Rapid7 InsightIDR vs. Trellix Helix

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
InsightIDR
Score 9.5 out of 10
N/A
In addition to their incident response service, Rapid7 offers InsightIDR, a combined XDR and SIEM that provides user behavior and threat analytics.
$5.89
per month per asset
Trellix Helix
Score 7.0 out of 10
Enterprise companies (1,001+ employees)
Trellix Helix (formerly FireEye Helix) is a SIEM solution providing a non-malware threat detection solution.
$0
Events per second
Pricing
Rapid7 InsightIDRTrellix Helix
Editions & Modules
InsightIDR Advanced
$5.89
per month per asset
Helix Console
$0
Events per second
Helix Enterprise
$0
Events per second
Offerings
Pricing Offerings
InsightIDRTrellix Helix
Free Trial
YesNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeOptional
Additional Details*500 asset minimum. Billed annually. All amounts are shown in U.S. dollars. International prices vary.
More Pricing Information
Community Pulse
Rapid7 InsightIDRTrellix Helix
Considered Both Products
InsightIDR
Chose InsightIDR
The biggest advantage it has the lightweight agent and smooth and less traffic chaos in network during log collection. Cloud Security always require extra efforts but InsightIDR reduce that burden as it has highly anticipated agents to which knows what they need to do when they …
Chose InsightIDR
Other products are OK, but they lack the robust permissions and their interfaces are much much less intuitive. Rapid7's prioritization system for vulnerabilities makes more sense given their context as the developers of Metasploit. We thought we might be able to switch and save …
Chose InsightIDR
We tried other solutions, but our Network, which is mostly in different locations with different OEMS , was well suited by Rapid7. Rapid7 works with different workflows and SIEM solutions, which was a requirement of the SOC solution. Visibility allows the security operation to …
Chose InsightIDR
Many of the top-tier providers of this technology do a comparable job. However, we selected Rapid7 because of their reputation in the area of user behavior analytics, cost, # of SOC locations (due to our selection of their MDR service), support, company growth in other areas …
Chose InsightIDR
Both products would do what we needed them to, but Rapid7 InsightIDR made more sense from a cost perspective. We did a proof of concept of both products, and they were pretty evenly matched in their own ways. Forescout had a better interface, but in the end the interface of …
Chose InsightIDR
Between Rapid7 InsightIDR and Crowdstrike, we liked Rapid7 InsightIDR due to the functionality of the system and the features Rapid7 InsightIDR has. Rapid7 InsightIDR was very easy to deploy in our environment to our endpoint devices. We like the scanning capabilities and the …
Trellix Helix
Chose Trellix Helix
It offers extensive visibility thus easy detection of threats and easy mitigation practices. Utilization of its threats intelligence capabilities thus early detection of incidents and maximization of security investments. Offers great integration of cloud resources with …
Chose Trellix Helix
We found FireEye Helix to outperform all other tools we reviewed. SecureWorks had a great marketing plan but once we drilled into the technical details, the platform wasn't able to keep up.
Chose Trellix Helix
I find Helix to be super-efficient and able to cut through the noise. Previous installations of LogRhythm and Splunk resulting in an overwhelming amount of noise (out of the gate), and we had to constantly tune out false positives. Helix is different. Out of the gate, Helix …
Features
Rapid7 InsightIDRTrellix Helix
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Rapid7 InsightIDR
-
Ratings
Trellix Helix
8.5
Ratings
9% above category average
Centralized event and log data collection00 Ratings8.50 Ratings
Correlation00 Ratings8.00 Ratings
Event and log normalization/management00 Ratings8.50 Ratings
Deployment flexibility00 Ratings8.40 Ratings
Integration with Identity and Access Management Tools00 Ratings8.90 Ratings
Custom dashboards and workspaces00 Ratings8.10 Ratings
Host and network-based intrusion detection00 Ratings9.00 Ratings
Best Alternatives
Rapid7 InsightIDRTrellix Helix
Small Businesses
SentinelOne Singularity
SentinelOne Singularity
Score 8.7 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 3.7 out of 10
Medium-sized Companies
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
Enterprises
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Rapid7 InsightIDRTrellix Helix
Likelihood to Recommend
9.9
(0 ratings)
9.0
