IT Security Consultant at ZOL Zimbabwe
Reseller
Configure and deploy everything from a single web-based interface
Pros and Cons
  • "I really like the auditing component because it really looks at exactly what has happened on the network."
  • "They have to do something to make the solution more resilient or recoverable from power failure events, which may include creating their own database."

What is our primary use case?

I have been working with McAfee ePolicy Orchestrator since 2005.

We are a service provider and system integrator, and this is one of the solutions that we provide for our clients. Most of the deployments we have done are on-premises.

What is most valuable?

The most valuable feature of this solution is the ability to configure and deploy everything from a single, web-based interface.

What needs improvement?

This solution ships with SQL Express, and we have issues related to database corruption in the event of power loss. Especially on this side of the world, we have a lot of power outages and most companies do not have backup power solutions. In most cases, when the power goes out, the database tends to corrupt a lot. For example, clients will be having trouble logging on because the login credentials are corrupt. They have to do something to make the solution more resilient or recoverable from power failure events, which may include creating their own database.

What do I think about the stability of the solution?

This is a stable solution to use. The only problem that I've noticed relates to updates, and it has only started recently. After getting an update, there are issues with connecting. It all comes down to how often the machines update their Windows OS. McAfee tends to have a problem with connectivity and stuff like that.

Buyer's Guide
McAfee ePolicy Orchestrator
April 2024
Learn what your peers think about McAfee ePolicy Orchestrator. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,924 professionals have used our research since 2012.

What do I think about the scalability of the solution?

In terms of scalability, McAfee is the best there is from all of the products that I've used. Why I say that is because you can manage a lot of products if you install the endpoint security pack. The is one of the products that has impressed me over the years. There is a version of the solution that actually allows you to manage certain versions of Symantec products. So, this is a good product, and when it comes to scalability, I think it's one of those products that you won't go wrong with.

We do have some larger corporate clients, but there are not many of them. Most of the client base in Zimbabwe is small to medium-sized business. The majority have less than two-hundred and fifty PCs on-site, which I consider being small or medium size. We also do support for hospitals, schools, universities, and even government.

How are customer service and support?

McAfee technical support is ok, but we do not contact them very often. Every year, they impose certifications on us, so in most cases, we have certifications for the different products that we support. This means that we hardly require support because we are well equipped when it comes to doing our job. If we do get something that we don't quite understand, McAfee has got a knowledge base that we usually refer to. This is helpful when it comes to some of the problems that we face.

How was the initial setup?

Over the years, I've noticed that the initial setup is very easy. It may be because I've worked with it for a long time, but the initial setup is easy, and even when it comes to doing the configuring for the projects, it is not complex.

Most of the setups that I have done are on-premises, where I have to set up the physical machine, and I haven't had any problems. It usually takes less than thirty minutes for everything to be set up and the deployment complete.

What about the implementation team?

We implement this solution for our clients.

What other advice do I have?

This is a solution I recommend very much. For anybody who is implementing this solution, I suggest that they read through the product manuals and documentation. I have noticed that it is an advantage to read through the manuals because people who do not, tend to miss things, and then blame the product for not working. I would say that McAfee is a good product, and over the years I have found it to be very stable and very effective when it comes to managing other products. We have all that we wanted to do with McAfee.

In the time that I have been using this solution, I've noticed that when I perform a setup on different platforms or different networks, I've gotten to learn new things because each and every network is different. When it comes to troubleshooting network issues, I have learned a lot, especially things related to cybersecurity.

This is a very good product, but they have a database issue. Having a McAfee-only solution, rather than having to bring in a Microsoft product, or one from another vendor would make this solution perfect.

I would rate this solution an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner.
PeerSpot user
Antivirus Support Team Lead at a insurance company with 1,001-5,000 employees
Real User
Centralized security management software that allows management of various McAfee products on the client computers.

What is most valuable?

Easy interface, reliability, scalability, built-in reporting.

How has it helped my organization?

We integrate more and more client computers from different supported businesses across the globe into a single ePO environment managed by a single support team, thus reducing support staff and unifying security policies across organization providing the anti-malware protection to the endpoints (both to servers and to workstations).

