Try our new research platform with insights from 80,000+ expert users
BhanuPrakash - PeerSpot reviewer
Technical Head at Systech Services Pvt. Ltd
Real User
Top 20
Monitors and provides automated emails and updates that helps to resolve issues
Pros and Cons
  • "The tool's ability to work with security threats is competitive. The best part is monitoring and the way we receive automated emails and updates. When an issue arises, a ticket automatically gets raised, clearly outlining the necessary actions to be taken from our end."
  • "The only challenge we face with the tool is the pricing. Clients often compare it with other products in the market and try to negotiate prices. This concern has caused some challenges in closing deals. Otherwise, as a product, we have no worries."

What is our primary use case?

Since we installed Sophos MDR, we have thankfully had peace of mind. Before the Sophos MDR installation, we had a very bad experience with several clients. Post-installation, this issue has decreased, and it's very effective.

What is most valuable?

The tool's ability to work with security threats is competitive. The best part is monitoring and the way we receive automated emails and updates. When an issue arises, a ticket automatically gets raised, clearly outlining the necessary actions to be taken from our end.

The solution's integration with our IT workflow is easy. 

What needs improvement?

The only challenge we face with the tool is the pricing. Clients often compare it with other products in the market and try to negotiate prices. This concern has caused some challenges in closing deals. Otherwise, as a product, we have no worries.

The support's response time can also be faster. 

For how long have I used the solution?

I have been working with the product for two years. 

Buyer's Guide
Sophos MDR
May 2025
Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.

What do I think about the scalability of the solution?

I rate the solution's scalability to the maximum, i.e., a ten out of ten. 

How are customer service and support?

We have local distributors who support us. Sometimes the call centre gets really busy, which can be a challenge. Thankfully, we have local distributor support that handles most of our issues. We only resort to reaching out to the main support when necessary.

How would you rate customer service and support?

Positive

How was the initial setup?

There are no challenges associated with the tool's deployment. 

What other advice do I have?

The tool is recommended for enterprises. The pricing model can be a bit challenging for small companies. I rate it a ten out of ten. I recommend the product. We have migrated most of our clients to Sophos MDR. 

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Jayden Beard - PeerSpot reviewer
Support Engineer at a comms service provider with 201-500 employees
Real User
Top 5
Provides 24/7 monitoring services and has a straightforward process
Pros and Cons
  • "Sophos MDR has improved the threat detection process by identifying and addressing the issues before they become severe."

    What is our primary use case?

    We use the product for 24/7 monitoring services for threat detection.

    For how long have I used the solution?

    We have been using Sophos MDR for about two and a half years.

    What do I think about the stability of the solution?

    I rate the platform’s stability a ten out of ten.

    What do I think about the scalability of the solution?

    The platform is easy to scale. I rate the scalability a ten out of ten.

    How was the initial setup?

    The initial setup is straightforward. I rate the process a ten out of ten.

    What's my experience with pricing, setup cost, and licensing?

    The product is reasonably priced considering the cybersecurity features.

    What other advice do I have?

    Sophos MDR has improved the threat detection process by identifying and addressing the issues before they become severe. It helps us maintain cybersecurity with 24/7 device monitoring.

    In one of the incidents, the product was instrumental in mitigating a threat by enabling us to mark the machine with a phishing attack. In this way, we isolated the device before it infiltrated the organization.

    The AI analysis and MDR features automatically isolate the issues without manual effort.

    I rate it a ten out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer:
    PeerSpot user
    Buyer's Guide
    Sophos MDR
    May 2025
    Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
    857,028 professionals have used our research since 2012.
    Victor Bayedo - PeerSpot reviewer
    Cloud Solution Architect at a tech services company with 201-500 employees
    Real User
    Top 20
    A comprehensive solution that integrates seamlessly with several third-party tools
    Pros and Cons
    • "There is a feature called XDR Central. With this, Sophos can connect to third-party security solutions."
    • "Threat intelligence is an area for improvement for MDR."

    What is our primary use case?

    Sophos MDR is used to take care of security, monitor the environment, and show it is safe and secure.

    How has it helped my organization?

    A lot of organizations in Africa have been in very bad shape. Some experienced staff might suddenly drop their registration letters, making it a challenge to find somebody new. That is one of the cases where Sophos MDR comes into play. Organizations do not necessarily have to invest too much in in-house personnel because Sophos takes care of the first channel of security that you require. You don't need entry or mid-level security personnel in-house.

