Cisco Threat Response automates integrations across select Cisco Security products and accelerates key security operations functions: detection, investigation, and remediation. Threat Response integrates threat intelligence from Cisco Talos and third-party sources, which adds context from integrated Cisco Security products automatically so you know instantly which of your systems was targeted and how.
N/A
Trend Vision One XDR and ASM
Score 9.1 out of 10
N/A
Trend Vision One XDR and ASM includes advanced XDR capabilities that collect and correlate deep activity data across multiple vectors – email, endpoints, servers, cloud workloads, and networks - to enable a level of detection and investigation that the vendor states is difficult or impossible to achieve with SIEM, EDR, or other individual point solutions.
This is perfect for organisations with small or limited security teams who want to get more from their Cisco and third-party investments. With Secure Endpoint makes detecting and responding to threats much easier. Any organisation looking to overhaul its security infrastructure or even wrap around its cloud-first strategy with solutions such as Intune should seriously look at Cisco’s suite of products. I’ve implemented Secure Endpoint, Umbrella, and Duo for customers primarily using Intune for device management, and the cool new insight features in Cisco SecureX really help with visibility over their estate.
We were using Trend Micro Vision One as a demo and had a virus alert. Vision One gave us complete visibility into the incident and allowed us to easily perform incident response and glen up the laptop in question.
So the product enables end users to get visibility into their security environment, not only across the Cisco products but across the third-party products as well. The product also automates detection and response. So the product really offers end-user efficiency in the security operations center.
Of course, many companies prefer to obtain security from the cloud; however, not all of them prefer it, which is why having a local implementation would allow these companies to also use said software as their ally for their security.
Working with this software can be simple, that is, any threat can be visualized with greater precision, but when it comes to managing its orchestration, it is a bit complex.
Its integration with other software can be simple but with others it is not, that is why it would be ideal if all of them could be carried out in the same way.
Integrating with a larger number of third party software would be of great help, to further enhance the analysis and detection of threats.
Me and my team are using it every single day. We go over threats and vulnerabilities and try to fix it. Trend Vision One XDR has machine learning so it does a good job to learn the behavior of an end point and recognize if its normal or not, so its saves us from wasting time in some cases.
A lot of the look and feel of both products is quite similar. There's several best practices on visualization that are followed in both and integration of common telemetry is comfortable and quick. But while Microsoft ATP offers deep insights into mostly the Microsoft environment and a limited view into other common sources, SecureX shines in all the non-client areas Microsoft's product seems lackluster in.
We had Trend Micro Apex One in the past and were quiet happy with it .I can't say about the price because its not my spot at our team but for my knowledge Trend Vision One XDR wasn't the most expensive overall. We also saw demo of the product and its abilities.