Trellix ESM vs Trellix Helix comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Trellix ESM
Ranking in Security Information and Event Management (SIEM)
18th
Average Rating
7.4
Number of Reviews
34
Ranking in other categories
No ranking in other categories
Trellix Helix
Ranking in Security Information and Event Management (SIEM)
31st
Average Rating
8.6
Number of Reviews
7
Ranking in other categories
Security Incident Response (6th)
 

Market share comparison

As of June 2024, in the Security Information and Event Management (SIEM) category, the market share of Trellix ESM is 0.9% and it decreased by 35.8% compared to the previous year. The market share of Trellix Helix is 0.6% and it decreased by 43.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
Unique Categories:
No other categories found
Security Incident Response
5.0%
 

Featured Reviews

Daniel Durian - PeerSpot reviewer
Dec 6, 2022
Provides visibility of all the traffic within the company infrastructure
The primary use case of the solution is central log management for the company. It allows us to see all the traffic coming in and going out to and from the internet. It provides various views from the firewall and web application firewall and event logs from the endpoint. The command view will tell…
Abanoub Alfy - PeerSpot reviewer
May 15, 2023
Helps prevent email attacks, like phishing and email spoofing attacks
We use Trellix Helix for protection against network attacks, TLS, and SSL attacks. We also use the solution for user behaviour accesses Trellix Helix helps prevent email attacks, like phishing and email spoofing attacks. Trellix Helix's configuration and learning could be improved to identify…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is easy to use."
"The most valuable feature is for the security operation center because it provides visibility of all traffic within the company infrastructure."
"It is easy to use and deploy. It comes with user-friendly manuals."
"It has performed well and delivered the results that I have been looking for."
"The product’s most valuable feature is log monitoring."
"Compared to other solutions, the user interface is good."
"The most valuable feature for us is that it comes with many correlations, reports, and dashboards already available. It's also very easy to use."
"It is a good central viewpoint for issues. These can then be investigated in more detail on the subnet server(s)/endpoints."
"FireEye Helix's best features are its speed and use of an easy-to-understand language to send queries to the raw logs."
"The integration is very useful and very easy. You can have an API connection with any cloud and I'll be able to do both ways of communication with the help of APA."
"The product offers very strong automation. Our cyber security analysts don't have to correlate the information to detect problems. They only need to analyze problems that have been identified by the platform."
"Trellix Helix helps prevent email attacks, like phishing and email spoofing attacks."
"It is kind of simple and very easily deployable. You can start working with it very fast."
"I like that it's easy. It's got the protection set up, and we can see whatever is required. We write our own rules and the rules that we can input. I think it is good."
"The most valuable features include predefined use cases and threatening states."
 

Cons

"We cannot add new data sources to the most recent version."
"We acquired the IBM product because McAfee is slightly confusing to use, and it's broader."
"Product-wise, adding accounts on a single data source by batch would be a really great help."
"The only drawback is that they don't have any packet capturing or network behavior analysis."
"The initial setup is difficult and could improve."
"We would welcome integrations with some of the new McAfee acquisitions, e.g., behavioural analytics."
"The support from McAfee ESM could improve. They could improve the speed."
"There should be support for multitenancy in the product."
"Integrations could be improved, and the dashboard could be a little better."
"It should have more cloud connectors. It could also be cheaper."
"FireEye Helix would be improved with the option of an on-prem version, which they don't currently offer."
"The graphical user interface could be improved. It's not easy to handle and it's not easy for a customer or end-user to learn how to manage the solution."
"Sometimes the rules are disabled by FireEye, and we basically get it after the patch. I think there needs to be a better way of creating the application rules. I would like to see better pricing for our licensing."
"We have certain challenges with integrating the SOAR platform with multiple vendors."
"Trellix Helix's configuration and learning could be improved to identify normal traffic from abnormal and to identify trusted domains."
 

Pricing and Cost Advice

"McAfee is the right choice for a low-budget solution."
"We pay for our licensing fees on a yearly basis, and there are no costs in addition to the standard licensing fees."
"The price of McAfee ESM is higher than some of the other solutions. There are additional features that can be added at an additional fee."
"The price is good. It's moderate. We follow a pay-as-you-go model. There are different models available, and they can also be monthly. You can choose monthly or yearly. It's very flexible. If our existing customers exceed the current plan, you can just call McAfee and get it extended."
"The licensing cost is based on EPS."
"The cost is all included. The finance department handles the financial part, and we mostly don't get involved in it."
"The pricing is good, and they are competitive compared to providers such as RSA and IBM QRadar."
"You should buy the distributed option instead of the all-in-one for environments with more than 1000 end points."
"It could be cheaper, but that applies to every product."
"I rate Trellix Helix a five out of ten for pricing."
"FireEye Helix is a little expensive."
"The price could be better. But I think it's rightly placed when we buy everything in one shot, and we get some discount for that. That's how we basically plan our deployment, and it's holistic. We pay for the license yearly."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
787,061 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Educational Organization
72%
Computer Software Company
5%
Financial Services Firm
4%
Government
4%
Computer Software Company
16%
Manufacturing Company
10%
Financial Services Firm
8%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about McAfee ESM?
The solution's technical support is great.
What is your experience regarding pricing and costs for McAfee ESM?
The product is slightly expensive. They offer some discount on the purchase of a certain number of nodes. They should give some concession on the license renewal as well.
What needs improvement with McAfee ESM?
The integration capabilities of Trellix ESM with SaaS solutions are an area of concern where improvements are needed. When you continue to add solutions from other vendors, you need to look at the ...
What do you like most about FireEye Helix?
Trellix Helix helps prevent email attacks, like phishing and email spoofing attacks.
What needs improvement with FireEye Helix?
Trellix Helix's configuration and learning could be improved to identify normal traffic from abnormal and to identify trusted domains. Backup capturing should be included in the solution's next rel...
 

Also Known As

McAfee ESM, NitroSecurity, McAfee Enterprise Security Manager
FireEye Helix, FireEye Threat Analytics
 

Learn More

Video not available
Video not available
 

Overview

 

Sample Customers

San Francisco Police Credit Union, Wªstenrot Gruppe, Volusion, California Department of Corrections & Rehabilitation, Government of New Brunswick, State of Colorado, Macquarie Telecom, Texas Tech University Health Sciences Center, Cologne Bonn Airport
Police Bank, Verisk Analytics, Teck Resources
Find out what your peers are saying about Trellix ESM vs. Trellix Helix and other solutions. Updated: June 2024.
787,061 professionals have used our research since 2012.