IT Manager at a financial services firm with 51-200 employees
Real User
Straightforward to set up, provides automatic site blocking, and forwards information to our SOC
Pros and Cons
  • "One of the most valuable features is that it will block vulnerable sites. If there was a connection between one of our devices to a known malware site, it will block it."
  • "This product should be cheaper."

What is our primary use case?

We primarily use this product to provide threat intelligence to our SOC about our endpoints.

What is most valuable?

One of the most valuable features is that it will block vulnerable sites. If there was a connection between one of our devices to a known malware site, it will block it. Then also alerts our SOC.

What needs improvement?

This product should be cheaper.

For how long have I used the solution?

I have been working with Carbon Black CB Defense for three years.

Buyer's Guide
VMware Carbon Black Endpoint
April 2024
Learn what your peers think about VMware Carbon Black Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,630 professionals have used our research since 2012.

What do I think about the stability of the solution?

Stability-wise, it is good.

What do I think about the scalability of the solution?

I am satisfied with the scalability. We use it across the company and all of the users have it on their laptops. It's a mixture of IT people, finance, doctors, lawyers, dentists, and other professional services. It's a wide range of people and there are about 180 in total.

How are customer service and support?

The technical support is okay.

Which solution did I use previously and why did I switch?

We also use Sophos Intercept X in our business.

How was the initial setup?

CB Defense is pretty straightforward to set up.

What about the implementation team?

The implementation was done by my own team.

What's my experience with pricing, setup cost, and licensing?

This is a really expensive product and we pay licensing fees on a yearly basis. The subscription includes technical support.

What other advice do I have?

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
SOC Manager at Nais Srl
Real User
Top 10
Informative, dependable, and ideal for a medium-sized companies
Pros and Cons
  • "It is a very complete platform."
  • "They will most likely need to create or include a feature that checks the network."

What is most valuable?

It is a very complete platform. It is very useful for my customers.

Carbon Black CB Defense is ideal for a medium-sized business. It is not, in my opinion, suited for large enterprise companies.

Carbon Black works very well for the endpoint. It explains the situation very clearly.

What needs improvement?

I believe they could improve the new intelligence solution to monitor activity, in the network. They will most likely need to create or include a feature that checks the network.

For how long have I used the solution?

I have worked with Carbon Black CB Defense for three or four years.

What do I think about the stability of the solution?

Carbon Black CB Defense is a very stable product.

What do I think about the scalability of the solution?

The scalability of Carbon Black CB Defense is very good.

What other advice do I have?

I would rate Carbon Black CB Defense an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
PeerSpot user
Buyer's Guide
VMware Carbon Black Endpoint
April 2024
Learn what your peers think about VMware Carbon Black Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,630 professionals have used our research since 2012.
Information Security Consultant at a healthcare company with 10,001+ employees
Consultant
Easy to install, stable, with good historical features and integration
Pros and Cons
  • "I like the historical features, interface, and integration."
  • "The feature set for the firewall needs improvement."

What is our primary use case?

We are using the Carbon Black CB Defense for endpoint security.

What is most valuable?

I like the historical features, interface, and integration.

What needs improvement?

The feature set for the firewall needs improvement.

I am looking forward to learning more about the integration with VMware at the hypervisor layer.

For how long have I used the solution?

I dealt with Carbon Black CB Defense approximately seven years ago, but have recently dealt with them again in the last six months.

What do I think about the stability of the solution?

At this stage, we have not experienced any issues.

How are customer service and technical support?

We have not raised the case at this point with technical support.

How was the initial setup?

The initial setup was straightforward.

We are still deploying this solution but it will probably take four to six weeks.

What's my experience with pricing, setup cost, and licensing?

It's reasonable in price. We got a good price.

Which other solutions did I evaluate?

We were looking at either keeping our Symantec Endpoint, and evaluating Trend Micro, and CrowdStrike.

We chose Carbon Black because of Its integration, features, and usability.

What other advice do I have?

I would recommend Carbon Black CB Defense for anyone who is interested in implementing this solution.

I would rate Carbon Black CB Defense and eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Vice President of Sales (previously Sales Engineer) at a computer software company with 11-50 employees
Real User
Easy to scale, technical support is good, and the product stops spyware, malware, and viruses in their tracks
Pros and Cons
  • "It has intelligent learning behind it and we have been very successful in preventing attacks."
  • "At this point, we're test-bedding several other providers right now to see if there's anything that does equally or better and that comes at a better price point."

What is our primary use case?

The primary use case is for stopping spyware, malware, and viruses in their tracks. 

It's very good at doing that. It has intelligent learning behind it and we have been very successful in preventing attacks.

How has it helped my organization?

