All our servers and Windows machines across 15 sites have Symantec Endpoint Security, which we use for malware prevention, antivirus, intrusion prevention, Windows Firewall management, etc. The whole suite is used on Windows infrastructure.
We have other layers of security outside the Symantec solution; we also use the full Meraki security suite for malware and intrusion prevention and a firewall on each side. We use Darktrace too, so Symantec Endpoint Security is one of the components we use to secure our environment.
We don't allow remote connections, such as VPN access, from IP addresses outside Ireland and the UK. Even if we have Cisco VPN with Duo and it was compromised, hackers from China, Russia, the USA, Brazil, etc., would not be able to get in that way. The same goes for any of our mobile or web applications exposed to the internet, and we have Cisco AMP on each of our sites. Our emails are through the cloud, so there are many elements to our security landscape. Symantec isn't a one-stop shop, but it caters to the fundamentals of securing a Windows PC: firewall management, IPS, malware, and app blocking.
Additionally, we block PowerShell on all our machines because 70-80% of the hacks out there use it.
Since I joined the company and implemented Symantec and other products, we've had stability on our network and no security incidents or breaches.
We haven't had a security breach in four years, which is significant. There are only so many companies out there who can say that.