No more typing reviews! Try our Samantha, our new voice AI agent.

Forescout Platform vs Sophos Network Access Control comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in Network Access Control (NAC)
5th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
78
Ranking in other categories
IoT Security (4th), Endpoint Compliance (2nd), Extended Detection and Response (XDR) (19th)
Sophos Network Access Control
Ranking in Network Access Control (NAC)
7th
Average Rating
8.4
Reviews Sentiment
6.2
Number of Reviews
24
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Network Access Control (NAC) category, the mindshare of Forescout Platform is 9.7%, down from 13.1% compared to the previous year. The mindshare of Sophos Network Access Control is 2.5%, up from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Access Control (NAC) Mindshare Distribution
ProductMindshare (%)
Forescout Platform9.7%
Sophos Network Access Control2.5%
Other87.8%
Network Access Control (NAC)
 

Featured Reviews

AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.
HirenPatel2 - PeerSpot reviewer
Manager at rspl
Have faced delays in support despite strong multi-layer policy configuration
I have observed some disadvantages as we have experienced one particular problem. We were facing an issue of synchronization of the endpoint with our firewall with help on a cloud for heartbeat syncing. However, it was not syncing as per our requirement. The user has to connect our firewall with the help of VPN. We were supposed to assume a solution on a cloud, which has good synchronization on a cloud with Sophos Central. It will sync with our firewall as well with the help of Sophos Central. Endpoint and firewall synchronization is not as smooth as we are expecting from Sophos Network Access Control. We have to connect with VPN. We are expecting that if we have already installed an endpoint on our system and it is connected to the internet, then it must be synchronized on a cloud with Sophos Central. Through Sophos Central, it must connect with our firewall. If the endpoint is configured on Sophos Central and the firewall is also configured in Sophos Central, then there should be no need to connect to VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The visibility is the main benefit; we now know how many devices are connected, what the use for each device is, and what kind of devices we have in our environment."
"It has helped with improving our security posture in terms of controlling the access of rogue devices into our network through identification."
"The most valuable feature for us is the real-time alerting of newly connected devices, whether they are approved or unapproved devices on our network."
"The Forescout Platform's most valuable features include its agentless configuration, which allows for easy integration with switches, and its broad customizability of rules and conditions for policy configuration. By leveraging its Network Access Control capabilities, the tool controls network access, allowing administrators to enforce policies tailored to the organization's needs."
"It gives us a clear initial and secondary view of what's happening on our network to determine its health."
"Being able to sort on device types or devices with open ports is helpful when narrowing down assets of possible misconfigured devices that may be vulnerable on the network. We can take action on those devices based off of corporate policy."
"Within three or four days, we have complete visibility of your infrastructure on the network."
"We use the Forescout Platform for device visibility and control in our network. It's very helpful for tracking malicious or unusual activity. We use it to track which ports are open, which machines are running specific services, and to identify vulnerabilities. For example, there was a vulnerability related to SMB, and we could use the product to determine which machines inside our organization were allowing SMB traffic."
"The system right now covers all my needs and it's very comfortable to work with."
"Web protection, URL filtering, and application filtering are the most valuable features of Sophos Network Access Control."
"The solution offers very good visibility."
"There is really good visibility for the appliance."
"The wifi control is fantastic and makes it very easy to administer."
"The solution offers very good visibility."
"Sophos has helped us to save time and money and to better manage web activities. It has also helped us to reduce misuse of the network and restrict hacking attempts."
"There is really good visibility for the appliance."
 

Cons

"Battled with the use of SNMP v1 instead of v2c Direct web interface rather than installation of a client."
"We have found that the agent-based authentication, available within this solution could be improved."
"We only looked at it in terms of discovery modes and I think it's too expensive to use for that purpose alone."
"Better integration with third-party vendors is needed because as it is now, the list of third-party solutions that we can integrate and automate is quite limited."
"Initially, the implementation of the Forescout Platform took some time to figure out. The reason is we are a manufacturing unit and we have certain silos that are insulated areas where certain systems will not connect to the internet or to the LAN. Since there are many parts of it, we have to have an inclusive view of all those systems. It took a while for us to initially implement, but after a few months, everything worked well."
"Forescout Platform sometimes returns false positives, so there's some fine-tuning to be done there."
"The solution could always improve by adding more features to make it more robust."
"Custom integrations need to be better. I'd like to have the option, for example, to integrate the Forescout Platform with a customized application or any other software out there that I am using at the same time."
"Sophos Network Access Control could be improved by having an ASIC chip similar to FortiNAC, as this would provide better processing for big organizations."
"The difficult thing was finding the metrics."
"I would like to see mobile administration capabilities in the next release so that we can administer the device from a mobile device."
"Endpoint and firewall synchronization is not as smooth as we are expecting from Sophos Network Access Control."
"An area that could be improved is the information about licensing, which is fairly confusing at present."
"Sophos Network Access Control needs improvement regarding its slow interface, loading time, and reporting."
"The solution could offer more useful documentation."
"It would be beneficial to consider some improvements regarding the dashboard."
 

Pricing and Cost Advice

"Forescout is more expensive than Cisco because Cisco gives high discounts."
"The solution’s pricing is fine."
"It is expensive because you have to pay for their CSM, the customer's access manager, and their professional services on top of that, and they charge you roughly $400 per hour, which is overhead."
"The tool's pricing is expensive but reasonable."
"The price of Forescout is reasonable when compared to Cisco ISE."
"We went with the virtual appliance option. The biggest cost to running these types of appliances would be to either have multiple virtual appliances at every data center or running Remote SPAN hardware to provide you the real-time network visibility."
"I would rate Forescout Platform's pricing as four out of five."
"Forescout's pricing is noted for its attractiveness, with potential discounts depending on partnership levels."
"Sophos Network Access Control is very cheap compared to other solutions like Cisco, Barracuda, and Palo Alto."
"I rate the price of Sophos Network Access Control a five out of ten."
"Sophos Network Access Control is an expensive solution."
"Sophos Network Access Control is costly but has a similar price range as CrowdStrike and Check Point. The product can get more market share if Sophos can play around with Sophos Network Access Control pricing and improve it."
"It provides a moderate pricing option for all of its features and benefits."
"It is quite expensive."
report
Use our free recommendation engine to learn which Network Access Control (NAC) solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
11%
Financial Services Firm
10%
Computer Software Company
8%
Government
7%
Healthcare Company
9%
Government
8%
Computer Software Company
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise10
Large Enterprise44
By reviewers
Company SizeCount
Small Business16
Midsize Enterprise3
Large Enterprise3
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What is your experience regarding pricing and costs for Sophos Network Access Control?
The pricing of Sophos Network Access Control is good, but it is somewhat high.
What needs improvement with Sophos Network Access Control?
In my opinion, one feature that should be added is the ability to trace emails from individuals who change their IP address or send misbehaving emails from alternative networks. If someone sends a ...
What is your primary use case for Sophos Network Access Control?
Sophos Network Access Control serves primary use cases for both networking purposes and security purposes.
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
No data available
 

Overview

 

Sample Customers

NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Rushmoor Borough Council
Find out what your peers are saying about Forescout Platform vs. Sophos Network Access Control and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.