We use the solution to create a test scenario for detecting a potential threat in the network.
CISO at a wholesaler/distributor with 1,001-5,000 employees
Has good stability and efficient machine-learning features
Pros and Cons
- "Its customer service is quite good."
- "They should include XDR features in the solution."
What is our primary use case?
How has it helped my organization?
The solution's cybersecurity policies help us protect some extensions of the primary documents in case of a ransomware attack. Also, in case endpoint servers get compromised, it protects them. Thus, we can manage exclusive and essential extensions for systems using it.
What is most valuable?
The solution's most valuable feature is machine learning. It monitors the traffic and events to detect suspicious activity.
What needs improvement?
They should include XDR features in the solution. It would help us collect data metrics from different endpoints. Thus, we could identify the origin of the ransomware or malware attacks within the network. Also, they should include sandboxing features.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
March 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,651 professionals have used our research since 2012.
For how long have I used the solution?
We have been using the solution for three years.
What do I think about the stability of the solution?
I rate the solution's stability an eight.
How was the initial setup?
The solution's deployment process involves configuring the network and changing the active directory. The most challenging part here is opening specific ports and blocking or allowing certain services through firewall settings.
What's my experience with pricing, setup cost, and licensing?
The solution's cost is reasonable compared to other vendors.
What other advice do I have?
I suggest a cost versus-benefit analysis to others while looking for EDR and XDR solutions. Considering the advantages of Kaspersky, it offers patch and vulnerability management. It takes time to deploy initially. But once you deploy it correctly, you will get a lot of features. I rate it as an eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Database Manager at Ppc Cement
Good security that runs quietly in the background and is not hard to set up
Pros and Cons
- "It helps improve security in our organization."
- "The solution could always be more secure."
What is our primary use case?
We primarily use the solution for security purposes, as an antivirus. It prevents threats to our business. Our aim is to make sure that our machines are protected at all times.
What is most valuable?
It's just running in the background. It doesn't bother us, and we don't even notice it is there.
It helps improve security in our organization. The protection on offer is good.
The initial setup is straightforward.
What needs improvement?
The solution could always be more secure. Every antivirus solution could be, as things are always dynamically changing. There is always a new risk on the horizon.
For how long have I used the solution?
I've used the solution for over three years.
What do I think about the stability of the solution?
The solution is stable. It is reliable. There are no bugs or glitches. It doesn't crash or freeze. We haven't had any issues at all.
What do I think about the scalability of the solution?
I can't speak to the scalability of the product. It's not an aspect that I handle.
We have about 1,000 people on the solution right now.
We do not plan to increase usage. It depends on the number of employees that we have. If the number increases, then we usually increase usage since any machine that comes into our network must have an antivirus on it.
How are customer service and support?
I've never dealt with support. I can't speak to how their services are.
How was the initial setup?
It is simple to set up and configure. We haven't had any issues with the process. it's not complex.
I'm not sure how long it took to deploy.
There are three people in our organization that can deploy and maintain the product.
We have enough people in terms of implementation and management as we have multiple sites that are managed by different people.
What other advice do I have?
We tend to use the latest version of the solution in our organization. I can't speak to the exact version number.
I would recommend the solution to others. I tested it on my personal computer before and found it worked fine. It's a reputable antivirus. I don't have a problem with it.
As a customer, I am satisfied. I'd rate it nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
March 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,651 professionals have used our research since 2012.
Head of Data Link at Telecom Egypt
Provides good scalability, but the incident response module needs improvement
Pros and Cons
- "The product has an easy-to-use EDR module based on signature-based antivirus detection. It is a complete software."
- "They could provide a source of visualization for the product."
What is our primary use case?
We use the product to monitor behaviors for endpoints to detect malware attacks and fraudulent activities.
What is most valuable?
The product has an easy-to-use EDR module based on signature-based antivirus detection. It is a complete software.
What needs improvement?
They could provide a source of visualization for the product. It needs to be easier to use for searches and activities. Additionally, they should work on an incident response module.
For how long have I used the solution?
We have been using Kaspersky Endpoint Detection and Response Expert for three years.
What do I think about the stability of the solution?
I rate the product's stability an eight out of ten. It has more features than other EDR solutions.
What do I think about the scalability of the solution?
The product has good scalability. We can size and schedule it as per requirements.
How was the initial setup?
The initial setup process is straightforward. It takes two to three hours to work on configuration, installation, and implementation.
What was our ROI?
The product is worth the investment for small and medium businesses. Large enterprises can use it as an antivirus software rather than a complete EDR solution.
What's my experience with pricing, setup cost, and licensing?
The product has a valuable pricing model. We need to purchase its monthly subscription.
Which other solutions did I evaluate?
The product is more advanced and scalable than other EDR solutions.
What other advice do I have?
