No more typing reviews! Try our Samantha, our new voice AI agent.

Forescout Platform vs Sophos Network Access Control comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in Network Access Control (NAC)
6th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
78
Ranking in other categories
IoT Security (4th), Endpoint Compliance (3rd), Extended Detection and Response (XDR) (19th)
Sophos Network Access Control
Ranking in Network Access Control (NAC)
7th
Average Rating
8.4
Reviews Sentiment
6.2
Number of Reviews
24
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Network Access Control (NAC) category, the mindshare of Forescout Platform is 9.3%, down from 12.6% compared to the previous year. The mindshare of Sophos Network Access Control is 2.7%, up from 1.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC) Mindshare Distribution
ProductMindshare (%)
Forescout Platform9.3%
Sophos Network Access Control2.7%
Other88.0%
Network Access Control (NAC)
 

Featured Reviews

AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.
HirenPatel2 - PeerSpot reviewer
Manager at rspl
Have faced delays in support despite strong multi-layer policy configuration
I have observed some disadvantages as we have experienced one particular problem. We were facing an issue of synchronization of the endpoint with our firewall with help on a cloud for heartbeat syncing. However, it was not syncing as per our requirement. The user has to connect our firewall with the help of VPN. We were supposed to assume a solution on a cloud, which has good synchronization on a cloud with Sophos Central. It will sync with our firewall as well with the help of Sophos Central. Endpoint and firewall synchronization is not as smooth as we are expecting from Sophos Network Access Control. We have to connect with VPN. We are expecting that if we have already installed an endpoint on our system and it is connected to the internet, then it must be synchronized on a cloud with Sophos Central. Through Sophos Central, it must connect with our firewall. If the endpoint is configured on Sophos Central and the firewall is also configured in Sophos Central, then there should be no need to connect to VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The virtual firewall available on this solution is great and assists us in securing our servers, and the threat prevention feature provides complete visibility, making it very helpful in detecting, blocking, and monitoring heavy scanning on the system."
"The ability to control to identify devices and control the actual devices was great."
"The user interface is quite simple."
"The most valuable feature is the ease of deployment, which does not require the use of an agent."
"The product has proven to be worth the cost and time savings alone in finding rogue devices."
"ForeScout has given us the ability to block unwanted devices."
"Forescout Platform's best feature is plug-in integration."
"Once you have those people together, this is something that every group wants to have."
"I am very satisfied with this solution overall. All of the features that we use have been working successfully."
"The initial setup is very easy."
"The solution offers very good visibility."
"Sophos' technical support is great, very fast and responsive, and they always know how to fix the problem."
"The scalability of the system and the performance of the system and the solution's most valuable features."
"The installation is very straightforward."
"Web protection, URL filtering, and application filtering are the most valuable features of Sophos Network Access Control."
"What Sophos has done is integrate almost the entire OSI layer infrastructure; it gives me visibility across my infrastructure, into all the mobile devices that are on my network and the security I have on those mobile devices, my users, my servers, what is happening at all my gateways, and visibility on my switches, so it gives me a global view of my infrastructure."
 

Cons

"We have found that the agent-based authentication, available within this solution could be improved."
"Other solutions have TACACS+, but Forescout does not."
"The initial setup is a bit complex."
"The cost is too high."
"Since the costs continually go up with each new endpoint, we don't really see an ROI."
"The initial setup was complex, but that was due to the nature of the network architecture."
"The console is a fat client, and a web interface would be preferable."
"Sometimes the switch management interface doesn't display accurate information which relates to false positives on individual switch access errors."
"I would like to see mobile administration capabilities in the next release so that we can administer the device from a mobile device."
"The solution could offer more useful documentation."
"What needs to be improved on is the fact that Sophos consumes a lot of processor resources and, once it starts scanning, the RAM utilization is very high."
"There is room for improvement in pricing."
"Users are not controlled by role-based access; it's basically device-based control. The definition of role-based control is a little vague here because on the cloud level, it regulates access rather than tasks."
"I would like to be able to fully customize the reports."
"I would like more details on the incoming connection, like what is the download speed and how it fluctuates. If Sophos can give that information, it would be really good."
"The solution could offer more useful documentation."
 

Pricing and Cost Advice

"The fact that we were allowed to spin up as many servers as we had need of to support our geographic requirements while paying for licensing as an enterprise truly set Forescout apart from the crowd and improved the way we could design our access."
"Forescout Platform is on the expensive side."
"We have a very clear licensing model for business. I don't have to have a Ph.D. to be able to understand the licensing model as you might need for other solutions. If I know exactly what we want, it can tell you which license you need. The solution is easy for purchasing, ordering, and ease of deployment as well."
"The Forescout Platform's pricing is in the middle range, not too cheap or expensive."
"Forescout's pricing is noted for its attractiveness, with potential discounts depending on partnership levels."
"We went with the virtual appliance option. The biggest cost to running these types of appliances would be to either have multiple virtual appliances at every data center or running Remote SPAN hardware to provide you the real-time network visibility."
"The price of Forescout is reasonable when compared to Cisco ISE."
"It might not be the cheapest solution, but you get what you pay for."
"Sophos Network Access Control is costly but has a similar price range as CrowdStrike and Check Point. The product can get more market share if Sophos can play around with Sophos Network Access Control pricing and improve it."
"It is quite expensive."
"Sophos Network Access Control is very cheap compared to other solutions like Cisco, Barracuda, and Palo Alto."
"It provides a moderate pricing option for all of its features and benefits."
"I rate the price of Sophos Network Access Control a five out of ten."
"Sophos Network Access Control is an expensive solution."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
892,487 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
11%
Financial Services Firm
10%
Government
8%
Computer Software Company
7%
Healthcare Company
10%
Government
8%
Manufacturing Company
7%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise10
Large Enterprise44
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise3
Large Enterprise3
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What is your experience regarding pricing and costs for Sophos Network Access Control?
The pricing of Sophos Network Access Control is good, but it is somewhat high.
What needs improvement with Sophos Network Access Control?
In my opinion, one feature that should be added is the ability to trace emails from individuals who change their IP address or send misbehaving emails from alternative networks. If someone sends a ...
What is your primary use case for Sophos Network Access Control?
Sophos Network Access Control serves primary use cases for both networking purposes and security purposes.
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
No data available
 

Overview

 

Sample Customers

NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Rushmoor Borough Council
Find out what your peers are saying about Forescout Platform vs. Sophos Network Access Control and other solutions. Updated: April 2026.
892,487 professionals have used our research since 2012.