Try our new research platform with insights from 80,000+ expert users

Forescout Platform vs Sophos Network Access Control comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in Network Access Control (NAC)
5th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
78
Ranking in other categories
IoT Security (4th), Endpoint Compliance (4th), Extended Detection and Response (XDR) (21st)
Sophos Network Access Control
Ranking in Network Access Control (NAC)
9th
Average Rating
8.4
Reviews Sentiment
6.2
Number of Reviews
24
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of March 2026, in the Network Access Control (NAC) category, the mindshare of Forescout Platform is 10.3%, down from 13.4% compared to the previous year. The mindshare of Sophos Network Access Control is 2.3%, up from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC) Market Share Distribution
ProductMarket Share (%)
Forescout Platform10.3%
Sophos Network Access Control2.3%
Other87.4%
Network Access Control (NAC)
 

Featured Reviews

AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.
HirenPatel2 - PeerSpot reviewer
Manager at rspl
Have faced delays in support despite strong multi-layer policy configuration
I have observed some disadvantages as we have experienced one particular problem. We were facing an issue of synchronization of the endpoint with our firewall with help on a cloud for heartbeat syncing. However, it was not syncing as per our requirement. The user has to connect our firewall with the help of VPN. We were supposed to assume a solution on a cloud, which has good synchronization on a cloud with Sophos Central. It will sync with our firewall as well with the help of Sophos Central. Endpoint and firewall synchronization is not as smooth as we are expecting from Sophos Network Access Control. We have to connect with VPN. We are expecting that if we have already installed an endpoint on our system and it is connected to the internet, then it must be synchronized on a cloud with Sophos Central. Through Sophos Central, it must connect with our firewall. If the endpoint is configured on Sophos Central and the firewall is also configured in Sophos Central, then there should be no need to connect to VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The Forescout Platform's most valuable features include its agentless configuration, which allows for easy integration with switches, and its broad customizability of rules and conditions for policy configuration. By leveraging its Network Access Control capabilities, the tool controls network access, allowing administrators to enforce policies tailored to the organization's needs."
"Being able to actively identify the client without a certificate allows you to control every device on your network regardless of the make, model, and software running. This allows for end-to-end security."
"The most valuable feature is the ease of deployment, which does not require the use of an agent."
"Forescout Platform's most valuable features are that it is very granular. We are able to cull out a lot of information about our particular device or endpoint. The configuration and the visibility are very seamless. Overall the solution is very easy to handle and it's very comprehensive."
"We think it's simple. We think it's very useful and we really like reports and everything."
"Emergency response, risk assessment information to get a view of the of the vulnerability."
"It allows for good detection of all the vendor products we have on-site."
"The most valuable features of the Forescout Platform are NAC for sharing, Network Access Control, and port sharing of the devices."
"The user interface makes it easy to configure and use."
"I am very satisfied with this solution overall. All of the features that we use have been working successfully."
"Sophos' technical support is great, very fast and responsive, and they always know how to fix the problem."
"Sophos Network Access Control has a useful interface, and I like its dashboard, which is very useful for us to check everything."
"The scalability of the system and the performance of the system and the solution's most valuable features."
"The platform's most valuable features include robust reporting and analytics capabilities, which provide deep insights into our sales performance and customer behavior."
"The biggest advantage of Sophos Network Access Control is that it is very synchronized with the security on both the endpoint and the firewall on a single platform, and it is easy to maintain."
"I found all Sophos Network Access Control features valuable, but IP blocking is the most useful."
 

Cons

"The technical support could be improved in terms of response time and first-level support quality."
"Logging would be one area for improvement. When we're troubleshooting, there are not a lot of clear things on Google that we can look up for ourselves. When we have an issue with it, we have to call the company to get the vendors involved. The logging of Forescout is horrible compared to other things that we've used."
"The solution should include integration with other firewalls."
"Forescout Platform isn't flexible with connections to devices like printers and forces you to re-enter details like the MAC address after any breakdowns."
"More detailed analysis during the authentication process, especially for troubleshooting access issues. We have found that troubleshooting RADIUS controls is quite arduous, as it is today. A trace function could easily resolve this by providing a means by which access issues from a certificate to passwords or accounts could easily be identified and remediated."
"The cost is too high."
"Can be expensive if it's only being used for one feature."
"It's scalable, but not without a big investment. It doesn't do so well at the branch. At the home office, it does okay and not so well at the branch."
"It would be beneficial to consider some improvements regarding the dashboard."
"The solution can improve the for applying policies. They can be complex depending don't the group they are applied to."
"I would like more details on the incoming connection, like what is the download speed and how it fluctuates. If Sophos can give that information, it would be really good."
"The user interface, in terms of managing the product, could be better."
"An area that could be improved is the information about licensing, which is fairly confusing at present."
"Sophos Network Access Control requires a lot of resources to work, which is an area for improvement. Pricing could also be improved because it's costly."
"What needs to be improved on is the fact that Sophos consumes a lot of processor resources and, once it starts scanning, the RAM utilization is very high."
"The solution could offer more useful documentation."
 

Pricing and Cost Advice

"We might have paid in the ballpark of $20,000 yearly for our licenses. I do not recall there being other fees over and above the standard licensing fee."
"We went with the virtual appliance option. The biggest cost to running these types of appliances would be to either have multiple virtual appliances at every data center or running Remote SPAN hardware to provide you the real-time network visibility."
"The price of the Forescout Platform is expensive. I purchased it for approximately 94 lakhs."
"The price of the solution is reasonable. We have paid for the license for five years. We have integration with Symantec AV for orchestration, and we have an additional license."
"The ROI is priceless."
"Devices with multiple IP's count multiple times against your license count."
"5,000 user licenses will cost you between seven and eight million dollars, compared to 20 million for Aruba."
"The price of Forescout is reasonable when compared to Cisco ISE."
"I rate the price of Sophos Network Access Control a five out of ten."
"Sophos Network Access Control is an expensive solution."
"It is quite expensive."
"Sophos Network Access Control is costly but has a similar price range as CrowdStrike and Check Point. The product can get more market share if Sophos can play around with Sophos Network Access Control pricing and improve it."
"It provides a moderate pricing option for all of its features and benefits."
"Sophos Network Access Control is very cheap compared to other solutions like Cisco, Barracuda, and Palo Alto."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
883,026 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
12%
Financial Services Firm
11%
Computer Software Company
9%
Government
8%
Computer Software Company
9%
Government
9%
Manufacturing Company
9%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise10
Large Enterprise44
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise3
Large Enterprise3
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What is your experience regarding pricing and costs for Sophos Network Access Control?
The pricing of Sophos Network Access Control is good, but it is somewhat high.
What needs improvement with Sophos Network Access Control?
In my opinion, one feature that should be added is the ability to trace emails from individuals who change their IP address or send misbehaving emails from alternative networks. If someone sends a ...
What is your primary use case for Sophos Network Access Control?
Sophos Network Access Control serves primary use cases for both networking purposes and security purposes.
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
No data available
 

Overview

 

Sample Customers

NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Rushmoor Borough Council
Find out what your peers are saying about Forescout Platform vs. Sophos Network Access Control and other solutions. Updated: March 2026.
883,026 professionals have used our research since 2012.