Identification, neutralization and investigation of threats
May 22, 2021

Identification, neutralization and investigation of threats

Fernanda Ministerio | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with McAfee Enterprise Security Manager

McAfee Enterprise Security Manager is being managed by the company's infrastructure area to improve information security processes in monitoring, investigating and minimizing problems and threats to our cloud services and systems. We use it mainly to monitor the performance of systems and applications, databases and critical network processes. The objective is to perform data analysis for patterns that may indicate a threat. This intelligence process determines priorities and alerts that reveal possible threats as early as possible.
  • Allows data analysis for patterns that may indicate a threat
  • Real-time activity visibility
  • Gives technology support intelligence by creating prioritized alerts that reveal potential threats before they happen
  • Problem reporting is integrated and simplifies analysis and compliance operations
  • Reports can be difficult to analyze
  • There is little training for technology teams to master the key features of the tools
  • Our team may have problems locating errors in our country's bases
  • Reports can be difficult to customize and adapt
  • positive impact: increased security of our applications
  • positive impact: we were able to integrate internal applications already developed, through API
  • positive impact: we were able to integrate with other McAfee tools that we already used
Other evaluated products: Microsoft Defender and Symantec
- McAffee has more comprehensive integrated tools that better serve our infrastructure
- Analysts found the use of the tool more intuitive
- Integrations with internal and other products were more documented
- The support is very good
- It was evaluated by other institutions as a leading product (Gartner)

Do you think Trellix Enterprise Security Manager delivers good value for the price?

Yes

Are you happy with Trellix Enterprise Security Manager's feature set?

Yes

Did Trellix Enterprise Security Manager live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of Trellix Enterprise Security Manager go as expected?

Yes

Would you buy Trellix Enterprise Security Manager again?

Yes

McAfee Endpoint Security, Microsoft Defender for Endpoint (formerly Microsoft Defender ATP), Avast Business Antivirus, AVG AntiVirus Business Edition
It is an important tool for large companies that have their cloud infrastructure. It is very interesting for organizations that need to monitor and analyze data from a heterogeneous infrastructure. It allows you to store billions of events and flows with quick access to long-term event data storage, but this infrastructure has a processing cost.

Trellix Enterprise Security Manager Feature Ratings

Centralized event and log data collection
10
Correlation
7
Event and log normalization/management
8
Deployment flexibility
9
Integration with Identity and Access Management Tools
10
Custom dashboards and workspaces
10
Host and network-based intrusion detection
9
Log retention
9
Data integration/API management
10
Behavioral analytics and baselining
10
Rules-based and algorithmic detection thresholds
10
Response orchestration and automation
10
Reporting and compliance management
10
Incident indexing/searching
9