We use the solution to enhance malware detection and response capabilities.
Senior Security Engineer at a government with 10,001+ employees
Ensures effective protection and swift threat response across our network
Pros and Cons
- "The most valuable aspect of the product is its consolidated features."
- "There is room for improvement in its user interface."
What is our primary use case?
What is most valuable?
The most valuable aspect of the product is its consolidated features. We can easily configure Kaspersky's anti-target attack, streamlining our security measures. The unified agent, which combines antivirus, optimal threat response, and EDR functionalities, is a significant improvement. This integration simplifies management, providing a comprehensive solution with both cloud and on-premise functionality. It ensures effective protection and swift threat response across our network.
What needs improvement?
There is room for improvement in its user interface. The web GUI needs development to make it more user-friendly and aligned with industry standards.
For how long have I used the solution?
I have been working with Kaspersky EDR for two years.
Buyer's Guide
Kaspersky Endpoint Detection and Response
April 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
850,671 professionals have used our research since 2012.
What do I think about the stability of the solution?
I would rate the stability as an eight out of ten.
What do I think about the scalability of the solution?
I would rate the scalability of the product as a seven out of ten. I would recommend Kaspersky EDR for enterprise-level businesses. Its robust functionality, including EDR use cases and versatile prevention rules, makes it particularly well-suited for larger organizations.
How are customer service and support?
Kaspersky's tech support is good. We have local teams in our country, and they are proactive in hiring and sharing knowledge. They provide effective assistance for any EDR solution issues we encounter. I would rate the support as a nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
When comparing Kaspersky EDR to other products like Fidelis Cybersecurity, Fidelis has a good user interface but tends to have issues with high CPU and RAM usage. I have heard feedback from users facing problems with Fidelis's Incident TimeLine feature. While both products have similarities, Kaspersky EDR stands out for its comprehensive functionality and effective threat response.
How was the initial setup?
Setting up Kaspersky EDR can vary in complexity based on hardware. Customers might experience issues like storage or high CPU usage during installation or updates. While the initial installation is generally smooth, upgrading poses challenges, especially when transitioning between different operating systems. Careful testing is essential to prevent errors and compatibility issues caused by overwriting operating system codes.
What's my experience with pricing, setup cost, and licensing?
The price for Kaspersky EDR is on the higher side, likely because of their extensive marketing efforts. However, the cost seems justified as they prioritize customer support, investing in a capable team to handle complex customer situations.
What other advice do I have?
Overall, I would rate Kaspersky EDR as a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

CEO at Haniya Technologies
A robust set of features that ensure early detection of threats
Pros and Cons
- "One of the most valuable aspects of Endpoint Detection and Response (EDR) solutions is their ability to detect and respond to spam and viruses in their early stages."
- "Enhancing user-friendliness should be a priority."
How has it helped my organization?
I am affiliated with Kaspersky as a partner and reseller.
What is most valuable?
One of the most valuable aspects of Endpoint Detection and Response (EDR) solutions is their ability to detect and respond to spam and viruses in their early stages.
What needs improvement?
There are a few areas where I believe they could make some improvements. First, it would be beneficial if they could optimize the solution to be less resource-intensive, as it currently tends to put a heavy load on our machines and requires specialized servers for deployment. It is worth noting that they have made progress in this area, and the solution is now more manageable on standard server configurations. Enhancing user-friendliness should be a priority. Ideally, the interface should be intuitive enough that administrators and technical support teams don't require extensive training and can quickly adapt to using the solution independently. I must acknowledge that Kaspersky EDR already offers a robust set of features, especially in terms of threat detection and endpoint protection.
For how long have I used the solution?
I have been working with it for fourteen years.
How are customer service and support?
Kaspersky offers two types of support. The standard support, which is included with the product purchase, tends to have longer response times for issue resolution. If you opt for their premium support, they provide prompt and effective assistance, ensuring quicker problem resolution.
Which solution did I use previously and why did I switch?
What's my experience with pricing, setup cost, and licensing?
I would say that their pricing is generally competitive and attractive. While the initial purchase cost for EDR may be relatively higher, particularly due to its advanced capabilities, it remains a cost-effective choice when compared to other established products in the same category.
What other advice do I have?
I would rate it eight out of ten because there's always room for improvement in any product or service.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Buyer's Guide
Kaspersky Endpoint Detection and Response
April 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
850,671 professionals have used our research since 2012.
Team Lead Cybersecurity Operations at a computer software company with 11-50 employees
A security solution for encryption and protection providing path visibility
Pros and Cons
- "Kaspersky offers more visible and comprehensive features compared to other products."
- "It needs improvement in communication between the network and endpoint, as well as between endpoint and server."
What is our primary use case?
