Try our new research platform with insights from 80,000+ expert users

Carbon Black Managed Detection and Response vs Intercept X Endpoint comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 3, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Carbon Black Managed Detect...
Ranking in Managed Detection and Response (MDR)
34th
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
4
Ranking in other categories
No ranking in other categories
Intercept X Endpoint
Ranking in Managed Detection and Response (MDR)
7th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
106
Ranking in other categories
Endpoint Protection Platform (EPP) (10th), Endpoint Detection and Response (EDR) (11th), ZTNA (8th), Extended Detection and Response (XDR) (11th), Ransomware Protection (3rd)
 

Mindshare comparison

As of July 2025, in the Managed Detection and Response (MDR) category, the mindshare of Carbon Black Managed Detection and Response is 0.7%, down from 1.0% compared to the previous year. The mindshare of Intercept X Endpoint is 1.1%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Detection and Response (MDR)
 

Featured Reviews

Dejan Zecevic - PeerSpot reviewer
Easy to install, runs smoothly, and offers good performance
Carbon Black was sold to Broadcom, and VMware basically was the owner of the Carbon Black. Now Broadcom is the owner of VMware. As the solution has changed hands, I expect some changes in licensing and in support. It remains to be seen if that will be good or bad.
Suwandhi Suraweera - PeerSpot reviewer
Offers advanced filtering features and benefits from improved licensing and performance
There is a licensing issue with Intercept X Endpoint. Their licenses are user-based. Most of our customers use per device licenses, and they need per device licenses because they use one PC for multiple accounts. This creates a problem. There was one customer who complained about the slowness of PCs using Intercept X Endpoint. They use minor performance PCs, which causes their PCs to become slow.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The greatest value of MDR involves the tests, reporting and alerts, so that we may respond immediately."
"The installation process is quick and easy."
"The valuable features are threat hunting, threat intelligence feeds, and it culls all the activities of the endpoint. Additionally, the ML and AI engines are really good."
"Carbon Black provides an overview of all our assets and their status."
"It is not just a simple virus scanning product. It handles more advanced needs."
"The most valuable feature of the solution is that it is less hash-based than competitors."
"It provides a feature for scanning and analyzing endpoints, which is a value-add for our infrastructure. With the advancements in the Advanced Persistent Threats (APTs), Sophos Intercept X analyzes an APT and the behavior of the endpoints. It then gives us a detailed dashboard with more information about the endpoints and their security and risk level. While deploying Sophos Intercept X, we identified a lot of vulnerability and risky endpoints that our previous solution didn't cover, which proved that this solution is the best."
"It is easy to change the size of its capabilities, i.e. to expand processes or scale the size of users."
"Intercept X Endpoint is the only endpoint security product I know that provides content filtering and application controls."
"The key factor that attracted me to Sophos Intercept X was the multi-platform. I have multiple clients that have mixed environments of Mac and Windows. I am able to deliver a standard solution, regardless of the platform."
"The most valuable features are the range and restriction."
"The pricing is fair. It's not too costly for our small organization."
 

Cons

"As the solution has changed hands, I expect some changes in licensing and in support. It remains to be seen if that will be good or bad."
"Carbon Black's support could be better."
"In the future, it would be great if they could provide endpoint management and the ADR solution together in this package."
"The Data Loss Prevention module can be better. It should also have threat hunting capabilities."
"The EDR could be improved, and perhaps the User Interface."
"To be a perfect product, the price would have to be a bit better."
"There is a licensing issue with Intercept X Endpoint; these licenses are user-based, and most of our customers require per-device licenses because they use one PC for multiple accounts, which presents a problem."
"Sophos Intercept X could improve on its setup process. They could make it easier to have a baseline set up for the system, or at least provide more understanding of what the baseline is when you first install it. This could be a matter of lack of training on my part, but it's difficult to receive training on solutions that are not Cisco. Cisco is the only vendor with classes or courses."
"The majority of our systems are MacBooks and their solution release cycle is slow to endorsing or support the MacBook's latest OS or hardware platform. For example, when Sophos macOS Big Sur version 11 was released, it took them a while to support this version of OS. A similar situation occurred when the MacBook M1 hardware CPU was released. They have not fully supported the native M1 CPU to this day. They need to speed up the solutions release cycle."
"It would be better if it can automatically generate a report for each and every user so that the users get to know the things that shouldn't be accessed from their PCs. It can have information about malicious and non-malicious sites so users are aware of them, and they don't access malicious websites. Such reports can be generated at the end of the day. We should also be able to get through to their support team quickly. Currently, it takes more than half an hour to get through to a technical person."
"In my opinion, there have been significant developments in the product. In my opinion, I don’t have any suggestions as of now, however I can suggest a cost deduction which will be beneficial for all the parties. It will also relieve our budget and benefit our team."
 

Pricing and Cost Advice

"The price of this solution is inexpensive compare with others. The company went out of its way to provide us with a favorable discount. However, there is room for improving the current licensing model and the price of some of the fees. The model is complex and could be streamlined."
"The price of this product should be reduced because it is a little high."
"Licensing is based on the number of users. They give a discount for editors who are considered as important members. From what I know, Sophos products are not expensive. If you have a license extension, you just need to contact the editor or partner to change the mode of licensing or extend the license to cover more people."
"The solution requires an annual subscription."
"It was fairly and reasonably priced."
"We renew the license for one year at $10,000."
"We are happy with the pricing across all Sophos products."
"The solution’s pricing is high."
"There is a license required to use this solution."
report
Use our free recommendation engine to learn which Managed Detection and Response (MDR) solutions are best for your needs.
860,168 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
11%
Comms Service Provider
10%
Manufacturing Company
6%
Computer Software Company
18%
Manufacturing Company
7%
Financial Services Firm
6%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Ask a question
Earn 20 points
How does Crodwstrike Falcon compare with Sophos Intercept X?
I like that Crowdstrike Falcon allows me to easily correlate data between my firewalls. Its detection and machine learning are very valuable features. Crowdstrike Falcon also successfully prevents ...
What is your experience regarding pricing and costs for Sophos Intercept X?
I would describe it as economical, but not much cheaper than other solutions.
 

Also Known As

Carbon Black Cloud Managed Detection Deliver
Sophos Intercept X
 

Overview

 

Sample Customers

Coincheck, Mednax, Charles River, Chick-fil-A, Netflix, Domino's Pizza
Flexible Systems
Find out what your peers are saying about Carbon Black Managed Detection and Response vs. Intercept X Endpoint and other solutions. Updated: June 2025.
860,168 professionals have used our research since 2012.