Kaspersky Endpoint Detection and Response is used for detecting cyber attacks.
Product Manager at Tech Titan Distribution Co., Ltd.
Reliable, stable, and can identify any attack
Pros and Cons
- "What I like best about Kaspersky Endpoint Detection and Response is that it can detect any cyber attack and that it's a reliable product in the cybersecurity space. My company has confidence in it as a product for detecting all cyber attacks. It's a reliable product."
- "An area for improvement in Kaspersky Endpoint Detection and Response is its technical support because currently, technical support is delayed."
What is our primary use case?
What is most valuable?
What I like best about Kaspersky Endpoint Detection and Response is that it can detect any cyber attack and that it's a reliable product in the cybersecurity space. My company has confidence in it as a product for detecting all cyber attacks. It's a reliable product.
What needs improvement?
An area for improvement in Kaspersky Endpoint Detection and Response is its technical support because currently, technical support is delayed.
For how long have I used the solution?
My experience with Kaspersky Endpoint Detection and Response is three or four years, and I'm still working with it.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
June 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
What do I think about the stability of the solution?
Kaspersky Endpoint Detection and Response is a stable product because I didn't see any issues when I was using it.
What do I think about the scalability of the solution?
Kaspersky Endpoint Detection and Response can be scaled to other solutions, for example, we used an antivirus first, then expanded to EDR using the same console and same server for management, and in the future, we can top it up with a sandbox solution on the same console.
How are customer service and support?
The technical support provided for Kaspersky Endpoint Detection and Response needs to be faster.
How was the initial setup?
Setting up Kaspersky Endpoint Detection and Response is easy. You can deploy it from the server or the main console. How long the deployment of the tool would take would depend on the network traffic during deployment and on the endpoint quantity.
What's my experience with pricing, setup cost, and licensing?
Pricing for Kaspersky Endpoint Detection and Response is so-so when you compare it with its competitors. Its pricing isn't cheap nor expensive.
What other advice do I have?
I'm a product manager that handles Kaspersky Endpoint Detection and Response. My company is a distributor and reseller of the product in Thailand.
I don't remember the exact version number of Kaspersky Endpoint Detection and Response, but I'm using its latest version.
My rating for Kaspersky Endpoint Detection and Response is eight out of ten.
If I had the chance to speak to others, my advice would be to use Kaspersky Endpoint Detection and Response.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller

Database Manager at Ppc Cement
Good security that runs quietly in the background and is not hard to set up
Pros and Cons
- "It helps improve security in our organization."
- "The solution could always be more secure."
What is our primary use case?
We primarily use the solution for security purposes, as an antivirus. It prevents threats to our business. Our aim is to make sure that our machines are protected at all times.
What is most valuable?
It's just running in the background. It doesn't bother us, and we don't even notice it is there.
It helps improve security in our organization. The protection on offer is good.
The initial setup is straightforward.
What needs improvement?
The solution could always be more secure. Every antivirus solution could be, as things are always dynamically changing. There is always a new risk on the horizon.
For how long have I used the solution?
I've used the solution for over three years.
What do I think about the stability of the solution?
The solution is stable. It is reliable. There are no bugs or glitches. It doesn't crash or freeze. We haven't had any issues at all.
What do I think about the scalability of the solution?
I can't speak to the scalability of the product. It's not an aspect that I handle.
We have about 1,000 people on the solution right now.
We do not plan to increase usage. It depends on the number of employees that we have. If the number increases, then we usually increase usage since any machine that comes into our network must have an antivirus on it.
How are customer service and support?
I've never dealt with support. I can't speak to how their services are.
How was the initial setup?
It is simple to set up and configure. We haven't had any issues with the process. it's not complex.
I'm not sure how long it took to deploy.
There are three people in our organization that can deploy and maintain the product.
We have enough people in terms of implementation and management as we have multiple sites that are managed by different people.
What other advice do I have?
We tend to use the latest version of the solution in our organization. I can't speak to the exact version number.
I would recommend the solution to others. I tested it on my personal computer before and found it worked fine. It's a reputable antivirus. I don't have a problem with it.
As a customer, I am satisfied. I'd rate it nine out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Kaspersky Endpoint Detection and Response Expert
June 2025

Learn what your peers think about Kaspersky Endpoint Detection and Response Expert. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
Good blocking capabilities and patching but needs better support
Pros and Cons
- "The performance for Kaspersky is good, and it's not impacted our client performance."
