Palo Alto Networks Cortex XDR vs. Trellix Helix

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Palo Alto Networks Cortex XDR
Score 8.5 out of 10
N/A
Cortex XDR (formerly Traps) replaces traditional antivirus with multi-method prevention, a proprietary combination of malware and exploit prevention methods that protect users and endpoints from known and unknown threats.N/A
Trellix Helix
Score 7.2 out of 10
Enterprise companies (1,001+ employees)
Trellix Helix (formerly FireEye Helix) is a SIEM solution providing a non-malware threat detection solution.
$0
Events per second
Pricing
Palo Alto Networks Cortex XDRTrellix Helix
Editions & Modules
No answers on this topic
Helix Console
$0
Events per second
Helix Enterprise
$0
Events per second
Offerings
Pricing Offerings
Palo Alto Networks Cortex XDRTrellix Helix
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoYes
Entry-level Setup FeeNo setup feeOptional
Additional Details
More Pricing Information
Community Pulse
Palo Alto Networks Cortex XDRTrellix Helix
Features
Palo Alto Networks Cortex XDRTrellix Helix
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Palo Alto Networks Cortex XDR
-
Ratings
Trellix Helix
9.6
3 Ratings
19% above category average
Centralized event and log data collection00 Ratings9.93 Ratings
Correlation00 Ratings9.93 Ratings
Event and log normalization/management00 Ratings9.03 Ratings
Deployment flexibility00 Ratings9.73 Ratings
Integration with Identity and Access Management Tools00 Ratings9.63 Ratings
Custom dashboards and workspaces00 Ratings9.03 Ratings
Host and network-based intrusion detection00 Ratings10.03 Ratings
Best Alternatives
Palo Alto Networks Cortex XDRTrellix Helix
Small Businesses
SentinelOne Singularity
SentinelOne Singularity
Score 8.9 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.0 out of 10
Medium-sized Companies
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Sumo Logic
Sumo Logic
Score 9.3 out of 10
Enterprises
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Sumo Logic
Sumo Logic
Score 9.3 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Palo Alto Networks Cortex XDRTrellix Helix
Likelihood to Recommend
8.0
(13 ratings)
9.8
(3 ratings)
Usability
7.0
(2 ratings)
-
(0 ratings)
Support Rating
10.0
(3 ratings)
9.0
(1 ratings)
Ease of integration
-
(0 ratings)
9.8
(3 ratings)
User Testimonials
Palo Alto Networks Cortex XDRTrellix Helix
Likelihood to Recommend
Palo Alto Networks
Malware that doesn’t leave files behind has become widely available. Anyone who can afford to reverse this trend should purchase technology. Application whitelisting isn’t for everyone, and Palo Alto Networks Traps can help. Enterprises looking for a low-affected, next-generation solution with high protection should consider it. PAN Traps is a great product at a reasonable price, and I highly recommend it.
Read full review
Trellix (FireEye + McAfee)
Great for organizations that are considering improving their operational security by utilizing their threats intelligence capabilities. It offers a great collection and analysis of security events and provides solutions to solve them. When considering a solution that is secure and can provide very extensive visualization of your environment for threats.
Read full review
Pros
Palo Alto Networks
  • Direct Access to devices via Live Terminal which provides operations with scripting, triage, and preservation of artifacts.
  • Behavioral Indicators of Compromise which provides alerts on events regarding groups of hosts and their signatures.
  • Querying complex data sets involving a variety of devices for network connections, hashes, DNS, etc.
Read full review
Trellix (FireEye + McAfee)
  • Single location for all security event management
  • Detect advanced threats
  • Provide audit artifacts to ensure compliance
Read full review
Cons
Palo Alto Networks
  • Traps doesn't seem to function as a traditional A/V very well, so it's better as another layer to your endpoint protection
  • Traps can cause issues with some legacy or custom programs, so exceptions may have to be made
  • Traps falsely identifies things as malicious at times, this is not often though
Read full review
Trellix (FireEye + McAfee)
  • Additional integration points (API cloud integrations).
Read full review
Usability
Palo Alto Networks
Cortex XDR does a very good job of blocking suspicious and threatening items. However, as with all software of this nature, it will sometimes block known-good items. The difficulty is in manually whitelisting these known-good items. The interface to whitelist is confusing even for a seasoned IT professional and has been the single most frustrating experience of using Cortex XDR
Read full review
Trellix (FireEye + McAfee)
No answers on this topic
Support Rating
Palo Alto Networks
The support we receive from Palo Alto is one of the best aspects of Traps. It is very easy to recommend their support. It seems much easier to connect directly with someone with a deep understanding of the product rather than other companies where you basically have to make an airtight case that it is some kind of non-standard issue that can't be solved with existing documentation. Palo Alto digs deep and helps with advanced troubleshooting to get things working.
Read full review
Trellix (FireEye + McAfee)
We've been fairly happy with FireEye Helix support overall. Most issues are resolved the same day the case is opened.
Read full review
Alternatives Considered
Palo Alto Networks
Traps is the slickest interface, easy to use and intuitive rule making, and the rest just didn't quite stack up to the performance level of Traps. McAfee and Kaspersky just hog processor and RAM power. I didn't like the interface and functionality of SentinelOne as much as Traps. Palo Alto really put a lot of time into the development of this software, and had some of the founding fathers of IT Security heading the development process. Can't beat that.
Read full review
Trellix (FireEye + McAfee)
It offers extensive visibility thus easy detection of threats and easy mitigation practices. Utilization of its threats intelligence capabilities thus early detection of incidents and maximization of security investments. Offers great integration of cloud resources with existing security tools thus ensuring seamless performance and all-time security for the organizational resources.
Read full review
Return on Investment
Palo Alto Networks
  • After putting Palo Alto Networks Cortex XDR on a user's system, users came back with a positive response that there are no performance issues now.
  • We are able to track and control granular suspicious and malicious activities.
  • Web controls are missing, which if they would have been there would have been very helpful.
Read full review
Trellix (FireEye + McAfee)
  • Optimization of your security investments.
  • Operations are seamless and better with easy integrations that enhance performance.
  • Efficiency in running of incidences with enhanced case management for all its alerts.
Read full review
ScreenShots

Palo Alto Networks Cortex XDR Screenshots

Screenshot of a Cortex XDR overviewScreenshot of a view of the Cortex XDR dashboardScreenshot of a view of the Cortex XDR dashboardScreenshot of a view of the Cortex XDR dashboard

Trellix Helix Screenshots

Screenshot of Helix Cloud IntegrationsScreenshot of Helix Asset Alert Correlation