Rather than having to log onto a central server to manage the endpoint protection, I can log onto the dashboard to manage everything. No on-premise server required, chewing up resources needed for other tasks and projects. Endpoints are protected in real-time without the need of a centralized server, whitelist, or the ability to connect to a central host in the cloud. Even if an endpoint loses connection to the Internet, I know that endpoint is protected against 99.99% of the threats in the wild today.
Network & Security Engineer at a healthcare company with 51-200 employees
Endpoints are protected in real-time without the need of a centralized server
Pros and Cons
- "Centralized dashboard online which can be used for managing a huge product."
- "Even if an endpoint loses connection to the Internet, I know that endpoint is protected against 99.99% of the threats in the wild today."
- "Specifically for a Windows domain environment, the product can be customized and pushed via GPO or SCCM without issue."
- "Endpoints are protected in real-time without the need of a centralized server."
- "Work on the math model. We are catching a lot of false positives, which gets to be a pain at the start of a deployment."
How has it helped my organization?
What is most valuable?
Centralized dashboard online which can be used for managing a huge product. Anything I need done can be done from a single website.
What needs improvement?
Work on the math model. We are catching a lot of false positives, which gets to be a pain at the start of a deployment. It is not hard to decipher and add a global safe list, so you do not have to touch or adjust Clients on all endpoints. After you get passed the initial scan, it is clear sailing and very easy to manage and maintain.
For how long have I used the solution?
One to three years.
Buyer's Guide
BlackBerry Cylance Cybersecurity
February 2025

Learn what your peers think about BlackBerry Cylance Cybersecurity. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
What do I think about the stability of the solution?
No issues. I had heard of others having some issues early on with performance, but I never experienced any issues. When there is a problem, as administrators, we are notified promptly by Cylance of what the issue is, then they resolve it very quickly.
What do I think about the scalability of the solution?
Never an issue. I have deployed this solution immediately to endpoints of all flavors without issue: PCs, MACs, and servers. Specifically for a Windows domain environment, the product can be customized and pushed via GPO or SCCM without issue.
How are customer service and support?
I would rate technical support as a 10 out of 10. I have never had a bad experience and very rarely have had to call them for any type of support for the product.
Which solution did I use previously and why did I switch?
I had just renewed a three year subscription to a very popular endpoint protection suite when I went to a Cylance roadshow and discovered how poorly protected my organization really was. Out of 10 real world live bugs, my endpoint protection, fully-patched, deployed in a best practice environment only stopped seven of them. Cylance stopped all 10, and every show I have ever been to, Cylance has won hands down without question. Many other products require your endpoints to connect to a central hub on-prem or are cloud-based, then soon as they lose that ability, those solutions fail.
How was the initial setup?
Very easy to deploy. It can be done one by one or deployed by customizing an MSI file for GPO push.
What's my experience with pricing, setup cost, and licensing?
Shop around for sure and be assured the price you pay will be close to other solutions available, but even at a slight mark-up from the other solutions, you are getting real endpoint protection versus nothing more than a cheap security blanket that might keep you warm at night. However, it is not actually protecting you from anything.
Which other solutions did I evaluate?
Reviewed these: SEP, Cisco, McAfee, and discussed Palo Alto options as well.
What other advice do I have?
Do your homework. Demo products to see how they will work within your environment and involve your end users. End users are key to testing these deployments and what their experiences will be with it.
Above all, do not get hung up on price. You pay for what you get and expensive will hurt one time, where cheap will hurt forever, especially if you fall victim to a ransom attack, etc.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Solutions Development Manager at Kyocera International
Endpoint protection platform that's easy to deploy; offers stability and scalability
Pros and Cons
- "Blackberry Protect offers endpoint protection. It's easy to deploy. It's scalable and stable."
- "The price for this EPP platform is expensive and could be improved."
What is our primary use case?
We are mainly using this solution on our desktop PCs. It provides endpoint protection.
What is most valuable?
What I like most about Blackberry Protect is that it's easy to deploy. As an end user, you won't need to do anything.
What needs improvement?
I find the price for Blackberry Protect expensive, so that's an area for improvement.
For how long have I used the solution?
I've been using Blackberry Protect for over two years.
What do I think about the stability of the solution?
I find this solution stable.
What do I think about the scalability of the solution?