- "There are some cases that take three days to deal with. It's too long."
What is our primary use case?
We primarily use the solution for endpoint protection.
What is most valuable?
In the software that I use at Kaspersky, we have some options that we made to our client LiDAR for the block patching, and we can close the high chain.
The endpoint protection can update the patching from this server directly to the client, and every employee.
The performance for Kaspersky is good, and it's not impacted our client performance.
It offers good blocking capabilities.
The upper patching is excellent.
What needs improvement?
We have some problems with LiDAR. When we do the install, or reinstall the server console, or server endpoint protection, I don't know why we need to reinstall it.
Even though we installed, or did a new install for the server endpoint protection features, we use some small PDO or some patching to upgrade it in the employee protection clients if that's in.
I need a local expert. I'm looking for more experts to be able to apply it to certain solutions that we understand already. In order to meet our requirements, we need more experts.
There are some cases that take three days to deal with. It's too long.
For how long have I used the solution?
I've used the solution for as long as I've been at the company - about one year.
What do I think about the stability of the solution?
While the client is stable, for the console management, we have some problems with LiDAR. Sometimes, we installed it and had a problem and we need to reinstall it. In the last hour, the client can not do the configuration yet we need to add clients into the platform.
What do I think about the scalability of the solution?
We don't find it to have enough space.
We have below 100 people on the solution.
How are customer service and support?
Technical support is not too bad. I can say that it is in the middle of the road. They can be slow to respond.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is very straightforward.
What about the implementation team?
We used either an integrator or consultant. We had help from a third party and didn't handle the entire implementation ourselves.
What's my experience with pricing, setup cost, and licensing?
The pricing is good. I'd rate it four out of five in terms of affordability.
Which other solutions did I evaluate?
We did compare Kaspersky EDR with other software vendors.
What other advice do I have?
I'm a customer and end-user.
I would rate the solution a seven out of ten. If we had more local expertise and better support, it would be better.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
CISO at a wholesaler/distributor with 1,001-5,000 employees
Has good stability and efficient machine-learning features
Pros and Cons
- "Its customer service is quite good."
- "They should include XDR features in the solution."
What is our primary use case?
We use the solution to create a test scenario for detecting a potential threat in the network.
How has it helped my organization?
The solution's cybersecurity policies help us protect some extensions of the primary documents in case of a ransomware attack. Also, in case endpoint servers get compromised, it protects them. Thus, we can manage exclusive and essential extensions for systems using it.
What is most valuable?
The solution's most valuable feature is machine learning. It monitors the traffic and events to detect suspicious activity.
What needs improvement?
They should include XDR features in the solution. It would help us collect data metrics from different endpoints. Thus, we could identify the origin of the ransomware or malware attacks within the network. Also, they should include sandboxing features.
For how long have I used the solution?
We have been using the solution for three years.
What do I think about the stability of the solution?
I rate the solution's stability an eight.
How was the initial setup?
The solution's deployment process involves configuring the network and changing the active directory. The most challenging part here is opening specific ports and blocking or allowing certain services through firewall settings.
What's my experience with pricing, setup cost, and licensing?
The solution's cost is reasonable compared to other vendors.
What other advice do I have?
I suggest a cost versus-benefit analysis to others while looking for EDR and XDR solutions. Considering the advantages of Kaspersky, it offers patch and vulnerability management. It takes time to deploy initially. But once you deploy it correctly, you will get a lot of features. I rate it as an eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Sales Manager at Last call
Provides security to those operating with confidential documents since it offers a very stable environment
Pros and Cons
- "Stability-wise, I rate the solution a ten out of ten."
- "The solution does not offer much support to its users in Spanish, so I would like to see them offer more support in Spanish."
What is our primary use case?
I enjoyed working in security, but I am a commercial manager at my company now. Our customers and my company don't have issues with the solution. It's very difficult to try to work in the web interface.
How has it helped my organization?
When working with Kaspersky Endpoint Detection and Response Expert, I feel secure with my confidential documents, especially when we open them in Excel. So, we feel secure with such capacity in the solution.
What is most valuable?
In my company, we do some evaluations, and when opening a document, it's like a sandbox tool that allows one to open and review a document. So, we feel very secure with Kaspersky Endpoint Detection and Response Expert.
