KurhulaMaluleka - PeerSpot reviewer
Managing Director at Behold IT
Real User
Very good endpoint protection capabilities with useful AI and effective threat management
Pros and Cons
  • "The security on offer is pretty good. We are happy with it."
  • "The solution can be expensive, although we do see the value in it."

What is our primary use case?

We primarily use the solution for endpoint protection. 

What is most valuable?

The endpoint protection capabilities are great. 

The security on offer is pretty good. We are happy with it. 

I love the threat management on offer.

Their AI is quite good.

We haven't had any issues with stability so far.

Sophos has a central management dashboard, which I'm happy about.

The installation process is very straightforward. 

What needs improvement?

I'm mostly quite happy with the solution. I haven't had any issues with it. 

From the firewall side, from the Intercept X to endpoint protection, everything is there, so there's nothing much that I can complain about.

The solution can be expensive, although we do see the value in it.

For how long have I used the solution?

I've used the solution for over a year now. 

Buyer's Guide
Intercept X Endpoint
March 2024
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
768,886 professionals have used our research since 2012.

What do I think about the stability of the solution?

The stability has been good. There are no bugs or glitches. it doesn't crash or freeze. It's reliable. 

What do I think about the scalability of the solution?

We have over 200 employees on the solution currently. I haven't had any issues with scaling. 

How are customer service and support?

I'm quite happy with the level of support on offer. 

Which solution did I use previously and why did I switch?

We've used also AVG. We've used it in quite a few different places for different systems.

How was the initial setup?

I found the implementation process sot be easy. It wasn't a problem at all. I did not find it to be overly complex or difficult. 

We have administrators and managers that can handle any technical stuff. 

What about the implementation team?

We were able to handle the setup ourselves, in-house. We didn't need any integrator or consultant assistance. 

What's my experience with pricing, setup cost, and licensing?

We have paid for three years of licensing. 

It is expensive, however, for what you getting out of it, from the firewall side and to endpoint protection, everything seems to be worth it.

What other advice do I have?

I'd recommend the solution to other users and organizations. I'd rate it at a ten out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
AdemolaOlamide - PeerSpot reviewer
Business Development Manager at Computer Learning centre
Real User
Top 10
Stable and scalable solution that provides endpoint detection and response, email protection, and data loss prevention
Pros and Cons
  • "Solution for endpoint detection and response, with good stability and scalability. Users also benefit from email protection and data loss prevention."
  • "Installing Sophos Intercept X was not as straightforward, as we had to ask support and had to work with an integrator, though the process didn't take much time, e.g. it was completed within one hour."

What is our primary use case?

We use a normal EDR solution in the office: Sophos Intercept X, for endpoint detection and response, email protection, and data loss prevention.

For how long have I used the solution?

I've been using Sophos Intercept X for a long time, and I'm currently in my second year of using the solution.

What do I think about the stability of the solution?

Sophos Intercept X is a very stable solution.

What do I think about the scalability of the solution?

My impression of Sophos Intercept X is that it's a scalable solution.

How was the initial setup?

For the installation of Sophos Intercept X, we had to ask support from their sales staff. The installation process didn't take much time, as it was completed within an hour.

What about the implementation team?

We implemented the solution through an integrator.

What's my experience with pricing, setup cost, and licensing?

We pay for the Sophos Intercept X license annually.

Which other solutions did I evaluate?

We were initially using ESET.

What other advice do I have?

I'm not yet satisfied with Sophos Intercept X, but I know how to use it. It's good for now, so I can't think of what I'd like to change in the solution.

We have up to 25 users of Sophos Intercept X, and one person in charge of the deployment and maintenance of the solution. For the installation, that person works with an external consultant.

I'm recommending this solution to others who may want to start using it.

