Try our new research platform with insights from 80,000+ expert users
Senior CyberSecurity Architect and Mentor at BlueTeamAssess LLC
Reseller
It can get ahead of the ransomware attack and encrypt the data on clients in the path of the infection
Pros and Cons
  • "The most valuable feature of Intercept X its ability to stay ahead of the infection. By the time the ransomware spreads to the next machine in line, the data has already been encrypted on that workstation. It didn't matter what the ransomware did because could go in and get it back."
  • "They should keep doing what they're doing. Both of them have entered the EDR/MDR space, and they're keeping up with their competitors. I have a hard time understanding why their capabilities aren't garnering more attention."

What is our primary use case?

When Intercept X came out, the primary use case was stopping ransomware. It was one of the first products to claim that capability. When I was evaluating them back then, it was the only one I considered effective at analyzing and identifying where the infection started. 

The synchronized security also helped because the firewall could isolate workstations that had the infection or were in the path of infection.

What is most valuable?

The most valuable feature of Intercept X its ability to stay ahead of the infection. By the time the ransomware spreads to the next machine in line, the data has already been encrypted on that workstation. It didn't matter what the ransomware did because could go in and get it back. 

Sophos made such good headway with it because it wasn't traditional endpoint protection. It has a lot of additional capabilities, including web content filtering. It also has the ability to understand the traffic it was seeing at the endpoint, 

It's sitting on the endpoint, so you don't have to worry about encryption messing up the intelligence that it could get out of the traffic. It was able to pinpoint where the infection was able to get ahead of Intercept X. It was called Intercept X because it can get ahead of the ransomware attack and encrypt the data on clients in the path of the infection.

What needs improvement?

It's hard to say what could be improved because we're in the middle of an endpoint protection arms race, and there are constant improvements on all fronts in Fortinet, Sophos, and products.

They should keep doing what they're doing. Both of them have entered the EDR/MDR space, and they're keeping up with their competitors. I have a hard time understanding why their capabilities aren't garnering more attention.

For how long have I used the solution?

I have been using Intercept X since it came out. It hasn't been out that long. Sophos has always had an endpoint client, but Intercept X added new technology. The whole idea of being able to drill down to do a root cause analysis was a novel approach to the endpoint game. 

Buyer's Guide
Intercept X Endpoint
January 2025
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,158 professionals have used our research since 2012.

What do I think about the stability of the solution?

Intercept X is highly stable

What do I think about the scalability of the solution?

Sophos has the flexibility to scale from one user to a data center, but I've primarily used Sophos for small to medium-sized businesses.

How are customer service and support?

I was impressed the last time I called Sophos support. They have a "follow the sun" philosophy with coverage from tech support centers from around the world. Sophos began as a British company, and Fortinet is a Canadian company. 

Which solution did I use previously and why did I switch?

Sophos and Fortinet have a firewall solution that can work in small business or home office situations, where you might have only one or two people protected by the techn. Still, yout you can look at it through a single pane of glass and see all of the different work sites you're protecting. 

Sophos goes one step further with what it calls its RED product, which basically is a hardware firewall that travels with somebody. Say you have an executive in your company and you want to zero in to protect his or her workstation from infection and have control over it to manage its defenses. RED is a great product to do that. Fortinet and Sophos both have strong management capabilities for remote offices and offer centralized management through a cloud application.

How was the initial setup?

The basic setup is decent by itself. I have not had to do a lot of tweaking with either one of these products.

What other advice do I have?

I rate Sophos Intercept X nine out of 10. Its reporting, alterts, and configuration capabilities make it a formidable product. It's a great product that works as advertised. I haven't seen any serious conflicts between it and other products, whereas I wouldn't put some endpoint protection products on the same endpoint.

You have to do some work there, but generally speaking, there's always been a case where I've been able to have more than one product. It's probably the best of all the products that I work with because I've had Malwarebytes installed together with Sophos and FortiClient without undue pain. There are some others that I won't mention without that same track record.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
IT Coordinator at a pharma/biotech company with 51-200 employees
Real User
Services perform well, minimal resources, and synchronizes well with other solution
Pros and Cons
  • "The solution is overall quite good, the services are performing well. It is very good for those who are using standard PC configurations. It does not block their system up by taking up a lot of resources."
  • "This solution is not in the high ratings on many of the top review sites. This solution has to be near the top for me to continue using it."

What is our primary use case?

