No more typing reviews! Try our Samantha, our new voice AI agent.

Forescout Platform vs Sophos Network Access Control comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in Network Access Control (NAC)
6th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
78
Ranking in other categories
IoT Security (5th), Endpoint Compliance (3rd), Extended Detection and Response (XDR) (29th)
Sophos Network Access Control
Ranking in Network Access Control (NAC)
9th
Average Rating
8.4
Reviews Sentiment
6.2
Number of Reviews
24
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Network Access Control (NAC) category, the mindshare of Forescout Platform is 7.7%, down from 11.8% compared to the previous year. The mindshare of Sophos Network Access Control is 3.1%, up from 1.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC) Mindshare Distribution
ProductMindshare (%)
Forescout Platform7.7%
Sophos Network Access Control3.1%
Other89.2%
Network Access Control (NAC)
 

Featured Reviews

AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.
HirenPatel2 - PeerSpot reviewer
Manager at rspl
Have faced delays in support despite strong multi-layer policy configuration
I have observed some disadvantages as we have experienced one particular problem. We were facing an issue of synchronization of the endpoint with our firewall with help on a cloud for heartbeat syncing. However, it was not syncing as per our requirement. The user has to connect our firewall with the help of VPN. We were supposed to assume a solution on a cloud, which has good synchronization on a cloud with Sophos Central. It will sync with our firewall as well with the help of Sophos Central. Endpoint and firewall synchronization is not as smooth as we are expecting from Sophos Network Access Control. We have to connect with VPN. We are expecting that if we have already installed an endpoint on our system and it is connected to the internet, then it must be synchronized on a cloud with Sophos Central. Through Sophos Central, it must connect with our firewall. If the endpoint is configured on Sophos Central and the firewall is also configured in Sophos Central, then there should be no need to connect to VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Emergency response, risk assessment information to get a view of the of the vulnerability."
"We really like that we get full visibility of devices in the local network."
"The stability is amazing for the Forescout Platform. We have been using Forescout for four years, and no one complained about the stability."
"It's one of the tools that has given the federal government visibility into network devices and everything."
"The initial setup is quite simple. It's not too complex or difficult to set up."
"ForeScout CounterACT is like a Pandora's box, which contains a lot of functionalities that can be used to improve the customer's daily operation tasks and reduces manual workforce."
"ForeScout has given us the ability to block unwanted devices."
"Being able to sort on device types or devices with open ports is helpful when narrowing down assets of possible misconfigured devices that may be vulnerable on the network. We can take action on those devices based off of corporate policy."
"The wifi control is fantastic and makes it very easy to administer."
"I found all Sophos Network Access Control features valuable, but IP blocking is the most useful."
"The user interface makes it easy to configure and use."
"There is good documentation that helps to deploy a new wireless access point and a controller in a very easy way."
"The biggest advantage of Sophos Network Access Control is that it is very synchronized with the security on both the endpoint and the firewall on a single platform, and it is easy to maintain."
"I am very satisfied with this solution overall. All of the features that we use have been working successfully."
"Sophos Network Access Control has many valuable features: for access controls, MAC binding is available, the authentication page is useful, and continuous device assessments have a positive impact on our network security management."
"Sophos has helped us to save time and money and to better manage web activities. It has also helped us to reduce misuse of the network and restrict hacking attempts."
 

Cons

"Detection and control of Dual-Homed devices needs to be improved, as the product sometimes gives false positives."
"Other solutions have TACACS+, but Forescout does not. In the next release, I would like to see Forescout have accounting."
"The product needs to improve its support. I know a case that dragged on for about one and a half years. They eventually suggested professional services and closed the ticket. We followed their advice, engaging the account manager and professional service team, only to discover that the issue was a bug. After reopening the case, it's been about six months, and the problem still hasn't been resolved."
"The configuration of the rules is both a blessing and a curse. While it is almost infinitely configurable, knowing how to get the product to do what you want it to do can be difficult, especially at first."
"The cost is too high."
"Search - needs boolean functionality (or pseudo operand now working)."
"It does not support the TACACS+ protocol."
"Regarding pricing, there is room for improvement to enhance competitiveness with other vendors and solutions."
"Sophos Network Access Control needs improvement regarding its slow interface, loading time, and reporting."
"The difficult thing was finding the metrics."
"The user interface, in terms of managing the product, could be better."
"I would like to see mobile administration capabilities in the next release so that we can administer the device from a mobile device."
"Users are not controlled by role-based access; it's basically device-based control. The definition of role-based control is a little vague here because on the cloud level, it regulates access rather than tasks."
"Continuous development in specific areas might be required."
"There is room for improvement in pricing."
"The solution could offer more useful documentation."
 

Pricing and Cost Advice

"Time savings in finding rogue devices as well as identifying potentially unwanted devices on the network has saved the organization time and money."
"The price of Forescout is reasonable when compared to Cisco ISE."
"It's about $160,000, but I'm not sure how long that is for or what it includes. Because we were a test base, we were provided with servers, but now, Forescout wants us to buy servers because those servers are now end-of-life or end-of-service. For our lifecycle management program, in order to get a refresh on those servers, we would have to buy servers or use our own network resources to house Forescout. Forescout takes up about 13 or 14 virtual CPUs."
"The setup cost, pricing, and licensing are on the high side."
"Forescout Platform is on the expensive side."
"We have a very clear licensing model for business. I don't have to have a Ph.D. to be able to understand the licensing model as you might need for other solutions. If I know exactly what we want, it can tell you which license you need. The solution is easy for purchasing, ordering, and ease of deployment as well."
"The pricing structure should be enhanced."
"They base the license on the number of devices, which is quite misleading."
"I rate the price of Sophos Network Access Control a five out of ten."
"Sophos Network Access Control is costly but has a similar price range as CrowdStrike and Check Point. The product can get more market share if Sophos can play around with Sophos Network Access Control pricing and improve it."
"It provides a moderate pricing option for all of its features and benefits."
"It is quite expensive."
"Sophos Network Access Control is very cheap compared to other solutions like Cisco, Barracuda, and Palo Alto."
"Sophos Network Access Control is an expensive solution."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
914,109 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
11%
Financial Services Firm
10%
Outsourcing Company
8%
Government
7%
Outsourcing Company
11%
Construction Company
10%
Healthcare Company
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise10
Large Enterprise45
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise3
Large Enterprise3
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What is your experience regarding pricing and costs for Sophos Network Access Control?
The pricing of Sophos Network Access Control is good, but it is somewhat high.
What needs improvement with Sophos Network Access Control?
In my opinion, one feature that should be added is the ability to trace emails from individuals who change their IP address or send misbehaving emails from alternative networks. If someone sends a ...
What is your primary use case for Sophos Network Access Control?
Sophos Network Access Control serves primary use cases for both networking purposes and security purposes.
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
No data available
 

Overview

 

Sample Customers

RWJ Barnabas HealthEnbridge EnergyToyota MotorsSt. Luke's University Health NetworkGlobal Credit Union
Rushmoor Borough Council
Find out what your peers are saying about Forescout Platform vs. Sophos Network Access Control and other solutions. Updated: September 2026.
914,109 professionals have used our research since 2012.