IT Infrastracture Consultant at a healthcare company with 201-500 employees
Consultant
Behavioral-based protection that is user-friendly and easy to deploy
Pros and Cons
  • "The most valuable feature is the behavioral, non-signature-based threat detection."
  • "When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two."

What is our primary use case?

We were recently the target of a ransomware attack and we used this product to clean it from our environment. Our in-place endpoint protection is just signature-based and it was not able to identify which device had passed the malware.

I am in charge of monitoring at this time.

How has it helped my organization?

Once we installed Intercept X, it was able to detect and remove malware that could not be found by the simple endpoint security solution.

What is most valuable?

The most valuable feature is the behavioral, non-signature-based threat detection.

We like Sophos Central, where you have access to a security console. It provides you with information such as recommendations on what to do next. Using this, we were able to trace the affected devices, which were then cleaned. If new alerts are given then we know which devices are still affected and we can take the appropriate action.

Sophos Central also shows us which alerts have not yet been attended to, which is nice.

What needs improvement?

Sophos Central does not provide all of the information that is available, so it requires us to take the additional step of retrieving details from the firewall. It would be more productive if the information between Sophos products were automatically correlated and updated in Sophos Central.

When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two. Automatically correlating these events would save us time.

Buyer's Guide
Intercept X Endpoint
May 2024
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
771,212 professionals have used our research since 2012.

For how long have I used the solution?

We began using Sophos Intercept X a few days ago.

What do I think about the stability of the solution?

We use Intercept X on a daily basis and it is quite stable.

What do I think about the scalability of the solution?

My impression is that this product is scalable.

We have only deployed Intercept X at one hospital, which has about 300 people that it protects. We have approximately six hospitals for which we are recommending its use.

How are customer service and support?

We have only dealt with the sales team in the Philippines. Our concerns were commercial in nature, for the most part, rather than technical.

Which solution did I use previously and why did I switch?

Prior to Intercept X, we were using the signature-based endpoint protection by Sophos. Our license was just recently up for renewal and we are in the process of upgrading to Intercept X.

In my previous company, we were using Cisco AMP. The beauty of Sophos Intercept X is that it does both signature-based on behavioral threat protection in one agent. With some other solutions, you have to install a different product for each approach.

How was the initial setup?

The initial setup is very simple. We were able to install it in a few minutes and then it automatically begins detection. Completing the initial scan involves rebooting the computer a couple of times, so it takes a little while to complete and clean out the malware if it is there.

What about the implementation team?

The interface is very user-friendly and we were able to deploy and operate it ourselves.

Our company does not have 24/7 monitoring, so we are now looking at a managed SOC that we can subscribe to. Ideally, this type of service will give recommendations, above simply alerting us to problems.

What's my experience with pricing, setup cost, and licensing?

We were able to eliminate the ransomware using the one-month, full-featured trial license. Our intention now is to upgrade our systems to the full product. We were given a corporate rate.

Our licensing includes local support for each of our offices, nationwide. This something that we like.

What other advice do I have?

Overall, this is a good product that seems to address our concerns and I can recommend it.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Security Engineer at a tech services company with 51-200 employees
MSP
Good performance, flexible, and powerful centralized policy management
Pros and Cons
  • "All of the features are very important for anyone who is supporting a large number of computers."
  • "The price of this solution can be improved."

What is our primary use case?

I work with a number of Sophos products, mainly those managed through Sophos Central.

I provide general support for this solution, and my experience is with deployment and some configuration. I have been using the premium edition at home for more than a year, and have been dealing with training and support for approximately six months.

We are using this solution for cloud-based support, and using a cloud-based deployment.

How has it helped my organization?

We provide managed services to Sophos clients as part of our business offering.

What is most valuable?

The performance of this solution is good. This product does not overload the machine, even on relatively old hardware. It is a good experience in terms of CPU utilization, and how many of the cycles are going to the antivirus scanner.

This solution is easy to install, and it is flexible in terms of configuration.

The centralized management is a great feature for assigning certain policies to machines.

All of the features are very important for anyone who is supporting a large number of computers.

What needs improvement?

The price of this solution can be improved. The lesser the price, the more people will purchase it in the future, and it will become more popular and more widespread.

For how long have I used the solution?

I have been using this solution for more than a year.

What do I think about the stability of the solution?

I have never seen the "Blue Screen of Death" based on interactions between Sophos and the operating system. Similarly, I have not seen the computer stuck, or frozen during the virus scanning process. My overall impression of stability is very good.

How are customer service and technical support?

I would rate the technical support for this solution a nine out of ten.

What other advice do I have?

This product works as expected. From the point of view of a Sophos Trainee and Sophos Support Specialist, I admire what this product is doing. It is flexible and the management console is easy to work with.

Overall, this product is doing fine and I have nothing to complain about.