We are not only using Sophos Endpoint with this solution, we are also using Sophos Email Security and firewall. It is a completely synchronized security package.

What is most valuable?

The solution is overall quite good, the services are performing well. It is very good for those who are using standard PC configurations. It does not block their system up by taking up a lot of resources. 

What needs improvement?

This solution is not in the high ratings on many of the top review sites. This solution has to be near the top for me to continue using it. I do not think a lot of companies know about this solution, it could be a lack of marketing that is the reason why it is not at the top.

For how long have I used the solution?

I have been using the solution for two years.

What do I think about the scalability of the solution?

The solution is very good for small-sized businesses.

How are customer service and technical support?

The technical support sometimes is a bit delayed, but sometimes they are responding very fast. Overall they are good but could improve on the times they are having delays.

Which solution did I use previously and why did I switch?

Previously we used McAfee for our endpoint protection for our company. It was very problematic, it was using up a lot of resources and delaying the work of users. Users were not able to do multitasking in the system. It is blocking all access to our server at the time of scanning. We decided to move to some other good antivirus. After analyzing the market, we found Sophos. Sophos is best for the standard configuration PC.

Which other solutions did I evaluate?

Due to some circumstances, we are going to switch from this solution to Symantec. Additionally, we have evaluated Kaspersky before choosing Symantec as the replacement for this solution. Kaspersky has had a very good rating amongst review sites along with Symantec.

What other advice do I have?

I rate Sophos Intercept X a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Intercept X Endpoint
January 2025
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,158 professionals have used our research since 2012.
Michael Mcdonald. - PeerSpot reviewer
Senior Security Consultant at First Technology
Reseller
Top 10
Comes with an option to switch off an endpoint, and does what it's supposed to do and better than anyone else
Pros and Cons
  • "I find the security heartbeat feature with synchronized security very useful. It's a very nice feature that allows you to basically switch off an endpoint. When an endpoint has got a virus or something like that, or it's infected or compromised, you can isolate it from the network, but only if you've got an XG Firewall as well. It also provides ease of use. It is the only antivirus that can recognize 25 out of the 36 ransomware and virus techniques that have been often used in terms of the behavior base using heuristics. It's beautiful, utterly amazing. No other antivirus can do that."
  • "The pricing could be a bit lower to match the normal retail pricing."

What is most valuable?

I find the security heartbeat feature with synchronized security very useful. It's a very nice feature that allows you to basically switch off an endpoint. When an endpoint has got a virus or something like that, or it's infected or compromised, you can isolate it from the network, but only if you've got an XG Firewall as well. 

It also provides ease of use. It is the only antivirus that can recognize 25 out of the 36 ransomware and virus techniques that have been often used in terms of the behavior base using heuristics. It's beautiful, utterly amazing. No other antivirus can do that. 

What needs improvement?

The pricing could be a bit lower to match the normal retail pricing.

For how long have I used the solution?

I have been using this solution for the last four months. Currently, I am using the latest version.

What do I think about the scalability of the solution?

It's really scalable. We easily did 5,000 installations in six hours. It's good at scalability.

Some of our SMB clients have 20 users, and some have around 200 to 300 users. A big enterprise client has around 5,000 users.

How was the initial setup?

I don't set these products up, but they look pretty straightforward and simple to set up. The deployment of 5,000 users happened in around six hours. The deployment was obviously automated a little bit.

What's my experience with pricing, setup cost, and licensing?

When you start going to the EDR technologies and the MTR, it is a little bit expensive. It's a very good technology, and obviously, you're going to pay for it, but the pricing could do a little bit of work.

What other advice do I have?

I would definitely recommend Sophos Intercept X. It's the number one product in my go-to-market strategy. 

I haven't used it so much, but from what I've seen and played around with, it's a brilliant product. It has already got everything. It does what it's supposed to do and does it better than anyone else out there. If you look at Gartner Quadrants, they are at number three in terms of leaders. The Microsoft Defender ATP is number one.

I would rate Sophos Intercept X a nine out of ten. It is a beautiful product, and I love it.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Deputy Manager, Ict at Ushuru
Real User
Top 5
An affordable and intelligent tool that provides good security features and can be managed centrally
Pros and Cons
  • "It is an intelligent tool."
  • "The tool is not stable on Linux systems."

What is our primary use case?

The product is used for security. It is like an antivirus.

What is most valuable?

The product learns the user’s behavior. It is an intelligent tool.

What needs improvement?

