No more typing reviews! Try our Samantha, our new voice AI agent.
IT Director at Hepta
Real User
Top 10
Mar 16, 2023
Beneficial central endpoint view, simple configuration, and good security
Pros and Cons
  • "The most valuable features of Sophos Intercept X are the minimal configuration needed for the end user and the central view of all the endpoints. There are plenty of tools to control and manage the endpoints. Additionally, there is the capability of connecting the endpoint to the CLI."
  • "The graphical interface could improve. Additionally, adding less expensive mobile device support would be helpful. Other solutions have this feature."

What is most valuable?

The most valuable features of Sophos Intercept X are the minimal configuration needed for the end user and the central view of all the endpoints. There are plenty of tools to control and manage the endpoints. Additionally, there is the capability of connecting the endpoint to the CLI.

What needs improvement?

The graphical interface could improve. Additionally, adding less expensive mobile device support would be helpful. Other solutions have this feature.

For how long have I used the solution?

I have been using Sophos Intercept X for approximately three years.

What do I think about the stability of the solution?

There are minor scalability elements that could improve. However, overall it is good.

I rate the stability of Sophos Intercept X a seven out of ten.

Buyer's Guide
Intercept X Endpoint
March 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
886,011 professionals have used our research since 2012.

What do I think about the scalability of the solution?

We do not have too many workstations, we have approximately 300 and we have not had an issue with the scalability. However, if there were more workstations there could be some issues.

I rate the scalability of Sophos Intercept X a seven out of ten.

How are customer service and support?

We had support but it was through local support vendors. It could improve.

I rate the support from Sophos Intercept X a five out of ten.

Which solution did I use previously and why did I switch?

I have used Comodo and it is a good solution. When the agents are installed on the endpoints it provides inventory management. However, in Sophos Intercept X it is possible but you need to export and do it manually. The Comodo solution has better email, asset, and website management capabilities. Overall, Sophos has good security when compared to other solutions.

What's my experience with pricing, setup cost, and licensing?

The price of Sophos Intercept X is expensive. The license is paid on an annual basis. There are extra features that can be added depending on the endpoints. The solution is priced twice as much as the Comodo solution.

What other advice do I have?

We have recently moved to a less expensive solution, which was half the price.

I rate Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Raihan Hossain - PeerSpot reviewer
Senior Network and Cyber Security Engineer (Team Lead) at Excel Technologies ltd
Real User
Top 5
Feb 18, 2023
User-friendly, easy to configure, and offers flexible policies
Pros and Cons
  • "The dashboard is user-friendly."
  • "I'm not clear on what features need improvement. Everything is mostly fine."

What is our primary use case?

We're creating a software center. I just install the Sophos engine software and make the policies, like threat protection policies, for example.

What is most valuable?

The configuration is quite useful. All of our events are managed centrally from Sophos. We can manage security from there. 

Policies are flexible and very user-friendly. The dashboard is user-friendly as well. 

It is simple to set up. 

The solution is stable.

It is not overly expensive. 

What needs improvement?

I'm not clear on what features need improvement. Everything is mostly fine. 

For how long have I used the solution?

I've been using the solution for two years. 

What do I think about the stability of the solution?

It's a very light application and very stable. It's reliable. There are no bugs or glitches. It doesn't crash or freeze. 

What do I think about the scalability of the solution?

We're a partner, and a lot of our clients are on this solution. 

The last client we deployed for had 4,000 users. However, each company differs in terms of the number of users. 

Which solution did I use previously and why did I switch?

We also deal with Trend Micro. 

How was the initial setup?

The setup is straightforward. It is not overly complex or difficult. 

The deployment was pretty quick. You just have to set up the policies. Depending on the additional policies you have to set up, it may take longer. 

What about the implementation team?

We are able to deploy the solution for our clients. I've worked on various deployments for clients. 

What's my experience with pricing, setup cost, and licensing?

The pricing varies. It's different from client to client, depending on their environment and needs. It's not overly expensive. 

What other advice do I have?

We're Sophos partners. 