It is a nice EDR product. It works well for small and medium businesses than enterprises. I rate it a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
Product Manager at Tech Titan Distribution Co., Ltd.
Reliable, stable, and can identify any attack
Pros and Cons
- "What I like best about Kaspersky Endpoint Detection and Response is that it can detect any cyber attack and that it's a reliable product in the cybersecurity space. My company has confidence in it as a product for detecting all cyber attacks. It's a reliable product."
- "An area for improvement in Kaspersky Endpoint Detection and Response is its technical support because currently, technical support is delayed."
What is our primary use case?
Kaspersky Endpoint Detection and Response is used for detecting cyber attacks.
What is most valuable?
What I like best about Kaspersky Endpoint Detection and Response is that it can detect any cyber attack and that it's a reliable product in the cybersecurity space. My company has confidence in it as a product for detecting all cyber attacks. It's a reliable product.
What needs improvement?
An area for improvement in Kaspersky Endpoint Detection and Response is its technical support because currently, technical support is delayed.
For how long have I used the solution?
My experience with Kaspersky Endpoint Detection and Response is three or four years, and I'm still working with it.
What do I think about the stability of the solution?
Kaspersky Endpoint Detection and Response is a stable product because I didn't see any issues when I was using it.
What do I think about the scalability of the solution?
Kaspersky Endpoint Detection and Response can be scaled to other solutions, for example, we used an antivirus first, then expanded to EDR using the same console and same server for management, and in the future, we can top it up with a sandbox solution on the same console.
How are customer service and support?
The technical support provided for Kaspersky Endpoint Detection and Response needs to be faster.
How was the initial setup?
Setting up Kaspersky Endpoint Detection and Response is easy. You can deploy it from the server or the main console. How long the deployment of the tool would take would depend on the network traffic during deployment and on the endpoint quantity.
What's my experience with pricing, setup cost, and licensing?
Pricing for Kaspersky Endpoint Detection and Response is so-so when you compare it with its competitors. Its pricing isn't cheap nor expensive.
What other advice do I have?
I'm a product manager that handles Kaspersky Endpoint Detection and Response. My company is a distributor and reseller of the product in Thailand.
I don't remember the exact version number of Kaspersky Endpoint Detection and Response, but I'm using its latest version.
My rating for Kaspersky Endpoint Detection and Response is eight out of ten.
If I had the chance to speak to others, my advice would be to use Kaspersky Endpoint Detection and Response.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
CEO at Haniya Technologies
You can get more advanced features than their standard solution and only spend slightly more
Pros and Cons
- "We compared Kaspersky and Trend Micro. The latter is significantly more expensive. That's the main difference."
- "If a customer wants to use Kaspersky on-prem, they'll need to spend a lot on the hardware. Their server must be strong because EDR is a heavy product. You need excellent hardware to run it. It might make sense to deploy the solution in the cloud. If they add features, it will only make the product heavier and increase the hardware costs."
What is our primary use case?
Kaspersky EDR is an advanced version of the company's standard security solution that provides some enhanced detection and response features. Cost-wise, it's not much more than their other solution.
Kaspersky is trying to push clients to adopt EDR because they plan to consolidate everything into one solution. EDR incorporates all the features available in Kaspersky's other products.
What needs improvement?
If a customer wants to use Kaspersky on-prem, they'll need to spend a lot on the hardware. Their server must be strong because EDR is a heavy product. You need excellent hardware to run it. It might make sense to deploy the solution in the cloud. If they add features, it will only make the product heavier and increase the hardware costs.
For how long have I used the solution?
I have used Kaspersky EDR for about three years.
What do I think about the stability of the solution?
I rate Kaspersky EDR seven out of 10 for stability.
What do I think about the scalability of the solution?
I rate Kaspersky EDR seven out of 10 for scalability.
How are customer service and support?
I rate Kaspersky support eight out of 10. It depends on your SLA. You need to wait in line with standard support, but you get help immediately if you purchase business support.
How would you rate customer service and support?
Positive
How was the initial setup?
I wouldn't say that Kaspersky is a walk in the park to install, but it isn't too complex. Anyone with a little training and knowledge can install and configure it.
What's my experience with pricing, setup cost, and licensing?
I rate Kaspersky EDR seven out of 10 for affordability. Kaspersky EDR isn't cheap, but it shouldn't be out of reach for most medium-sized enterprises. It is a small price jump from their advanced endpoint security solution. Small companies may not be able to spend that much. It should be within the budget of any company with more than 300 employees should.
Which other solutions did I evaluate?
We compared Kaspersky and Trend Micro. The latter is significantly more expensive. That's the main difference.
What other advice do I have?
I rate Kaspersky EDR eight out of 10. It's one of the top three solutions, but it isn't my No. 1.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Head of Information Security at Faisal Islamic Bank of Egypt
Effective, easy to set up, and offers good support
Pros and Cons
- "We can scale the solution."