The product must also focus on other operating systems like Linux and macOS. The tool is not stable on Linux systems. It is heavy. It slows down the machine if the machine doesn't have good specifications.

For how long have I used the solution?

I have been using the solution for eight to nine years. I am using the latest version of the solution.

What do I think about the stability of the solution?

The product is stable on Windows machines. I rate the stability a seven out of ten.

What do I think about the scalability of the solution?

We have around 55 users from different departments. I rate the tool’s scalability a seven out of ten.

How are customer service and support?

Support is okay.

How was the initial setup?

The deployment is easy. I rate the ease of deployment a nine out of ten. The process is centralized. We have three engineers to maintain the tool. The frequency of maintenance depends on the alerts we receive about updates or viruses.

What's my experience with pricing, setup cost, and licensing?

The solution is not expensive. The pricing is manageable. We have to pay an annual subscription fee. I rate the pricing a six out of ten.

What other advice do I have?

I will recommend the solution to others. It is centrally managed. We do not have to go to the users’ machines to manage the product. Overall, I rate the product an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
IT Director at Hepta
Real User
Top 5
Beneficial central endpoint view, simple configuration, and good security
Pros and Cons
  • "The most valuable features of Sophos Intercept X are the minimal configuration needed for the end user and the central view of all the endpoints. There are plenty of tools to control and manage the endpoints. Additionally, there is the capability of connecting the endpoint to the CLI."
  • "The graphical interface could improve. Additionally, adding less expensive mobile device support would be helpful. Other solutions have this feature."

What is most valuable?

The most valuable features of Sophos Intercept X are the minimal configuration needed for the end user and the central view of all the endpoints. There are plenty of tools to control and manage the endpoints. Additionally, there is the capability of connecting the endpoint to the CLI.

What needs improvement?

The graphical interface could improve. Additionally, adding less expensive mobile device support would be helpful. Other solutions have this feature.

For how long have I used the solution?

I have been using Sophos Intercept X for approximately three years.

What do I think about the stability of the solution?

There are minor scalability elements that could improve. However, overall it is good.

I rate the stability of Sophos Intercept X a seven out of ten.

What do I think about the scalability of the solution?

We do not have too many workstations, we have approximately 300 and we have not had an issue with the scalability. However, if there were more workstations there could be some issues.

I rate the scalability of Sophos Intercept X a seven out of ten.

How are customer service and support?

We had support but it was through local support vendors. It could improve.

I rate the support from Sophos Intercept X a five out of ten.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have used Comodo and it is a good solution. When the agents are installed on the endpoints it provides inventory management. However, in Sophos Intercept X it is possible but you need to export and do it manually. The Comodo solution has better email, asset, and website management capabilities. Overall, Sophos has good security when compared to other solutions.

What's my experience with pricing, setup cost, and licensing?

The price of Sophos Intercept X is expensive. The license is paid on an annual basis. There are extra features that can be added depending on the endpoints. The solution is priced twice as much as the Comodo solution.

What other advice do I have?

We have recently moved to a less expensive solution, which was half the price.

I rate Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Head of Technology at Speed enterprises
Real User
Top 5Leaderboard
Stops data leaks, highly stable and scalable solution
Pros and Cons
  • "It is quite scalable. You can always add more users. I would rate the scalability a nine out of ten."
  • "It's a bit heavy on the computers. So once you install it, the computer slows down. It is a resource-intensive solution."

What is our primary use case?

It is an endpoint. So it's antivirus and DLP, and all those integrated in one.

What is most valuable?

It is like an antivirus. So it stops viruses. DLP stops data leaks in the organization.

What needs improvement?

It's a bit heavy on the computers. So once you install it, the computer slows down. It is a resource-intensive solution. 

For how long have I used the solution?

I have been using this solution for two to three years now. We use the latest version. 

What do I think about the stability of the solution?

It is a stable solution. I would rate the stability a nine out of ten. 

What do I think about the scalability of the solution?

It is quite scalable. You can always add more users.  I would rate the scalability a nine out of ten.

How was the initial setup?

The initial setup is easy. The server, the main server, is online. And then the agent is on the premises. 

After online configuration, the agent installation takes only ten minutes. It is a very quick installation. 

The configuration takes around two hours. 

What about the implementation team?

I do maintenance for this solution. A team of four engineers handles the maintenance and deployment. 

What's my experience with pricing, setup cost, and licensing?

The pricing is quite expensive compared to the rest. I would rate the pricing a four out of ten; one is expensive, and ten is cheap. 

