We upgraded the EDR and so far it's doing good. It patches the things that we weren't able to patch in previous antivirus hardships.
Vice President at a tech services company with 1,001-5,000 employees
Good detection recommendations, good patching and pretty decent protection capabilities
Pros and Cons
- "The patches on offer are very helpful."
- "We've had difficulty with uninstalling the solution. When we try to uninstall an old version of the basic Sophos Antivirus, it doesn't seem to uninstall completely."
How has it helped my organization?
What is most valuable?
The solution has very useful response modules where we can get the recommendation on what needs to be done every day around detection.
The patches on offer are very helpful.
It's pretty good at protecting us as an anti-virus.
What needs improvement?
We've had difficulty with uninstalling the solution. When we try to uninstall an old version of the basic Sophos Antivirus, it doesn't seem to uninstall completely. Due to this issue, when we installed Intercept X, we had installation conflicts. The company needs to figure out a way to make installing their old products easier and more complete.
For how long have I used the solution?
We bought this solution in the middle of last year. It hasn't been an extremely long amount of time.
Buyer's Guide
Intercept X Endpoint
December 2024
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
How was the initial setup?
The only issue we had with Sophos during installation was a problem around removing old versions of Sophos products from machines so that we could properly install Intercept X. There seemed to be some residual aspects of the older version, and that affected our ability to install the newer version. It was quite a headache for us.
Which other solutions did I evaluate?
We've been looking at Symantec and have been looking for information to compare it to Sophos. We're trying to decide which of these we'd use as the standard solution.
What other advice do I have?
We're just a customer and end-user. We don't have a special business relationship with Sophos.
Overall, I would rate the solution at a nine out of ten. We've had a very positive experience so far.
Aside from issues with overwriting old Sophos versions, it's been a pretty solid product.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical Manager at Digital World
Comparable pricing, stable and scalable, easy to install
Pros and Cons
- "This solution can be used with any device, mobiles, desktops, or any appliances."
- "When I use a proxy, I can bypass Sophos, which is an area that needs improvement."
What is most valuable?
This solution can be used with any device including mobiles, desktops, or any appliances.
What needs improvement?
When I use a proxy, I can bypass Sophos, which is an area that needs improvement.
For how long have I used the solution?
We have been providing this solution for one year.
What do I think about the stability of the solution?
It's a stable product.
What do I think about the scalability of the solution?
It's scalable. We have 50 customers.
How are customer service and technical support?
Technical support should be faster.
How was the initial setup?
The initial setup is straightforward. The installation is easy, and it's faster than SAP.
Sophos Intercept can be deployed in a couple of minutes.
It will take one hour to deploy it for a firewall, and only 15 minutes for the endpoint protection.
We need one engineer to deploy this solution.
What's my experience with pricing, setup cost, and licensing?
The price is okay. It's comparable with other solutions.
You can purchase a license for one to three years.
What other advice do I have?
I would recommend this solution.
I have no issues with this solution, I would rate it a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Intercept X Endpoint
December 2024
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,053 professionals have used our research since 2012.
Good web filtering with an excellent central console and the capability to scale
Pros and Cons
- "The package we use also comes with spam filtering features, which are quite useful."
- "The initial setup can be a bit challenging."
What is our primary use case?
We primarily brought on the solution to replace Symantec's product, as Symantec was purchased by Broadcom. The company in question has a lot of stuff, and 40 users, and is a pure Windows environment. They don't do anything on Mac or Linux, for example.
What is most valuable?
So far, the solution has been working quite well.
Sophos offers a manuscript response.
The product has three tiers that you can choose from when you buy. The highest is a Managed Threat Response. We chose the middle range, which offers Intercept X and is more than just Malware protection.
This solution is a kind of Next-Gen anti-virus.
The product has some web filtering, which blocks people from going to websites they shouldn't be going to.
It supports the Windows 10 server platform.
The solution offers a centralized view of the status of protection, via a central console for users to check the status or the health of the endpoints.
So far, the solution has met all our expectations. It's blocked malicious websites effectively and stopped people from going to places online that they shouldn't be going to. It's automatic. We simply took the default settings and we were finding people right away that were going to illicit sites, and we were able to see that easily in the console.