- "We'd like to see them improve the automatic response."
What is our primary use case?
Currently, I'm using Kaspersky as endpoint protection and EDR.
I'm using it for detecting malicious behavior on PCs. It's for security.
What is most valuable?
In terms of effectiveness, it's the best.
It is easy to set up.
The product is stable.
We can scale the solution.
What needs improvement?
I can't say which areas need improvement.
We'd like to see them improve the automatic response.
For how long have I used the solution?
I've been using the solution for three years.
What do I think about the stability of the solution?
It's a stable, reliable solution. There are no bugs or glitches. It doesn't crash or freeze. We've had zero issues in general while using the product.
What do I think about the scalability of the solution?
The scalability has been good.
Kaspersky is installed on all PCs and servers. It is used extensively in the organization. There is likely over 1,000 users.
How are customer service and support?
We only used support once. We found a malicious file in an email, and we opened a ticket with them to deal with the issue. They were very effective. They resolved the issue and provided us with text to update the KATA directories.
How would you rate customer service and support?
Positive
How was the initial setup?
The solution is simple to set up. It's not a complex process.
Which other solutions did I evaluate?
We tested it with different scenarios, such as MITRE ATT&CK, and we did the same scenario across all vendors. This solution came out on top.
What other advice do I have?
I'm a customer and end-user.
We did a POC with the solution and were quite impressed by its effectiveness.
If someone is working in a virtual environment, they should consider a virtual solution like Kaspersky from the beginning. It helps save memory usage.
I'd rate the solution nine out of ten. It is a very effective tool.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
System Administrator at NCCPL
Fabulous range of features not available elsewhere
Pros and Cons
- "Has some great features not available elsewhere."
- "The solution lacks DLP."
What is our primary use case?
We are users of this solution and I'm a system administrator and lead manager of the Kaspersky EDR solution in my company.
What is most valuable?
In my opinion Kaspersky is the best product on the market. It's very easy to handle, user-friendly and they provide a lot of features that are difficult to find in other endpoint solutions. Kaspersky provides great features and endpoint protection.
What needs improvement?
The only problem we have with the solution is that DLP is not a part of it. It's particularly relevant for those working in financial markets, especially in Pakistan where it's deployed in banks. DLP would make EDR a complete package. The lack of DLP is the main reason that our company is moving away from Kaspersky EDR.
For how long have I used the solution?
I've been using this solution for five years.
What do I think about the stability of the solution?
It's very stable and I haven't faced any issues.
What do I think about the scalability of the solution?
The solution is very scalable. We have approximately 300 users in the company.
How are customer service and support?
We've had many interactions with technical support. We use the online Kaspersky company portal to raise tickets, and the staff are very knowledgeable technically and very professional. In so many ways, and so many queries I was in coordination with them directly. The email support is also very good.
How was the initial setup?
The initial setup is very simple and there were no issues with deployment.
What's my experience with pricing, setup cost, and licensing?
Kaspersky offers a very budget-friendly licensing model that is a complete package and is suitable for small, medium or enterprise organizations. McAfee, for example, has a much more costly license.
Which other solutions did I evaluate?
I've looked at other solutions including McAfee and most offer the same level of endpoint protection. Kaspersky provides additional features that other products don't have.
What other advice do I have?
I'm very satisfied with this product overall and I rate it 10 out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Information Security and Support Coordinator at St Marche
Provides reports and helps us with our servers
Pros and Cons
- "The most valuable features are the reports."
- "We would like to have better strategic information."
What is our primary use case?
We primarily use this solution for users, servers, and services that we have implemented in our company.
What is most valuable?
The most valuable features are the reports.
What needs improvement?
There are no issues with this solution. However, we would like to have better strategic information. We currently have tactical, and it's hard to make strategic decisions based on what it delivers.
In addition, we have about 600 users using this solution.
For how long have I used the solution?
We have been using this solution for over four years. It is deployed on-premises.
How are customer service and support?
I rate the technical support a six out of ten because the support depends on the type of contract we have. We have a special contract, so we just need to submit a case and get a response within 24 hours.
What's my experience with pricing, setup cost, and licensing?
Our licensing costs are annual.
What other advice do I have?
I rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Updated: March 2025
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
Microsoft Defender for Endpoint
SentinelOne Singularity Complete
IBM Security QRadar
Intercept X Endpoint
Check Point Harmony Endpoint
Bitdefender GravityZone EDR
Trellix Endpoint Security (ENS)
Trellix Endpoint Detection and Response (EDR)
Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?
- What are the best on-premise Endpoint Security solutions for a Tech Services company with 10,000 employees?
- Which is better for Endpoint Security: EDR or XDR solutions?