We primarily use the solution for endpoint protection.
Good blocking capabilities and patching but needs better support
Pros and Cons
- "The performance for Kaspersky is good, and it's not impacted our client performance."
- "There are some cases that take three days to deal with. It's too long."
What is our primary use case?
What is most valuable?
In the software that I use at Kaspersky, we have some options that we made to our client LiDAR for the block patching, and we can close the high chain.
The endpoint protection can update the patching from this server directly to the client, and every employee.
The performance for Kaspersky is good, and it's not impacted our client performance.
It offers good blocking capabilities.
The upper patching is excellent.
What needs improvement?
We have some problems with LiDAR. When we do the install, or reinstall the server console, or server endpoint protection, I don't know why we need to reinstall it.
Even though we installed, or did a new install for the server endpoint protection features, we use some small PDO or some patching to upgrade it in the employee protection clients if that's in.
I need a local expert. I'm looking for more experts to be able to apply it to certain solutions that we understand already. In order to meet our requirements, we need more experts.
There are some cases that take three days to deal with. It's too long.
For how long have I used the solution?
I've used the solution for as long as I've been at the company - about one year.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
February 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
What do I think about the stability of the solution?
While the client is stable, for the console management, we have some problems with LiDAR. Sometimes, we installed it and had a problem and we need to reinstall it. In the last hour, the client can not do the configuration yet we need to add clients into the platform.
What do I think about the scalability of the solution?
We don't find it to have enough space.
We have below 100 people on the solution.
How are customer service and support?
Technical support is not too bad. I can say that it is in the middle of the road. They can be slow to respond.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is very straightforward.
What about the implementation team?
We used either an integrator or consultant. We had help from a third party and didn't handle the entire implementation ourselves.
What's my experience with pricing, setup cost, and licensing?
The pricing is good. I'd rate it four out of five in terms of affordability.
Which other solutions did I evaluate?
We did compare Kaspersky EDR with other software vendors.
What other advice do I have?
I'm a customer and end-user.
I would rate the solution a seven out of ten. If we had more local expertise and better support, it would be better.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Network Administrator at Chase Up
Impressive firewall options, great filtering and blocking
Pros and Cons
- "The solution does a good job of filtering and blocking unusual traffic."
- "The system can be heavy, slowing down performance."
What is our primary use case?
We use EDR on our Windows servers, desktops and laptops. Our use case is for security, file scanning and to prevent data loss.
What is most valuable?
The firewall options are impressive, the solution does a good job of filtering and blocking unusual traffic. It's very easy to use, easy to deploy, and easy to operate.
What needs improvement?
No product is perfect and I think the stability could be improved a little. I'd also like to see performance improvement as the system can be heavy, slowing down our computers, and things don't always work smoothly. Performance could be improved.
For how long have I used the solution?
We've had a license with Kaspersky for six years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable. We have around 700 users in the company.
How was the initial setup?
EDR is deployed from the server, it's an easy and manageable process. It's a matter of the system administrator running the profile from the server.
What's my experience with pricing, setup cost, and licensing?
We have a three-year license. It was initially very reasonably priced but we are based in Pakistan and we are not doing well against the dollar so the price has increased significantly.
What other advice do I have?
I've recommended this solution to many colleagues. I think Kaspersky is a reliable and stable solution.
I rate this solution nine out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
February 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
A stable and scalable tool with a complex setup phase
Pros and Cons
- "It is a scalable solution...It is a stable solution."
- "I am not happy with Kaspersky's support since basic support is very cool unless you pay for some advanced support, in which you get better responses and feedback from Kaspersky's team."
What is our primary use case?
We use the solution for the new threat landscape since personal endpoints are not enough for protection. So customers are looking for, you know, endpoint detection and response. So they can centrally manage all endpoints and communicate data across every endpoint that they have on the network. So we have been using, like, the normal endpoint detection, endpoint protection. And after that, we deployed EDR and Azure for a few customers, which are kind of separate products. Actually, the experience was not that great in terms of the approach to EDR for Kaspersky because it wasn't one product. It's two different products that are working together. They kind of integrated, like, two products integrating with each other. But the performance and the administration become a headache for the administrators.
