No more typing reviews! Try our Samantha, our new voice AI agent.
reviewer1480314 - PeerSpot reviewer
Senior IT Analyst at a insurance company with 51-200 employees
Real User
Jan 16, 2021
Good ransomware security with an easy initial setup and good scalability potential
Pros and Cons
  • "The initial setup is simple."
  • "That's what the Intercept X is designed to do."
  • "It's a challenge to do system maintenance work on a notebook. You always have to disable Sophos first."
  • "It's a challenge to do system maintenance work on a notebook. You always have to disable Sophos first."

What is our primary use case?

We primarily use the solution as endpoint protection as well as for endpoint detection and response. It's like an EDR. It's basically used to prevent ransomware.

How has it helped my organization?

I would say that it's difficult to really say how it's improved our organization. We had never actually been hit by a ransomware attack prior to installing Sophos and never had Sophos tell us that we're experiencing one. That said, it's very important to be protected. Getting attacked would be a disaster.

What is most valuable?

We were looking for something that could sense ransomware attempts, to encrypt files, and cut off and reverse attacks as well as alert us to issues. That's what the Intercept X is designed to do. It's very good at security and protection. It offers very good reports.

The initial setup is simple.

The biggest feature that's on the server version that we're using, the EDR, is the ability to push data on threats that it's seeing over to another management platform, like a managed detection response service. It's nice that it's possible to do this and we don't have to pay so much attention to the alerts. They can for us.

What needs improvement?

It's a challenge to do system maintenance work on a notebook. You always have to disable Sophos first. Otherwise, it thinks you're a virus. It would be ideal if there was some sort of setting where you could warn the system it's just you in there doing routine maintenance.

Buyer's Guide
Intercept X Endpoint
March 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
886,011 professionals have used our research since 2012.

For how long have I used the solution?

I've used the solution over the last couple of years. However, I haven't used the product too heavily.

What do I think about the stability of the solution?

The stability is relatively good. We've had a few false alarms, however, there's nothing major that's happened so far. It seems free of bugs and glitches. It doesn't crash or freeze. It's good.

What do I think about the scalability of the solution?

I haven't personally tried to scale anything. It's probably pretty scalable because you don't have an appliance. Appliances have limitations as they have a set size or capacity. It is a cloud-based console, therefore it can probably scale pretty well.

We have 80 people in our organization and everybody uses the product.

How are customer service and support?

I'd rate technical support pretty high. I'd give them an eight out of ten. They're helpful. They are knowledgeable and responsive. We've been satisfied with the level of attention we get when we need them.

Which solution did I use previously and why did I switch?

We didn't have anything previously for anti-ransomware. We just had the Kaspersky antivirus. However, it wasn't able to detect ransomware specifically. Therefore, we put Sophos Intercept X on to do that.

How was the initial setup?

We've found the initial setup is pretty straightforward. It's not overly complex. We didn't have trouble setting everything up.

What other advice do I have?

We're using the latest version of the solution.

We've got Sophos Intercept X on the notebook computers along with Kaspersky and then on the servers it's only Sophos EDR, which has both antivirus and Intercept X. All are bundled together.

The console's on the cloud and that's just installed on the clients, however, they all communicate with a self-hosted JIRA cloud console.

I'd advise those considering the solution to probably just go with the antivirus portion as well. That way, you've got it all under one console. We're juggling two consoles, Kaspersky and Sophos. It would be easier if everything was under one.

ON a scale from one to ten, I'd rate this product at a nine. We've been very happy with it.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2203806 - PeerSpot reviewer
Country Manager at a tech services company with 1-10 employees
Reseller
Top 5Leaderboard
Jan 14, 2021
Good usability with helpful technical support and reliable stability
Pros and Cons
  • "The solution has very good usability."
  • "So far, it's working quite well for us and we've been very happy with it."
  • "The initial setup can be difficult if you don't come in with at least some knowledge about the product."
  • "The initial setup can be difficult if you don't come in with at least some knowledge about the product."

What is our primary use case?

We primarily use the solution in order to check the correct flow of the workstations.

What is most valuable?

We have the complete solution. We try to see if we have any malware, ransomware, in our workstations, and detect and respond. It's very good at detection. 

The solution has very good usability.

So far, it's working quite well for us and we've been very happy with it.

We don't often need support, however, when we do, they've been quite helpful.

If you have good hardware and a good memory, you won't have a problem with this solution's performance at all.

What needs improvement?

The solution is pretty complete and works well for our organization. I can't recall not having any specific feature on hand.

The initial setup can be difficult if you don't come in with at least some knowledge about the product.