I'm rating Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Intercept X Endpoint
March 2024
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
768,886 professionals have used our research since 2012.
Michael Mcdonald. - PeerSpot reviewer
Senior Security Consultant at First Technology
Reseller
Top 10
Comes with an option to switch off an endpoint, and does what it's supposed to do and better than anyone else
Pros and Cons
  • "I find the security heartbeat feature with synchronized security very useful. It's a very nice feature that allows you to basically switch off an endpoint. When an endpoint has got a virus or something like that, or it's infected or compromised, you can isolate it from the network, but only if you've got an XG Firewall as well. It also provides ease of use. It is the only antivirus that can recognize 25 out of the 36 ransomware and virus techniques that have been often used in terms of the behavior base using heuristics. It's beautiful, utterly amazing. No other antivirus can do that."
  • "The pricing could be a bit lower to match the normal retail pricing."

What is most valuable?

I find the security heartbeat feature with synchronized security very useful. It's a very nice feature that allows you to basically switch off an endpoint. When an endpoint has got a virus or something like that, or it's infected or compromised, you can isolate it from the network, but only if you've got an XG Firewall as well. 

It also provides ease of use. It is the only antivirus that can recognize 25 out of the 36 ransomware and virus techniques that have been often used in terms of the behavior base using heuristics. It's beautiful, utterly amazing. No other antivirus can do that. 

What needs improvement?

The pricing could be a bit lower to match the normal retail pricing.

For how long have I used the solution?

I have been using this solution for the last four months. Currently, I am using the latest version.

What do I think about the scalability of the solution?

It's really scalable. We easily did 5,000 installations in six hours. It's good at scalability.

Some of our SMB clients have 20 users, and some have around 200 to 300 users. A big enterprise client has around 5,000 users.

How was the initial setup?

I don't set these products up, but they look pretty straightforward and simple to set up. The deployment of 5,000 users happened in around six hours. The deployment was obviously automated a little bit.

What's my experience with pricing, setup cost, and licensing?

When you start going to the EDR technologies and the MTR, it is a little bit expensive. It's a very good technology, and obviously, you're going to pay for it, but the pricing could do a little bit of work.

What other advice do I have?

I would definitely recommend Sophos Intercept X. It's the number one product in my go-to-market strategy. 

I haven't used it so much, but from what I've seen and played around with, it's a brilliant product. It has already got everything. It does what it's supposed to do and does it better than anyone else out there. If you look at Gartner Quadrants, they are at number three in terms of leaders. The Microsoft Defender ATP is number one.

I would rate Sophos Intercept X a nine out of ten. It is a beautiful product, and I love it.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
IT Manager at a tech services company with 201-500 employees
Real User
Integrated anti-malware, next-generation firewalls, and IPS for network security solutions
Pros and Cons
  • "We use Sophos Intercept X for Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS) in our organization."
  • "They should work on the logs and events. Sophos Intercept X needs to increase the interface test so that it can export to a live event."

What is our primary use case?

Our primary use case is the interception solution in Sophos Intercept X.

How has it helped my organization?

We use Sophos Intercept X for Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS) in our organization.

What is most valuable?

The future's about anti-malware, next-generation firewalls, and IPS. We value the IDS features of Sophos Intercept X the most. This is the best solution that we use and need.

What needs improvement?

Sophos Intercept X has room for improvement in the user management of live events.

They should work on the logs and events. Sophos Intercept X needs to increase the interface test so that it can export to a live event.

For how long have I used the solution?

I have been using this solution less than a year.

What do I think about the stability of the solution?

The stability of this solution was great. Sophos is a very powerful tool for all of our needs.

What do I think about the scalability of the solution?

We have an enterprise company. There are branches all over the world. Support for 50 schools over the internet is what we're supposed to intercept. It is scalable.

We have about 500 end users. For deployment and maintenance, we require just a few people. It is done by me and one of my colleagues.

How are customer service and technical support?

The technical support is not good because we are in Iran. We don't have any solidarity support from the company. We have some sanctions on. We just handle everything by ourselves.

Which solution did I use previously and why did I switch?

Before Sophos, we had older hardware that was not able to handle this software. We decided to change the solution to the Sophos device.

How was the initial setup?

The setup of Sophos Intercept X was straightforward. Our deployment took about two days, each day six to seven hours of work.

What about the implementation team?

We have used both consultants and a reseller.

What's my experience with pricing, setup cost, and licensing?

We renew the license for one year at $10,000.

What other advice do I have?

Sophos Intercept X is easy to deploy. It has all the features for a small, medium, or large scale business. On a scale from 1 to 10, I would rate this product an eight. 