    A lot of organizations have also experienced attacks like ransomware. This has led to more than the loss of data. We face legal implications. We have our integrity damaged. These attacks come with a lot of financial implications, and Sophos addresses that aspect by offering up to $1 million in case of any environmental breach. Other organizations can take server insurance or integrate it to give them confidence that they can land on their feet if anything happens.

    What is most valuable?

    There is a feature called XDR Central. With this, Sophos can connect to third-party security solutions. This way, clients do not need to spend on a separate security OEM. Sophos MDR naturally integrates with any third party, and clients get the value they need from the solution.

    What needs improvement?

    With the level of AI in the hands of cybercriminals today, they have had a lot of success, and they continue to improve on their success. Hence, the only way forward is for any security solution to continue increasing the amount of data they have access to. Threat intelligence is one area any security company needs to expand because the better the data we have, the more precise a difference they can make regarding security. Threat intelligence is an area for improvement for MDR. Sophos MDR also needs to add more automation functions.

    For how long have I used the solution?

    I have used Sophos MDR for three years.

    What do I think about the stability of the solution?

    I rate the stability of the solution a nine-point-six out of ten.

    What do I think about the scalability of the solution?

    I rate Sophos MDR's scalability a ten out of ten. It is straightforward to increase the number of protected devices. You don't need to redeploy anything. It is automatically pushed from the central to all devices. It is seamless.

    Sophos MDR cuts across every type of organization, from a small to a large enterprise organization. Large enterprises gain value because when it comes to cost, the higher you buy, the less you pay. For a large enterprise, it will make the price cheaper. Regarding capability, one of the recommendations is called synchronized security, which is the ability of your endpoint to communicate with the firewall and share intelligence. That's one of the things Sophos has been able to achieve. It has some of the components or architecture I require in the environment for large organizations and enterprises, but Sophos MDR speaks to enterprises and smaller to medium companies.

    How are customer service and support?

    Customer support is top-notch.

    How was the initial setup?

    Today, the best way to deploy a cloud solution like Sophos MDR for a large enterprise environment is to have it leverage soft packing on deployment. It is quite easy for customers using Sophos to add additional features to it because you don't need to redeploy. From the portal, you can push licenses to every endpoint you have. Sophos has made some advances in that aspect, but sadly, it depends on third parties to make deployment more seamless.

    What's my experience with pricing, setup cost, and licensing?

    MDR is a complete enterprise solution, and compared to other OEMs, it is one of the cheapest. I rate the pricing a nine out of ten because it is affordable.

    What other advice do I have?

    Sophos is one of the first security OEMs to recognize security perfectly through a single management platform whereby organizational security solutions can think and be managed from a single dashboard. That gives Sophos an edge over so many other OEMs. This is what MDR leverages today. Another point of note is that a few years ago, when ransomware software became rampant, Sophos released a component dedicated to helping providers combat any new variants of ransomware, which any other OEM could use. And Sophos was able to work with third-party security solutions, meaning that an organization currently using another OEM can still leverage the Sophos interface to ensure they are safe regarding ransomware. This gave Sophos an edge with MDR. Today they have XDR Central. XDR Central works with third-party security solutions and enables organizations to carry out forensic and threat-hunting analyses on those companies' devices and networks. These are things that give Sophos an edge over many other OEMs out there.

    I rate Sophos MDR a nine out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
    PeerSpot user
    Sophos Certified Product Architect at Softech Microsystems
    Reseller
    Top 5Leaderboard
    Allows integration of multiple vendors into one dashboard and 24/7 monitoring
    Pros and Cons
    • "The most valuable feature is the ability to integrate multiple functions into a single dashboard regardless of the vendors being integrated."
    • "Sophos MDR lacks integration with MDM solutions."

    What is our primary use case?

    We are a distributor of Sophos products in Pakistan. Our customers use Sophos MDR when they require a unified dashboard for integrating multiple vendors' solutions, enabling them to have visibility across all their systems. Sophos MDR is particularly valuable for organizations that lack an in-house expert to manage and secure their network.  

    What is most valuable?

    The most valuable feature is the ability to integrate multiple functions into a single dashboard regardless of the vendors being integrated.

    What needs improvement?

    Sophos MDR lacks integration with MDM solutions.

    Sophos should provide a demo of MDR so that potential customers can utilize it through a free trial for POC.

