TrustRadius: an HG Insights company

Trustwave MDR

Score8.9 out of 10

11 Reviews and Ratings

What is Trustwave MDR?

Trustwave Managed Detection and Response (MDR) is a rapid threat detection and response service. Trustwave experts identify, investigate, and eliminate cyber threats, mitigating risk to the user's business, leveraging existing security tools and infrastructure to maximize the user's returns on their investments.

An elite security command center that identifies and tracks vulnerabilities

Use Cases and Deployment Scope

With access to the cloud-based Trustwave platform, we are able to see all of our threat alerts triaged by severity, making it easier to zero in on and respond to incidents that could compromise our servers and network devices. It identifies identification and access control problems, configuration mistakes, missing patches and other issues that can create escalation-of-privilege or denial-of-service attacks. The dashboard and reports made it easy to view and understand a vulnerabilities, risk and threats across our various database types

Pros

  • We are now in a better position to address database vulnerabilities, configuration issues, weak passwords and ptach issues
  • Standardized reporting and remediation requirements and processes for all databases
  • Offers access to real-time data we need to remediate and re-test our IT environments
  • Conducts company-wide scans across tens of thousands of databases

Cons

  • The long process to implement security compliance monitoring consistently across a multiple database platforms

Return on Investment

  • Protects valuable data and defends against increasingly sophisticated threat actors
  • We have achieved increase in customer trust and distinguished the company from our main rival
  • Freed the company's roughly 10 employees to focus on expanding the business internationally

Alternatives Considered

Alert Logic Managed Detection and Response and GoodAccess

Robust firewalls from Trustwave

Use Cases and Deployment Scope

We use Trustwave LAN mostly on our Limited Area Network (LAN) but the usage extends to bots, email and web security. I have used the blacklist/whitelist support feature for restriction and allowance to sensitive bots' data. I've also used other Trustwave granular controls in content filtering. My team and I also frequently logs in to the Trustkeeper Portal to view log events and reports.

Pros

  • The NGFW device integrates with several software
  • It's easy to tune and update security policies at any moment.
  • Good monitoring and management

Cons

  • Displays security events in a clustered display which makes it unappealing
  • It's a complex process to deploy the firewalls in a virtual environment

Return on Investment

  • Secure networks to conduct our activities
  • Better management of NGFW devices for our clients

Trusted Trustwave Firewall

Use Cases and Deployment Scope

Trustwave Firewall has provided managed security and monitoring for our organization for the last 5-10 years. We have used their products for our main set of external intrusion and detection systems for longer than I've been with the company. So far their suite of products coupled with their support has kept us coming back to the company each time we re-evaluate firewall security.

Pros

  • Manages and monitors traffic to provide security
  • Reports in timely manner on all incidents
  • Web portal access to review reports and suggestions

Cons

  • Support can be somewhat stale feeling and frustrating.
  • Coordination attempts for integration/troubleshooting with other vendors is tricky.
  • Do you research on brand/model of firewalls

Return on Investment

  • It has alleviated time from technicians who do not have to find RCA's for all incidents.
  • It actively protects and monitors all traffic and reports in timely fashion.
  • Support can be tricky to work with, but incident response makes up for that.

Other Software Used

ConnectWise Automate, ConnectWise Manage, ConnectWise Control

Very reliable in environments without permanent refrigeration

Use Cases and Deployment Scope

<div><div><div><div>It is currently being used at a remote location exclusively for backups.

</div></div></div></div><div><div><div><div><div><div>It is reliable and resistant, since where it is only communication equipment is active all the time, therefore there is no permanent cooling. The other devices are only activated at the time of backup.</div></div></div></div></div></div>

Pros

  • It is very reliable in environments without permanent refrigeration.
  • The rules that it handles are static, but it has some mechanisms for detecting instruments, which for the current users are very good.
  • It maintains VPNs in a stable way and its configuration is similar and compatible with other brands.

Cons

  • There is no option to include rules type functions, which would be very useful to save configuration time.
  • The support is not as helpful as I would like, nor its documentation.
  • A friendly graphical interface would be very well accepted.

Return on Investment

  • It is a robust equipment, therefore it is still in use, in a highly isolated environment.
  • I think that the investment was recovered from the first moment, from its time when it was very advanced.

Alternatives Considered

Fortinet FortiGate and Cisco ASA

Other Software Used

Cisco ASA, FortiDB, FortiDDoS, FortiMail, Fortinet FortiGate, FortiSIEM, Blue Coat Advanced Threat Protection, Blue Coat Encrypted Traffic Management

Trustwave SIEM Review

Pros

  • Reporting
  • Easy access to the information in the Trustwave SIEM
  • Ease of install of the endpoint client

Cons

  • Trustkeeper portal can be slow
  • Trustwave sales and support are lacking
  • The endpoint client is a little large in size

Return on Investment

  • It is an expensive solution for PCI reporting
  • It is an expensive solution for PCI Compliance

Other Software Used

Aloha POS, Microsoft Dynamics GP, Oracle Primavera Portfolio Management