Elastic Security vs. Trellix Enterprise Security Manager

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Elastic Security
Score 8.8 out of 10
N/A
Elastic Security equips analysts to prevent, detect, and respond to threats. The free and open solution delivers SIEM, endpoint security, threat hunting, and cloud monitoring. The solution encompasses Elastic SIEM, which brings Elasticsearch to SIEM and threat hunting. The Elastic Agent (or Elastic Endpoint Security based on the former Endgame security product acquired by Elastic in late 2019) brings signatureless malware prevention to endpoints, as well as security data collection for…N/A
Trellix Enterprise Security Manager
Score 7.1 out of 10
N/A
Trellix Enterprise Security Manager (formerly McAfee Enterprise Security Manager) is security information and event management (SIEM) software.N/A
Pricing
Elastic SecurityTrellix Enterprise Security Manager
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Elastic SecurityTrellix Enterprise Security Manager
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details——
More Pricing Information
Community Pulse
Elastic SecurityTrellix Enterprise Security Manager
Top Pros
Top Cons
Features
Elastic SecurityTrellix Enterprise Security Manager
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Elastic Security
-
Ratings
Trellix Enterprise Security Manager
8.4
9 Ratings
7% above category average
Centralized event and log data collection00 Ratings8.69 Ratings
Correlation00 Ratings7.09 Ratings
Event and log normalization/management00 Ratings8.09 Ratings
Deployment flexibility00 Ratings8.39 Ratings
Integration with Identity and Access Management Tools00 Ratings9.37 Ratings
Custom dashboards and workspaces00 Ratings9.39 Ratings
Host and network-based intrusion detection00 Ratings8.37 Ratings
Data integration/API management00 Ratings9.32 Ratings
Behavioral analytics and baselining00 Ratings8.72 Ratings
Rules-based and algorithmic detection thresholds00 Ratings8.72 Ratings
Response orchestration and automation00 Ratings8.02 Ratings
Reporting and compliance management00 Ratings8.72 Ratings
Incident indexing/searching00 Ratings7.72 Ratings
Best Alternatives
Elastic SecurityTrellix Enterprise Security Manager
Small Businesses
AlienVault USM
AlienVault USM
Score 8.0 out of 10
AlienVault USM
AlienVault USM
Score 8.0 out of 10
Medium-sized Companies
Splunk Enterprise
Splunk Enterprise
Score 8.4 out of 10
Splunk Enterprise
Splunk Enterprise
Score 8.4 out of 10
Enterprises
Microsoft Sentinel
Microsoft Sentinel
Score 8.4 out of 10
Microsoft Sentinel
Microsoft Sentinel
Score 8.4 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Elastic SecurityTrellix Enterprise Security Manager
Likelihood to Recommend
9.0
(1 ratings)
9.0
(9 ratings)
Support Rating
7.0
(1 ratings)
6.5
(2 ratings)
User Testimonials
Elastic SecurityTrellix Enterprise Security Manager
Likelihood to Recommend
Elastic
I believe Endgame is well suited to organizations that have their own Cybersecurity department. Its not well suited for organizations that don't have a Cybersecurity department.
Read full review
Trellix (FireEye + McAfee)
I believe that McAfee Enterprise Security Manager is best-suited for anyone in an office setting with a computer containing sensitive information. McAfee Enterprise Security Manager is constantly working to make sure that your device is free from an threats. Our field workers, however, probably wouldn't have a need for McAfee Enterprise Security Manager. They do not use computers for work and have no sensitive information stored in a work-related cloud.
Read full review
Pros
Elastic
  • Identify 0-day malware.
  • Provides a few forensic details on endpoints.
  • Very easy to administer.
Read full review
Trellix (FireEye + McAfee)
  • McAfee Enterprise Security Manager has a large library of pre-made correlations that reduces the amount of work needed to make it functional.
  • This is a core McAfee product that is still getting support.
  • It has a substantial amount of compatibility and integration with other products.
Read full review
Cons
Elastic
  • I would love that it provided more memory analysis details.
  • Being able to edit sensor profiles after creating them.
  • I would love it if it provided more automation features.
Read full review
Trellix (FireEye + McAfee)
  • The user interface is not the best, it is still based on Flash player (but they have plans to migrate to HTML5).
  • While the "user" interface is pretty straight forward, the management interface is fairly complicated.
Read full review
Support Rating
Elastic
Even though their support is good, I think there are some areas where they need to provide more thorough solutions to issues, some of their solutions are pretty basic and have already been tried.
Read full review
Trellix (FireEye + McAfee)
McAfee Enterprise Security Manager overall is a great tool. It is effective in today's setting, wherein lots of potential threats are lurking. Its operations within the network are seamless. Users won't even notice that a SIEM is working in the background. But in today's trend, most of the businesses is heading towards the migration to cloud, which McAfee should improve its integration with.
Read full review
Alternatives Considered
Elastic
Endgame is based on the MITRE framework which has proven to be a successful framework to identify various attack patterns that attackers use. Also, compared to the others it's easier to administer and manage.
Read full review
Trellix (FireEye + McAfee)
We selected McAfee Enterprise Security Manager because the pricing is competitive in the industry. It is very reliable. The vendor offers good support in real time. Offers the results that we have been looking for. The ability to get the logs may be of last 2 years in a matter of seconds. The ability to retain logs for a very long time.
Read full review
Return on Investment
Elastic
  • Being able to identify threats we couldn't identify before.
  • Easier management of endpoints.
  • Being able to immediately isolate endpoints remotely that have high severity threats.
Read full review
Trellix (FireEye + McAfee)
  • Centralisation of events form NIDS/IPS/IDS, Firewall(s), Web Proxy and Endpoint
  • Ability to have third party management
  • Actively upgraded product with good vendor support
Read full review
ScreenShots