What needs improvement?

a. Reporting: The pre-canned ePO queries can be improved

For how long have I used the solution?

We use different versions of McAfee ePO for the last 10 years (v. 2.5 through v. 4.6).

What was my experience with deployment of the solution?

No

What do I think about the stability of the solution?

No

What do I think about the scalability of the solution?

No

How are customer service and technical support?

Customer Service: GoodTechnical Support: Good. However there is no definite SLA when a complicate issue is escalated to McAfee Level 3 or to McAfee software developers.

Which solution did I use previously and why did I switch?

We used to use Computers Associates AAO software till 2003. The McAfee manageability and price was much better.

How was the initial setup?

Straightforward

What about the implementation team?

We invited the vendor team. I’d rate their level of expertise 4 out of 5.

What other advice do I have?

I like McAfee ePolicy Orchestrator software. It is great centralized security management software that allows management of various McAfee products on the client computers. McAfee ePO makes risk and compliance management in the organization simpler and more reliable.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
McAfee ePolicy Orchestrator
April 2024
Learn what your peers think about McAfee ePolicy Orchestrator. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,924 professionals have used our research since 2012.
Information Security Officer at a financial services firm with 501-1,000 employees
Real User
Simple to use, easy to deploy, and offers great malware protection
Pros and Cons
  • "You have to have some experience, however, it's pretty simple to understand."
  • "One thing that I don't like is that McAfee products change very often and upgrade very often."

What is our primary use case?

We primarily use the solution as an antivirus, a client antivirus. We have a license for device control from where we can block USBs, DVDs, smartphones, etc from connecting to the computers.

What is most valuable?

Regarding malware, it's great at detecting viruses and malware. We haven't had the problem for the last ten years. It just works.

It's pretty simple in terms of managing things on ePO. You have to have some experience, however, it's pretty simple to understand.

The solution is easy to deploy. I have to do the upgrade now from an older version to the latest one, and I'm checking both upgrade and fresh install of the latest version, and it seems pretty easy.

The solution is quite stable. We haven't had any problem since it is installed.

The scalability is great.

What needs improvement?

I can't speak to what is missing from the latest version. We have an old version and in the coming weeks, we are going to upgrade to the latest version. We have to see on that one if there are any missing features. 

One thing that I don't like is that McAfee products change very often and upgrade very often. The annoying thing that I have noticed is that these new products do not work anymore on older Windows versions. Let's say a new version of antivirus does not install on Windows 8. You have to implement an older McAfee in an old version of Windows. 

For how long have I used the solution?

I have been working at this company for about six years. The company has maybe used it for at least 10 years.

What do I think about the stability of the solution?

The stability has been great for a decade. It requires very little maintenance and runs without issue. There are no bugs or glitches. It doesn't crash or freeze. 

What do I think about the scalability of the solution?

You can easily scale the solution up. It's not a problem.

How are customer service and support?

We haven't required technical support in the last few years. Everything that has to be done, we have done it by ourselves. We didn't have any big issues to report that would have required support. Therefore, I can't comment on them from personal experience.

That said, we have had some online meetings with the McAfee staff to see the new products and new licenses that we want to buy from them. 

Which solution did I use previously and why did I switch?

We might, in the future, implement Endpoint Detection and Response, however, for now, we haven't got that feature.

How was the initial setup?

The deployment process is pretty easy. Soon, I'll have to go to the latest version, and we will have to do two sequential upgrades to go to another version and then to the latest version. I'm seeking to install it from the beginning to a new server and so far it looks to be pretty simple.

What's my experience with pricing, setup cost, and licensing?

I can't speak to the cost of the solution. Another department handles that aspect.

What other advice do I have?

We are customers and end-users.

I would rate the solution at an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Network Security Consultant at a tech services company with 10,001+ employees
Consultant
Scalable, good support, and simple endpoint installation
Pros and Cons
  • "The most valuable features of McAfee ePolicy Orchestrator are the easy-to-use console, and lots of reports, such as customized reports and inventory reports. Additionally, overall the centralized management is very good where you can see the compliance levels and inventory."
  • "The solution could improve the EDR component in many areas, such as the zero-day and persistent threats. The implementation is also complex for this feature."