What needs improvement?
In terms of the protection itself, Kaspersky has been doing a great job. It's just the approach, the technology itself, performance, and impact on the systems it's protecting, that are more of a concern. The concern is significant, especially when compared to alternatives that are more lightweight and available on a cloud platform. So, the aforementioned areas should be considered for improvement.
For how long have I used the solution?
I have been using Kaspersky Endpoint Detection and Response Expert for two years. My company is a reseller of Kaspersky. We have been working with Kaspersky for almost ten years now.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
It is a scalable solution. I recommend the solution for small to medium businesses since its deployment and management are complex and bigger enterprises could go for cloud-based or move towards the next-gen solutions rather than Kaspersky.
How are customer service and support?
I am not happy with Kaspersky's support since basic support is very cool unless you pay for some advanced support, in which you get better responses and feedback from Kaspersky's team. In my opinion, right from the start, they should offer good support.
How was the initial setup?
The solution's initial setup process was complex when considering that it's just to get in the integration right from the start .So, there have been some issues where we had to contact Kaspersky and have the engineers work it out for us. So, it could have been a much simpler way to do it. The deployment process took two weeks with the help of three to four engineers who normally handle such stuff.
What about the implementation team?
Kaspersky helped us with the implementation part.
What's my experience with pricing, setup cost, and licensing?
Kaspersky's pricing is very competitive when it comes to comparison with the other solutions.
What other advice do I have?
Overall, I rate the solution a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Security engineer at ARCEP Togo
Fast with good performance but needs more integrations
Pros and Cons
- "The pricing is decent."
- "We'd like more integrations to be available in the future."
What is our primary use case?
We primarily use the solution for security. We use it between businesses to protect endpoints.
What is most valuable?
The solution is very fast.
The EDR is quite helpful.
It is stable. The performance is good.
Overall, it works very well.
It's good for blocking threats.
Technical support is excellent.
It is scalable.
The pricing is decent.
What needs improvement?
When I have the protection of my terminal or device, I don't have a problem. I haven't had any issues.
We'd like more integrations to be available in the future.
For how long have I used the solution?
We've been using the solution for two months.
What do I think about the stability of the solution?
The stability and performance are very good. There are no bugs or glitches, and it doesn't crash or freeze. It is very stable.
What do I think about the scalability of the solution?
The solution is quite stable. We have the advanced version, and there is a possibility to upgrade as necessary.
We have close to 100 people using the solution. We do not have plans to increase usage. We are a small enterprise. We'd only increase the usage if the number of resources increases.
How are customer service and support?
We have used technical support. They are very reactive and experienced.
Which solution did I use previously and why did I switch?
We did use any other EDR solutions. We also have experience with Norton, for example. The experience was not positive.
How was the initial setup?
My understanding is that the solution is easy to set up. However, I did not participate in the setup.
It took two days to deploy the solution.
In terms of planning, we are looking to fully deploy it in the next two months.
We have about ten technical people that can handle deployment and maintenance tasks. We had two main people managing it, and others handled the systems and network.
What about the implementation team?
We did not need a consultant. We had an integrator handling the setup, and it was easy to deploy it. Typically, it can be handled by a technical team.
What's my experience with pricing, setup cost, and licensing?
We have a license that covers 100 people. We have a license that we pay yearly. We generally pay for two years at a time.
The licenses are affordable.
What other advice do I have?
I'm an end-user. The solution is new to me. I'm not sure of the version number we are using.
I'd recommend the solution to others. We plan to integrate it with more things and help control more devices. We'll integrate it with our network assessment devices as well.
I'd rate the solution seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Management Trainee Supply Chain Excellence at fatima group
Reliable and straightforward to set up but needs to cover more devices
Pros and Cons
- "It is easy to manage."