The package we use also comes with spam filtering features, which are quite useful.
What needs improvement?
We're still new to the solution. We haven't come across any weakness yet. There aren't features that are missing.
The initial setup can be a bit challenging.
For how long have I used the solution?
I just deployed the solution a few weeks ago. It's quite new at this point. We've had it now for a little over a month.
What do I think about the stability of the solution?
The solution is extremely stable. It doesn't crash or freeze. There aren't bugs and glitches. It's kept us safe. Nothing has gotten through. It's reliable.
What do I think about the scalability of the solution?
Currently, the company only has 40 users, and therefore there are no scalability issues so far. However, it's a cloud-based centralized console, so that will help with scaling in the future if the company decides to expand. It wouldn't be hard to do. It's completely achievable.
How are customer service and technical support?
Technical support is okay. I'd give them higher scores if I didn't have to contact them about the initial console setup. That said, they were helpful. Their service so far has been about average.
Which solution did I use previously and why did I switch?
We previously used Symantec.
We switched solutions for a few reasons. The first one is that Symantec was bought by Broadcom and there were some unknowns about what would happen with the product. Support typically gets worse when Broadcom buys a product, and we wanted to step away on the off-chance that could happen in the near future.
We were also looking to consolidate and to find a replacement but to also get something that had spam protection and something that was easily obtainable for a small business. Sophos ultimately could hit all those checkmarks.
How was the initial setup?
The initial setup with the centralized console was a little bit challenging. It wasn't complex per se, however, due to the fact that the instructions weren't clear, you can get stuck at certain points. I opened up a case for support, and at that point, I was able to get under the console. You could say the onboarding of additional administrators was a challenge. The centralized console was also a bit difficult.
After that, the implementation was pretty easy. You simply remove the old one, add the new one, and then, with the new one, you could send the user an email link, or you could send them a path to where the software is.
What's my experience with pricing, setup cost, and licensing?
I do not know the exact costs offhand, however, it's my understanding that their pricing is listed publicly on their site and would be easy to find. Sophos seemed surprised that their pricing was public. They were shocked that I could just Google it and it came up.
There are extra add-ons you can purchase over and above this product. The add-ons cost a bit more, however, they offer extra security advantages.
What other advice do I have?
We are a reseller.
We deployed the latest version of the solution. I don't have the version number on hand, however.
It's a good product to consider if a company is looking to also do spam filtering. What Sophos has as well as a firewall, and it'll give a company a little bit of tighter integration, and that's good. Having those additional security tools as add-ons is an excellent option. We personally haven't gotten their firewall yet, however, it is nice that that is an option.
I would rate the solution at an eight out of ten. Overall, in the short amount of time we've used it, we've had a positive experience.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Infrastracture Consultant at a healthcare company with 201-500 employees
Behavioral-based protection that is user-friendly and easy to deploy
Pros and Cons
- "The most valuable feature is the behavioral, non-signature-based threat detection."
- "When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two."
What is our primary use case?
We were recently the target of a ransomware attack and we used this product to clean it from our environment. Our in-place endpoint protection is just signature-based and it was not able to identify which device had passed the malware.
I am in charge of monitoring at this time.
How has it helped my organization?
Once we installed Intercept X, it was able to detect and remove malware that could not be found by the simple endpoint security solution.
What is most valuable?
The most valuable feature is the behavioral, non-signature-based threat detection.
We like Sophos Central, where you have access to a security console. It provides you with information such as recommendations on what to do next. Using this, we were able to trace the affected devices, which were then cleaned. If new alerts are given then we know which devices are still affected and we can take the appropriate action.
Sophos Central also shows us which alerts have not yet been attended to, which is nice.
What needs improvement?
Sophos Central does not provide all of the information that is available, so it requires us to take the additional step of retrieving details from the firewall. It would be more productive if the information between Sophos products were automatically correlated and updated in Sophos Central.
When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two. Automatically correlating these events would save us time.
For how long have I used the solution?
We began using Sophos Intercept X a few days ago.
What do I think about the stability of the solution?
We use Intercept X on a daily basis and it is quite stable.
What do I think about the scalability of the solution?
My impression is that this product is scalable.