We had a six-figure revenue stream knowing that we would be cleaning up viruses, malware, and spyware on PCs, every year. That was a revenue stream that we could just budget we were going to get. When we implemented Carbon Black, that revenue stream went to zero. That means that it's doing its job. 

From a business perspective, we've been able to virtually eliminate cyber attacks from spyware, malware, and virus perspectives.

What is most valuable?

It has intelligent learning behind it and we have been very successful in preventing attacks.

For how long have I used the solution?

I have been using Carbon Black CB Defense for approximately three years.

We are using the most recent version.

What do I think about the stability of the solution?

The stability is fantastic!

What do I think about the scalability of the solution?

The scalability is pretty easy.

Their offer to add to a tenant or spin up a new tenant, given the client sizes is large enough, has been pretty easy management so far.

I'm a managed service provider, and within my organization we only have between 40 and 50 employees managing endpoints for several thousand. My perspective will be slightly different. So, even though we use it as a company, we use this for our clients as well.

100% of our staff is trained on the use of Carbon Black because from the technical perspective, we need to be able to handle that as technicians and engineers. 

As far as our clients, they don't know the difference. They don't see issues, they don't have attacks.

How are customer service and technical support?

My interaction over the phone has been mostly on the business side of Carbon Black and they're fantastic over the phone. They're fantastic to deal with.

As far as the support side, I've never had to make a call to them. 

I'm sure our lead engineer has had to make some calls for various reasons.

How was the initial setup?

The initial setup is straightforward. It's super easy.

What about the implementation team?

Our staff deployed this solution. We did not use an integrator or reseller, it was in-house.

Which other solutions did I evaluate?

I am currently reviewing Cylance and products from other vendors as part of our processes. We want to see what price points and feature sets and things like that, to see what would be better.

We want to know how Carbon Black compares to others; we've seen a little bit of that. I've got some documentation to review that. At this point, we're test-bedding several other providers right now to see if there's anything that does equally or better and that comes at a better price point.

What other advice do I have?

We have the cloud center, however, the application's installed on each endpoint individually.

Each client machine has it installed, locally, so it's off-premises for us. I'm assuming that they would be running on individual client PC. 

The software is run here, we manage it within the cloud atmosphere.

We were an authorized reseller or we were an authorized business associate of Carbon Black. Since that's moved under Dell, I don't think that's a thing anymore. I would state that as we are mainly a Dell shop, we're an all in Dell shop. And so that's just a business decision we've made. 

We were a Dell VMware Carbon Black client and we had a relationship with them that preexisted our Dell partnership. Before Dell acquired Carbon Black, we were a partner of Carbon Black's. We had acquired this technology and we were utilizing this technology for several years in advance of that acquisition.

I'd recommended Carbon Black CB Defense 100%.

I would rate this solution an eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
PeerSpot user
Senior Systems engineer at SAT
Real User
Identifies endpoint and infrastructure loopholes
Pros and Cons
  • "Carbon Black Cb Defense improved our endpoint level security. It helped to identify endpoint and infrastructure loopholes."
  • "Carbon Black Cb Defense has a nice component called Alert Triage. It contains full details of the process execution "kill chain" and "go live" for immediate remediation."
  • "It would be a better solution if Carbon Black Cb Defense had an on-promise solution and a virus auto delete or quarantine."

What is our primary use case?

This product would help any organization to increase its detection and prevention with event investigations and immediate response to data infiltration. 

How has it helped my organization?

Carbon Black Cb Defense improved our endpoint level security. It helped to identify endpoint and infrastructure loopholes.

What is most valuable?

Carbon Black Cb Defense has a nice component called Alert Triage. It has helped to detect threats across the data. It contains full details of the process execution "kill chain" and "go live" for immediate remediation.

What needs improvement?

It would be a better solution if Carbon Black Cb Defense had an on-promise solution and a virus auto delete or quarantine.

For how long have I used the solution?

One to three years.

What do I think about the scalability of the solution?

No scalability issues.

How was the initial setup?

The initial setup is straightforward. The configurations are a bit complex.  

What about the implementation team?

The vendor has a high level of expertise.

What's my experience with pricing, setup cost, and licensing?

The cost is a considerable factor, but the benefit factor is the most important. When you compare it with other products, the price is high. Carbon Black will negotiate the price.

Which other solutions did I evaluate?

We evaluated McAfee and Symantec.

What other advice do I have?

I have done a few PoCs and implementations with Carbon Black Cb Defense.

Disclosure: My company has a business relationship with this vendor other than being a customer: Our company has engaged with Carbon Black as an exclusive partner in Sri Lanka.
PeerSpot user
IT Security Solutions Engineer at Softprom
Real User
Good threat analysis, stable, and the technical support is good
Pros and Cons
  • "The threat analysis functionality is good."
  • "I would like to see improvements made so that we can better see all of the processes."