I'd 100% recommend the solution to potential users. It's great for protecting devices and offers great security. There are a lot of malicious threats online right now. Companies need to protect themselves, and Sophos can help. 

I would rate the solution eight out of ten. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Intercept X Endpoint
March 2026
Learn what your peers think about Intercept X Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
886,011 professionals have used our research since 2012.
Abbasi Poonawala - PeerSpot reviewer
Chief Enterprise Architect at Alinma Bank
Real User
Top 5Leaderboard
Jun 7, 2022
Good support and uses AI to detect ransomware, but human monitoring is still required for sophisticated threats
Pros and Cons
  • "Machine learning is used to detect the threat and it does so by prioritizing the suspicious activities."
  • "Machine learning is used to detect the threat and it does so by prioritizing the suspicious activities."
  • "Better protection in the endpoint, server, and mobile is needed."
  • "Better protection in the endpoint, server, and mobile is needed."

What is our primary use case?

This product is basically used for detecting ransomware. It will monitor all of the ransomware threats. Since the first ransomware attack happened in 2017, WannaCry, it has been a global threat. It is a vulnerability that is impacting a lot of devices and computers in the network.

Ransomware threats have been identified as one of the first priorities in the entire info security segment. Information security consists of various things including endpoint detection, threat detection, and then your SIEMs like QRadar or ArcSight.

At the early point of detection, Sopho is going to stop the ransomware. The question that has been there since 2017 is how it will identify the ransomware and how does it stop the attack from happening to the network. WannaCry was the first large ransomware attack, which has impacted various regions and is a very high severity threat. Since then, a lot of things have been lined up for mitigating the risk, like WannaCry.

How has it helped my organization?

improved considerably

What is most valuable?

Machine learning is used to detect the threat and it does so by prioritizing the suspicious activities. There is no human intervention in some cases, which is the trend that is happening with most of these products. High-end products and sophisticated products include machine learning capabilities for detecting the threats.

What needs improvement?

There are hackers who hack the artificial intelligence component using artificial intelligence itself. These sophisticated hackers are using AI capabilities, and the problem is that with no human intervention, machine learning can be defeated. The consequence is that somebody still has to keep watch and monitor the detection from the threat scanning.

Better protection in the endpoint, server, and mobile is needed. Those three areas should be fully protected. It should stop ransomware from installing, it should stop it from deploying, and it should also block unauthorized file encryption. In summary, it should have more protection, better detection, and better response.

For how long have I used the solution?

We have been using Sophos Intercept X for more than two and a half years.

What do I think about the stability of the solution?

Sophos Intercept-X is a stable solution and we plan to continue using it in the future.

What do I think about the scalability of the solution?

This is a scalable product and we have more than 7,500 devices connected to the network.

How are customer service and support?

The technical support is 24x7 and it is good. They have different points of contact within the support regions like India, Singapore, and various other regions.

Which solution did I use previously and why did I switch?

We have Sophos running in parallel with Sophos Cloud, in some of the regions.

How was the initial setup?

The initial setup is quite simple and it will take a couple of hours.

What about the implementation team?

I and my team deploy and maintain this solution. The deployment happens on the cloud.

What other advice do I have?

This is a good solution but that said, there are breaches that are happening, and they are happening using AI. So, the attackers are also that sophisticated and it means that somebody has to sit and do the human check as well.

Ultimately, what happens is that the threats are found, and then the response action is taken based on the outcome of all these steps.

This is a product that I can recommend to others. The DR has better capabilities, as it's powered by machine learning.

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Peter Forster - PeerSpot reviewer
Network Administrator at Sechelt Indian Band
Reseller
Mar 21, 2022
Is easy to install and manage, and has anti-exploit protection
Pros and Cons
  • "One reason why I have stuck with Sophos is because it grabs it and deals with it, and if it's known malware, it can quarantine it or delete it."
  • "Sophos Intercept X is a good protection service package for small businesses and large corporations."
  • "As for improvement, more notifications or emails about what to watch out for globally would be nice. For instance, information about the spread of a current phishing campaign or ransomware would be very helpful. I find that I have to dig in the back to find out what is happening on the global scene for things to be aware of."
  • "As for improvement, more notifications or emails about what to watch out for globally would be nice."

