Try our new research platform with insights from 80,000+ expert users

Forescout Platform vs Sophos Network Access Control comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in Network Access Control (NAC)
5th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
78
Ranking in other categories
IoT Security (4th), Endpoint Compliance (4th), Extended Detection and Response (XDR) (21st)
Sophos Network Access Control
Ranking in Network Access Control (NAC)
9th
Average Rating
8.4
Reviews Sentiment
6.2
Number of Reviews
24
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of February 2026, in the Network Access Control (NAC) category, the mindshare of Forescout Platform is 10.3%, down from 13.4% compared to the previous year. The mindshare of Sophos Network Access Control is 2.3%, up from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC) Market Share Distribution
ProductMarket Share (%)
Forescout Platform10.3%
Sophos Network Access Control2.3%
Other87.4%
Network Access Control (NAC)
 

Featured Reviews

AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.
HirenPatel2 - PeerSpot reviewer
Manager at rspl
Have faced delays in support despite strong multi-layer policy configuration
I have observed some disadvantages as we have experienced one particular problem. We were facing an issue of synchronization of the endpoint with our firewall with help on a cloud for heartbeat syncing. However, it was not syncing as per our requirement. The user has to connect our firewall with the help of VPN. We were supposed to assume a solution on a cloud, which has good synchronization on a cloud with Sophos Central. It will sync with our firewall as well with the help of Sophos Central. Endpoint and firewall synchronization is not as smooth as we are expecting from Sophos Network Access Control. We have to connect with VPN. We are expecting that if we have already installed an endpoint on our system and it is connected to the internet, then it must be synchronized on a cloud with Sophos Central. Through Sophos Central, it must connect with our firewall. If the endpoint is configured on Sophos Central and the firewall is also configured in Sophos Central, then there should be no need to connect to VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The standout strength of this solution lies in its unique capability to effectively manage unmanaged switches."
"The best parts of Forescout Platform are its orchestration features, discovery capabilities, classification buckets, and flexibility in creating policies."
"Forescout Platform's most valuable features are that it is very granular. We are able to cull out a lot of information about our particular device or endpoint. The configuration and the visibility are very seamless. Overall the solution is very easy to handle and it's very comprehensive."
"It allows for good detection of all the vendor products we have on-site."
"Being able to actively identify the client without a certificate allows you to control every device on your network regardless of the make, model, and software running. This allows for end-to-end security."
"The threat prevention feature provides complete visibility."
"Vulnerability remediation is valuable. We can narrow down a system and its properties. We can go granular on the properties of each endpoint, such as which operating system you're using."
"The plugins are very robust -- the ability scanner, patch management system, and SQL integrator."
"The installation is very straightforward."
"The wifi control is fantastic and makes it very easy to administer."
"The platform's most valuable features include robust reporting and analytics capabilities, which provide deep insights into our sales performance and customer behavior."
"Sophos Network Access Control has a useful interface, and I like its dashboard, which is very useful for us to check everything."
"I am very satisfied with this solution overall. All of the features that we use have been working successfully."
"We have had interactions with the technical support team through the Xnet platform. It's good."
"What Sophos has done is integrate almost the entire OSI layer infrastructure. It gives me visibility across my infrastructure. It gives me visibility into all the mobile devices that are on my network and into the security I have on those mobile devices."
"Sophos Network Access Control saves our clients time and money."
 

Cons

"They should improve features related to IT security. ForeScout should analyze behavior to see if the behavior is malicious behavior and block this device. They should develop the ability to analyze the behavior of the device in my environment."
"Forescout Platform needs to improve how the device works in preventing rogue servers."
"When adding what is in scope to a policy, it would be nice if you could select multiple policies instead of one policy at a time to add what is in the scope for network segmentation. I have found that during the install and configuration of the policies that if you want to modify multiple policies or enable multiple policies that you need to define what is in the scope (IP range or segments) one rule at a time. This caused some slow downs when implementing policies."
"The fact that Forescout Platform doesn't have a presence in the South African region is a weakness because of which you can't ask for help from them if you have any problems."
"The solution does have a bit of complexity, and there's some complexity in the deployment. Users need to be trained before undertaking an initial setup."
"The solution should include integration with other firewalls."
"When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part."
"The system controls could be better."
"The difficult thing was finding the metrics."
"Users are not controlled by role-based access; it's basically device-based control. The definition of role-based control is a little vague here because on the cloud level, it regulates access rather than tasks."
"The interface on the cloud could be a bit better - just to give more performance on it."
"One area in which the product could be improved is the user interface. While functional, it can be somewhat cluttered and unintuitive, especially for new users."
"The solution could offer more useful documentation."
"I would like more details on the incoming connection, like what is the download speed and how it fluctuates. If Sophos can give that information, it would be really good."
"The solution can improve the for applying policies. They can be complex depending don't the group they are applied to."
"There is room for improvement in pricing."
 

Pricing and Cost Advice

"The solution’s pricing is fine."
"The fact that we were allowed to spin up as many servers as we had need of to support our geographic requirements while paying for licensing as an enterprise truly set Forescout apart from the crowd and improved the way we could design our access."
"They base the license on the number of devices, which is quite misleading."
"Forescout Platform is on the expensive side."
"Devices with multiple IP's count multiple times against your license count."
"It might not be the cheapest solution, but you get what you pay for."
"We have a very clear licensing model for business. I don't have to have a Ph.D. to be able to understand the licensing model as you might need for other solutions. If I know exactly what we want, it can tell you which license you need. The solution is easy for purchasing, ordering, and ease of deployment as well."
"5,000 user licenses will cost you between seven and eight million dollars, compared to 20 million for Aruba."
"Sophos Network Access Control is an expensive solution."
"I rate the price of Sophos Network Access Control a five out of ten."
"Sophos Network Access Control is very cheap compared to other solutions like Cisco, Barracuda, and Palo Alto."
"It provides a moderate pricing option for all of its features and benefits."
"It is quite expensive."
"Sophos Network Access Control is costly but has a similar price range as CrowdStrike and Check Point. The product can get more market share if Sophos can play around with Sophos Network Access Control pricing and improve it."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
881,565 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
12%
Financial Services Firm
11%
Computer Software Company
9%
Government
7%
Government
10%
Computer Software Company
10%
Manufacturing Company
8%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise10
Large Enterprise44
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise3
Large Enterprise3
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What is your experience regarding pricing and costs for Sophos Network Access Control?
The pricing of Sophos Network Access Control is good, but it is somewhat high.
What needs improvement with Sophos Network Access Control?
In my opinion, one feature that should be added is the ability to trace emails from individuals who change their IP address or send misbehaving emails from alternative networks. If someone sends a ...
What is your primary use case for Sophos Network Access Control?
Sophos Network Access Control serves primary use cases for both networking purposes and security purposes.
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
No data available
 

Overview

 

Sample Customers

NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Rushmoor Borough Council
Find out what your peers are saying about Forescout Platform vs. Sophos Network Access Control and other solutions. Updated: February 2026.
881,565 professionals have used our research since 2012.