What needs improvement?
More than a technical issue, it's more of a commercial issue that we have faced with the solution. Some of my clients told me something about the Russia and Ukraine conflict. Because Kaspersky is from Russia, my clients mentioned that it may have some problems in the future.
Speaking about the features I like to see in the solution, I would like to say that I use the solution's features as a user. I even don't know if the solution has certain features. I am uncertain whether the solution includes certain features like traffic monitoring or app usage tracking. We employ Power Automate applications on our mobile devices, which might explain the observed traffic or usage. However, I believe this knowledge is limited as I lack access to the manager console.
The solution does not offer much support to its users in Spanish, so I would like to see them offer more support in Spanish.
For how long have I used the solution?
In the last six months, I have been certified on the user and commercial notifications on the web page of Kaspersky Endpoint Detection and Response Expert. Also, I don't remember the version of the solution I am using.
What do I think about the stability of the solution?
Stability-wise, I rate the solution a ten out of ten. We never had issues with Kaspersky. However, we have faced issues with Sophos. So, we are very happy with Kaspersky.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution a ten out of ten. Since we sell the solution, we plan to increase the usage of Kaspersky Endpoint Detection and Response Expert. With an increased demand, we will have to buy more licenses.
How are customer service and support?
We haven't had any issues in the last six months with Kaspersky. Only one time, I had raised a ticket with Kaspersky's support team, but it was for some administrative purpose.
Which solution did I use previously and why did I switch?
We used to use Sophos previously in our company. But I feel that Kaspersky is easier and quicker to use.
How was the initial setup?
Since the initial setup took a while, we changed our support engineer. With a new support engineer, we faced no problems with the deployment process. We sell not more than fifty solutions.
Also, the solution is deployed on the cloud.
What was our ROI?
The ROI is good since our clients are very confident with using Kaspersky Endpoint Detection and Response Expert.
What's my experience with pricing, setup cost, and licensing?
Since we are partners with Kaspersky, it's very complicated to discuss its pricing structure.
What other advice do I have?
Overall, I rate the solution a ten out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer:
CEO at Haniya Technologies
You can get more advanced features than their standard solution and only spend slightly more
Pros and Cons
- "We compared Kaspersky and Trend Micro. The latter is significantly more expensive. That's the main difference."
- "If a customer wants to use Kaspersky on-prem, they'll need to spend a lot on the hardware. Their server must be strong because EDR is a heavy product. You need excellent hardware to run it. It might make sense to deploy the solution in the cloud. If they add features, it will only make the product heavier and increase the hardware costs."
What is our primary use case?
Kaspersky EDR is an advanced version of the company's standard security solution that provides some enhanced detection and response features. Cost-wise, it's not much more than their other solution.
Kaspersky is trying to push clients to adopt EDR because they plan to consolidate everything into one solution. EDR incorporates all the features available in Kaspersky's other products.
What needs improvement?
If a customer wants to use Kaspersky on-prem, they'll need to spend a lot on the hardware. Their server must be strong because EDR is a heavy product. You need excellent hardware to run it. It might make sense to deploy the solution in the cloud. If they add features, it will only make the product heavier and increase the hardware costs.
For how long have I used the solution?
I have used Kaspersky EDR for about three years.
What do I think about the stability of the solution?
I rate Kaspersky EDR seven out of 10 for stability.
What do I think about the scalability of the solution?
I rate Kaspersky EDR seven out of 10 for scalability.
How are customer service and support?
I rate Kaspersky support eight out of 10. It depends on your SLA. You need to wait in line with standard support, but you get help immediately if you purchase business support.
How would you rate customer service and support?
Positive
How was the initial setup?
I wouldn't say that Kaspersky is a walk in the park to install, but it isn't too complex. Anyone with a little training and knowledge can install and configure it.
What's my experience with pricing, setup cost, and licensing?
I rate Kaspersky EDR seven out of 10 for affordability. Kaspersky EDR isn't cheap, but it shouldn't be out of reach for most medium-sized enterprises. It is a small price jump from their advanced endpoint security solution. Small companies may not be able to spend that much. It should be within the budget of any company with more than 300 employees should.
Which other solutions did I evaluate?
We compared Kaspersky and Trend Micro. The latter is significantly more expensive. That's the main difference.
