We are Kaspersky partners and I'm an endpoint specialist.
Endpoint Specialist at a computer software company with 201-500 employees
Great machine learning and real-time protection with useful vulnerability reports
Pros and Cons
- "Has great behavior detection and a very good firmware scanner."
- "Device control is lacking in EDR."
What is our primary use case?
What is most valuable?
The major features I really like are behavior detection and the firmware scanner. The solution also has great threat prevention. Machine learning is also very good as is the real-time protection. The best thing is you can also get a vulnerability report. There are a couple of other features EDR has that are not available in other solutions and that includes the system-level device for controlling the UI which enables control of applications at the location level. There is also the IoC scanner that Symantec doesn't have. Finally, the threat intelligence portal gives me global visibility into threats and their interconnections which is great.
What needs improvement?
The one thing Symantec has that EDR lacks is device control. I think Kaspersky has to increase its features when it comes to antivirus control. I'd like to see an increase in the 30-day retention period.
For how long have I used the solution?
I've been using this particular solution for 3 years but have used other Kaspersky solutions for over 15 years.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
October 2024
Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: October 2024.
814,649 professionals have used our research since 2012.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The scalability is good. Scaling is a matter of creating a new server and replicating all the data. It's not a big issue to do the migration or to upgrade hardware. We currently have around 20,000 users with that number increasing every day.
How are customer service and support?
The technical support is really bad. They have three models of support and if you have the regular level of support, it can take days to get a response. It forces you to pay extra to get premium support, and then you hear from them within two hours.
How was the initial setup?
The initial setup is straightforward. If you're deploying for customers then the deployment time will depend on the size of the organization and the level of preparation that has been done in advance. If you have 10,000 users, deployment will take about a day if everything is ready.
What's my experience with pricing, setup cost, and licensing?
Licensing costs are very reasonable. This is not an expensive solution.
What other advice do I have?
There are some features lacking in this solution and if I compare it with CrowdStrike or Microsoft, they are both better solutions than Kaspersky. I rate this solution eight out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
General Manager at Ekinoks Software
Reliable, easy to use, and can be scaled up
Pros and Cons
- "The product is very easy to use."
- "The solution is expensive."
What is our primary use case?
We primarily use the product as a security solution. We use it to protect the company's inner resources to ensure secure access to endpoints by only authorized users. We make sure only the right person can access the right resource.
What is most valuable?
The product is very easy to use.
The solution is stable and reliable.
It can scale well.
What needs improvement?
The solution is expensive. It would be ideal if they could lower the costs.
For how long have I used the solution?
I've been using the solution for two years.
What do I think about the stability of the solution?
This is a stable solution. There aren't bugs or glitches. It doesn't crash or freeze. It is reliable.
What do I think about the scalability of the solution?
This is a scalable product. We can expand it as needed.
We have around 100 users on the product.
As we increase personnel, we will increase usage.
How are customer service and support?
Typically, our technical teams deal with issues. I've never dealt with technical support from Kaspersky directly.
Which solution did I use previously and why did I switch?
We did not use a different solution in the past.
How was the initial setup?
The initial setup was handled by our technical team. I was not a part of the initial implementation process.
What about the implementation team?
We had an internal technical team handle the setup. I don't have many details about the process.
What's my experience with pricing, setup cost, and licensing?
We pay a yearly fee for the licensing of the product. We find it to be expensive, however, we need to use it as we need the security it provides.
What other advice do I have?
We are using the updated version of the solution, however, I'm not sure which version number we are on.
I'd recommend the solution to other users.
I would rate the product eight out of ten. We are happy with its capabilities in general.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
October 2024
Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: October 2024.
814,649 professionals have used our research since 2012.
System Administrator at Finlays
Highly effective, straightforward installation, and support available
Pros and Cons
- "Kaspersky Endpoint Detection and Response is an effective protection solution."
- "Kaspersky Endpoint Detection and Response is very heavy on the system resources. It uses a lot of memory and the system can become slow."
What is our primary use case?
We use Kaspersky Endpoint Detection and Response for the protection of our system from the internet, firewall, malware, and viruses.
What is most valuable?
Kaspersky Endpoint Detection and Response is an effective protection solution.
What needs improvement?
Kaspersky Endpoint Detection and Response is very heavy on the system resources. It uses a lot of memory and the system can become slow.
For how long have I used the solution?
I have been using Kaspersky Endpoint Detection and Response for approximately two years.
What do I think about the stability of the solution?
The stability of Kaspersky Endpoint Detection and Response is good.
What do I think about the scalability of the solution?
Kaspersky Endpoint Detection and Response is a scalable solution.
We do not plan to increase usage.
How are customer service and support?