What is our primary use case?

McAfee ePolicy Orchestrator is used to manage endpoints, networks, compliance, and data security.

What is most valuable?

The most valuable features of McAfee ePolicy Orchestrator are the easy-to-use console, and lots of reports, such as customized reports and inventory reports. Additionally, overall the centralized management is very good where you can see the compliance levels and inventory.

What needs improvement?

The solution could improve the EDR component in many areas, such as the zero-day and persistent threats. The implementation is also complex for this feature.

There are different policies in the solution, such as EPO for EDR, and for Sandboxing, but when it comes to the EPO it is only for the policy orchestration and not for the analysis, incident management, or for the team who is working on the cyber security. They need to know how to use a different console, which is integrated nicely in their cloud platform called Envision but they have not done it in the EPO. 

I don't know what the McAfee strategy is, why they have not integrated the EDR analysis piece into the EPO. It is already available in the Envision, but not in the EPO. This is a difficulty. Whenever there needs to be any analysis, correlation, and in-depth EDR functionality it is not part of the EDR. There is a separate console for it. We need to depend on the inventory and the policy, and the EPO, but when it comes to analysis and in-depth alert details, then we need to dive into another console.

There are times when it is good to have one console to allow people to receive the trained analysis and historical data related to that particular incident.

For how long have I used the solution?

I have been using McAfee ePolicy Orchestrator for approximately 10 years.

What do I think about the stability of the solution?

A lot of the components of McAfee ePolicy Orchestrator, such as Sandboxing, DX, and  ATP are not stable. However, the antivirus is stable.

What do I think about the scalability of the solution?

The scalability of the McAfee ePolicy Orchestrator is good.

We have more than 75,000 users using this solution. We are using a combination of McAfee and FireEye where the antivirus part is provided by McAfee and the EDR part is covered by FireEye. Our next target is to combine both of these elements, either FireEye or McAfee.

How are customer service and support?

The technical support of McAfee is great.

Which solution did I use previously and why did I switch?

I have used other solutions, such as FireEye and Cisco solutions.

How was the initial setup?

The deployment of the McAfee ePolicy Orchestrator is very easy on the endpoints. However, deploying the solution in a large enterprise is very difficult. In terms of all the components of McAfee, it is difficult. There are lots of false positives and manual effort required for deploying the advanced component section.

What about the implementation team?

McAfee ePolicy Orchestrator requires lots of maintenance and we have had many performance issues. We have done maintenance for our databases approximately three times and it is a difficult job. The maintenance is time-consuming and it's a very difficult job to do.

When the database that we are managing is almost 70 - 80,000 systems, it is quite difficult to have an EPO, wherein everything is central, such as policy, database, asset, and inventory. There is a lot of load on the central server. For a long time, McAfee has been using central management where there are no distributed components. Everything is getting loaded on EPO and it is creating lots of maintenance work.

What's my experience with pricing, setup cost, and licensing?

There is a license required to use this solution. If we use the additional components, such as DLP encryption, there is an additional cost. However, it is similar to a separate product altogether. If you want to use that or not, it is optional, but when you use it, it will cost you additional pricing.

Which other solutions did I evaluate?

My team worked on FireEye and Cisco solutions. When comparing McAfee ePolicy Orchestrator to both these solutions, there are pros and cons for each. Some features are positive and really good in McAfee in terms of the UI, and easy-to-use Console. However, when compared to advanced features, such as EDR, FireEye and Cisco are better compared to McAfee.

The antivirus measurement, compliance, and deploying the agents, are much easier in McAfee ePolicy Orchestrator compared to FireEye and Cisco.

What other advice do I have?

My advice to those wanting to implement McAfee ePolicy Orchestrator is to keep it distributed. Whatever components you can distribute in terms of connectors need to be put in different locations. It will be taken care of properly. Otherwise, there will be lots of noncompliance issues and lots of loads on the network because it is bandwidth-intensive.