The solution can run slower on older computers. When you do a scan, you need to configure the scan to run in the time not when your traffic is high. The performance can be affected if the traffic is high and you are trying to scan. This isn't really the solution's fault. It may be an issue with the robustness of the machine

For how long have I used the solution?

I've been using the solution for around two years now. It hasn't been too long.

What do I think about the stability of the solution?

The stability is very good. We have no complaints in this area. It doesn't crash or freeze. It's not buggy. It's reliable.

What do I think about the scalability of the solution?

Personally, I have not tried to scale the solution, and therefore can't speak to the scalability itself. For our organization and its size, it works well. We have approximately 100 people in the company. 

How are customer service and technical support?

We've used technical support in the past. I've found them to be very good. We're quite happy with their level of service, even if we very rarely need to call on them. I'd give them very high marks - maybe 9.5 out of ten for the level of support they provide.

How was the initial setup?

The initial setup can be challenging for those that come in blind with no prior knowledge of the solution. That said, we're pretty knowledgable, so we went in knowing the product and therefore we didn't really have trouble in that sense.

You need to make the deployment, and you need to put the agent in the workstation. That is the most difficult part of the solution. If the company is not centralized, the deployment of the solution is hard. That can be true for any product, actually. However, if you have some solution, for example, to make the deployment of different software for you, you can make the deployment easier. That way, you can centralize the configuration, and set the configuration for the complex platform. 

For us, it took two weeks to a month to deploy the solution with the assistance of a software platform. However, that can vary according to the company and its size and environment.

What other advice do I have?

We're partners with Sophos.

I'm not sure which version of the solution I'm using.

When implementing Sophos Intercept, other organizations need to know that the deployment can be a bit difficult. It's a good solution with a challenging implementation. YOu really need to centralize your deployment. If you have a solution that can help ease the deployment process, it's worth it.

Overall, we are very happy with it. I'd rate it at a ten out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Intercept X Endpoint
March 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
886,011 professionals have used our research since 2012.
reviewer1461399 - PeerSpot reviewer
Manager at a real estate/law firm with 1,001-5,000 employees
Real User
Dec 8, 2020
The setup was simple, the EDR could be improved, and perhaps the user interface.
Pros and Cons
  • "It's quite simple to use and user friendly."
  • "The setup was simple; it took us about one day to set up and configure the software."
  • "The EDR could be improved, and perhaps the User Interface."
  • "The EDR could be improved, and perhaps the User Interface."

What is our primary use case?

We use it mostly for software protection. 

What is most valuable?

It's quite simple to use and user friendly.

What needs improvement?

The EDR could be improved, and perhaps the User Interface. EDR machine learning could be included.

For how long have I used the solution?

We have been using Sophos Intercept X for about two years. It is the latest cloud version. We have about 200 people using it, daily. We are a Sophos customer.

What do I think about the stability of the solution?

It is a stable product.

What do I think about the scalability of the solution?

It is reasonable scalable. So, somewhere in the middle in terms of scalability.

How are customer service and technical support?

We have not needed to use support so far.

Which solution did I use previously and why did I switch?

We have been using Sophos since day one.

How was the initial setup?

The setup was simple. It took us about one day to set up and configure the software.

What about the implementation team?

The setup was done internally. We also perform maintenance internally.

What's my experience with pricing, setup cost, and licensing?

The pricing is average for software like this, but you can purchase additional services if you wish.

Which other solutions did I evaluate?

In the future, we may evaluate SentinelOne.

What other advice do I have?

I would recommend this to other users, and I would give the product 7 out of 10.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Infrastructure Manager at a tech services company with 51-200 employees
Real User
Nov 17, 2020
Easy to configure, good threat detection capability, and the support is perfect
Pros and Cons
  • "This solution is easy to configure."
  • "My advice for anybody who is looking into implementing this product is that it is easy to implement, quick to deploy, and has a lot of tools to detect malicious behavior."
  • "The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays."
  • "The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays."

What is our primary use case?

This product is primarily used for endpoint security.

What is most valuable?

The most valuable feature is the threat detection capability.

This solution is easy to configure.

What needs improvement?

The endpoint detection and response (EDR) technology has room for improvement because the information that it gives us to resolve our problems is poor nowadays. It's not sufficient.

I would like to see remote desktop support. For example, if you have a problem with your device, maybe the support team can log in and help to fix the problem using a remote connection.

For how long have I used the solution?

I have been using Sophos Intercept X for the past year and a half, and have just renewed my subscription for another year.

What do I think about the stability of the solution?

Stability-wise, Sophos Intercept X is good. I have not experienced any bugs or problems with it.

What do I think about the scalability of the solution?

The scalability is very good. We have 130 users.

