Cisco Sourcefire SNORT vs Trend Micro Deep Discovery comparison

Cancel
You must select at least 2 products to compare!
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Cisco Sourcefire SNORT and Trend Micro Deep Discovery based on real PeerSpot user reviews.

Find out in this report how the two Intrusion Detection and Prevention Software (IDPS) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Cisco Sourcefire SNORT vs. Trend Micro Deep Discovery Report (Updated: March 2024).
765,386 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The most valuable feature is the visibility that we have across the virtual environment.""The solution can be integrated with some network electors like Cisco Stealthwatch, Cisco ISE, and Active Directory to provide the client with authentication certificates.""Solid intrusion detection and prevention that scales easily in very large environments.""The most valuable features of Cisco Sourcefire SNORT are the dashboard for monitoring events.""Cisco Sourcefire SNORT is easy to configure and the reporting is great. It's also very user-friendly.""In general, the features are all great. However, if I need to take hardware for ASA, because they need to upgrade to Firepower, we want to create rules. For that, most of the time we go to the command line. Right now Firepower is working really hard on the grid. You can apply all those rules to the grid. Even if you want to monitor the logs, for example, the activity will tell you which particular user has been blocked because of that rule. Firepower's monitoring interface is very good, because you can see each and every piece. ASA also had it, but there you needed to type the command and be under the server to see all that stuff. In Firepower you have the possibility to go directly to the firewall. The way the monitoring is displayed is also very nice. The feature I appreciate most in Firepower is actually the grid. The grid has worked very well.""The most valuable feature of this solution is the filtering.""Cisco technical support is unbeatable. It offers a premium service every time."

More Cisco Sourcefire SNORT Pros →

"The most valuable feature of Trend Micro Deep Discovery is its complete end-to-end visibility of threats.""The most valuable feature is that the user can customize images of virtual machines in the sandbox functionality. The other vendors only use images that were created by the vendor but not the customer, end-user or partner. This helps to detect advanced threats and attacks.""Trend Micro Deep Discovery is a very specific product for threat intelligence with smart protection.""The product is very easy to install.""The product's initial setup phase was not difficult.""Generally speaking, it just gives us a broad understanding of exactly what kind of threats occur. The submission point, analyzing point, and virtualization are within the environment that it supports. It helped us to improve our security levels and protect our internal network from any threats outside.""The HTML file sandboxing is very good.""One of the most valuable features is the performance, since, so far, we have not faced any issues with Deep Discovery."

More Trend Micro Deep Discovery Pros →

Cons
"Performance needs improvement.""With the next release, I would like to see some PBR, so that you can do the configuration with the features.""The initial setup is a little difficult compared to other products in the market. It depends on the environment. If we are doing any migration, it might take months in a brown-field environment.""The implementation could be a bit easier.""To be frank, the product is not really stable, although they're working on that. Whenever I go to the technical community with an issue, they will usually say that it is not there yet, but the technical team are working on it. The issues are not insolvable. I think they should just keep working on the product to make sure that the product can become very stable. The technical support is great. I appreciate that. We have a lot of communities supporting Firepower now, so you can find help for whatever issue you have.""I would like to have analytics included in the suite.""I don't think this solution is a time-based control system, because one cannot filter traffic based on time.""If the price is brought down then everybody will be happy."

More Cisco Sourcefire SNORT Cons →

"I would like to see them create a rule where It could integrate with the network and start mitigating with auto-detection.""This solution could be improved with faster technical support and cheaper licensing prices.""Trend Micro can improve the pricing in general. There is nothing else they can add or improve in the solution.""There are certain aspects of flexibility in the policies that should be added to Deep Discovery.""The scalability is sometimes limited.""I would like the ability to analyze all files in our internal network, at the same time on different operating systems. Not just three of them, but as many as possible.""Trend Micro Deep Discovery's technical support could be improved, and it could be made more active.""I would like to see integration with third-party tools to improve the visibility of the dashboards."

More Trend Micro Deep Discovery Cons →

Pricing and Cost Advice
  • "We have a three-year license for this solution."
  • "Licensing for this solution is paid on a yearly basis."
  • "I don't know the exact amount, but most of the time when I go to a company with a proposition, they will say, "This thing that you are selling is good, but it's expensive. Why don't you propose something like FortiGate, Check Point, or Palo Alto?" Cisco device are expensive compared to other devices."
  • "The cost is per port and can be expensive but it does include training and support for three years."
  • More Cisco Sourcefire SNORT Pricing and Cost Advice →