    For how long have I used the solution?

    I have been using Sophos MDR for five months.

    What do I think about the scalability of the solution?

    I would rate the scalability of Sophos MDR a seven out of ten.

    How was the initial setup?

    The initial setup is a seven out of ten.

    What's my experience with pricing, setup cost, and licensing?

    Sophos MDR is expensive, and due to the financial instability in Pakistan, many customers prefer to opt for Intercept X Advanced with XDR. This allows them to have a comprehensive LDR solution rather than MDR.

    I would rate the price of Sophos MDR as a nine out of ten, with ten being the most expensive.

    What other advice do I have?

    I would rate Sophos MDR eight out of ten.

    People are expecting Sophos MDR to be available on-premises as well, due to an existing compliance issue in Pakistan. This is a crucial aspect that customers have requested from me. Historically, two to three years ago, or even four years ago, our solution was on-premises; however, currently, we have already transitioned to the cloud. Now, in the banking sector of Pakistan, there are policies that prohibit hosting anything on the cloud. This presents a significant challenge for us in the Pakistani market, as we aim to offer and impress them with cloud-based solutions. Many other vendors provide their solutions in three ways: hybrid, on-premises, or on the cloud. Therefore, the drawback of Sophos MDR is that we don't offer an on-premises option. Nevertheless, despite this limitation, we can still provide Sophos MDR by adapting it to function on a highly secure server or in air gap mode.

    Sophos MDR offers a 24/7 threat experts team that protects customers' networks from attacks or vulnerabilities. This feature is ideal for organizations that do not have a cybersecurity team. 

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer:
    PeerSpot user
    reviewer2192769 - PeerSpot reviewer
    Architect at a photography company with 10,001+ employees
    Real User
    Provides efficient firewall features but needs improvement with stability
    Pros and Cons
    • "It is a scalable solution."
    • "Its technical support could be better."

    What is most valuable?

    The solution has good firewall functionality.

    What needs improvement?

    They should include better tools in the solution. Also, its pricing and stability need improvement.

    For how long have I used the solution?

    I have been working with the solution for two years.

    What do I think about the stability of the solution?

    The solution could be more stable. I rate its stability five out of ten.

    What do I think about the scalability of the solution?

    It is a scalable solution. I rate its scalability nine out of ten. Our clients with enterprise businesses, including ten users, are using the solution.

    How are customer service and support?

    The solution's technical support could be better.

    How would you rate customer service and support?

    Neutral

    How was the initial setup?

    The solution's initial setup was straightforward. The deployment took less than a week.

    What's my experience with pricing, setup cost, and licensing?

    The solution is expensive. I rate its pricing a seven out of ten.

    What other advice do I have?

    I rate the solution a seven out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer: partner
    PeerSpot user
    Darryl Theron - PeerSpot reviewer
    Director at Trace Network Operations
    Real User
    Effective management capabilities, beneficial monitoring, and full featured
    Pros and Cons
    • "The most valuable feature of the Sophos Managed Threat Response is the central management capabilities and monitoring."
    • "Multitenancy features of Sophos Managed Threat Response should be improved. You cannot use the solution for multiple clients."

    What is our primary use case?

    We are using Sophos Managed Threat Response for network security and firewalls.

    What is most valuable?

    The most valuable feature of the Sophos Managed Threat Response is the central management capabilities and monitoring.

    What needs improvement?

    Multitenancy features of Sophos Managed Threat Response should be improved. You cannot use the solution for multiple clients.

    For how long have I used the solution?

    I have been using Sophos Managed Threat Response for approximately 

    What do I think about the stability of the solution?

    The solution is stable.

    What do I think about the scalability of the solution?

    Sophos Managed Threat Response is a scalable solution.

    How are customer service and support?

    I am satisfied with the technical support.

    Which solution did I use previously and why did I switch?

    I have not used other similar solutions

    How was the initial setup?

    The initial setup of Sophos Managed Threat Response is reasonably difficult. It takes approximately a day or two to have it properly set up.

    What about the implementation team?

    To do the implementation I would recommend having at least one certified technician available.

    What was our ROI?

    We have seen a return on investment using this solution.

    What other advice do I have?

    I rate Sophos Managed Threat Response an eight out of ten.

    Which deployment model are you using for this solution?

