Try our new research platform with insights from 80,000+ expert users

Intercept X Endpoint vs VMware Carbon Black App Control comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Intercept X Endpoint
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
106
Ranking in other categories
Endpoint Protection Platform (EPP) (10th), Endpoint Detection and Response (EDR) (11th), ZTNA (8th), Managed Detection and Response (MDR) (7th), Extended Detection and Response (XDR) (11th), Ransomware Protection (3rd)
VMware Carbon Black App Con...
Average Rating
9.2
Reviews Sentiment
6.8
Number of Reviews
8
Ranking in other categories
Application Control (2nd)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Intercept X Endpoint is designed for Endpoint Protection Platform (EPP) and holds a mindshare of 1.6%, down 3.5% compared to last year.
VMware Carbon Black App Control, on the other hand, focuses on Application Control, holds 19.2% mindshare, down 33.5% since last year.
Endpoint Protection Platform (EPP)
Application Control
 

Q&A Highlights

TT
Dec 03, 2020
 

Featured Reviews

Suwandhi Suraweera - PeerSpot reviewer
Offers advanced filtering features and benefits from improved licensing and performance
There is a licensing issue with Intercept X Endpoint. Their licenses are user-based. Most of our customers use per device licenses, and they need per device licenses because they use one PC for multiple accounts. This creates a problem. There was one customer who complained about the slowness of PCs using Intercept X Endpoint. They use minor performance PCs, which causes their PCs to become slow.
AM
We can isolate problem machines and limit their access
We use App Control to scan the network for virtual machines that have unauthorized applications. We can isolate the problem VMs and control application access.  More than two years. I rate Carbon Black App Control 10 out of 10 for stability. I rate App Control six out of 10 for scalability.…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It does its job — it protects us from viruses. We don't really interact with it very much."
"A valuable feature offered by Sophos is called Naked Security, and it entails the control managed by the firewall on the site regarding the desktop client interfacing with our cloud client."
"It is stable and has a good price. I find it very good."
"It provides a feature for scanning and analyzing endpoints, which is a value-add for our infrastructure. With the advancements in the Advanced Persistent Threats (APTs), Sophos Intercept X analyzes an APT and the behavior of the endpoints. It then gives us a detailed dashboard with more information about the endpoints and their security and risk level. While deploying Sophos Intercept X, we identified a lot of vulnerability and risky endpoints that our previous solution didn't cover, which proved that this solution is the best."
"It's a good antivirus software and has a lot of features. It now integrates with their on-premises firewall, which is perfect."
"The stability on offer is fine."
"Scalability is good."
"I like the way it goes beyond the office space. Being a cloud-based solution makes it very easy to manage your endpoints within the office. In this time of COVID, you can also very effectively manage people who are working from home."
"The effectiveness of application whitelisting is very good."
"The visibility is valuable."
"The visibility, reporting, and the ability to stop or prevent malicious or undesired applications from being installed are the most valuable features."
"The API integration is good."
"I use the console to check for threats and I find it to be very user-friendly."
"If any malicious activity, like VAT viruses, anything RNE, ZOD malware, or something similar, comes in we know that unless we approve it, it's going to be blocked."
"We use App Control to scan the network for virtual machines that have unauthorized applications. We can isolate the problem VMs and control application access."
"All the functions within VMware Carbon Black App Control are valuable."
 

Cons

"When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two."
"When I use a proxy, I can bypass Sophos, which is an area that needs improvement."
"The ADR functionalities feel like they aren't mature enough. It hasn't been a long time since Sophos has offered reproduction. Due to the fact that it's so young, it has fewer functionalities than other and more mature ADR solutions."
"The problem is that if you have a lot of different components going on, each managed under a different umbrella, then you're going to be spending a lot of time hopping back and forth between the different components to see, "Well, I got hit here. What did my firewall see? I got hit in the firewall, the firewall says it allowed that attack in, did it land on anything to compromise any of my endpoints?""
"Installing Sophos Intercept X was not as straightforward, as we had to ask support and had to work with an integrator, though the process didn't take much time, e.g. it was completed within one hour."
"There is room for improvement in terms of stability and updates."
"The initial setup can be difficult if you don't come in with at least some knowledge about the product."
"If we can lower the price, it will be fantastic because it will generate more revenue for us."
"Another issue is that even sometimes if you approve, for example, Adobe as a publisher, you say any product or anything that's from Adobe has to run. It generally runs, but especially in a large environment and with a lot of users, sometimes, due to some certification validation issues or some other issue, it might stop the process from running. Genuine processes like Adobe and Chrome can get blocked. so that needs to be improved."
"I rate App Control six out of 10 for scalability."
"Carbon Black does not use the database for identifying the file, the fields, or malware."
"Its setup is very complex, and it requires guidance from the support team, but it is well worth the effort."
"I would like to see the addition of some more features that are in other, similar solutions."
"The initial setup is somewhat complex."
"The reporting is not good and needs to be improved."
"The solution should have overhead in keeping lists of applications that you want don't want to run."
 

Pricing and Cost Advice

"Licensing costs are not expensive."
"We have bought a three-year license."
"The pricing is average for software like this, but you can purchase additional services if you wish."
"I have found the price of Sophos Intercept X to be reasonable."
"The solution offers both a three-year license and an annual license. I would rate the product's pricing a one out of ten."
"You can pay monthly, but most of our customers choose annual subscriptions because they are less expensive."
"The solution is not expensive."
"The price is pretty good."
"Its price is reasonable and what is expected for these types of products."
"The pricing for this product is competitive and our customers who told us that often, Carbon Back is the cheaper solution."
"We pay a fee for support, which is renewed annually."
report
Use our free recommendation engine to learn which Endpoint Protection Platform (EPP) solutions are best for your needs.
863,564 professionals have used our research since 2012.
 

Answers from the Community

TT
Dec 3, 2020
Dec 3, 2020
Officially the answer is Intercept X and anti-virus from other mfgs. can co-exist on an endpoint. Carbon Black is a bit more than just AV, so I would get a free 30-day trial of Int X and try it on one endpoint.
2 out of 3 answers
BA
Dec 12, 2019
Officially the answer is Intercept X and anti-virus from other mfgs. can co-exist on an endpoint. Carbon Black is a bit more than just AV, so I would get a free 30-day trial of Int X and try it on one endpoint.
AL
Dec 13, 2019
I’m not sure but if you are using Sophos Intercept X I would suggest just adding the Sophos EDR component.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Comms Service Provider
7%
Manufacturing Company
7%
Financial Services Firm
6%
Financial Services Firm
13%
Computer Software Company
11%
Manufacturing Company
8%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

How does Crodwstrike Falcon compare with Sophos Intercept X?
I like that Crowdstrike Falcon allows me to easily correlate data between my firewalls. Its detection and machine learning are very valuable features. Crowdstrike Falcon also successfully prevents ...
What is your experience regarding pricing and costs for Sophos Intercept X?
I would describe it as economical, but not much cheaper than other solutions.
Ask a question
Earn 20 points
 

Also Known As

Sophos Intercept X
CB Protection, Carbon Black CB Protection
 

Overview

 

Sample Customers

Flexible Systems
Kaas Tailored, Core-Mark, Indeed, Hologic, Landmark Credit Union, Project Worldwide
Find out what your peers are saying about Microsoft, CrowdStrike, SentinelOne and others in Endpoint Protection Platform (EPP). Updated: July 2025.
863,564 professionals have used our research since 2012.