We have only deployed Intercept X at one hospital, which has about 300 people that it protects. We have approximately six hospitals for which we are recommending its use.
How are customer service and technical support?
We have only dealt with the sales team in the Philippines. Our concerns were commercial in nature, for the most part, rather than technical.
Which solution did I use previously and why did I switch?
Prior to Intercept X, we were using the signature-based endpoint protection by Sophos. Our license was just recently up for renewal and we are in the process of upgrading to Intercept X.
In my previous company, we were using Cisco AMP. The beauty of Sophos Intercept X is that it does both signature-based on behavioral threat protection in one agent. With some other solutions, you have to install a different product for each approach.
How was the initial setup?
The initial setup is very simple. We were able to install it in a few minutes and then it automatically begins detection. Completing the initial scan involves rebooting the computer a couple of times, so it takes a little while to complete and clean out the malware if it is there.
What about the implementation team?
The interface is very user-friendly and we were able to deploy and operate it ourselves.
Our company does not have 24/7 monitoring, so we are now looking at a managed SOC that we can subscribe to. Ideally, this type of service will give recommendations, above simply alerting us to problems.
What's my experience with pricing, setup cost, and licensing?
We were able to eliminate the ransomware using the one-month, full-featured trial license. Our intention now is to upgrade our systems to the full product. We were given a corporate rate.
Our licensing includes local support for each of our offices, nationwide. This something that we like.
What other advice do I have?
Overall, this is a good product that seems to address our concerns and I can recommend it.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Security Engineer at a tech services company with 51-200 employees
Good performance, flexible, and powerful centralized policy management
Pros and Cons
- "All of the features are very important for anyone who is supporting a large number of computers."
- "The price of this solution can be improved."
What is our primary use case?
I work with a number of Sophos products, mainly those managed through Sophos Central.
I provide general support for this solution, and my experience is with deployment and some configuration. I have been using the premium edition at home for more than a year, and have been dealing with training and support for approximately six months.
We are using this solution for cloud-based support, and using a cloud-based deployment.
How has it helped my organization?
We provide managed services to Sophos clients as part of our business offering.
What is most valuable?
The performance of this solution is good. This product does not overload the machine, even on relatively old hardware. It is a good experience in terms of CPU utilization, and how many of the cycles are going to the antivirus scanner.
This solution is easy to install, and it is flexible in terms of configuration.
The centralized management is a great feature for assigning certain policies to machines.
All of the features are very important for anyone who is supporting a large number of computers.
What needs improvement?
The price of this solution can be improved. The lesser the price, the more people will purchase it in the future, and it will become more popular and more widespread.
For how long have I used the solution?
I have been using this solution for more than a year.
What do I think about the stability of the solution?
I have never seen the "Blue Screen of Death" based on interactions between Sophos and the operating system. Similarly, I have not seen the computer stuck, or frozen during the virus scanning process. My overall impression of stability is very good.
How are customer service and technical support?
I would rate the technical support for this solution a nine out of ten.
What other advice do I have?
This product works as expected. From the point of view of a Sophos Trainee and Sophos Support Specialist, I admire what this product is doing. It is flexible and the management console is easy to work with.
Overall, this product is doing fine and I have nothing to complain about.
My advice to anybody who is researching similar solutions is that if they are looking for something that is simple and reliable, then this is a good choice. There will be less effort from the local IT support, and they will have well covered and protected endpoints. If they are not willing to spend a lot of time designing policies, precisely tuning everything for maximum performance and protection, then Sophos is the best choice. With very little effort you have a fully functional and very secure system.
Sophos is the best in its class, although there are no perfect systems.
I would rate this solution a nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Head IT (Infrastructure) at Nilkamal Ltd
A cloud-based solution with anti-malware capability and reasonable price
Pros and Cons
- "The base product and the anti-malware feature are most valuable."
- "It consumes a lot of resources, and something needs to be done for that."
What is most valuable?
The base product and the anti-malware feature are most valuable.
What needs improvement?
It consumes a lot of resources, and something needs to be done for that.
For how long have I used the solution?
We use Intercept X Advance in our company, and this is the third year.
What do I think about the stability of the solution?
It is stable.
What do I think about the scalability of the solution?
It is scalable. We have around 2,500 users. For its maintenance, there are just two or three people.