Blackberry Protect is a scalable solution.
Which solution did I use previously and why did I switch?
We previously used Symantec End-User Endpoint Security, but we switched to Blackberry Protect because of company policy.
What about the implementation team?
We implemented this in-house through our IT team.
What's my experience with pricing, setup cost, and licensing?
The license price for this solution could be better. It's on the expensive side.
We're on a yearly license for this solution. I'm not sure, but I believe there isn't any extra cost, apart from the license fee.
Which other solutions did I evaluate?
We evaluated Symantec End-User Endpoint Security.
What other advice do I have?
I'm using the latest version of Blackberry Protect.
I'm not responsible for the actual setup and installation of this solution. It was our IT team who was responsible, but I believe that the setup and installation was straightforward.
For the deployment and maintenance of Blackberry Protect, we used three technical guys. They were all from IT and they provided support internally, which included support for Blackberry Protect, its license, etc.
We have 100 users of Blackberry Protect.
I didn't have the chance to contact the technical support team for this solution.
I'm recommending Blackberry Protect to other people who want to start using it.
Blackberry Protect is a good solution, so I'm rating it an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
BlackBerry Cylance Cybersecurity
February 2025

Learn what your peers think about BlackBerry Cylance Cybersecurity. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
Cybersecurity & IT Operations Professional (VirtualCxO) at BrainWave Consulting Company, LLC
The machine learning algorithm is able to protect systems against zero-day threats
Pros and Cons
- "The CylancePROTECT agent is very low on CPU usage, so it has virtually no adverse impact on my servers, desktops, or workstations."
- "The management console needs a little maturity in how it presents data and allows the administrator to drill down or search across systems."
How has it helped my organization?
My clients have not had to contend with time-consuming false positives, nor have they had to worry about zero-day attacks, even for systems which have been off the network for months.
What is most valuable?
The CylancePROTECT agent is very low on CPU usage, so it has virtually no adverse impact on my servers, desktops, or workstations.
I am also quite impressed with its ability to protect systems against zero-day threats due to the machine learning algorithm, which powers its database. Databases, as old as 2015, are able to accurately detect 2017-era threats, such as WannaCry and other ransomware.
What needs improvement?
The management console needs a little maturity in how it presents data and allows the administrator to drill down or search across systems.
For how long have I used the solution?
We have had this in production for four months across three clients.
What do I think about the stability of the solution?
We have had a few machines experience potential problems with the CylanceOPTICS supplementary agent, but we have not narrowed down the issue as of yet. That is a total of two machines across over 100 deployed.
What do I think about the scalability of the solution?
So far, no.
How are customer service and technical support?
Customer Service:
10 out of 10. Customer service has been very responsive (going through a managed provider).
Technical Support:
10 out of 10. Technical support has been stellar (going through a managed provider).
Which solution did I use previously and why did I switch?
Yes, I used and supported a previous solution, but changed, because of system performance impact, and management of the client-side activity databases. (The old solution had a slightly better GUI, but not enough to offset the other concerns.)
How was the initial setup?
The initial setup was very straightforward.
- Install agent on system, apply key, and device comes up in the portal.
- Automatically apply monitoring policy.
- Verify the baseline, and quarantine or whitelist all detected files.
- Apply active policy.
Also, the installation did not require a reboot.
What about the implementation team?
Implementation was conducted with support of the Managed Service Provider, who was top notch in their knowledge and support of the toolset.
What was our ROI?
We expect our ROI to be eight months, especially when taking into account the time spent with customers dealing with ransomware recovery over the past two years.
What's my experience with pricing, setup cost, and licensing?
The initial endpoint cost may seem a little high (~$55/device/year), but when you look at the total peace of mind that the solution of Cylance endpoint protection provides, with no reboots for updates, and negligible performance impact, it is well worth it.
Which other solutions did I evaluate?
We evaluated Webroot, Symantec, Sophos, and Barkly.
What other advice do I have?
We would encourage everyone evaluating endpoint protection solutions to run a 30-day pilot (minimum) in their own environments and with a representative set of devices. Be sure to test the management of the systems, including the policy management and whitelisting/exception management.
Disclosure: My company has a business relationship with this vendor other than being a customer: We have been using it on our own network, and now we have signed on to be a reseller of this solution through a Managed Service Provider. We believe the solution is *that* good.