What is our primary use case?

Sophos Intercept X is the antivirus protection of my choice and my client's choice because it does not only malware, antivirus, and Trojan protection but also anti-exploit protection. It has a quarantine process as well. It does all of the usual antivirus plus the anti-exploit and anti-ransomware processes.

What is most valuable?

One reason why I have stuck with Sophos is because it grabs it and deals with it, and if it's known malware, it can quarantine it or delete it.

I look at all my network workstations and laptops, and if any one of them has some issues with updates or receives a notification, then the server console in the cloud will send me an email as well.

I like it's user interface, cloud integration, and the GUI. It's easy to work with it with clients.

I also like Sophos Intercept X because I can install it on a computer, and if it's set for tamper proof, then nobody can uninstall the program.

What needs improvement?

As for improvement, more notifications or emails about what to watch out for globally would be nice. For instance, information about the spread of a current phishing campaign or ransomware would be very helpful. I find that I have to dig in the back to find out what is happening on the global scene for things to be aware of.

For how long have I used the solution?

I've been working with Sophos Intercept X ever since it was released three years ago.

It is a cloud solution. The installation is local on the device, but it communicates to the cloud where the cloud server manages the reports, notifications, and licensing.

What do I think about the stability of the solution?

My impressions of the stability of Intercept X is that it's excellent.

What do I think about the scalability of the solution?

The scalability is not a problem at all.

How are customer service and support?

I've received really good technical support. They're amazing.

Which solution did I use previously and why did I switch?

I've had experience with other antivirus programs such as Trend, Norton, and McAfee, and they just flag it and indicate that you are infected. However, Sophos has always taken care of things. This way, if my users don't know what to do with a popup, at least I know that Sophos will just grab it, quarantine it, and protect the user.

Sophos is easy to install and easy to manage, and I have had no issues with it. I've had better protection and quarantining features with Sophos Intercept X.

How was the initial setup?

On a scale from one to five, where one is complex and five is easy, I'd rate the initial setup at four. This is because sometimes you'll get a popup asking you to reboot, but actually, if you've installed it a few times, you know that you have to reboot it after the installation. So, there are a couple of popups that don't make it seamless.

If I've got 10 new workstations with a new client and I've sold them 10 licenses and one server, I will have that set up in the cloud as soon as I get the license. It will probably take half an hour to set that up. I can then start adding computers instantly. To install 10 computers, it would take about five hours.

What about the implementation team?

My team and I implement it. We also, sometimes, walk a client through the process remotely.

What other advice do I have?

Sophos Intercept X is a good protection service package for small businesses and large corporations. You can have two computers, five computers, or 5,000 computers, and it'll be just as easy to manage.

I haven't had any issues with ransomware since I began using anti-exploit. I trust Sophos Intercept X and rate it at ten on a scale from one to ten.

Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Director of Platform and Information Security at Brace Software
Real User
Mar 9, 2022
Useful web filtering, effective URL sanity checks, and excellent support
Pros and Cons
  • "The most valuable feature of Sophos Intercept X is a web filtering and URL sanity checks. Overall the solution is well balanced with all its features."
  • "Sophos Intercept X is a full package; it's more than only an antivirus solution to find the malicious code, as we also use it to filter malicious websites and detect applications that have been outlined in our corporate policy."
  • "The majority of our systems are MacBooks and their solution release cycle is slow to endorsing or support the MacBook's latest OS or hardware platform. For example, when Sophos macOS Big Sur version 11 was released, it took them a while to support this version of OS. A similar situation occurred when the MacBook M1 hardware CPU was released. They have not fully supported the native M1 CPU to this day. They need to speed up the solutions release cycle."
  • "The majority of our systems are MacBooks and their solution release cycle is slow to endorsing or support the MacBook's latest OS or hardware platform."

What is our primary use case?

We use Sophos Intercept X to protect the endpoint devices in our organization, such as PCs and MacBooks.

How has it helped my organization?