  • "Overall, the price is good."
  • "The price of the solution is lower compared to the competition."
  • "The licensing cost is a bit pricey. We pay a yearly subscription."
  • "Its price is fine, but Trend Micro can improve the pricing in general. It is a hardware solution. It is based on the number of nodes, and according to the number of nodes, clients decide which box they should acquire. They have to renew their license every year. It is subscription-based."
  • "The tool’s licensing costs depend on the customers."
  • "Trend Micro Deep Discovery is quite expensive compared to other endpoint security products."
  • "The tool's licensing costs are yearly. There are no additional costs associated with the product."
  • "Compared to its competitors, Trend Micro Deep Discovery is a little expensive."
  • More Trend Micro Deep Discovery Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
    765,386 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The most valuable features of Cisco Sourcefire SNORT are the dashboard for monitoring events.
    Top Answer:The cost is per port and can be expensive but it does include training and support for three years.
    Top Answer:The main dashboard of Cisco Sourcefire SNORT could improve.
    Top Answer:The product's initial setup phase was not difficult.
    Top Answer:Compared to its competitors, Trend Micro Deep Discovery is a little expensive. There are no costs attached to the solutions apart from the licensing charges.
    Top Answer:The slow nature of the product and the tool's detection area is of concern, as there are a lot of configurations that should be configured by default when you install it at your endpoint. Ultimately… more »
    Ranking
    Views
    2,226
    Comparisons
    1,664
    Reviews
    4
    Average Words per Review
    343
    Rating
    8.3
    Views
    3,858
    Comparisons
    2,387
    Reviews
    9
    Average Words per Review
    388
    Rating
    8.1
    Comparisons
    Also Known As
    Sourcefire SNORT
    Trend Micro Deep Discovery Inspector, Trend Micro Deep Discovery Analyzer
    Learn More
    Overview

    Snort is an open-source, rule-based, intrusion detection and prevention system. It combines the benefits of signature-, protocol-, and anomaly-based inspection methods to deliver flexible protection from malware attacks. Snort gained notoriety for being able to accurately detect threats at high speeds.

    Deep Discovery is available as a physical or virtual network appliance. It’s designed to quickly detect advanced malware that typically bypasses traditional security defenses and exfiltrates sensitive data. Specialized detection engines and custom sandbox analysis detect and prevent breaches.

    Sample Customers
    CareCore, City of Biel, Dimension Data, LightEdge, Lone Star College System, National Rugby League, Port Aventura, Smart City Networks, Telecom Italia, The Department of Education in Western Australia
    Allied Telesis, Atma Jaya Catholic University of Indonesia, Babou, Blekinge County Council, Delacour, Hiroshima Prefectural Government, Live Nation Entertainment Inc., Mazda Motor Logistics Europe, McGill University Health Centre, Mikuni Corporation, OKWAVE, Sinar Mas Land, SWICA, UTOC Corporation
    Top Industries
    REVIEWERS
    Computer Software Company27%
    Financial Services Firm18%
    Comms Service Provider18%
    Government9%
    VISITORS READING REVIEWS
    Computer Software Company18%
    Government9%
    Financial Services Firm8%
    Comms Service Provider7%
    REVIEWERS
    Financial Services Firm17%
    Computer Software Company17%
    Security Firm8%
    Marketing Services Firm8%
    VISITORS READING REVIEWS
    Computer Software Company21%
    Manufacturing Company9%
    Financial Services Firm9%
    Comms Service Provider6%
    Company Size
    REVIEWERS
    Small Business22%
    Midsize Enterprise39%
    Large Enterprise39%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise12%
    Large Enterprise64%
    REVIEWERS
    Small Business50%
    Midsize Enterprise17%
    Large Enterprise33%
    VISITORS READING REVIEWS
    Small Business24%
    Midsize Enterprise17%
    Large Enterprise60%
    Buyer's Guide
    Cisco Sourcefire SNORT vs. Trend Micro Deep Discovery
    March 2024
    Find out what your peers are saying about Cisco Sourcefire SNORT vs. Trend Micro Deep Discovery and other solutions. Updated: March 2024.
    765,386 professionals have used our research since 2012.

    Cisco Sourcefire SNORT is ranked 15th in Intrusion Detection and Prevention Software (IDPS) with 17 reviews while Trend Micro Deep Discovery is ranked 9th in Intrusion Detection and Prevention Software (IDPS) with 21 reviews. Cisco Sourcefire SNORT is rated 7.6, while Trend Micro Deep Discovery is rated 8.4. The top reviewer of Cisco Sourcefire SNORT writes "The solution provides visibility across virtual environments, protects internal networks, and is scalable to meet organizational needs". On the other hand, the top reviewer of Trend Micro Deep Discovery writes "A physical or virtual network appliance designed to quickly detect advanced malware". Cisco Sourcefire SNORT is most compared with Fortinet FortiGate IPS, Cisco NGIPS, Check Point IPS, Palo Alto Networks Advanced Threat Prevention and Darktrace, whereas Trend Micro Deep Discovery is most compared with Darktrace, Trend Micro TippingPoint Threat Protection System, Arista NDR, Vectra AI and Palo Alto Networks Advanced Threat Prevention. See our Cisco Sourcefire SNORT vs. Trend Micro Deep Discovery report.

    See our list of best Intrusion Detection and Prevention Software (IDPS) vendors.

    We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.