Managerial Agent at PD Centre
Used for endpoint detection and antivirus, but its user interface could be improved
Pros and Cons
- "The most valuable feature of CylancePROTECT is the support."
- "The solution’s user interface could be improved."
What is our primary use case?
Our clients use CylancePROTECT for endpoint detection and antivirus.
What is most valuable?
The most valuable feature of CylancePROTECT is the support.
What needs improvement?
The solution’s user interface could be improved.
For how long have I used the solution?
I have been using CylancePROTECT for two years.
What do I think about the stability of the solution?
I rate the solution’s stability a seven out of ten.
What do I think about the scalability of the solution?
Our clients for CylancePROTECT are usually small and enterprise businesses.
I rate the solution an eight out of ten for scalability.
How are customer service and support?
The solution’s technical support is good.
How would you rate customer service and support?
Positive
How was the initial setup?
The solution’s initial setup was easy.
On a scale from one to ten, where one is difficult and ten is easy, I rate the solution's initial setup a seven out of ten.
What was our ROI?
Our clients have seen a good return on investment with CylancePROTECT.
What's my experience with pricing, setup cost, and licensing?
On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing a seven out of ten.
What other advice do I have?
Overall, I rate the solution a seven out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Founder & CEO at Pathbreaker Pty Ltd
A proactive antivirus system with an accessible and easy-to-read record that tracks everything it does
Pros and Cons
- "It actively monitors the behavior and activity of processes and will, without hesitation, terminate at root anything it determines to be suspect."
- "rom my experience interacting with the primary or the central administrative console, it's quite complex. You would need a fair bit of technical experience to set it up, implement and maintain it. That would be one area for improvement."
What is our primary use case?
I work in cybersecurity and with sensitive materials, so the solution is a proactive antivirus system.
What is most valuable?
CylancePROTECT is a proactive antivirus system, and I can't rely on a reactive system.
It actively monitors the behavior and activity of processes and will, without hesitation, terminate at root anything it determines to be suspect.
In essence, it will just terminate malware, even disguised malware. It will also occasionally terminate legitimate software that's trying to update, but at the same time, you can check in the dashboard. It has a very accessible and easy-to-read, and understandable record that tracks everything it does. It actively monitors what's going on.
So if you download the wrong software package, or you click the wrong link and run something, even if your computer does not detect something wrong, Cylance will notice that there is something off about it and will terminate it for you.
What needs improvement?
From my experience interacting with the primary or the central administrative console, it's quite complex. You would need a fair bit of technical experience to set it up, implement and maintain it. That would be one area for improvement.
It could be possible to make the UI for the admin dashboard more user-friendly or provide more explainer tooltips or more warnings before you change settings. The solution can do whatever you need, but you could annihilate your machine by changing the wrong setting, and you would have to start again.
Another quibble is that the endpoint visibility is a bit spartan. Because if a new policy is released from the admin console, you have to tell Cylance to check for a policy update, but when you do that, it does not tell you it has actually done that policy check, and there is no way of really knowing if it has actually updated. It would be nice to have a notification telling you whether or not the actions you have taken have actually been taken.
For how long have I used the solution?
I have been working with CylancePROTECT for about a year.
What do I think about the stability of the solution?
I would rate the stability of the solution an eight out of ten. Since I started using the solution, I have only ever had one instance where it has had a problem.
We worked that out and updated it, and it was fine.
Once CylancePROTECT is set up, it is self-contained and is good to go.
What do I think about the scalability of the solution?
I would rate the scalability for CylancePROTECT a ten out of ten since governments use the solution. The sky is the limit.
My organization has around 30 users.
How are customer service and support?
My impression of customer support is that they take on advice and information. They provide a solution if you inform them of a weakness or an issue.
How was the initial setup?
The initial setup is complex. The solution is military-grade, so I wouldn't expect anything less.
Setting it up at an enterprise level is relatively complex. But once set up at the administrative level, it is comparatively easy for the end user to set up.
Enrolling my phone with CylancePROTECT is a relatively easy process.
What's my experience with pricing, setup cost, and licensing?
The solution is expensive.
What other advice do I have?
I would rate CylancePROTECT an overall ten out of ten. With the evolution of malware, the dependence on a hash record renders a lot of antimalware inadequate, and a proactive antivirus system is necessary.