Sophos Intercept X is a full package. It's more than only an antivirus solution to find the malicious code. We also use it to filter malicious websites and detect applications that have been outlined in our corporate policy.

What is most valuable?

The most valuable feature of Sophos Intercept X is a web filtering and URL sanity checks. Overall the solution is well balanced with all its features.

What needs improvement?

The majority of our systems are MacBooks and their solution release cycle is slow to endorsing or support the MacBook's latest OS or hardware platform. For example, when Sophos macOS Big Sur version 11 was released, it took them a while to support this version of OS. A similar situation occurred when the MacBook M1 hardware CPU was released. They have not fully supported the native M1 CPU to this day. They need to speed up the solutions release cycle.

The majority of our systems are Apple-based, this issue is more noticeable on the Apple platforms.

For how long have I used the solution?

I have been using Sophos Intercept X for approximately two years.

What do I think about the stability of the solution?

The stability or performance of Sophos Intercept X is good. However, sometimes users have needed to have their configuration fine-tuned to allow better performance.

What do I think about the scalability of the solution?

We have approximately 50 users using this solution.

We use Sophos Intercept X extensively and we use everything the solutions offer.

How are customer service and support?

The support I have experienced from Sophos Intercept X was great.

I would rate the support from Sophos Intercept X a five out of five.

Which solution did I use previously and why did I switch?

I have used other solutions other than Sophos Intercept X in other organizations but it has been over two years ago.

How was the initial setup?

I have been using Sophos Intercept X for over two years, in the beginning, the initial setup was straightforward but because they do not fully support the Apple platform, or they're pretty slow at supporting the Apple platform, the latest version supporting Apple is a little bit cumbersome to use. You need to walk the user through the process with some specific instructions or help the user directly. It's not as easy as it used to be.

I would rate the implementation process of Sophos Intercept X a four out of five.

What about the implementation team?

We did the implementation of Sophos Intercept X in-house.

I do the maintenance of the solution. We are a smaller company and I am sufficient for the maintenance of the solution.

What's my experience with pricing, setup cost, and licensing?

I have found the price of Sophos Intercept X to be reasonable.

What other advice do I have?

I would advise others that they have to look at their environment to determine if this solution would be best suited. Sophos Intercept X for a small business that has a mix of PCs, MacBooks, and has the need for multiple security controls, this tool fits us well. For different environments, the organization might need other or additional tools. For example, if they may need threat protection. There are different vendors that may have an edge in certain areas than Sophos Intercept X has. For us, we need a balanced, multi-pronged approach for securing in our environment, Sophos Intercept X works well.

I rate Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
AdemolaOlamide - PeerSpot reviewer
Business Development Manager at Computer Learning centre
Real User
Feb 26, 2022
Stable and scalable solution that provides endpoint detection and response, email protection, and data loss prevention
Pros and Cons
  • "Solution for endpoint detection and response, with good stability and scalability. Users also benefit from email protection and data loss prevention."
  • "Solution for endpoint detection and response, with good stability and scalability, and users also benefit from email protection and data loss prevention."
  • "Installing Sophos Intercept X was not as straightforward, as we had to ask support and had to work with an integrator, though the process didn't take much time, e.g. it was completed within one hour."
  • "I'm not yet satisfied with Sophos Intercept X, but I know how to use it."

What is our primary use case?

We use a normal EDR solution in the office: Sophos Intercept X, for endpoint detection and response, email protection, and data loss prevention.

For how long have I used the solution?

I've been using Sophos Intercept X for a long time, and I'm currently in my second year of using the solution.

What do I think about the stability of the solution?

Sophos Intercept X is a very stable solution.

What do I think about the scalability of the solution?

My impression of Sophos Intercept X is that it's a scalable solution.

How was the initial setup?

For the installation of Sophos Intercept X, we had to ask support from their sales staff. The installation process didn't take much time, as it was completed within an hour.

What about the implementation team?

We implemented the solution through an integrator.

What's my experience with pricing, setup cost, and licensing?

We pay for the Sophos Intercept X license annually.

Which other solutions did I evaluate?

We were initially using ESET.

What other advice do I have?

