What is our primary use case?
People need a basic anti-malware solution, so they use Kaspersky Endpoint Detection and Response Optimum.
What is most valuable?
The encryption feature that allows you complete control of your device is what I found most valuable in Kaspersky Endpoint Detection and Response Optimum.
The encryption feature in most antivirus or IDS solutions doesn't come with complete device control. Kaspersky Endpoint Detection and Response Optimum allows you to encrypt the device while protecting the endpoint. You can select the vendors, too.
What needs improvement?
I'm a person who wants everything to communicate or integrate into a single pane of glass. This is a challenge with Kaspersky Endpoint Detection and Response Optimum because there's no basic segmentation. I propose implementing a firewall to start basic segmentation, and I like to integrate everything with the firewall. For example, I like my endpoint solution to talk with my firewall directly to exchange threat feeds and possible malware information.
There needs to be a unified conversation between all of my products, such as the base products, next-generation firewall, endpoint protection, my net, and the analyzers, which all need to be in a single spot to talk to each other. I need a product that manages all the different products I'm using.
I've been using Fortinet for a long time, and I mainly like it because I can manage FortiGate, FortiSwitch, and EMS in FortiManager in a single pane of glass. I can even automate and script. I can do anything. You can't do this in Cisco and Kaspersky, though I know Cisco is trying to change that reality now. Cisco is trying to do it the way Fortinet does it. I'm more of a Forcepoint and Fortinet guy.
What I want to be added to Kaspersky Endpoint Detection and Response Optimum is a single pane of glass management, where everything is integrated into a single pane of glass.
I also want Kaspersky to have a firewall product because it only has EDR and antivirus solutions currently.
For how long have I used the solution?
Companies I've worked for used and stuck to Kaspersky Endpoint Detection and Response Optimum for a long time, particularly for five or six years. However, it's not my personal preference.
How are customer service and support?
I once spoke with the Kaspersky Endpoint Detection and Response Optimum technical support team while trying to keep the solution in the large bank I used to work for in Angola. Still, the support, including the feedback, wasn't very good then, so I went with Fortinet EMS.
Overall, compared to Fortinet, which had terrible support, the Kaspersky support team is excellent, so I'm rating it as nine.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
Here in Angola, we have a lot of vendors offering Kaspersky Endpoint Detection and Response Optimum, and the solution is easy to purchase. The most solid security products here fall under Kaspersky, so we went with Kaspersky Endpoint Detection and Response Optimum, even though we have no local Kaspersky support in Angola.
How was the initial setup?
There's no difficulty in setting up Kaspersky Endpoint Detection and Response Optimum. It's an easy setup.
I didn't watch how the solution was set up in the enterprise I'm in currently, but deployment time usually depends on the company size. The previous company I was in had three thousand users, so it took at least five to six days to fully deploy Kaspersky Endpoint Detection and Response Optimum.
Total deployment time also depends on your network topology, but for one company, it took three to five days because of some offline stations. Still, the solution was straightforward to deploy, and I have no complaints.
What's my experience with pricing, setup cost, and licensing?
Kaspersky Endpoint Detection and Response Optimum is more affordable than the endpoint security product of Fortinet. Whether it's worth the money depends on your security strategy.
What other advice do I have?
Whether you should use Kaspersky Endpoint Detection and Response Optimum depends on your security strategy. Suppose I were to base my advice on my security strategy. In that case, I'd tell you not to use Kaspersky Endpoint Detection and Response Optimum because I don't want to manage a standalone product.
Suppose Kaspersky Endpoint Detection and Response Optimum detected a threat that your next-generation firewall missed or is unaware of. In that case, the two products can't correlate nor talk to each other to exchange and compare findings. The result would be that you won't be able to determine or decide whether that's a real threat or a false positive; in that case, I would drop the product. I want my security baseline to be products that can speak the same language and interact with each other, which I have on Fortinet.
Kaspersky Endpoint Detection and Response Optimum is a good product, so I'm rating it eight out of ten. My security strategy doesn't match its vision, but I find it a good solution. Kaspersky Endpoint Detection and Response Optimum has its issues, but I want to be fair, so overall, it's an eight out of ten for me.
My current company is a Kaspersky customer.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.