What is our primary use case?

We are a distributor for Carbon Black and CB Defense is one of the products that we work with and demo for our customers.

How has it helped my organization?

With the Carbon Black endpoint Agent, we have automated the process of isolating the host when a threat appears on it.

What is most valuable?

Using Open API, we were able to freely perform the necessary integration with our other security solutions.
CB Defense allows us to see our whole process as it starts on our endpoint.

The threat analysis functionality is good.

What needs improvement?

To improve the ability to connect also feeds of third resources (communities).

For how long have I used the solution?

We have been using this product for more one year.

What do I think about the stability of the solution?

CB Defense is a stable solution. I do not remember any situations where there are any problems with sensors or endpoints. Just all information about the processes at the endpoint is collected and sent to the Cloud.

What do I think about the scalability of the solution?

This is a scalable product.

How are customer service and technical support?

The technical support is good and we always get answers to all our questions and necessary recommendations for using the Carbon Black Defense.

What other advice do I have?

Overall, this is a very good product.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Assistant Technical Manager at a tech services company with 11-50 employees
Reseller
Triage feature shows the whole chain of malware
Pros and Cons
  • "The triage feature that shows you the whole chain of the malware is useful."
  • "When you view the triage, it will show you everything within a given time frame, and not only the attack that caused the alert, which is what I want to see. It shows you all the events during that time, and that can be quite confusing."

What is our primary use case?

We are a distributor of Carbon Black in Asia. Generally our customers are looking for endpoint features such as EDR (endpoint detection and response). Their existing solutions are usually from another vendor that has provided a normal antivirus solution. They are looking for endpoint protection and detection and response.

What is most valuable?

  • The triage feature that shows you the whole kill chain of the attack/malware is useful. It shows how the malware get into the endpoints and show what it has been done
  • The solution is easy to use and easy to deploy as it is cloud solution, no appliance is needed to deploy on premise

What needs improvement?

When you view the triage, it will show you everything within a given time frame, and not only the attack that caused the alert, which is what I want to see. It shows you all the events during that time, and that can be quite confusing. If they could focus on the alert and the event that the user wants to see, that would be better.

There is also room for improvement on the reporting side, because it doesn't have reports. Many of our customers would prefer some kind of exportable report, like a summary. Carbon Black should have this feature.

What do I think about the stability of the solution?

We haven't encountered any bugs.

How are customer service and technical support?

I have not needed to contact their technical support yet.

How was the initial setup?

The setup and configuration are very straightforward. The time it takes depends on the number of endpoints. For one endpoint, it takes a few minutes, tops.

What's my experience with pricing, setup cost, and licensing?

Although I'm more on the technical side and not involved in the pricing, it's more or less the same as other similar solutions.

What other advice do I have?

I would recommend this product to other people.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor.
PeerSpot user
it_user835107 - PeerSpot reviewer
Incident Response Analyst at a security firm with 51-200 employees
Real User
​Provides visibility into the chain of attack and threats that use valid operating system processes to execute attacks
Pros and Cons
  • "​Provides visibility into the chain of attack and threats that use valid operating system processes to execute attacks.​"
  • "Needs improvement in the area of infrastructure for on-premise installation.​"

What is our primary use case?

The first case was in a financial institution with offices in several states which needed to increase the ability to detect and respond to threats.

How has it helped my organization?

Provides visibility into the chain of attack and threats that use valid operating system processes to execute attacks.

What is most valuable?

The go live, because it is possible to answer incidents while they are still occurring and minimize the effects.

What needs improvement?

Needs improvement in the area of infrastructure for on-premise installation.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

No issues.

What do I think about the scalability of the solution?

No issues.

How are customer service and technical support?

Technical support is high level.

Which solution did I use previously and why did I switch?

No previous solution was used.

How was the initial setup?

No problem with the initial setup because it is a cloud platform.

What's my experience with pricing, setup cost, and licensing?

The cost/benefit factor has great relevance in Cb Defense implementations.

Which other solutions did I evaluate?

We did not evaluate any other solution. We are partners of Carbon Black.

What other advice do I have?

It is a product which will bring enough information and effectiveness in the detection and response to advanced threats.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partners in Brazil.
PeerSpot user
Jayandra Wickramasinghe - PeerSpot reviewer
Jayandra WickramasingheSenior Systems engineer at SAT
Real User

Carbon Black Defenses is good product for replace the existing AV

Buyer's Guide
Download our free VMware Carbon Black Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free VMware Carbon Black Endpoint Report and get advice and tips from experienced pros sharing their opinions.