What other advice do I have?

It's a good product. So, link it with the security policies because you can link it with the firewall. The endpoint can communicate with the hardware firewall. So that's one of its strong points.  

Overall, I would rate the solution an eight out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
Raihan Hossain - PeerSpot reviewer
Senior Network and Cyber Security Engineer (Team Lead) at Excel Technologies ltd
Real User
Top 5
User-friendly, easy to configure, and offers flexible policies
Pros and Cons
  • "The dashboard is user-friendly."
  • "I'm not clear on what features need improvement. Everything is mostly fine."

What is our primary use case?

We're creating a software center. I just install the Sophos engine software and make the policies, like threat protection policies, for example.

What is most valuable?

The configuration is quite useful. All of our events are managed centrally from Sophos. We can manage security from there. 

Policies are flexible and very user-friendly. The dashboard is user-friendly as well. 

It is simple to set up. 

The solution is stable.

It is not overly expensive. 

What needs improvement?

I'm not clear on what features need improvement. Everything is mostly fine. 

For how long have I used the solution?

I've been using the solution for two years. 

What do I think about the stability of the solution?

It's a very light application and very stable. It's reliable. There are no bugs or glitches. It doesn't crash or freeze. 

What do I think about the scalability of the solution?

We're a partner, and a lot of our clients are on this solution. 

The last client we deployed for had 4,000 users. However, each company differs in terms of the number of users. 

Which solution did I use previously and why did I switch?

We also deal with Trend Micro. 

How was the initial setup?

The setup is straightforward. It is not overly complex or difficult. 

The deployment was pretty quick. You just have to set up the policies. Depending on the additional policies you have to set up, it may take longer. 

What about the implementation team?

We are able to deploy the solution for our clients. I've worked on various deployments for clients. 

What's my experience with pricing, setup cost, and licensing?

The pricing varies. It's different from client to client, depending on their environment and needs. It's not overly expensive. 

What other advice do I have?

We're Sophos partners. 

I'd 100% recommend the solution to potential users. It's great for protecting devices and offers great security. There are a lot of malicious threats online right now. Companies need to protect themselves, and Sophos can help. 

I would rate the solution eight out of ten. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
System Administrator at Finlays
Real User
Cloud-based, very stable, and makes it very easy to manage your endpoints
Pros and Cons
  • "I like the way it goes beyond the office space. Being a cloud-based solution makes it very easy to manage your endpoints within the office. In this time of COVID, you can also very effectively manage people who are working from home."
  • "I have not done it, but integrating it with authenticating the users on the Windows system looks a bit complicated to me. It could be because I don't understand it."

What is our primary use case?

We mainly use it on our endpoints. We use it for Windows machines and laptops. They have a server version for the servers.

What is most valuable?

I like the way it goes beyond the office space. Being a cloud-based solution makes it very easy to manage your endpoints within the office. In this time of COVID, you can also very effectively manage people who are working from home.

What needs improvement?

I have not done it, but integrating it with authenticating the users on the Windows system looks a bit complicated to me. It could be because I don't understand it.

Its installation takes a bit longer for each of the vendors. I don't know whether it is because of the internet connection. I don't know if it is just for me or it is the same for every other user.

For how long have I used the solution?

I have been using this solution for two years.

What do I think about the stability of the solution?

It is very stable.

What do I think about the scalability of the solution?

It is very scalable. There are around 120 users and devices. 

How are customer service and technical support?

I have never contacted them about this new product. I used to contact them before, and I don't have issues with their technical support. They respond, and their response is good.

Which solution did I use previously and why did I switch?

We were previously using Sophos Central. It was on-premises, so we migrated from that solution to this solution. It is pretty much the same thing that we were doing before, but now it is cloud-based.

How was the initial setup?

A new device installation is very easy. During installation, when you download the installation file from the web, the registration works so well, but the installation takes a bit longer for each of the vendors. I don't know whether it is because of the internet connection. It looks like it is the web installer that takes longer. I don't know if others have experienced the same issue. 

We also had a few challenges during migration. Because we were doing a migration of the site, we wanted just to maintain what we were doing before. 

What about the implementation team?

We did it ourselves. I'm part of a larger group, and my colleagues had done its implementation.

What's my experience with pricing, setup cost, and licensing?

We have bought a three-year license.

What other advice do I have?

I would very much recommend this solution. I would rate Sophos Intercept X a nine out of 10. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2025
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.