My advice to anybody who is researching similar solutions is that if they are looking for something that is simple and reliable, then this is a good choice. There will be less effort from the local IT support, and they will have well covered and protected endpoints. If they are not willing to spend a lot of time designing policies, precisely tuning everything for maximum performance and protection, then Sophos is the best choice. With very little effort you have a fully functional and very secure system.

Sophos is the best in its class, although there are no perfect systems.

I would rate this solution a nine out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Intercept X Endpoint
May 2024
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
771,212 professionals have used our research since 2012.
Head IT (Infrastructure) at Nilkamal Ltd
Real User
A cloud-based solution with anti-malware capability and reasonable price
Pros and Cons
  • "The base product and the anti-malware feature are most valuable."
  • "It consumes a lot of resources, and something needs to be done for that."

What is most valuable?

The base product and the anti-malware feature are most valuable.

What needs improvement?

It consumes a lot of resources, and something needs to be done for that.

For how long have I used the solution?

We use Intercept X Advance in our company, and this is the third year.

What do I think about the stability of the solution?

It is stable.

What do I think about the scalability of the solution?

It is scalable. We have around 2,500 users. For its maintenance, there are just two or three people.

How are customer service and support?

I never faced any issues.

Which solution did I use previously and why did I switch?

We were using Symantec. It was on-premises. There was an issue with the company, and I faced an issue with their support. So, I had to switch. I wanted something on the cloud.

How was the initial setup?

It was easy. On the client-side, it hardly takes 15 minutes.

What's my experience with pricing, setup cost, and licensing?

Its price is reasonable.

What other advice do I have?

They have to take care of the resource part. I would rate it a nine out of 10.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Country Manager at a tech services company with 1-10 employees
Real User
Good usability with helpful technical support and reliable stability
Pros and Cons
  • "The solution has very good usability."
  • "The initial setup can be difficult if you don't come in with at least some knowledge about the product."

What is our primary use case?

We primarily use the solution in order to check the correct flow of the workstations.

What is most valuable?

We have the complete solution. We try to see if we have any malware, ransomware, in our workstations, and detect and respond. It's very good at detection. 

The solution has very good usability.

So far, it's working quite well for us and we've been very happy with it.

We don't often need support, however, when we do, they've been quite helpful.

If you have good hardware and a good memory, you won't have a problem with this solution's performance at all.

What needs improvement?

The solution is pretty complete and works well for our organization. I can't recall not having any specific feature on hand.

The initial setup can be difficult if you don't come in with at least some knowledge about the product.

The solution can run slower on older computers. When you do a scan, you need to configure the scan to run in the time not when your traffic is high. The performance can be affected if the traffic is high and you are trying to scan. This isn't really the solution's fault. It may be an issue with the robustness of the machine

For how long have I used the solution?

I've been using the solution for around two years now. It hasn't been too long.

What do I think about the stability of the solution?

The stability is very good. We have no complaints in this area. It doesn't crash or freeze. It's not buggy. It's reliable.

What do I think about the scalability of the solution?

Personally, I have not tried to scale the solution, and therefore can't speak to the scalability itself. For our organization and its size, it works well. We have approximately 100 people in the company. 

How are customer service and technical support?

We've used technical support in the past. I've found them to be very good. We're quite happy with their level of service, even if we very rarely need to call on them. I'd give them very high marks - maybe 9.5 out of ten for the level of support they provide.

How was the initial setup?

The initial setup can be challenging for those that come in blind with no prior knowledge of the solution. That said, we're pretty knowledgable, so we went in knowing the product and therefore we didn't really have trouble in that sense.

You need to make the deployment, and you need to put the agent in the workstation. That is the most difficult part of the solution. If the company is not centralized, the deployment of the solution is hard. That can be true for any product, actually. However, if you have some solution, for example, to make the deployment of different software for you, you can make the deployment easier. That way, you can centralize the configuration, and set the configuration for the complex platform. 

For us, it took two weeks to a month to deploy the solution with the assistance of a software platform. However, that can vary according to the company and its size and environment.

What other advice do I have?

We're partners with Sophos.

I'm not sure which version of the solution I'm using.

When implementing Sophos Intercept, other organizations need to know that the deployment can be a bit difficult. It's a good solution with a challenging implementation. YOu really need to centralize your deployment. If you have a solution that can help ease the deployment process, it's worth it.

Overall, we are very happy with it. I'd rate it at a ten out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Technical manager at Andalusia Hai Aljamea Hospital
Reseller
Offers very good performance and has great features
Pros and Cons
  • "This solution offers very good performance and it has great features."
  • "Should include additional integration."

What is our primary use case?

Our primary use case is for securing the endpoints or endpoint users and Sophos servers.

What is most valuable?

This solution offers very good performance and it has great features. 

What needs improvement?

I'd like to see more integration in the solution. 

For how long have I used the solution?

I've been using this solution for five years. 

What do I think about the stability of the solution?

The solution is stable. 

What do I think about the scalability of the solution?

The solution is scalable. 

How are customer service and technical support?

Customer service is good, they're knowledgeable and customer friendly. They provide good support. 

How was the initial setup?