How are customer service and technical support?

I would rate the technical support and ten out of ten. They are perfect.

How was the initial setup?

The initial setup is easy.

What about the implementation team?

I deployed this product myself and the process took about two months.

What other advice do I have?

My advice for anybody who is looking into implementing this product is that it is easy to implement, quick to deploy, and has a lot of tools to detect malicious behavior. I can recommend it to others.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1439172 - PeerSpot reviewer
Project Manager at a tech services company with 11-50 employees
Real User
Oct 31, 2020
Easy to use, straightforward to set up, and it's effective against critical problems including ransomware
Pros and Cons
  • "The most valuable features are ease of use and the GUI."
  • "My advice for anybody who is considering this product is that if you want ease of use for a good price, and something that addresses most of the endpoint protection needs, then this is the best solution to implement."
  • "We would like to deploy across a variety of machines simultaneously through the network."
  • "The price of this product should be reduced because it is a little high."

What is our primary use case?

This security solution covers most of the critical problems such as ransomware.

What is most valuable?

The most valuable features are ease of use and the GUI. The interface is very subjective. Personally, I am fine with it. However, some people don't like it. Generally speaking, I would say that it is easy to use.

They have a free version that is installed on mobile phones, which is very good.

The integration with my AP works well.

What needs improvement?

The price of this product should be reduced because it is a little high.

We would like to deploy across a variety of machines simultaneously through the network.

For how long have I used the solution?

We have been using Sophos Intercept X for the past month.

What do I think about the stability of the solution?

So far, I haven't seen any bugs in this product, so the stability is good.

What do I think about the scalability of the solution?

Scalability-wise, Sophos Intercept X is good. We have close to 100 users, who are mostly salespeople.

How are customer service and technical support?

We have not engaged with technical support.

How was the initial setup?

The initial setup is straightforward and not complicated. Deployment-wise, this solution is okay. It is easy to get the agents up.

One problem is that we want to know if there is a way to deploy the agent without going to every machine if I am upgrading from another product. Locally, I have to go machine by machine to complete the installation.

What about the implementation team?

We deployed by ourselves.

What other advice do I have?

My advice for anybody who is considering this product is that if you want ease of use for a good price, and something that addresses most of the endpoint protection needs, then this is the best solution to implement.

Generally, I like this product compared to other endpoint solutions and I don't have many complaints. The vendor just has to keep it up or continue to improve. That said, it cannot stop every virus so it is not perfect.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1291920 - PeerSpot reviewer
Head-Information Technology at a real estate/law firm with 201-500 employees
Real User
Oct 1, 2020
Utilizes machine learning functionality and provides good cloud-based administration
Pros and Cons
  • "The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability."
  • "The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability."
  • "I would like to have a built-in firewall, rather than having to integrate one."
  • "I would like to have a built-in firewall, rather than having to integrate one."

What is our primary use case?

Our primary use case is endpoint protection.

What is most valuable?

The most valuable features are the anti-ransomware engine, deep learning, web filtering, and the cloud manageability.

What needs improvement?

I would like to have a built-in firewall, rather than having to integrate one. Having both a personal firewall and an endpoint firewall would be an improvement. It does have firewall monitoring capability but it is integrated with the Windows firewall. Having their own endpoint firewall would be better.

For how long have I used the solution?

We have been working with Sophos Intercept X for about two weeks.

What do I think about the stability of the solution?

With respect to stability, given that we have only been using it for a couple of weeks, it is too early to tell. That said, we have not experienced any issues so far.

What do I think about the scalability of the solution?

Scalability has not been a problem.

How are customer service and technical support?

I have not had any issues, yet, that necessitated contacting technical support.

Which solution did I use previously and why did I switch?

Prior to Sophos, we were using a product by Symantec. The first difference is the deep learning or machine learning aspect. The second is the cloud administration capabilities. They both support cloud but the administration is better in Sophos.

How was the initial setup?

The initial setup is straightforward.

What's my experience with pricing, setup cost, and licensing?

I find the pricing to be a little bit expensive, although it is acceptable, for now.

What other advice do I have?

The suitability of this product depends on the company and its environment, but for a company like us, I recommend Sophos. 

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1418319 - PeerSpot reviewer
IT Infrastracture Consultant at a healthcare company with 201-500 employees
Consultant
Sep 18, 2020
Behavioral-based protection that is user-friendly and easy to deploy
Pros and Cons
  • "The most valuable feature is the behavioral, non-signature-based threat detection."
  • "Once we installed Intercept X, it was able to detect and remove malware that could not be found by the simple endpoint security solution."
  • "When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two."
  • "Sophos Central does not provide all of the information that is available, so it requires us to take the additional step of retrieving details from the firewall."