- "If it covered more products, it would improve the XDR."
What is our primary use case?
We are using it to protect our user end. For the server-side, we are using Trend Micro.
What is most valuable?
It is easy to manage.
The initial setup is simple.
It is stable.
We have local support available to us.
What needs improvement?
I could be covering more devices, for example, the XDR. If it covered more products, it would improve the XDR.
For how long have I used the solution?
I've been using the solution for three to four years.
What do I think about the stability of the solution?
It is stable and reliable.
We are not facing any major issues regarding the protection of the endpoints. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
Around 2,000 people use the solution. We do not plan to increase usage.
How are customer service and support?
We have a local company here in Pakistan that we get support from.
Which solution did I use previously and why did I switch?
We also use Trend Micro.
How was the initial setup?
The initial implementation process is easy and very straightforward. It's not overly complex. It only takes one to two days to handle the complete deployment.
What's my experience with pricing, setup cost, and licensing?
I'm not sure about how the licensing works. It may be per user. I'm not certain.
What other advice do I have?
I'm not sure which version of the solution we're using. I don't have that information.
I'm not directly using this Kaspersky solution. The other team is managing the solution, and that's why I don't have much personal experience. I do not manage it directly.
I'd recommend the solution to other users and companies.
I'd rate the product seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
General Manager IT at Chase Up
Secure port capabilities, high level threat detection technology, and useful support tools
Pros and Cons
- "The most valuable features of Kaspersky Endpoint Detection and Response are the threat detection technologies, and activity monitoring and support tools. Additionally, the port and USB security, and antivirus are effective."
- "The installation process could be more streamlined."
What is our primary use case?
We are using Kaspersky Endpoint Detection and Response for protecting our clients and our systems from digital threats. For example, our operating systems.
What is most valuable?
The most valuable features of Kaspersky Endpoint Detection and Response are the threat detection technologies, and activity monitoring and support tools. Additionally, the port and USB security, and antivirus are effective.
What needs improvement?
The installation process could be more streamlined.
For how long have I used the solution?
I have been using Kaspersky Endpoint Detection and Response for approximately four years.
What do I think about the stability of the solution?
Kaspersky Endpoint Detection and Response is stable.
What do I think about the scalability of the solution?
The solution is scalable. We are able to upgrade modules and we have not had any problems.
How was the initial setup?
The initial setup of Kaspersky Endpoint Detection and Response is simple but the time of installation could be quicker. We set up our Kaspersky Endpoint Detection and Response server and our clients installed it on their end.
What's my experience with pricing, setup cost, and licensing?
We have been satisfied with the license of the solution.
What other advice do I have?
I rate Kaspersky Endpoint Detection and Response a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Senior Manager Cyber Security Services & Solutions at Trillium
Their products are generally effective in guessing attacks or thwarting different types of unknown malicious techniques
Pros and Cons
- "The most valuable feature of Kaspersky EDR is its simplicity. The console is easy to use and not very complex."
- "Kaspersky EDR currently has limited OS support. They only focus on Windows Server and Windows. Kaspersky recently released a Linux version, but it's rudimentary. It does not have any advanced features available on Windows platforms. They should increase their footprint on the Linux side and support other operating systems on the market, like MacOS."
What is our primary use case?
Kaspersky EDR is a targeted solution that collects telemetry and forensics data as well as end-to-end IoCs. It does not use any signatures.
What is most valuable?
The most valuable feature of Kaspersky EDR is its simplicity. The console is easy to use and not very complex.
What needs improvement?
Kaspersky EDR currently has limited OS support. They only focus on Windows Server and Windows. Kaspersky recently released a Linux version, but it's rudimentary. It does not have any advanced features available on Windows platforms. They should increase their footprint on the Linux side and support other operating systems on the market, like MacOS.
For how long have I used the solution?
I have been using Kaspersky EDR for about four or five years.
What do I think about the stability of the solution?