The security of other devices on Cisco is more reliable and stable, but the user control in Sophos is a feature that Cisco doesn't have.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Terry Cheung - PeerSpot reviewer
Managing Director at TopSOC
Real User
Cost-effective, useful, and straightforward installation
Pros and Cons
  • "The performance is good."
  • "It would be beneficial if you could expand support for Windows 7 and Windows Server 2008 without charging an additional fee."

What is our primary use case?

Sophos Intercept X is primarily used as an antivirus. It's a next-generation antivirus solution.

What is most valuable?

It's quite useful.

The performance is good.

What needs improvement?

The installation process could be faster.

They can reduce the size of the software that is required. 

It would be beneficial if you could expand support for Windows 7 and Windows Server 2008 without charging an additional fee.

For how long have I used the solution?

I have been providing Sophos Intercept X for more than two years.

We began with an on-premises installation, the endpoint devices and PCs on the server, but the console is hosted in the cloud.

What do I think about the stability of the solution?

Sophos Intercept X is a stable solution.

What do I think about the scalability of the solution?

Sophos Intercept X is scalable.

We have a few hundred users.

How are customer service and support?

Our clients have contacted technical support.

How was the initial setup?

The installation is straightforward, but occasionally, you encounter issues, and you have to perform the installation again.

We have two or three administrators to manage Sophos Intercept X.

What's my experience with pricing, setup cost, and licensing?

Clients have to pay licensing fees. They offer both monthly and yearly licenses.

We sell MSP, manage service provider perpetual licenses.

On top of that, they have the option of purchasing additional features. They now include HDR, endpoint detection, and response features. That is an additional license that you can purchase and use with the same software.

What other advice do I have?

I would recommend this solution to others who are considering using it.

It is cost-effective, I would rate Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Technical Manager at Digital World
Real User
Comparable pricing, stable and scalable, easy to install
Pros and Cons
  • "This solution can be used with any device, mobiles, desktops, or any appliances."
  • "When I use a proxy, I can bypass Sophos, which is an area that needs improvement."

What is most valuable?

This solution can be used with any device including mobiles, desktops, or any appliances.

What needs improvement?

When I use a proxy, I can bypass Sophos, which is an area that needs improvement.

For how long have I used the solution?

We have been providing this solution for one year.

What do I think about the stability of the solution?

It's a stable product.

What do I think about the scalability of the solution?

It's scalable. We have 50 customers.

How are customer service and technical support?

Technical support should be faster.

How was the initial setup?

The initial setup is straightforward. The installation is easy, and it's faster than SAP.

Sophos Intercept can be deployed in a couple of minutes.

It will take one hour to deploy it for a firewall, and only 15 minutes for the endpoint protection.

We need one engineer to deploy this solution.

What's my experience with pricing, setup cost, and licensing?

The price is okay. It's comparable with other solutions.

You can purchase a license for one to three years.

What other advice do I have?

I would recommend this solution.

I have no issues with this solution, I would rate it a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
President at a tech vendor with 1-10 employees
Reseller
Great reporting and good training with a pretty straightforward setup
Pros and Cons
  • "The updates and a lot of the day-to-day fiddling that you would have to do with it, can all be done from the cloud so it's easy to manage, and very easy to administer."
  • "The number one thing I would like is if their support could be a little faster and it would be a little easier to get a hold of support when you need them."

What is our primary use case?

We primarily use the solution for malware protection.

How has it helped my organization?

Without a doubt, this product has helped our organization. We've been deploying Sophos Firewall for probably 15 years now. We haven't had a lot of trouble, and prior to using the Sophos product, we were using a lot of Symantec products and occasionally some others. We have not had a lot of problems with infections. By that I mean, if we had three attacks over the 15 years I'd be kind of surprised, That's usually due to the fact that somebody was doing something stupid. Otherwise, we've been very well protected. Basically, if a lot of people are looking maliciously at any of our clients, they aren't getting very far.

What is most valuable?

The reporting is pretty good up on the Sophos side. We can see if anything's going on, at least from Sophos' perspective. 

The updates and a lot of the day-to-day fiddling that you would have to do with it, can all be done from the cloud so it's easy to manage, and very easy to administer. 

