we receive from it.
I sometimes see noise from false positives with Trend Vision One. One clear instance involved the AI deep fake feature, which would throw up false positives whenever someone had a Teams meeting with a blurred background, leading us to turn it off as it activated for every meeting. Additionally, there were minor false positives throughout the year related to Microsoft update files and certain DLLs, however, they don't clutter Trend Vision One much and have essentially gone away in recent months.
I am very happy with Trend Vision One's platform ability to provide centralized visibility and management across protection layers. The platform extends into various categories, offering oversight over email and even flagging suspicious activities that occur on a server, despite not having a Trend Vision One agent on it. For instance, an admin setting up remote access on that server was flagged as suspicious, and I appreciate the reach that Trend Vision One has across different scattered categories it monitors.
What needs improvement?
In terms of improving Trend Vision One, it might sound silly, yet it seems notoriously uncooperative with middle clicks and opening sections in new tabs. I'm a big tab browser, and it feels hitting a brick wall when I have to refresh in a new tab or make a copy of a tab to move forward. If we can enable middle clicks to open sections in new tabs, it would greatly benefit me personally.
For how long have I used the solution?
I've been using Trend Vision One for a few months, approximately eight to ten months at this point.
What do I think about the stability of the solution?
Regarding stability, I don't think Trend Vision One has ever caused any lagging, crashing, or downtime. There was one situation where we may have misconfigured something, forgetting a checkbox, and Trend Vision One's scheduled scans might have used some CPU resources, however, that's on our end. Besides that, Trend Vision One works exactly as intended and has never hindered our operations, feeling more a collaborator than a roadblock.
What do I think about the scalability of the solution?
I don't think I've encountered any issues with scalability; we're growing steadily, and I believe Trend Vision One can keep up with our demand. Our company has about 200 employees in Canada, and I can foresee that if we doubled in size, Trend Vision One would accommodate that very easily.
How are customer service and support?
I have contacted the technical support before. We're very happy with the technical support from Trend Vision One, feeling we have our own dedicated technician who knows the entire suite of applications. They are very intelligent and responsive, and as we submit feature requests, they seem to make it into the actual list of features in Trend Vision One, so we maintain a good relationship with their technical support and development teams.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I'm not sure what we were using previously. As long as I've been here, it's been Trend Vision One, and we're very happy with it. We're hesitant to shop around for any other provider as we consider it a very good product.
How was the initial setup?
The experience of first using Trend Vision One is really difficult due to the steep learning curve. Thankfully, I attended a Trend Vision One seminar that got me from zero to beginner, as without that, it involves a lot of guesswork with little grounding to go off of. I really recommend their seminars and tutorials.
What's my experience with pricing, setup cost, and licensing?
I do not know much about the pricing of Trend Vision One. My understanding is it's expensive. We pay for it anyway, and there's always sticker shock. Still, we feel it's necessary as this product covers all our needs.
Which other solutions did I evaluate?
We're hesitant to shop around for any other provider. Trend Vision One is a very good product, and we appreciate the speed and breadth of data we receive from it.
What other advice do I have?
I'm not sure if I use the cyber risk exposure management capabilities. Trend Vision One requires very little maintenance on my end, mostly just keeping up with refreshing the license, which is about all I hear related to Trend Vision One maintenance.
Some top security challenges in my industry include securing anything exposed to the internet, especially since we were previously hit with ransomware. The ability of Trend Vision One to detect and cut off threats early, clean up files before they execute, and address phishing emails helps us significantly. We also have their email and collaborative security, which is crucial along with having zero-day protections to receive early warnings of threats, allowing us to act immediately outside our maintenance windows.
I'm not completely sure where we use the Trend Vision One sensors, as I didn't set them up. However, we do have a DDI that we paid a lot for, which is one of our biggest data sources and populates much of the information in Trend Vision One. We also have a network sensor at our different location in the United States, which is a temporary holdover until we can upgrade to something more robust.
It's not critical for my company that Trend Vision One has AI built into its platform in terms of needing a language model to explain things, however, AI is actually critical for threat detection and behavioral analysis. That aspect of behavior monitoring and action based on behavior is very important.
Trend Vision One has helped my organization reduce its cyber risk. For instance, even prior to acquiring the DDI, the DDI's presence on our network found a threat actively in progress, and we were able to act on it, demonstrating its effectiveness from day zero.
On a scale from one to ten, I would rate Trend Vision One a nine overall.
Centralized visibility improves threat detection and response
What is our primary use case?
Our use case for Trend Vision One is for our security platform. We use it for antivirus, XDR, and network telemetry purposes.
How has it helped my organization?
Trend Vision One helped us to consolidate our use of security vendors and reduce silos. We had three or four consoles from different products, and we consolidated them into one console with this product.
Trend Vision One helped reduce the time to detect and respond to threats by 70% to 80%.
Trend Vision One has helped us reduce noise from false positives.
We have been using cyber risk exposure management for 2 months since upgrading in April. It helps us identify blind spots by providing more visibility and insights into our environment, making it a valuable feature.
We use the network sensor, and its coverage is critical. With SIEM, we gain substantial insights into our environment, and having a complete 360 view is necessary in today's security world. It reduces the risk by 50%.
Having AI built into the Trend Vision One platform is important for our organization. It reduces many manual steps, resulting in more and quicker detections and advanced automation for remediation, improving efficiency by 60% to 70%. The solution aims to reduce risks and enhance detection.
What is most valuable?
I like how easy it is, and there is a single pane of glass. We have one console for everything.
Trend Vision One provides centralized visibility and management across protection layers. It has the functionality of different products and management of a single pane of glass. We have one console for everything. As a security engineer, it's easier to check the alerts and find everything. It consolidates a lot of consoles into one, and that's what we like most about it.
What needs improvement?
Vulnerability scanning could be improved. They need to see more CVEs and scan products for known vulnerabilities, allowing for better display and review of potentially exploitable servers by hackers or through configuration settings.
For how long have I used the solution?
We have been using Trend Vision One for approximately 18 months.
What do I think about the stability of the solution?
We haven't experienced any stability issues. It has proven to be stable.
What do I think about the scalability of the solution?
The scalability of Trend Vision One is good.
How are customer service and support?
I have contacted technical support from Trend Micro. The quality and speed of support are good.
How would you rate customer service and support?
How was the initial setup?
It was easy. It took us one day to fully deploy Trend Vision One.
Some maintenance is required for updating agents on the servers.
What about the implementation team?
The deployment involved just one person working with the vendor in one day.
What was our ROI?
Trend Vision One has reduced risks by 50%. We have reduced the response time by approximately 70%-80%.
What's my experience with pricing, setup cost, and licensing?
When we have a good product such as Trend Vision One, the price is fine.
Which other solutions did I evaluate?
We have used Trend Micro products for many years, and we upgraded to Trend Vision One. We didn't test any alternatives, staying with what we've used for years.
What other advice do I have?
I would rate Trend Vision One an eight out of ten.