I have not used technical support. The solution is simple to use, they provide the tools that we need. However, the support is readily available if I need them.
How was the initial setup?
The installation of Kaspersky Endpoint Detection and Response was simple and fast. It only takes approximately seven minutes.
What about the implementation team?
I did the implementation myself.
What other advice do I have?
I would recommend this solution to others.
I rate Kaspersky Endpoint Detection and Response a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Manager Cyber Security Services & Solutions at Trillium
Their products are generally effective in guessing attacks or thwarting different types of unknown malicious techniques
Pros and Cons
- "The most valuable feature of Kaspersky EDR is its simplicity. The console is easy to use and not very complex."
- "Kaspersky EDR currently has limited OS support. They only focus on Windows Server and Windows. Kaspersky recently released a Linux version, but it's rudimentary. It does not have any advanced features available on Windows platforms. They should increase their footprint on the Linux side and support other operating systems on the market, like MacOS."
What is our primary use case?
Kaspersky EDR is a targeted solution that collects telemetry and forensics data as well as end-to-end IoCs. It does not use any signatures.
What is most valuable?
The most valuable feature of Kaspersky EDR is its simplicity. The console is easy to use and not very complex.
What needs improvement?
Kaspersky EDR currently has limited OS support. They only focus on Windows Server and Windows. Kaspersky recently released a Linux version, but it's rudimentary. It does not have any advanced features available on Windows platforms. They should increase their footprint on the Linux side and support other operating systems on the market, like MacOS.
For how long have I used the solution?
I have been using Kaspersky EDR for about four or five years.
What do I think about the stability of the solution?
Performance is one area where Kaspersky has room for improvement. The solution must be fast when it's acquiring telemetry data because the attack surface is unforgiving. The solution must be extremely fast with a high response time.
What do I think about the scalability of the solution?
Kaspersky is scalable, but it lacks built-in high availability and disaster recovery. Currently, you need a third-party solution to provide high availability.
How are customer service and support?
I rate Kaspersky support eight out of 10. We have never had any serious issues with their support. They take some time to respond, but they always provide the best solution.
How would you rate customer service and support?
Positive
How was the initial setup?
Setting up Kaspersky isn't straightforward, but their guide is good. The documentation is fairly well-defined, so we just need to follow that. At the same time, it isn't easy because sometimes there are errors. I rate Kaspersky EDR six out of 10 for ease of installation.
What's my experience with pricing, setup cost, and licensing?
The license is competitive. Pricing is another Kaspersky advantage.
Which other solutions did I evaluate?
There is a lot of competition in the EDR category. As resellers in the industry for so long, we're aware of the various products to choose from. Kaspersky's strong point is detection. They have a huge threat intelligence and R&D team. Their threat detection is among the industry's best. Their products are generally effective in guessing attacks or detecting different types of unknown malicious techniques. They also have a great sandbox with their EDR solution.
Their weakness is performance, but detection is one of the best in the industry, if not the best. Kaspersky is always at the top of any third-party analysis of EDR products.
What other advice do I have?
I rate Kaspersky Endpoint Detection and Response eight out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator / Reseller
Secure, reliable, and helpful support
Pros and Cons
- "The most valuable feature of Kaspersky Endpoint Detection and Response is security. It has better security than other solutions, such as Symantec."
- "Kaspersky Endpoint Detection and Response could improve some issues and add new security files."
What is most valuable?
The most valuable feature of Kaspersky Endpoint Detection and Response is security. It has better security than other solutions, such as Symantec.
What needs improvement?
Kaspersky Endpoint Detection and Response could improve some issues and add new security files.
For how long have I used the solution?
I have been using Kaspersky Endpoint Detection and Response for approximately two years.
What do I think about the stability of the solution?
The stability of Kaspersky Endpoint Detection and Response is good.
What do I think about the scalability of the solution?
Kaspersky Endpoint Detection and Response is scalable.
We have approximately 220 people using this solution in my company.
How are customer service and support?
Kaspersky Endpoint Detection and Response has good support.
Which solution did I use previously and why did I switch?
I have used previously used Symantec. However, Kaspersky Endpoint Detection and Response has better usability than Symantec. We choose Kaspersky Endpoint Detection and Response because it fits the needs of our company more.
How was the initial setup?
The implementation of Kaspersky Endpoint Detection and Response was simple. It took approximately 15 days to complete across the company.
What was our ROI?
We have not seen a return on investment at this point.
What's my experience with pricing, setup cost, and licensing?
The price of Kaspersky Endpoint Detection and Response is in the middle range compared to competitors. The pricing model is based on the users using the solutions. The cost for us is approximately 2200 Algerian dinars. The price of the solution could be reduced.
What other advice do I have?