We don't install Intercept X in all devices, we do it for ourselves and the customers do their own deployment. It took around two hours for implementation within the company. 

What's my experience with pricing, setup cost, and licensing?

There is an annual license fee. 

What other advice do I have?

I would recommend this solution and rate it an eight out of 10.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor
PeerSpot user
Manager at a real estate/law firm with 1,001-5,000 employees
Real User
The setup was simple, the EDR could be improved, and perhaps the user interface.
Pros and Cons
  • "It's quite simple to use and user friendly."
  • "The EDR could be improved, and perhaps the User Interface."

What is our primary use case?

We use it mostly for software protection. 

What is most valuable?

It's quite simple to use and user friendly.

What needs improvement?

The EDR could be improved, and perhaps the User Interface. EDR machine learning could be included.

For how long have I used the solution?

We have been using Sophos Intercept X for about two years. It is the latest cloud version. We have about 200 people using it, daily. We are a Sophos customer.

What do I think about the stability of the solution?

It is a stable product.

What do I think about the scalability of the solution?

It is reasonable scalable. So, somewhere in the middle in terms of scalability.

How are customer service and technical support?

We have not needed to use support so far.

Which solution did I use previously and why did I switch?

We have been using Sophos since day one.

How was the initial setup?

The setup was simple. It took us about one day to set up and configure the software.

What about the implementation team?

The setup was done internally. We also perform maintenance internally.

What's my experience with pricing, setup cost, and licensing?

The pricing is average for software like this, but you can purchase additional services if you wish.

Which other solutions did I evaluate?

In the future, we may evaluate SentinelOne.

What other advice do I have?

I would recommend this to other users, and I would give the product 7 out of 10.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Infrastructure Manager at a tech services company with 51-200 employees
Real User
Easy to configure, good threat detection capability, and the support is perfect
Pros and Cons
  • "This solution is easy to configure."
  • "The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays."

What is our primary use case?

This product is primarily used for endpoint security.

What is most valuable?

The most valuable feature is the threat detection capability.

This solution is easy to configure.

What needs improvement?

The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays. It's not sufficient.

I would like to see remote desktop support. For example, if you have a problem with your device, maybe the support team can log in and help to fix the problem using a remote connection.

For how long have I used the solution?

I have been using Sophos Intercept X for the past year and a half, and have just renewed my subscription for another year.

What do I think about the stability of the solution?

Stability-wise, Sophos Intercept X is good. I have not experienced any bugs or problems with it.

What do I think about the scalability of the solution?

The scalability is very good. We have 130 users.

How are customer service and technical support?

I would rate the technical support and ten out of ten. They are perfect.

How was the initial setup?

The initial setup is easy.

What about the implementation team?

I deployed this product myself and the process took about two months.

What other advice do I have?

My advice for anybody who is looking into implementing this product is that it is easy to implement, quick to deploy, and has a lot of tools to detect malicious behavior. I can recommend it to others.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Network Security Engineer at Andalusia Hai Aljamea Hospital
Real User
We use the on-premise version for intercepting bad network traffic requests
Pros and Cons
  • "It is easy to change the size of its capabilities, i.e. to expand processes or scale the size of users."
  • "Technical support can be improved. There could be shared support, i.e. where someone in Egypt can respond."

What is our primary use case?

We use the on-premise version of Sophos Intercept X for intercepting bad network traffic requests. Sophos has two versions: one for on-premise, one for the cloud. 

Many of our customers prefer to have the on-premise solution.

How has it helped my organization?

I install Sophos Intercept X on the customer's site by myself. There is no need for extra people for the configuration.

What is most valuable?

Sophos Intercept X has a lot of excellent features. It's a very powerful tool.

What needs improvement?

Sophos Intercept X has room for improvement. We need a new version and more third-party solutions for Intercept X. 

Intercept X is on the cloud and some customers and some users prefer to have on-premise solutions. We need to generate a new product for Intercept X on-premise.

Technical support can be improved. There could be shared support, i.e. where someone in Egypt can respond. Then I could get support for my issue or my problem faster.

For how long have I used the solution?

About three years ago, I started to use Intercept X. It's a very powerful tool from Sophos.

What do I think about the stability of the solution?

The stability of this solution is the best. I tried many solutions to intercept at the end-point.

What do I think about the scalability of the solution?

It is easy to change the size of its capabilities, i.e. to expand processes or scale the size of users. Sophos Intercept X is easy to configure and very simple to set up. 

The scalability of this product will be very easy.

How are customer service and technical support?

The technical support is very easy for Sophos. If you want tech support, it can take a lot of time to respond. I get support from Sophos, but it takes one or two days for them to respond.

Support can be improved if they could respond more quickly.

How was the initial setup?

The initial setup is very straightforward. All of the features for deployment take only about ten minutes to fifteen minutes to install at most.

What other advice do I have?

On a scale from one to ten, I would rate Sophos Intercept X at a nine because we had some problems with technical support.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2024
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.