How are customer service and support?
I never faced any issues.
Which solution did I use previously and why did I switch?
We were using Symantec. It was on-premises. There was an issue with the company, and I faced an issue with their support. So, I had to switch. I wanted something on the cloud.
How was the initial setup?
It was easy. On the client-side, it hardly takes 15 minutes.
What's my experience with pricing, setup cost, and licensing?
Its price is reasonable.
What other advice do I have?
They have to take care of the resource part. I would rate it a nine out of 10.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Easy to install, but has slow performance and response time
Pros and Cons
- "The solution is easy to install."
- "The performance is very slow and should be faster."
What is our primary use case?
The solution is useful for protecting against ransomware and malwares.
What needs improvement?
The performance is very slow and should be faster.
Data resources will be consumed, affecting the performance, when there is a concurrent login involving a server with multiple RDP users.
The installation of the solution will start the 17 services involved.
While the tech support is knowledgeable, it's response time should be faster, as it will only get back to us the day after raising a ticket.
For how long have I used the solution?
We have been using Sophos Intercept X for around two years.
How are customer service and technical support?
Technical support, while knowledgeable, is not adequately responsive, as it will take a day from when the ticket was raised to receive a response. This needs improving.
How was the initial setup?
The solution is easy to install. Downloading time takes only 15 minutes.
What about the implementation team?
Our technical team consists of a team leader, team manager and administrators.
What other advice do I have?
The solution has around 60 licenses.
It is cloud-based.
We have around 10 clients making use of the solution.
We would recommend the solution to others.
I rate Sophos Intercept X as a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
Stable and easy to use, and integrates with their on-premises firewall
Pros and Cons
- "It's a good antivirus software and has a lot of features. It now integrates with their on-premises firewall, which is perfect."
- "The main real-time scanning takes most of the processing power of my notebook."
What is most valuable?
Their support is located in Egypt, so we like this aspect.
It's a good antivirus software and has a lot of features. It now integrates with their on-premises firewall, which is perfect.
It is stable and easy to use as well.
What needs improvement?
The main real-time scanning is taking most of the processing power of my notebook. This is a big problem.
It would be nice if Sophos Intercept X could provide some of their other features for free. For example, when I wanted to add another feature, like zero-day attack, I was told that I would need to add the license.
Also, it would be good to have a lot more resources.
For how long have I used the solution?
I've been using it for about four or five years.
It's a cloud-based solution.
How are customer service and technical support?
The technical support staff are excellent.
Which solution did I use previously and why did I switch?
I used Symantec antivirus, but when they ended the corporate product of Symantec, I was not able to contact them. It was very difficult to reach them and get support or purchase the antivirus, so I switched.
How was the initial setup?
The installation is straightforward.
What about the implementation team?
I deployed it myself with some technical support. They were able to provide what I needed.
What other advice do I have?
If I were to rate Sophos Intercept X on a scale from one to ten, I would rate it at eight. I would recommend this solution.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Endpoint Protection Platform (EPP) Endpoint Detection and Response (EDR) ZTNA Managed Detection and Response (MDR) Extended Detection and Response (XDR) Ransomware ProtectionPopular Comparisons
CrowdStrike Falcon
Microsoft Defender for Endpoint
Cisco Secure Endpoint
SentinelOne Singularity Complete
Fortinet FortiClient
Cortex XDR by Palo Alto Networks
Symantec Endpoint Security
Trend Vision One Endpoint Security
Trellix Endpoint Security
Kaspersky Endpoint Security for Business
ESET Endpoint Protection Platform
Check Point Harmony Endpoint
VMware Carbon Black Endpoint
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos Intercept X or Symantec End-User Endpoint Security - which is the better solution?
- Can Sophos Intercept X and Carbon Black be used side by side on endpoints?
- Which endpoint solution is more effective in terms of protection and remote administration: Sophos Intercept X or Kaspersky Endpoint Security?
- How does Crodwstrike Falcon compare with Sophos Intercept X?
- Sophos Intercept X: renewal cost for a security system integrator
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?
- When evaluating Endpoint Security, what aspect do you think is the most important to look for?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- Which Endpoint Protection Solution offers Zero Trust (ZTN) as a feature?