Performance is one area where Kaspersky has room for improvement. The solution must be fast when it's acquiring telemetry data because the attack surface is unforgiving. The solution must be extremely fast with a high response time.
What do I think about the scalability of the solution?
Kaspersky is scalable, but it lacks built-in high availability and disaster recovery. Currently, you need a third-party solution to provide high availability.
How are customer service and support?
I rate Kaspersky support eight out of 10. We have never had any serious issues with their support. They take some time to respond, but they always provide the best solution.
How would you rate customer service and support?
Positive
How was the initial setup?
Setting up Kaspersky isn't straightforward, but their guide is good. The documentation is fairly well-defined, so we just need to follow that. At the same time, it isn't easy because sometimes there are errors. I rate Kaspersky EDR six out of 10 for ease of installation.
What's my experience with pricing, setup cost, and licensing?
The license is competitive. Pricing is another Kaspersky advantage.
Which other solutions did I evaluate?
There is a lot of competition in the EDR category. As resellers in the industry for so long, we're aware of the various products to choose from. Kaspersky's strong point is detection. They have a huge threat intelligence and R&D team. Their threat detection is among the industry's best. Their products are generally effective in guessing attacks or detecting different types of unknown malicious techniques. They also have a great sandbox with their EDR solution.
Their weakness is performance, but detection is one of the best in the industry, if not the best. Kaspersky is always at the top of any third-party analysis of EDR products.
What other advice do I have?
I rate Kaspersky Endpoint Detection and Response eight out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator / Reseller
Endpoint Specialist at a computer software company with 201-500 employees
Great machine learning and real-time protection with useful vulnerability reports
Pros and Cons
- "Has great behavior detection and a very good firmware scanner."
- "Device control is lacking in EDR."
What is our primary use case?
We are Kaspersky partners and I'm an endpoint specialist.
What is most valuable?
The major features I really like are behavior detection and the firmware scanner. The solution also has great threat prevention. Machine learning is also very good as is the real-time protection. The best thing is you can also get a vulnerability report. There are a couple of other features EDR has that are not available in other solutions and that includes the system-level device for controlling the UI which enables control of applications at the location level. There is also the IoC scanner that Symantec doesn't have. Finally, the threat intelligence portal gives me global visibility into threats and their interconnections which is great.
What needs improvement?
The one thing Symantec has that EDR lacks is device control. I think Kaspersky has to increase its features when it comes to antivirus control. I'd like to see an increase in the 30-day retention period.
For how long have I used the solution?
I've been using this particular solution for 3 years but have used other Kaspersky solutions for over 15 years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The scalability is good. Scaling is a matter of creating a new server and replicating all the data. It's not a big issue to do the migration or to upgrade hardware. We currently have around 20,000 users with that number increasing every day.
How are customer service and support?
The technical support is really bad. They have three models of support and if you have the regular level of support, it can take days to get a response. It forces you to pay extra to get premium support, and then you hear from them within two hours.
How was the initial setup?
The initial setup is straightforward. If you're deploying for customers then the deployment time will depend on the size of the organization and the level of preparation that has been done in advance. If you have 10,000 users, deployment will take about a day if everything is ready.
What's my experience with pricing, setup cost, and licensing?
Licensing costs are very reasonable. This is not an expensive solution.
What other advice do I have?
There are some features lacking in this solution and if I compare it with CrowdStrike or Microsoft, they are both better solutions than Kaspersky. I rate this solution eight out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Updated: February 2025
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
Microsoft Defender for Endpoint
SentinelOne Singularity Complete
IBM Security QRadar
Intercept X Endpoint
Check Point Harmony Endpoint
Trellix Endpoint Security (ENS)
Bitdefender GravityZone EDR
Trellix Endpoint Detection and Response (EDR)
Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?
- What are the best on-premise Endpoint Security solutions for a Tech Services company with 10,000 employees?
- Which is better for Endpoint Security: EDR or XDR solutions?