Views:

TrendAI Vision One Product Information

  • TrendAI Vision One” is the solution name for the new Trend Vision One platform available to customers that enhances and consolidates detection, investigation and response capabilities across email, endpoints, servers, cloud workloads and networks.
  • For TrendAI™, TrendAI Vision One refers to the ability to do detection and response across email, endpoints, servers, cloud workloads and network via a single TrendAI Vision One platform or the managed TrendAI Vision One service. TrendAI™ is the first to deliver TrendAI Vision One across all these vectors.
  • X refers to the multiple layers. Trend Vision One extends beyond the endpoint, so the term TrendAI Vision One is used to differentiate from EDR.
  • TrendAI Vision One sits on top of relevant TrendAI™ products in a customers’ environment, and offers expert security analytics for alert correlation, and consolidated visibility and investigation of events across security layers, leading to earlier detection and faster response.
  • Trend Vision One enables better context and deeper analysis, so customers can respond more effectively and efficiently to threats, minimizing the severity and scope of a breach on the organization.
  • Depending on the TrendAI™ products a customer has/buys, they can leverage the TrendAI Vision One platform across one or more of the available layers. They do not have to buy every associated product to gain value. They will get the value of more, richer detection and investigation with just a single layer (like endpoint via this offer as an example). Of course, the more layers they employ, the more sources there are.

TrendAI™ Endpoint Basecamp (a.k.a. XBC) provides a robust way to deploy TrendAI™ solutions to endpoint side and also introduce important common endpoint functions for TrendAI™ agents. For better customer support and functionality for TrendAI™ agents, TrendAI™ suggests keeping TrendAI™ Endpoint Basecamp always up-to-date.

For more information, refer to this article.

  • Currently, we are focusing on integrating TrendAI™ products into Trend Vision One. In the future, we will start integrating with 3rd party solutions.
  • The priority is on TrendAI™ products because our portfolio breadth enables us to offer a comprehensive solution with our native products.
  • For information, refer to Compatibility of Trend Vision One Endpoint Agent and TrendAI™ products.

Data Collection and Handling

TrendAI Vision One has features that collect data, and the data collection process is fully compliant with GDPR.

To know about what features collect data, the data transmitted, and the locations on the related product consoles where you can disable the features, refer to TrendAI Vision One Data Collection Notice.

  • Trend Vision One leverages data stored in secure TrendAI™ data lakes.
  • Data from individual organizations are carefully protected from any cross-contamination with any other organizations’ data.
  • Data lakes are in both the US and Europe for data residency compliance.

For more information, refer to TrendAI Vision One Security and Privacy Overview.

For each product, activity data is sent to cloud data lakes and stored for:

  • Apex One XDR: 30 days included, extendable to 1 year.
  • Cloud One-Workload Security XDR: 30 days included, extendable to 1 year.
  • Cloud App Security XDR: 180 days included, not extendable at this time.
  • Deep Discovery Inspector XDR: 180 days included, not extendable at this time.

Licensing

  • TrendAI Vision One is only available as a cloud-only offering because the volume of storage and processing capacity required for the TrendAI Vision One data lake and AI/Data Analytics can only be accomplished in the cloud.
  • Through the offer above, Apex One on-premise customers can experience TrendAI Vision One. On-prem customers can choose to enable their endpoint agent to send endpoint activity data to the TrendAI Vision One data lake and can gain access to TrendAI Vision One SaaS platform. In this scenario, their EPP capability remains on-prem, but their EDR/TrendAI Vision One function is cloud-based.

Complimentary Credits is offered to customer if they meet the following criteria:

Eligible Not Eligible
Customers who have not signed up for Complimentary or Trial XDR License Customers who are currently using a Complimentary or Trial XDR License
Customers who have not purchased an XDR/Trend Vision One License Customers who are already using a paid XDR/TrendAI Vision One License
Customers who have patched/updated products and can see the trial promotion within their console Customers who are using products that are not yet patched, and are unable to see the trial offer
Customers with more than 500 users Customers with 500 or fewer users

For the list of TrendAI™ products that offer Complimentary Credits for TrendAI Vision One, refer to this article.

  • Complimentary Credits will provide full access to TrendAI Vision One features.
  • Eligible users will receive a 28,000 credit allowance valid for 60 days which you can allocate to enable the XDR sensors or apps.

Managed Detection and Response

TrendAI Vision One also offers managed services to our customers, which our Cybersecurity Experts will be handling the Threat Monitoring and Response.

For more information, see TrendAI Vision One Managed Detection and Response.


Product Integrations

TrendAI Vision One can be integrated into the following products. Note that the list may be changed without prior notice as more products will be available for integration on future updates.

Vendor Product
TrendAI™
  • Apex One as a Service with Endpoint Sensor XDR editon
  • Cloud App Security
  • Cloud One - Workload Security
  • Deep Discovery Inspector
  • Deep Discovery Director
  • Deep Discovery Direcotr - Network Analytics as a Service
  • Deep Security Software
  • TrendAI™ Web Security
Broadcom (Symantec) ProxySG and Advanced Secure Gateway
Checkpoint Check Point Open Platform for Security (OPSEC)
Fortinet FortiGate Next-Generation Firewall
IBM
  • QRadar on Cloud: STIX-Shifter connector (*Preview)
  • TrendAI Vision One Universal Data Insight for Cloud Pak for Security
MISP Project MISP
Microsoft
  • Azure AD
  • Microsoft Endpoint Manager (Intune)
  • Office 365
  • TrendAI Vision One for Azure Sentinel
Okta Okta
Palo Alto Networks Palo Alto Panorama
Splunk TrendAI Vision One for Splunk (XDR)
VMware VMware Workspace ONE UEM (AirWatch)
Others
  • TAXII Feeds
  • Plaintext (freetext) feeds

To learn more about 3rd party integrations, you may visit TrendAI™ Automation Center - Third-party Integration

We offer a rich set of APIs with documented use cases. Aside from the product connectors available, you may also use the TrendAI Vision One API to perform the following tasks:

  • Investigate and triage security events
  • Perform live responses during the investigation and advanced threat hunting
  • Manage user accounts and roles
  • Connect products to Trend Vision One

For our complete guide and references, visit the TrendAI Vision One Automation Center - Getting Started page.