What is our primary use case?

We were recently the target of a ransomware attack and we used this product to clean it from our environment. Our in-place endpoint protection is just signature-based and it was not able to identify which device had passed the malware.

I am in charge of monitoring at this time.

How has it helped my organization?

Once we installed Intercept X, it was able to detect and remove malware that could not be found by the simple endpoint security solution.

What is most valuable?

The most valuable feature is the behavioral, non-signature-based threat detection.

We like Sophos Central, where you have access to a security console. It provides you with information such as recommendations on what to do next. Using this, we were able to trace the affected devices, which were then cleaned. If new alerts are given then we know which devices are still affected and we can take the appropriate action.

Sophos Central also shows us which alerts have not yet been attended to, which is nice.

What needs improvement?

Sophos Central does not provide all of the information that is available, so it requires us to take the additional step of retrieving details from the firewall. It would be more productive if the information between Sophos products were automatically correlated and updated in Sophos Central.

When there is an event generated by either the firewall or Intercept X, and the originating IP address is the same, these should be merged into a single event rather than two. Automatically correlating these events would save us time.

For how long have I used the solution?

We began using Sophos Intercept X a few days ago.

What do I think about the stability of the solution?

We use Intercept X on a daily basis and it is quite stable.

What do I think about the scalability of the solution?

My impression is that this product is scalable.

We have only deployed Intercept X at one hospital, which has about 300 people that it protects. We have approximately six hospitals for which we are recommending its use.

How are customer service and technical support?

We have only dealt with the sales team in the Philippines. Our concerns were commercial in nature, for the most part, rather than technical.

Which solution did I use previously and why did I switch?

Prior to Intercept X, we were using the signature-based endpoint protection by Sophos. Our license was just recently up for renewal and we are in the process of upgrading to Intercept X.

In my previous company, we were using Cisco AMP. The beauty of Sophos Intercept X is that it does both signature-based on behavioral threat protection in one agent. With some other solutions, you have to install a different product for each approach.

How was the initial setup?

The initial setup is very simple. We were able to install it in a few minutes and then it automatically begins detection. Completing the initial scan involves rebooting the computer a couple of times, so it takes a little while to complete and clean out the malware if it is there.

What about the implementation team?

The interface is very user-friendly and we were able to deploy and operate it ourselves.

Our company does not have 24/7 monitoring, so we are now looking at a managed SOC that we can subscribe to. Ideally, this type of service will give recommendations, above simply alerting us to problems.

What's my experience with pricing, setup cost, and licensing?

We were able to eliminate the ransomware using the one-month, full-featured trial license. Our intention now is to upgrade our systems to the full product. We were given a corporate rate.

Our licensing includes local support for each of our offices, nationwide. This something that we like.

What other advice do I have?

Overall, this is a good product that seems to address our concerns and I can recommend it.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user1416969 - PeerSpot reviewer
Network Engineer at a tech services company with 201-500 employees
Real User
Sep 17, 2020
If improving existing security measures is a goal, this product fits your model
Pros and Cons
  • "Sophos Intercept X is easy to install and has a lower price than similar solutions."
  • "The most valuable part of this solution is just the general capability of making security more robust."
  • "Integration with firewall solutions could be better."
  • "While Sophos is helpful technically, their tech support is not so good."

What is our primary use case?

Our primary use case is to enhance existing security.  

What is most valuable?

The most valuable part of this solution is just the general capability of making security more robust.  

What needs improvement?

There are a lot of things that can be added based on the user's need for the solution.  

Where this solution has room for improvement generally is in the integration with Sophos Central and firewalls.  

For how long have I used the solution?

We have been using Sophos Intercept for the last two years.  

What do I think about the stability of the solution?

Right now I am in the midst of trying to solve a bug, but I think it is generally a stable product. When there is a bug, the solution usually comes down to updating the firmware or endpoint.  

What do I think about the scalability of the solution?

Intercept X is a scalable solution.  

How are customer service and technical support?

We have worked with technical support due to some issues we experienced. We had some problems with firewall or endpoint issues that we could not solve immediately. While Sophos is helpful technically, their tech support is not so good. Their tech response could be better. They need to do more to deliver support that is as good or than their competition.  

How was the initial setup?

Intercept is easy to install. There is not a lot to do in the setup for a cloud product of this type.  

What other advice do I have?

My advice to people looking at Sophos Intercept X is that it is easy to install and has a lower price than similar solutions. I recommend it.  

On the scale from one to ten (where one is the worst and ten is the best), I would rate Sophos Intercept X as an eight-out-of-ten.  

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2026
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.