Kaspersky Endpoint provides multiple features. For example, it offers encryption, protection against targeted attacks, behavior and ML analysis, and multiple policies are available in Kaspersky. We recommend Kaspersky the most in Pakistan. Its advanced EDR features provide additional capabilities in endpoint security, including complete visibility of the quarantine system.
What is most valuable?
Kaspersky EDR gives complete path visibility of file location. It's allowed to contain the file in the same place. It does not spread the file to other locations or another system.
What needs improvement?
Kaspersky needs improvement in communication between the network and endpoint, as well as between endpoint and server. Sensors often fail to listen to the server due to communication issues resulting in multiple hurdles. Kaspersky needs to prioritize addressing this communication issue. While Kaspersky provides all the necessary functionality, there's room for improvement. Kaspersky should consider adding features to allow us to create use cases in the Sky console. If analytics don't detect anything in the Kaspersky console, the alerts must be configured in Kaspersky Sky so that they trigger when an attack is performed. This would make it easier for us to find any threats.
For how long have I used the solution?
I have been using Kaspersky Endpoint Detection and Response for two years.
What do I think about the stability of the solution?
The product is stable. Some issues with certain parts and connectivity are still unresolved.
We do not face any downtime. To update the license, we remove the previous license and apply the new one. If we fail to remove it, there's an option in Kaspersky called the reserve fee. You can add the reserve and use it to apply for the new license. Once the actual license expires, your reserve is automatically converted.
What do I think about the scalability of the solution?
You need more licenses to install the new sensors. Once you receive the license, enter it into your console, and you can use multiple sensors according to your license.
How are customer service and support?
When you purchase Kaspersky, you can choose to buy the ticketing solution, opt for proper support for the response service, or both options. Otherwise, the response time will be between four to eight hours.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Kaspersky Endpoint Detection and Response outperforms Symantec in several aspects. Unlike Symantec, Kaspersky offers a single console for managing both media and endpoints. Additionally, Kaspersky provides encryption features, whereas Symantec lacks encryption capabilities in its Endpoint solution. Kaspersky offers more visible and comprehensive features compared to other products.
How was the initial setup?
The initial setup is easy and takes around one or two hours to complete. We have to download our packages.
What other advice do I have?
Overall, I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Network Engineer at EXORDIUM NETWORKS, INC.
The product saves time and resources, but it does not detect all kinds of threats
Pros and Cons
- "The advanced detection features are valuable."
- "The product does not detect zero-day threats."
What is our primary use case?
We've deployed the client at the user’s end. We provide software security.
What is most valuable?
The advanced detection features are valuable. The solution provides reports on users and their devices. We get to know whether the devices are infected. The tool has saved us time and resources. Otherwise, we have to check every PC for viruses.
What needs improvement?
Many viruses change algorithms. The product does not detect zero-day threats. Kaspersky must provide zero-day threat detection. The product must provide a detailed status of the users and their activity on the devices.
For how long have I used the solution?
I have been using the solution for more than a year.
What do I think about the stability of the solution?
The tool is stable.
What do I think about the scalability of the solution?
We have 40 to 50 clients that use the solution.
How was the initial setup?
The solution is deployed on my Windows Server 2019. The initial installation is easy.
What's my experience with pricing, setup cost, and licensing?
The product is cheap.
What other advice do I have?
My recommendation will depend on the number of users and the features other competitors offer. We are partners. Overall, I rate the tool a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
System Engineer at MIS Security Solutions (Pvt) Ltd
Robust security through advanced threat detection, rapid incident response capabilities and effective endpoint protection
Pros and Cons
- "It downloads essential security patches that are valuable for my PC."
- "Incorporating an AI protection tool with the capability to detect and prevent zero-day threats, particularly those with a five-star rating in terms of severity would be beneficial."
What is our primary use case?
It allows me to selectively block certain websites for personal reasons, and I can control the usage of USB drives when connecting external devices to safeguard my computer. Additionally, I have the ability to manage other network devices for enhanced security.
What is most valuable?
It downloads essential security patches that are valuable for my PC. This is particularly useful as Windows doesn't always automatically update immediately.
What needs improvement?
Incorporating an AI protection tool with the capability to detect and prevent zero-day threats, particularly those with a five-star rating in terms of severity would be beneficial.
For how long have I used the solution?
I have been working with it for six months.
What do I think about the stability of the solution?
It provides excellent stability.
What do I think about the scalability of the solution?
The current scalability is insufficient for my needs on my PC. I personally manage HTTP, but it lacks the necessary capability. I believe an upgrade is required.
Which solution did I use previously and why did I switch?
I previously utilized Sophos XDR, but I transitioned to Kaspersky as it offers a more cost-effective solution. I also used ESET, but it didn't meet my requirements.
How was the initial setup?
The initial setup is straightforward and user-friendly.
What about the implementation team?
The deployment process takes approximately thirty minutes.
What was our ROI?