What other advice do I have?
I rate Kaspersky EDR eight out of 10. It's one of the top three solutions, but it isn't my No. 1.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Endpoint Specialist at a computer software company with 201-500 employees
Great machine learning and real-time protection with useful vulnerability reports
Pros and Cons
- "Has great behavior detection and a very good firmware scanner."
- "Device control is lacking in EDR."
What is our primary use case?
We are Kaspersky partners and I'm an endpoint specialist.
What is most valuable?
The major features I really like are behavior detection and the firmware scanner. The solution also has great threat prevention. Machine learning is also very good as is the real-time protection. The best thing is you can also get a vulnerability report. There are a couple of other features EDR has that are not available in other solutions and that includes the system-level device for controlling the UI which enables control of applications at the location level. There is also the IoC scanner that Symantec doesn't have. Finally, the threat intelligence portal gives me global visibility into threats and their interconnections which is great.
What needs improvement?
The one thing Symantec has that EDR lacks is device control. I think Kaspersky has to increase its features when it comes to antivirus control. I'd like to see an increase in the 30-day retention period.
For how long have I used the solution?
I've been using this particular solution for 3 years but have used other Kaspersky solutions for over 15 years.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The scalability is good. Scaling is a matter of creating a new server and replicating all the data. It's not a big issue to do the migration or to upgrade hardware. We currently have around 20,000 users with that number increasing every day.
How are customer service and support?
The technical support is really bad. They have three models of support and if you have the regular level of support, it can take days to get a response. It forces you to pay extra to get premium support, and then you hear from them within two hours.
How was the initial setup?
The initial setup is straightforward. If you're deploying for customers then the deployment time will depend on the size of the organization and the level of preparation that has been done in advance. If you have 10,000 users, deployment will take about a day if everything is ready.
What's my experience with pricing, setup cost, and licensing?
Licensing costs are very reasonable. This is not an expensive solution.
What other advice do I have?
There are some features lacking in this solution and if I compare it with CrowdStrike or Microsoft, they are both better solutions than Kaspersky. I rate this solution eight out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Head of Information Security at Faisal Islamic Bank of Egypt
Effective, easy to set up, and offers good support
Pros and Cons
- "We can scale the solution."
- "We'd like to see them improve the automatic response."
What is our primary use case?
Currently, I'm using Kaspersky as endpoint protection and EDR.
I'm using it for detecting malicious behavior on PCs. It's for security.
What is most valuable?
In terms of effectiveness, it's the best.
It is easy to set up.
The product is stable.
We can scale the solution.
What needs improvement?
I can't say which areas need improvement.
We'd like to see them improve the automatic response.
For how long have I used the solution?
I've been using the solution for three years.
What do I think about the stability of the solution?
It's a stable, reliable solution. There are no bugs or glitches. It doesn't crash or freeze. We've had zero issues in general while using the product.
What do I think about the scalability of the solution?
The scalability has been good.
Kaspersky is installed on all PCs and servers. It is used extensively in the organization. There is likely over 1,000 users.
How are customer service and support?
We only used support once. We found a malicious file in an email, and we opened a ticket with them to deal with the issue. They were very effective. They resolved the issue and provided us with text to update the KATA directories.
How would you rate customer service and support?
Positive
How was the initial setup?
The solution is simple to set up. It's not a complex process.
Which other solutions did I evaluate?
We tested it with different scenarios, such as MITRE ATT&CK, and we did the same scenario across all vendors. This solution came out on top.
What other advice do I have?
I'm a customer and end-user.
We did a POC with the solution and were quite impressed by its effectiveness.
If someone is working in a virtual environment, they should consider a virtual solution like Kaspersky from the beginning. It helps save memory usage.
I'd rate the solution nine out of ten. It is a very effective tool.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
Microsoft Defender for Endpoint
SentinelOne Singularity Complete
IBM Security QRadar
Trellix Endpoint Security Platform
Intercept X Endpoint
Check Point Harmony Endpoint
Bitdefender GravityZone EDR
Sangfor Endpoint Secure
Buyer's Guide
Download our free Kaspersky Endpoint Detection and Response Expert Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?
- What are the best on-premise Endpoint Security solutions for a Tech Services company with 10,000 employees?
- Which is better for Endpoint Security: EDR or XDR solutions?