(0 ratings)
Support Rating
-
(0 ratings)
9.0
(0 ratings)
Ease of integration
-
(0 ratings)
8.1
(0 ratings)
User Testimonials
Rapid7 InsightIDRTrellix Helix
Likelihood to Recommend
It has been brilliant for us in terms of understanding the behaviour affecting our endpoints and assets. We have full visibility of our alerts, which menas we can act on them immediately. We use a single pain of glass with dashboards that can be easily drilled down into to get further information. It has laso helped us eo create bespoke reports for senios Managmeent, while at the same time supports other teams like Network Mnagement and Operations.
Read full review
Overall, we've had a great experience with FireEye Helix and would recommend it to organizations looking to improve their operational security. We've found Helix to be a great way to collect and analyze revenant security events and take action. Having a single pane of glass makes this process much more efficient. Prior to moving to FireEye Helix, we had different teams sending data to different applications, which resulted in confusion and critical data being missed.
Read full review
Pros
  • Rapid7 InsightIDR does a very good job at keeping virus definitions up to date so that our threat intelligence is very up to date when knowing what to protect against.
  • It helps us by scanning all of our infrastructure components and highlights where improvements need to be made in security so we can be proactive with our security initiatives.
  • It has automated response mechanisms to triage and resolve any potentials risks allowing us to save time in the long run.
Read full review
  • Detection of advanced threats.
  • Easy integration with cloud resources and our existing security tools thus enhancing performance.
  • Easy deployment with great threats intelligence capabilities.
Read full review
Cons
  • Sometimes Rapid7 InsightIDR will be too locked down and without knowing will block applications and processes needed for day to day operation.
  • System scans with Rapid7 InsightIDR can be very bandwidth-heavy on the network and system resources.
  • From a recent incident, we have seen more and more false positives from Rapid7 InsightIDR on areas that we know are secure.
Read full review
  • Overly complex platform
  • Multiple logins needed for various tools--leads to confusion
  • Costs can add up
Read full review
Support Rating
No answers on this topic
We've been fairly happy with FireEye Helix support overall. Most issues are resolved the same day the case is opened.
Read full review
Alternatives Considered
Between Rapid7 InsightIDR and Crowdstrike, we liked Rapid7 InsightIDR due to the functionality of the system and the features Rapid7 InsightIDR has. Rapid7 InsightIDR was very easy to deploy in our environment to our endpoint devices. We like the scanning capabilities and the console we felt was very easy to use and can be easily caught up to our IT staff. Also during vulnerability scans, we felt that Rapid7 InsightIDR was able to detect more and any competitor out there.
Read full review
It offers extensive visibility thus easy detection of threats and easy mitigation practices. Utilization of its threats intelligence capabilities thus early detection of incidents and maximization of security investments. Offers great integration of cloud resources with existing security tools thus ensuring seamless performance and all-time security for the organizational resources.
Read full review
Return on Investment
  • Rapid7 InsightIDR has allowed us to be proactive in securing our systems as the vulnerability scans give us a lens at what we need to fortify when it comes to security.
  • In recent incidents its allowed us to save time and money as it mostly detects issues accurately and we are able to bring systems back quickly without too much downtime for the business.
  • With recent updates, we are confident that Rapid7 InsightIDR is a good solution for the long run as they are always making adjustments to their platform and improving it with every release.
Read full review
  • Helix has had a significant impact on CSOC visibility efforts across the organization.
  • Helix fills the logging and alerting gaps that are missing across the infrastructure side.
  • Having a single pane of glass allows teams to more efficiently run incidents. Additionally, Helix is integrated with ServiceNow providing enhanced and efficient case management for all Helix alerts.
Read full review
ScreenShots

Trellix Helix Screenshots

Screenshot of Helix Cloud IntegrationsScreenshot of Helix Asset Alert Correlation