In terms of return on investment, I saved money by protecting my laptops, as universal ransomware poses the most significant threat, and the chosen solution effectively mitigates this risk.
What's my experience with pricing, setup cost, and licensing?
The pricing falls within the average range.
What other advice do I have?
Overall, I would rate it eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
IT Security team leader at a healthcare company with 10,001+ employees
Integrated with endpoint protection but improvement is needed in stability
Pros and Cons
- "The product is integrated with endpoint protection. We don't have to implement a separate technology. It provides visibility over the endpoints."
- "Kaspersky Endpoint Detection and Response needs vast resources on the central node. Not all maintenance tasks are in the GUI, so we often use commands. The lack of documentation for these processes means we frequently reach out to support, open tickets, and run complex CLI commands. It's not the most straightforward process. It should also improve stability."
What is our primary use case?
We use the solution to gather information on how endpoints behave and any events happening. If there's any suspicious activity on a machine, it alerts us. For investigating specific devices, we can refer back to the EDR.
What is most valuable?
The product is integrated with endpoint protection. We don't have to implement a separate technology. It provides visibility over the endpoints.
What needs improvement?
Kaspersky Endpoint Detection and Response needs vast resources on the central node. Not all maintenance tasks are in the GUI, so we often use commands. The lack of documentation for these processes means we frequently reach out to support, open tickets, and run complex CLI commands. It's not the most straightforward process. It should also improve stability.
For how long have I used the solution?
I have been working with the product for three years.
What do I think about the scalability of the solution?
Kaspersky Endpoint Detection and Response is scalable. We have two admins using it.
How are customer service and support?
Even when we raise a support ticket, the engineers often don't provide direct answers. We have to dig into R&D and experiment; getting a resolution for a support ticket takes time.
How would you rate customer service and support?
Neutral
How was the initial setup?
The tool's deployment was straightforward. It took a week to deploy.
What's my experience with pricing, setup cost, and licensing?
The tool's pricing is reasonable.
What other advice do I have?
I rate the product a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Assistant General Manager at a financial services firm with 5,001-10,000 employees
A cloud solution for endpoint security with in-depth insights
Pros and Cons
- "We have a concept of working from home. Most endpoints are not in the domain. It is our first line of defense. While we had Kaspersky deployed, it gave good insight into the upcoming challenge or threat."
- "My team was struggling with the reporting when we were doing an audit. The console features are a little more interactive and user-friendly. There's some issue, or maybe some fixing has to be done."
What is our primary use case?
We use the solution to cover endpoint security.
What is most valuable?
We have a concept of working from home. Most endpoints are not in the domain. It is our first line of defense. While we had Kaspersky deployed, it gave good insight into the upcoming challenge or threat. Accordingly, the relevant teams come into action and take good care of it before it blows out of our hands. As a security audit, we ensure that the agents and the machines are in the early stages. It gives us appropriate information, which helps us to keep our environment in a better, safer, and controlled position.
What needs improvement?
My team was struggling with the reporting when we were doing an audit. The console features are a little more interactive and user-friendly. There's some issue, or maybe some fixing has to be done. I've seen the ground staff struggling a lot over there. The skill set, knowledge transfer, or training can help them to improve.
For how long have I used the solution?
I have been using Kaspersky Endpoint Detection and Response as a customer for seven months, whereas my company has been using it for around three years.
How was the initial setup?
The initial setup is not challenging.
What's my experience with pricing, setup cost, and licensing?
The solution is expensive.
What other advice do I have?
Our operation team has used Kaspersky. We are involved in it as a part of my cybersecurity or system audit.
Overall, I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Cybersecurity Lead Consultant at Netconetworks
Helps in protection and incident response but needs to improve stability
Pros and Cons
- "The tool's performance and prevention are amazing."
- "Kaspersky Endpoint Detection and Response is expensive. It should improve its stability."
What is our primary use case?
I use the solution for protection and incident response.
What is most valuable?
The tool's performance and prevention are amazing.
What needs improvement?
Kaspersky Endpoint Detection and Response is expensive. It should improve its stability.
What do I think about the stability of the solution?
I rate the solution's stability an eight out of ten.
How was the initial setup?
Kaspersky Endpoint Detection and Response's installation is straightforward. For organizations with 1000 employees, deployment can take an hour to complete. To deploy the product, you must go to the management portal and push the agents. We rely on one resource to handle deployment and maintenance. It can be handled remotely.
What other advice do I have?
I rate the solution an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2025
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
CrowdStrike Falcon
SentinelOne Singularity Complete
Microsoft Defender XDR
Kaspersky Endpoint Security for Business
Trellix Endpoint Detection and Response (EDR)
Sangfor Endpoint Secure
WatchGuard EPDR
Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?
- What are the best on-premise Endpoint Security solutions for a Tech Services company with 10,000 employees?
- Which is better for Endpoint Security: EDR or XDR solutions?