If we have a larger user database for the organization, then keep it local. To allow a minimum load on the EPO. We should do the maintenance of the EPO quarterly in terms of the database maintenance or in terms of the laws, policies. It should be reviewed periodically with the help of your support to make sure that your policies will not go wrong or your database will not create any errors. If there are errors there will be a problem to recover the data. If we don't do the maintenance, then there are quite chances of crashing the database

I rate McAfee ePolicy Orchestrator an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Cyber Security Consultant at a computer software company with 51-200 employees
Real User
Top 10
Useful tool to detect any pattern, and one can add or remove any servers as required
Pros and Cons
  • "McAfee ePolicy Orchestrator has a built-in advanced pattern, which is very useful because it can detect any pattern."
  • "I would like to see McAfee reduce the amount of manual work required."

What is our primary use case?

We use McAfee to detect patterns. For example, if we detect credit cards, we can use the advanced pattern. 

To maintain the solution, we require two individuals that are knowledgeable in SQL and DLP.

What is most valuable?

McAfee ePolicy Orchestrator has a built-in advanced pattern, which is very useful because it can detect any pattern.

What needs improvement?

McAfee ePolicy Orchestrator requires a lot of manual work. For example, if you use Symantec DLP, only one policy is needed, and you can apply it to all of the channels that are an endpoint, like the web or email. With McAfee, you need to create separate rules for all of those channels. One policy for email, one policy for web, and so on. I would like to see McAfee reduce the amount of manual work required.

In the next release, I would like to see an integration with third-party solutions for classification. We find that implementation is limited for some products. I would like an open API that we can integrate with other classification tools. 

For how long have I used the solution?

I have been using McAfee ePolicy Orchestrator for two months.

What do I think about the stability of the solution?

The stability of McAfee is user-friendly and stable.

What do I think about the scalability of the solution?

The solution is scalable. You can add and remove servers as required.

How was the initial setup?

The initial setup was straightforward, not complex.

What about the implementation team?

The implementation was done by me within a test environment. 

What's my experience with pricing, setup cost, and licensing?

We are using a free trial version of McAfee ePolicy.

What other advice do I have?

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Information System Security Coordinator at a comms service provider with 501-1,000 employees
Real User
The central manager policy enables us to have all of our client modules in one solution
Pros and Cons
  • "The central manager policy means we have almost all client modules in one solution."
  • "The detection aspect should be improved so that signatures are updated more quickly."

What is our primary use case?

I am an information system security coordinator and our company is a customer of McAfee. We use the product internally. Our primary use case is for protecting workstations, and servers. We use the antivirus with several modules that have a threat intelligence exchange, DLP and threat protection. It is a firewall hosting through the prevention system, web control and adaptive threat protection. The solution is for workstations and Windows servers. Approximately 1,300 administrators use the product and we have two people responsible for backup.

How has it helped my organization?

It's a mandatory system for the protection of endpoints. Without it, the system could be compromised. 

What is most valuable?

The central manager policy is valuable. It means we have almost all client modules in one solution, which is great. Having firewall web control adapted for protection, and a very easy management console to monitor an infection is important. 

What needs improvement?

From my point of view, the solution is good. Even if there are problems we're able to find a resolution quite quickly. There were some issues in earlier versions but after the upgrade to the latest version, we haven't had any issues. 

I have noticed several times that some viruses were not detected by McAfee ENS and we had to escalate support and modify detection signatures. The detection aspect should be improved so that signatures are updated more quickly.

For additional features, there really isn't very much to suggest. The main issue would be to improve detection. 

For how long have I used the solution?

I've been using the product for more than 10 years. 

What do I think about the stability of the solution?

Stability is good, we haven't had any down time or issues. 

What do I think about the scalability of the solution?

The product is very scalable, it's very easy to add users.

How are customer service and technical support?

I'm happy with the technical support. 

Which solution did I use previously and why did I switch?

We've been using McAfee for as long as I've been in the company.

How was the initial setup?

I don't recall how much time it took for the initial deployment but it was a very easy setup, and updates, new versions, etc. are also easy to setup. Deployment is quite a quick process, maximum one hour for a console but now we just do the regular upgrades to the latest version which is a simple process. 