Occasionally, we do get noticed, however, we don't always get noticed, and I sometimes wonder is that just due to the fact that our client computers are tough to get at? We also deploy the Sophos Firewall on client sites, and it's relatively difficult for a bad guy to get in there.

We've been happy with it and we've been happy with the training that Sophos has. They keep us up to date on any changes that the solution has.

What needs improvement?

I don't know how many infections this protected us from. It might be nice to have a view of what has come at us. You're blocking certain types of traffic. It's not malware per se. You would get a message for this, however, you never really know if this was really a bad guy or just some 16-year-old who knows computers.

There's always room for improvement in pricing. 

From a corporate perspective and from a customer perspective, switching is very difficult to do. It's not an easy task. 

The number one thing I would like is if their support could be a little faster and it would be a little easier to get a hold of support when you need them.

I would like to see a templated selection of items that ought to be implemented, that right out of the gate, you can just turn on. This is what we recommend for standard workstations that are running under normal circumstances. It's not that you can't have a template in there. You can create your own template and stuff like that, however, they haven't yet spent a whole lot of time figuring out if you're in the, I don't know, medical business and you need HIPAA and you need this and that, these are all the standard things you ought to deploy. It would be ideal if you could just flip the switch, and it turns them all on.

Also, after you've turned this stuff on in mass like that, you sometimes don't immediately know what the problem is if they all of a sudden can't talk to vendor X. Like in banking, they get a lot of offsite services. You should be able to say "Okay, so I blocked them somehow with one of these things. I don't know which one it is, Help me find it so I don't have to turn everything off." Otherwise, I've got to turn off the whole thing and switch them on one by one, which is time-consuming.

For how long have I used the solution?

I've been dealing with the solution for a year and a half. The company has been deploying Sophos for 15 years or so.

What do I think about the stability of the solution?

Thinking back on it, we only ran into maybe one bug in the whole time we've used the product. One time, when we upgraded Windows, it wasn't compliant and I remembered that my business partner told me that he had to go to Sophos for help. They quickly resolved the problem.

We've had very few issues. A company should not fear installing it. It's pretty reliable.

What do I think about the scalability of the solution?

Our clients are all small businesses generally. The solution seems to be quite easy to scale in the market that we serve, which would be up to a hundred or so users. We haven't had any problems, however, I haven't deployed it for 10,000 users -which would be a totally different thing. Therefore, while it scales well for small businesses, I can't speak to how it would scale at an enterprise-level.

We do work with a university, and we do some work with a couple of different school districts in the San Diego area. We do some consulting for all three of those. If they asked us to recommend a product, we do recommend a product like this and we help people out with that sort of thing.

How are customer service and technical support?

Technical support could be faster. We can't really get a hold of them when we need to. They really need to improve their services.

Issues get resolved quick enough. However, there are just issues that cause a lot of unnecessary back and forth. For example, we had a client for who we had installed a temporary license for Intercept X, and then subsequent to that, when we tried to put on the real license, bought it, paid for it, got the key, tried to plug it in, that worked fine. However, all of a sudden it started telling us it was having problems with the temporary license, which was supposed to have been replaced. That was a back and forth. It really took us about two weeks to get that resolved with them. Not a huge problem, not causing alarms that people were getting in, that shouldn't get in, however, I kind of thought somebody would get back to me in a day or two. It didn't take them two weeks to get back to me, but there was a fair amount of back and forth about how to resolve this.

I would say that the quality of the support when you talk to them is very good. I would rate that a nine out of ten. That said, the lack of availability at times of support is concerning, particularly if we were to have an ongoing hack. Sophos now offers a service where they will jump in there for quite a large fee and mitigate everything quickly. However, when you already have bought a product that's supposed to be doing that same job, it seems strange they would charge you again to actually do the job.

Having talked to some of those guys on the tech side, they are extreme. Those guys on that side are super knowledgeable and they can jump in there quickly and check a lot of things way faster than I could ever do it, simply due to the fact that they're so much more familiar with the product and with the way that attacks run.

