NetWitness Cloud SIEM vs. Trellix Enterprise Security Manager

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
NetWitness Cloud SIEM
Score 6.1 out of 10
N/A
NetWitness Cloud SIEM delivers log management, retention, and analytics services in a simplified cloud form. It aims t o eliminate traditional deployment and administration requirements with a simple throughput-based licensing model, to make high-quality SIEM quick and easy to acquire without sacrificing capability or power.N/A
Trellix Enterprise Security Manager
Score 7.1 out of 10
N/A
Trellix Enterprise Security Manager (formerly McAfee Enterprise Security Manager) is security information and event management (SIEM) software.N/A
Pricing
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details——
More Pricing Information
Community Pulse
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Top Pros
Top Cons
Features
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
NetWitness Cloud SIEM
7.6
1 Ratings
3% below category average
Trellix Enterprise Security Manager
8.4
9 Ratings
7% above category average
Centralized event and log data collection8.01 Ratings8.79 Ratings
Correlation10.01 Ratings7.09 Ratings
Event and log normalization/management8.01 Ratings8.09 Ratings
Deployment flexibility10.01 Ratings8.39 Ratings
Integration with Identity and Access Management Tools7.01 Ratings9.37 Ratings
Custom dashboards and workspaces6.01 Ratings9.39 Ratings
Host and network-based intrusion detection4.01 Ratings8.37 Ratings
Data integration/API management00 Ratings9.32 Ratings
Behavioral analytics and baselining00 Ratings8.72 Ratings
Rules-based and algorithmic detection thresholds00 Ratings8.72 Ratings
Response orchestration and automation00 Ratings8.02 Ratings
Reporting and compliance management00 Ratings8.72 Ratings
Incident indexing/searching00 Ratings7.72 Ratings
Best Alternatives
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Small Businesses
AlienVault USM
AlienVault USM
Score 8.0 out of 10
AlienVault USM
AlienVault USM
Score 8.0 out of 10
Medium-sized Companies
Splunk Enterprise
Splunk Enterprise
Score 8.3 out of 10
Splunk Enterprise
Splunk Enterprise
Score 8.3 out of 10
Enterprises
Splunk Enterprise
Splunk Enterprise
Score 8.3 out of 10
Microsoft Sentinel
Microsoft Sentinel
Score 8.5 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Likelihood to Recommend
7.0
(1 ratings)
9.0
(9 ratings)
Support Rating
-
(0 ratings)
6.5
(2 ratings)
User Testimonials
NetWitness Cloud SIEMTrellix Enterprise Security Manager
Likelihood to Recommend
RSA Security
It is really a robust platform that can be heavily customized to suit requirements. Good for advanced hunting and forensics. Robust automation features.
Read full review
Trellix (FireEye + McAfee)
I believe that McAfee Enterprise Security Manager is best-suited for anyone in an office setting with a computer containing sensitive information. McAfee Enterprise Security Manager is constantly working to make sure that your device is free from an threats. Our field workers, however, probably wouldn't have a need for McAfee Enterprise Security Manager. They do not use computers for work and have no sensitive information stored in a work-related cloud.
Read full review
Pros
RSA Security
  • Log collection and parsing.
  • Packet collection and parsing.
  • Enhanched analytics and alerting.
  • Robust integration.
Read full review
Trellix (FireEye + McAfee)
  • McAfee Enterprise Security Manager has a large library of pre-made correlations that reduces the amount of work needed to make it functional.
  • This is a core McAfee product that is still getting support.
  • It has a substantial amount of compatibility and integration with other products.
Read full review
Cons
RSA Security
  • Lacking out of the box best practice templates etc. It relies heavily on customization.
  • Lack of up to date threat feeds.
  • Difficult to learn and use initially.
Read full review
Trellix (FireEye + McAfee)
  • The user interface is not the best, it is still based on Flash player (but they have plans to migrate to HTML5).
  • While the "user" interface is pretty straight forward, the management interface is fairly complicated.
Read full review
Support Rating
RSA Security
No answers on this topic
Trellix (FireEye + McAfee)
McAfee Enterprise Security Manager overall is a great tool. It is effective in today's setting, wherein lots of potential threats are lurking. Its operations within the network are seamless. Users won't even notice that a SIEM is working in the background. But in today's trend, most of the businesses is heading towards the migration to cloud, which McAfee should improve its integration with.
Read full review
Alternatives Considered
RSA Security
Best in Class for us, and was a good choice since we already are using a lot of other RSA products(DLP, Archer etc.)
Read full review
Trellix (FireEye + McAfee)
We selected McAfee Enterprise Security Manager because the pricing is competitive in the industry. It is very reliable. The vendor offers good support in real time. Offers the results that we have been looking for. The ability to get the logs may be of last 2 years in a matter of seconds. The ability to retain logs for a very long time.
Read full review
Return on Investment
RSA Security
  • Hard to calculate ROI since it is not revenue based.
  • It is a expensive solution, bit very capable.
Read full review
Trellix (FireEye + McAfee)
  • Centralisation of events form NIDS/IPS/IDS, Firewall(s), Web Proxy and Endpoint
  • Ability to have third party management
  • Actively upgraded product with good vendor support
Read full review
ScreenShots