The solution is expensive but reasonable because it is a high-grade enterprise-level piece of software and is competitive for what it does.
I have not encountered any solution that is as good, effective, reliable, or powerful as this product.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Director of IT Operations at a manufacturing company with 1,001-5,000 employees
Lightweight, does not require constant updates, and we have great trust in what it delivers
Pros and Cons
- "The Application Guard and ByteGuard are useful features."
- "The OPTICS component could be made more user-friendly with respect to giving people more information."
What is our primary use case?
We are currently using CylancePROTECT and CyclanceOPTICS.
Our primary use case is an anti-virus solution.
It is deployed globally throughout the organization.
What is most valuable?
Cylance is quite lightweight and does not require constant updates.
The Application Guard and ByteGuard are useful features.
What needs improvement?
The OPTICS component could be made more user-friendly with respect to giving people more information.
There are some issues that we have around our configuration, so I think that more training with respect to setup and configuration would be helpful.
For how long have I used the solution?
I have been using Cylance for the past year and it has been in the organization for a couple of years.
What do I think about the stability of the solution?
This solution is very stable.
What do I think about the scalability of the solution?
Cylance scales very well both on clients and servers. We have between 4,000 and 5,000 users.
How are customer service and technical support?
I have not personally been in touch with technical support, but I know that when we have contacted them about anything in the past, they've been very responsive. Our account management team is very good, as well.
Which solution did I use previously and why did I switch?
The company did use another solution prior to Cylance, but I don't know what it was.
How was the initial setup?
The initial setup is very straightforward and the deployment took a few days.
What about the implementation team?
We got a hold of the installation files and deployed them ourselves.
What's my experience with pricing, setup cost, and licensing?
I think that the price we are paying is good for what it is. It could always be cheaper, but cheaper doesn't make it better.
What other advice do I have?
Cylance is a product that I recommend trying. It is different from the traditional products that are out there like Symantec, McAfee, and Sophos.
This technology is very good, very stable, and we have great trust in it and what it delivers. They also do health checks from time to time and they help, which is useful.
This solution works well but there is always room for improvement. Nothing is perfect.
I would rate this solution an eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Computer Engineer at OIC, Alshirawi
Easy to manage and detects a threat immediately
Pros and Cons
- "It is a good endpoint solution. It is very easy to manage and detect the threat immediately. It will take the necessary actions."
- "The solution should implement AI in the product."
What is our primary use case?
We use the solution for endpoint protection.
What is most valuable?
It is a good endpoint solution. It is very easy to manage and detect a threat immediately. It will take the necessary actions.
What needs improvement?
The solution should implement AI in the product. The main purpose of CylancePROTECT is to prevent infections on our endpoints and increase security. The more intelligence the product gains, the better it is for us. Currently, it is already intelligent. It will require updates to continue improving and detecting the latest threats. Threat intelligence must always be preferred in AI machines; it will always radiate with new threats and learning.
For how long have I used the solution?
I have been using CylancePROTECT for four years. We are using the latest version of the solution.
What do I think about the stability of the solution?
I rate the solution’s stability an eight out of ten.
What do I think about the scalability of the solution?
Three to four people are using this solution. I rate the solution’s scalability a nine to ten out of ten.
Which solution did I use previously and why did I switch?
How was the initial setup?
The initial setup is straightforward and takes one to two days to complete. It requires configuration and implementation from the backend.
I rate the initial setup a nine out of ten, where one is difficult and ten is easy.
What was our ROI?
We saved our employees and endpoints.
What's my experience with pricing, setup cost, and licensing?
The product has a yearly subscription.
I rate the product’s pricing a five out of ten, where one is cheap, and ten is expensive.
Which other solutions did I evaluate?
We have evaluated Trend Micro. We switched to CylancePROTECT because it is cloud-based and very easy to manage. It's an advanced feature like AI implementation and integration.
What other advice do I have?
Maintenance is automated. It automatically updates itself, so manual patching operations are unnecessary. Updates occur automatically in the background on client system endpoints regardless of the subject matter.
CylancePROTECT handles zero-day threats and unknown malware in your environment. They have implemented something called AI detection. It will detect all the things. If it is a host, it will alert; if it is anything in PeerSpot, it will also alert.