I rate Kaspersky Endpoint Detection and Response an eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
ICT Officer at Intelligent Skincareinc Inc.
Excellent basic protection from malware and viruses
Pros and Cons
- "EDR's most valuable feature is its basic protection from malware and viruses."
- "Kaspersky EDR lacks protection from recent ransomware."
What is our primary use case?
I mainly use Kaspersky EDR for BIOS protection.
What is most valuable?
EDR's most valuable feature is its basic protection from malware and viruses.
What needs improvement?
Kaspersky EDR lacks protection from recent ransomware. Because of this, we're looking into switching from EDR to another security solution.
For how long have I used the solution?
I've been using Kaspersky EDR for two to three years.
What do I think about the stability of the solution?
EDR is stable.
What do I think about the scalability of the solution?
EDR is scalable.
How was the initial setup?
The initial setup was easy - I would rate the ease as four out of five.
What's my experience with pricing, setup cost, and licensing?
The license for EDR costs about 1,000 pesos per user. I would rate the pricing as four out of five.
What other advice do I have?
I would rate Kaspersky EDR as eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Information Security Officer at a financial services firm with 51-200 employees
Helped us prevent ATM looting
Pros and Cons
- "My impression of the stability of this solution is good. We have not had any issues with stability."
- "I would like to integrate Kaspersky with my Log Collector SIEM. Right now that's not possible."
What is our primary use case?
We use Kaspersky for our cash machines, 200 of which we have around the country. We use it to control the USB ports so nobody can use them without authorization from the owner.
Currently, we implementing a new use case concerning our response when we get an alert.
What is most valuable?
In the past year, many banks have seen cases of ATM looting. We wanted to prevent that, which is why we implemented Kaspersky Endpoint Detection and Response. We are a bank and we haven't had any issues like the orders. Kaspersky helped us a lot. It helped up prevent unauthorized USB port usage.
What needs improvement?
I would like to integrate Kaspersky with my Log Collector SIEM. Right now that's not possible.
Kaspersky Endpoint Detection and Response could also introduce a way to make working in teams more accessible. At the same time, it would be interesting to see them explore artificial intelligence solutions.
For how long have I used the solution?
I have been using this solution for two years.
What do I think about the stability of the solution?
My impression of the stability of this solution is good. We have not had any issues with stability.
What do I think about the scalability of the solution?
We have not had any performance issues and our board really likes the solution. Our facility and technical support teams use this solution as they manage the cash machines.
How are customer service and technical support?
I think they are good and we haven't had any problems with them. We haven't had any critical issues that would have required us to call the US technical support of US; we have only been in touch with local technical support.
Which solution did I use previously and why did I switch?
We previously used Sophos, Crowdstrike, and Microsoft Defender. The most important reason we transitioned to Kaspersky is the agent that is installed in the end points on the cash machine. The Kaspersky agent is really soft. With the others, we noticed that their agents would stop, so that made a big difference.
What about the implementation team?
We used three or four people to deploy and maintain the solution.
What's my experience with pricing, setup cost, and licensing?
Our current monthly costs are $1,000.
What other advice do I have?
You have to be really informed about the process of using this tool before deploying. With our use case with the cash machines, for example, implementing the white list could have been really hard work for us if we had not had previous experience with it.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Scrum Master at Inalpie Enterprise
An easily scalable solution that provides very good security features
Pros and Cons
- "We particularly appreciate how scalable this solution is, as we often need to increase our end-user numbers."
- "The license prices for this solution are quite high."
What is our primary use case?
We mainly use this solution for end user data protection, and cloud security.
What is most valuable?
We particularly appreciate how scalable this solution is, as we often need to increase our end-user numbers.
What needs improvement?
The license prices for this solution are quite high.
For how long have I used the solution?
We have been using this solution for four years.
What do I think about the scalability of the solution?
We have found this solution to be easily and quickly scalable.
How are customer service and support?
The technical support for this solution are very quick to respond when we raise issues with them.
Which solution did I use previously and why did I switch?
We were using a different product previously, but switched to this solution because it has all of the features that we require.
How was the initial setup?
The initial setup for this product was very straightforward. However, deployment times will vary, depending on which client we are working with, and their particular requirements.
What other advice do I have?
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Updated: October 2024
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
Microsoft Defender for Endpoint
SentinelOne Singularity Complete
Cortex XDR by Palo Alto Networks
IBM Security QRadar
Intercept X Endpoint
Check Point Harmony Endpoint
Trellix Endpoint Security (ENS)
Bitdefender GravityZone EDR
Trellix Endpoint Detection and Response (EDR)
Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?
- What are the best on-premise Endpoint Security solutions for a Tech Services company with 10,000 employees?
- What is Mimikatz?