I'm not yet satisfied with Sophos Intercept X, but I know how to use it. It's good for now, so I can't think of what I'd like to change in the solution.

We have up to 25 users of Sophos Intercept X, and one person in charge of the deployment and maintenance of the solution. For the installation, that person works with an external consultant.

I'm recommending this solution to others who may want to start using it.

I'm rating Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1785597 - PeerSpot reviewer
IT Manager at a financial services firm with 51-200 employees
Real User
Feb 22, 2022
Reliable and expandable but the initial setup is difficult
Pros and Cons
  • "The stability on offer is fine."
  • "The solution can scale well, even on our hardware."
  • "The deployment part needs to be improved."
  • "The initial setup is a lot harder than, for example, Carbon Black. It's more difficult and complex."

What is our primary use case?

The main use case is to have the reversible ransomware attack aspect of Intercept X. It's more of an antivirus solution rather than an EDR solution - a slightly different product to Carbon Black in that respect.

What is most valuable?

The scalability capabilities are fine.

The stability on offer is fine.

What needs improvement?

The initial setup can be a little complex. 

The deployment part needs to be improved. It doesn't feed into our SOCs. That's the only thing we have to try and figure out - how we're going to do that. The SOC is our interface with our security partners who monitor our security events. That's done for us on a 24/7 basis.

For how long have I used the solution?

I've worked with the solution for five years. It's been a while.

What do I think about the stability of the solution?

We haven't had any issues with stability. It doesn't crash or freeze. It's reliable. 

What do I think about the scalability of the solution?

The entire organization uses Sophos right now. It's pretty ubiquitous.

The solution can scale well, even on our hardware. it hasn't been an issue. 

Which solution did I use previously and why did I switch?

We also use Carbon Black, although we use it in a bit of a different way. Carbon Black is also easier to set up than Sophos.

How was the initial setup?

The initial setup is a lot harder than, for example, Carbon Black. It's more difficult and complex. Its implementation isn't exactly easy.

It took us a few months to finally get it set up. We ran into some issues.

What other advice do I have?

We're just a customer and an end-user. We don't have a business relationship with Sophos.

The solution is deployed on hardware as well as virtual machines. 

I would rate the solution at a seven out of ten overall. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Terry Cheung - PeerSpot reviewer
Managing Director at TopSOC
Real User
Feb 6, 2022
Cost-effective, useful, and straightforward installation
Pros and Cons
  • "The performance is good."
  • "It is cost-effective."
  • "It would be beneficial if you could expand support for Windows 7 and Windows Server 2008 without charging an additional fee."
  • "The installation process could be faster."

What is our primary use case?

Sophos Intercept X is primarily used as an antivirus. It's a next-generation antivirus solution.

What is most valuable?

It's quite useful.

The performance is good.

What needs improvement?

The installation process could be faster.

They can reduce the size of the software that is required. 

It would be beneficial if you could expand support for Windows 7 and Windows Server 2008 without charging an additional fee.

For how long have I used the solution?

I have been providing Sophos Intercept X for more than two years.

We began with an on-premises installation, the endpoint devices and PCs on the server, but the console is hosted in the cloud.

What do I think about the stability of the solution?

Sophos Intercept X is a stable solution.

What do I think about the scalability of the solution?

Sophos Intercept X is scalable.

We have a few hundred users.

How are customer service and support?

Our clients have contacted technical support.

How was the initial setup?

The installation is straightforward, but occasionally, you encounter issues, and you have to perform the installation again.

We have two or three administrators to manage Sophos Intercept X.

What's my experience with pricing, setup cost, and licensing?

Clients have to pay licensing fees. They offer both monthly and yearly licenses.

We sell MSP, manage service provider perpetual licenses.

On top of that, they have the option of purchasing additional features. They now include HDR, endpoint detection, and response features. That is an additional license that you can purchase and use with the same software.

What other advice do I have?

I would recommend this solution to others who are considering using it.

It is cost-effective, I would rate Sophos Intercept X an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2026
Buyer's Guide
Download our free Intercept X Endpoint Report and get advice and tips from experienced pros sharing their opinions.