Overall, I rate the solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Security manager at a energy/utilities company with 201-500 employees
Scalable product, needs work on false positives detection and application integration
Pros and Cons
- "The most functional item that we use is the process to turn off the false flags that it causes."
- "They could improve on the false positives, reporting and whitelisting features."
What is our primary use case?
We put the product on all of our desktops and servers.
How has it helped my organization?
The solution has broken down the organization by taking down the network about six times in two years.
What is most valuable?
The most functional item that we use is the process to turn off the false flags that it causes.
What needs improvement?
They could improve on the false positives, reporting and whitelisting features.
For future releases, it would be helpful to have an easy uninstall button. The reason being, unless you connect the system to the internet, which you may not want to do, Cylance cannot be uninstalled easily. They claim it's practically impossible. If you have access to the online admin panel, it's very easy to uninstall Cylance. There is no easy way to uninstall locally. I have read online there is a convoluted way with a series of reboots and safety reboots that you could possibly do it locally.
For how long have I used the solution?
I have been using it for about two years.
What do I think about the stability of the solution?
It is not stable. The solution has caused six crashes over two years, with one of them requiring us to rebuild all of our Windows 10 devices.
What do I think about the scalability of the solution?
Scalability is pretty good. We have around 100 users using the solution. However, when we rebuild new desktops, we're not installing it on them.
Which solution did I use previously and why did I switch?
We have used Symantec before and a MSSP came in with a package to help us get more secure, but it really was a failure.
What was our ROI?
The biggest issue we have with the product is it gives false positives.
What other advice do I have?
Beware and work out a process to restore items that were deleted by false flags.
Work out a process to investigate any odd behaviour or troubleshooting tickets with open source software being even a small sub-component.
For the majority of installs, the Cylance is going to break because of the small sub-component that's open-source that is out of date. Always no matter what problem is happening, double-check to see if there were any flags in Cylance because it's probably going to be Cylance blocking something along the line. It will drive you nuts to work with your third-party technical support to track down an issue to then find out it was Cylance blocking one small facet of it.
Work out all those details with your Cylance team first, this way, whenever you have an issue, you can identify that Cylance is involved because it's involved in everything.
An example of an issue we were having was while we were trying to install a check scanner the install did not work. Cylance was blocking an old open source piece of software that comes from Kodak that you can't update because Kodak says it is the latest version of our installer for the check scanner. The installer for the check scanner includes the open-source piece of software from Kodak that's out of date. This causes the entire check scanner not to work, Cylance blocks the main installation because of the sub-installation of the open-source software.
Make sure your ducks are in a row so that you can detect when Cylance is causing an issue, report it and get it whitelisted. If you do not, you're going to spend an inordinate amount of time figuring out whether or not Cylance did something to block you, whitelisting and then more time justifying why you need it whitelisted.
I'm sure we were much more protected with it on, but the problem is if you're protecting me from my network being taken down, by taking my network down, you are not protecting it. For this reason, I rate CylancePROTECT a five out of ten.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Buyer's Guide
Download our free BlackBerry Cylance Cybersecurity Report and get advice and tips from experienced pros
sharing their opinions.
Updated: February 2025
Product Categories
Endpoint Protection Platform (EPP)Popular Comparisons
CrowdStrike Falcon
Microsoft Defender for Endpoint
SentinelOne Singularity Complete
Cisco Secure Endpoint
Fortinet FortiClient
Cortex XDR by Palo Alto Networks
Symantec Endpoint Security
Intercept X Endpoint
Trend Vision One Endpoint Security
Trellix Endpoint Security
Kaspersky Endpoint Security for Business
ESET Endpoint Protection Platform
HP Wolf Security
Buyer's Guide
Download our free BlackBerry Cylance Cybersecurity Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I'm building a next-gen AI powered threat intelligence platform. What's missing from existing solutions?
- What is the biggest difference between CrowdStrike and Cylance?
- How would you compare BlackBerry Protect vs Cortex XDR by Palo Alto Networks?
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?
- When evaluating Endpoint Security, what aspect do you think is the most important to look for?
- What's the best way to trial endpoint protection solutions?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- Which Endpoint Protection Solution offers Zero Trust (ZTN) as a feature?
- What to choose: an endpoint antivirus, an EDR solution or both?
My experience was similar to yours. Saw them in a bake off, and it was no question that traditional AV was dead.