TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Metasploit

    Score9 out of 10
    N/AMetasploit is open source network security software described by Rapid7 as the world’s most used penetration testing framework, designed to help security teams do more than just verify vulnerabilities, manage security assessments, and improve security awareness.N/A

    Trellix Network Security

    Score8.6 out of 10
    Enterprise companies (1,001+ employees)
    Trellix Network Security (formerly FireEye Network Security and Forensics products) combines network traffic analysis and network forensics for attack analysis .

    $0

    per appliance/ per mbps

    Pricing
    MetasploitTrellix Network Security
    Editions & Modules
    No answers on this topic
    SmartVision
    $0
    per appliance/ per mbps
    Offerings
    Pricing Offerings
    MetasploitTrellix Network Security
    Free Trial
    NoYes
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoYes
    Entry-level Setup FeeNo setup feeOptional
    Additional Details——
    More Pricing Information
    Best Alternatives
    MetasploitTrellix Network Security
    Small Businesses
    No answers on this topic
    No answers on this topic
    Medium-sized Companies
    No answers on this topic
    Cisco Identity Services Engine (ISE)
    Score9 out of 10
    Enterprises
    No answers on this topic
    Cisco IOS Security
    Score9.6 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    MetasploitTrellix Network Security
    Likelihood to Recommend
    10.0
    (5 ratings)
    9.0
    (1 ratings)
    Support Rating
    7.0
    (1 ratings)
    -
    (0 ratings)
    User Testimonials
    MetasploitTrellix Network Security
    Likelihood to Recommend
    Rapid7
    It is easy to use with sufficient documentation on how to use the tools for end users or newbies. Experienced testers will find it easy to customise and configure the test cases. Just wished that I could have taken up a course on using this tool in my study days so that I could had explored more and improved my familiarity with the tool, unlike when working where access and time to explore the other features of the tool is limited
    Incentivized
    Read full review
    Trellix (Musarubra US LLC)
    It’s a dedicated Network Advanced Threat Detection and
    Prevention solution. Easy maintenance and low operating costs fit perfectly for
    SMEs. Variety of appliance selection makes NX the perfect choice for large
    enterprises. As it’s a dedicated solution with its own appliance, price is higher
    compared to NGTP add on solutions. FireEye is an ecosystem therefore when you’ve
    the EX or HX vice versa, you should be looking to NX. Otherwise, you’re missing
    the threat intel exchange on the network side reverse is the true. Sizing is
    important before the purchase, if you select a low end model for a busy network
    you lose your initial investment. For multiple NX deployments I highly
    recommend CMS. Without CMS you’ll lose the threat intel exchange and this will
    negatively reduce the risk scores.
    Incentivized
    Read full review
    Pros
    Rapid7
    • Easy to use.
    • Many exploits available.
    • Multi-platform.
    Incentivized
    Read full review
    Trellix (Musarubra US LLC)
    • Advanced detection of targeted attacks.
    • Mandiant team effort is a big plus.
    • Inline mitigation capabilities particularly well.
    • Different deployment models for specific needs.
    • License and information sharing selection 1 way or 2 way mode.
    • Frequent updates.
    • Low false positive rates.
    • FireEye sandboxing is immune to sandboxing attacks.
    • Central management (CMS) capabilities for managing several NX's.
    • Extra IPS/IDS functionality in the product.
    • Smartvision specific to lateral movement detection.
    • Upgrades and updates with zero down time.
    • Local FireEye support is superb.
    • Multiple deployment scenarios (span, inline) in the same NX for different interface pairs.
    • SSL inspection support.
    • No need to maintain, build or updates the images. It's highly automatic.
    Incentivized
    Read full review
    Cons
    Rapid7
    • More robust menus
    • Better plugin inter-operation
    Incentivized
    Read full review
    Trellix (Musarubra US LLC)
    • Very first detected APT sample can pass the NX even it's inline blocking mode.
    • Performance optimization for busy networks is cumbersome.
    • CMS does not provide all the management capabilities, CLI or local config. Should be done for advanced customization.
    • Constant limitations of tcpdump/ packet capture for 10G interfaces.
    • IPS functionality is a bit cumbersome, not a full feature IPS, lack of signatures and customization of IPS signatures.
    • It's not a full NDR solution or a UBA solution.
    • Lack of device or user mapping.
    • Forensics is based on the specific APT. May not provide the whole story and need some additional tools.
    • You cannot make manual submission to NX (needs AX).
    • You cannot access the kernel directly for deep analy[sis] or troubleshooting (assist from FireEye Support should be taken).
    Incentivized
    Read full review
    Support Rating
    Rapid7
    We don't use it.
    Incentivized
    Read full review
    Trellix (Musarubra US LLC)
    No answers on this topic
    Alternatives Considered
    Rapid7
    Metasploit is the most well-known tool in the average pen tester's toolkit. It's hard to compare to its neighbor's due to its size and following.
    Incentivized
    Read full review
    Trellix (Musarubra US LLC)
    FireEye NX is a solid product. It gives you sustainable
    security throughout the organization. NX detection engines are more capable
    compared to others. Its catch rate is higher, FP rate is lower, [and] speed is
    awesome. NX can work for highly regulated environments with 1 way solution.
    Operation costs are much lower. Software quality is very good. It may have bugs, but these bugs do not compromise the security in general. SOC team loves the
    FireEye NX for its pinpoint detection capabilities. Local and partner support
    is exceptional.
    Incentivized
    Read full review
    Return on Investment
    Rapid7
    • Positive: Improves efficiency of our network penetration testing operations.
    • Positive: Allows for collaboration and information sharing during a penetration test.
    Incentivized
    Read full review
    Trellix (Musarubra US LLC)
    • As [a] financial company on the digital markets, we need to be safeguard for 0days and targeted attacks. FireEye NX provides the best updated protection with its enhanced capabilities.
    • Security score based on detection/prevention metrics [is] very high ensuring the highest level of security.
    • APTs in our region successfully detected and mitigated by the NX.
    • For the ROI, in a six month period FireEye is paying off its [investment].
    • One negative thing, especially with increasing network bandwidths, [is that] you need to make [the] investment every two or three years.
    Incentivized
    Read full review
    ScreenShots

    Trellix Network Security Screenshots

    Screenshot of Network Security Dashboard- Summary view of alerts and threats to organizationScreenshot of Alerts dashboard- detailed information around alerts discovered by FireEye Network SecurityScreenshot of Configuration for FireEye Network Security Product.