What is our primary use case?
My main use case for Sophos Endpoint is endpoint protection, as I have experience with Sophos from the beginning. Sophos also provided XDR, which I use as well.
I worked as a system integrator in a system integrator company, where we deployed Sophos for customers in Sri Lanka. There are many enterprise customers there, and I was involved in the deployment and training, deploying Sophos Enterprise suite for more than 1,000 customers. I configured the dashboard and the endpoint policies and was involved in protecting the environment from cyber threats by installing Sophos.
Apart from the deployment, I use Sophos Endpoint for my personal computer as well, and I feel it is a good solution that provides protection from various attacks. It offers many features for ransomware protection and covers web protection, allowing us to categorize URL filtering using their categories, making Sophos Endpoint more than just an endpoint protection product.
How has it helped my organization?
Sophos Endpoint positively impacts my organization by preventing cyber attacks, saving the company money, employees' time, and data, and helping protect the endpoints from unidentified zero-day attacks, cyber threats, and malware.
After installing Sophos Endpoint, we definitely see that many users are prevented from attacks, as we can clearly see from the console what the attacks are and who is targeting the endpoints, indicating a strong ROI after the deployment.
What is most valuable?
The best features Sophos Endpoint offers include their signature-based and AI-based endpoint protection, URL filtering, and DLP, and it also integrates with Sophos firewall for more visibility and enforcement security.
I mainly rely on Sophos Endpoint protection and XDR as the main features.
The communication between the central console and the endpoints is very good, allowing for real-time alerts and the enforcement of policies. When comparing Sophos to other products, it updates and syncs policies to the console instantly right after configuration, which is a significant advantage.
What needs improvement?
I believe Sophos Endpoint can be improved, especially in AI and ML detection, as these days many endpoints are working based on AI and ML, not just signatures, and this improvement would be a great move for Sophos.
Feature-wise, if Sophos can add a ransomware rollback feature, it will be an added advantage because many competitor products offer that feature, allowing live-show and live-restore of computers to the last known previous state after an attack.
Nowadays, many companies are looking at governance and security, and I think Sophos's AI capabilities are not up to the level of other dedicated tools when comparing governance and security.
Sophos's AI capabilities are present, but many endpoints rely heavily on AI and ML, and while Sophos's agent is a bit larger due to signatures, improving it would enhance reliability and performance.
If Sophos can improve the DLP classification and include those features into Sophos Endpoint, it would be an added advantage.
For how long have I used the solution?
I have used Sophos Endpoint for five or six years.
What do I think about the stability of the solution?
Sophos Endpoint is stable without any issues or downtime in performance.
What do I think about the scalability of the solution?
Sophos Endpoint's scalability is good, as it can handle growth easily, and I can update it as needed with a licensing system that is easy to manage.
How are customer service and support?
Sophos provides good customer support, with a separate technical portal for resolving customer issues and a solid certification program to educate users and IT staff.
Which solution did I use previously and why did I switch?
I have used multiple solutions because I worked for an SI company and a distribution company, and while there are no specific reasons for switching, I needed to work with various vendors and encountered a couple of different products.
How was the initial setup?
I have been involved with several deployments of Sophos Endpoint, deploying it in both on-premises and cloud environments.
Sophos provides its own cloud SaaS environment for cloud deployments, so we do not need to purchase separate cloud services, making it easier to implement than on-premises deployments where we have to provide the server.
What was our ROI?
Although I cannot provide exact numbers, deploying Sophos Endpoint offers ROI, as users save time resolving issues with their computers, and admin and management staff save time and protect their data from potential attacks, leading to significant cost savings for the organization.
What's my experience with pricing, setup cost, and licensing?
The licensing model for Sophos Endpoint is very simple and good, but I do not have information about the pricing.
Which other solutions did I evaluate?
Before choosing Sophos Endpoint, I mainly evaluated other options based on reviews, customer feedback, user feedback, and feedback from engineers, which helped me decide on the product.
What other advice do I have?
I would rate Sophos Endpoint overall a nine. I chose a nine because there are many endpoint protection products and EDRs in the market, especially in the Gartner Magic Quadrant. To compete effectively with them, Sophos needs to improve its focus on AI and ML. This is why I gave it a nine, but I believe it could achieve a ten. My advice to others looking into using Sophos Endpoint is to start installing it to see the difference and how it can allow employees to work smoothly without worrying about data losses and security threats.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other