I don't see them every day so, even though I go to training and I watch it on the training and so forth, it's not something that I fiddle with all the time. I simply don't need to, which is great. It keeps me a step removed from it.

Which solution did I use previously and why did I switch?

We previously used Symantec among other products.

Symantec has changed a lot over the last 10 years. They used to be a totally different company. We were not only concerned about the product and the quality of the product and the availability of support and all of these sorts of things at first. However, they were also beginning to fall behind in terms of their technical capabilities on their product, and then we also already had a relationship with Sophos because of the firewalls, so it was a natural transition away from Symantec.

We were deploying the UTMs or what they call the SG line, and they've subsequently come out with the XG line, and if you have their cloud-based management solution, you can manage the XG line of firewalls with Intercept X, and they can look at each other's data and make decisions, AI kinds of decisions, or just scripted decisions, based on what the other is finding. It's much more advanced.

How was the initial setup?

The initial setup isn't too difficult. Once you learn it, it's pretty straightforward.

There is a learning curve, and if you haven't learned it, and I would assume this is the same with anybody's product, then you're not really sure what options you want to enable and not enable and so forth. If you turn on too much stuff, let's put it that way, your end user's computer ends up running slowly. You have to be smart about what you're doing.

What's my experience with pricing, setup cost, and licensing?

It doesn't have every function that's out there in the universe. However, it's really quite good and it's a reasonable value for the money compared to some of the alternatives that I've seen. However, I'm not super familiar with the alternatives. I know their names, I kind of know what they do, I read the reviews on your site and others, and we're always looking at it, however, I haven't really studied them.

What other advice do I have?

We're Sophos partners and resellers.

We always deploy the latest version of the solution. We deploy the Intercept X Advanced with EDR.

All the management is done through the cloud. Then there's a client piece you put on, on-premises. We do the management through the cloud and we put the client piece on the premises.

I like a lot of the things that Sophos is doing. They didn't have one this year, however, they have an annual conference, and one of the things they had done, this was right before they got bought by this other company, is they had hired a lot of really top talent. These guys, when I was at the conference for a few days, just listening to them talk, you're mesmerized with how sharp and bright these guys are and what they're adding into the program. Not to say that others aren't getting some of this stuff too, however, it was really impressive. You felt like they had it together. You trust that by sticking with these guys, you're absolutely going to have minimal, to no issues at all.

I'd recommend the solution. It's a really good product. I realized that there are other good products out there and it's not that other companies shouldn't take a look at other products. However, it works, it does what it's supposed to do, and, once you learn it, it's easy to manage and the link to the firewall is really good and a great idea. It's smart to implement a single plan across people's networks. It just makes a lot of sense.

Overall, I would rate the solution nine out of ten.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Head-Information Technology at a real estate/law firm with 201-500 employees
Real User
Utilizes machine learning functionality and provides good cloud-based administration
Pros and Cons
  • "The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability."
  • "I would like to have a built-in firewall, rather than having to integrate one."

What is our primary use case?

Our primary use case is endpoint protection.

What is most valuable?

The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability.

What needs improvement?

I would like to have a built-in firewall, rather than having to integrate one. Having both a personal firewall and an endpoint firewall would be an improvement. It does have firewall monitoring capability but it is integrated with the Windows firewall. Having their own endpoint firewall would be better.

For how long have I used the solution?

We have been working with Sophos Intercept X for about two weeks.

What do I think about the stability of the solution?

With respect to stability, given that we have only been using it for a couple of weeks, it is too early to tell. That said, we have not experienced any issues so far.

What do I think about the scalability of the solution?

Scalability has not been a problem.

How are customer service and technical support?

I have not had any issues, yet, that necessitated contacting technical support.

Which solution did I use previously and why did I switch?

Prior to Sophos, we were using a product by Symantec. The first difference is the deep learning or machine learning aspect. The second is the cloud administration capabilities. They both support cloud but the administration is better in Sophos.

How was the initial setup?

The initial setup is straightforward.

What's my experience with pricing, setup cost, and licensing?

I find the pricing to be a little bit expensive, although it is acceptable, for now.

What other advice do I have?

The suitability of this product depends on the company and its environment, but for a company like us, I recommend Sophos. 

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2024
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.