What's my experience with pricing, setup cost, and licensing?

In addition to standard licensing fees, there is an additional cost for every module. 

What other advice do I have?

My advice would be to read the documentation and carry out implementation. It is not complicated, just a matter of deciding which vendor to use.

Because we have a corporate contract, the price is reasonable. We're happy with everything - the dashboard, user interface - it's all good. 

I would rate this product a nine out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user831093 - PeerSpot reviewer
System Engineer at Inbox Business Technologies
MSP
Enables us to monitor logs and report incidents
Pros and Cons
  • "Their support is really good. I would rate it a nine out of ten. I have never any issues with their support. They always reply and follow our queries on time."
  • "There are some issues relating to the automation of reports. That's why I wanted the DLP reports. There are some problems in this area. Sometimes it does not work even though all the configuration words are right. There are also some problems with automatic updates."

What is our primary use case?

I use McAfee as a solution to monitor our network log systems. I monitor logs and use it to be able to report incidents and get better internal vision. 

What is most valuable?

The DLP feature is great to have for our users.

What needs improvement?

There are some issues relating to the automation of reports. That's why I wanted the DLP reports. There are some problems in this area. Sometimes it does not work even though all the configuration words are right. There are also some problems with automatic updates.  

There have been some problems with monitoring the logs. It's not very user-friendly. 

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

Stability is fine. I haven't had many issues with it.

What do I think about the scalability of the solution?

Scalability is fine. We have around 600 users. We required two or three staff for maintenance and monitoring. They're security analysts, and junior consultants.

How are customer service and technical support?

Their support is really good. I would rate it a nine out of ten. I have never any issues with their support. They always reply and follow our queries on time.

How was the initial setup?

The initial setup was not straightforward. It takes time to deploy and configure. 

What other advice do I have?

I have not had too many problems with this solution. It works fine. I really like the DLP feature. There are no database issues. 

I would rate it a nine out of ten because it gives IT clarity, it doesn't have database issues, and it hasn't crashed or given us problems in the two years we've been using it. It's a great tool.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Senior Manager of System Security with 5,001-10,000 employees
Vendor
Although it has the ability to auto create service tickets, it needs to expand to allow more products this ability.

What is most valuable?

Automatic workflow remediation

How has it helped my organization?

By setting up automatic workflows for specific tasks by the use of property tags there is less hands on intervention needed.

What needs improvement?

Although it has the ability to auto create service tickets, it needs to expand to allow more products this ability. It also seriously needs a better way to direct connect to remote users not located within the network.

For how long have I used the solution?

12 years

What was my experience with deployment of the solution?

Yes, someone who doesn’t understand their environment and the configuration needed cannot just turn everything on and let it go.

What do I think about the stability of the solution?

No

What do I think about the scalability of the solution?

No, we were able to scale this from a single location within the US of 100 endpoints to 5,000+ globally within a week with only 10% of the systems having a problem that needed to be addressed because of a specialized configuration.

How are customer service and technical support?

Customer Service: 8 out of 10Technical Support: 8 out of 10

Which solution did I use previously and why did I switch?

Kaspersky, the management console is very cumbersome and difficult to manage and doesn’t allow for the fine grained control of ePO.

How was the initial setup?

It’s straightforward until you get to some of the advanced components such as a DMZ and agent handler deployment.

What about the implementation team?

In-house, I personally did the implementation, configuration and management.

What was our ROI?

Saves a company 20 man hours a week. The true dollar value ROI is going to be based on the cost of the product for a particular company, since that can vary depending on the negotiated contract terms.

What's my experience with pricing, setup cost, and licensing?

This product will take 40 man hours for setup, configuration and deployment once the environment information is gathered.

Which other solutions did I evaluate?

Yes, Trend Micro

What other advice do I have?

There is no other product out there with the control and overall security components that can do what ePO can.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free McAfee ePolicy Orchestrator Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free McAfee ePolicy Orchestrator Report and get advice and tips from experienced pros sharing their opinions.