    Hybrid Cloud
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    reviewer1667337 - PeerSpot reviewer
    Sr. Consultant/Partner/Co-Founder at a tech services company with 1-10 employees
    Reseller
    Stops threats as they happen
    Pros and Cons
    • "Sophos MTR will stop the threat as it is happening. Intercept X, which is a part of it, has the ability to roll back, so the attack is undone. And then the advanced edition of MTR lets me handle the threat by talking on the phone. I don't have to deal with it. I don't have to just go through emails back and forth. We don't have to pay extra for Rapid Response services. If something is happening, they're right on top of it."
    • "Once in a great while, an update fails."

    What is our primary use case?

    We use Sophos MTR for three of our customers, and we're proposing it for a fourth. We sell Sophos Intercept X Advanced with EDR and MTR Advanced. All of this is managed through Sophos Central and just integrated into the endpoint for both workstations and servers, so we see alerts, problems, and cases opened. 

    What is most valuable?

    Sophos MTR will stop the threat as it is happening. Intercept X, which is a part of it, has the ability to roll back, so the attack is undone. And then the advanced edition of MTR lets me handle the threat by talking on the phone. I don't have to deal with it. I don't have to just go through emails back and forth. We don't have to pay extra for Rapid Response services. If something is happening, they're right on top of it. And there are all the automatic features of the firewall that are interconnected with the endpoints. The firewall has the ability to isolate a compromised workstation and stop it from communicating anywhere on the network. It's called Synchronized Security and we implemented that everywhere we can. The firewall management and the endpoint management are all in the Sophos Central

    What needs improvement?

    I don't have really anything to offer as far as improvements. With every customer I can, I deploy Intercept X. It works. It protects the workstation. It protects the server. The client doesn't take a big hit in terms of performance on a workstation or server. The deployment is simple.

    For how long have I used the solution?

    I've been using Sophos MTR since it first became a product, so two or three years now.

    What do I think about the stability of the solution?

    It's cloud-based, it's a monitoring solution. Nothing MTR does affect the workstation. It's the antivirus scanning agent that is called Sophos Central Intercept X. That's what's on the workstation. Once in a great while, an update fails, but by and large, it's rock solid. We've had no problems with it compared to some of the other products that we're trying to get customers to move away from as renewals fall off. Again, I won't mention the product, but I've got a customer with 900 plus workstations, and I can say for quite a bit of money, she'll just consider changing. But so far she hasn't been able to find the bandwidth to change.

    What do I think about the scalability of the solution?

    As far as we know, it has unlimited scalability.

    How are customer service and technical support?

    The MTR tech support has been phenomenal.

    How was the initial setup?

    The setup is literally nothing as long as you're using Intercept X on the endpoint as well as the Intercept access to Sophos Central Intercept X that is installed and running on each of your workstations servers and workstations. And those are managed from within the Sophos Central Cloud. If you don't have that, then there would be a lot of setup. But if you're already a Sophos Central customer, engaging with MTR is basically just accepting the contract. It's really nothing more than that.

    What's my experience with pricing, setup cost, and licensing?

    It competes very well with other similar products. One of the Sophos products I put in for a customer was two and a half times less expensive than the competing product. 

    What other advice do I have?

    I would rate Sophos MTR as a 10 out of 10 based on my experience with customers.

    Which deployment model are you using for this solution?

    Hybrid Cloud
    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
    PeerSpot user
    Abdo Alkateeb - PeerSpot reviewer
    Sales manager at Mayasoft Technology
    Real User
    Top 5
    Provides customer-friendly technical support services and an easy setup process
    Pros and Cons
    • "The product’s most valuable feature is ease of use."
    • "The product's pricing could be less expensive."

    What is most valuable?

    The product’s most valuable feature is ease of use.

    What needs improvement?

    The product's pricing could be less expensive.

    For how long have I used the solution?

    We have been using Sophos MDR for almost a year.

    What do I think about the stability of the solution?

    It is a stable product due to timely and automatic updation.

    What do I think about the scalability of the solution?

    We have 100 clients for Sophos MDR. It is a scalable product.

    How are customer service and support?

    The technical support services are customer-friendly.

    How was the initial setup?

    The initial setup is easy and can be done immediately.

    What was our ROI?

    The product generates a good return on investment.

    What's my experience with pricing, setup cost, and licensing?

    It is an expensive platform.

    What other advice do I have?

    The product is user-friendly and cost-effective. I advise others to add MDR, XDR, and EDR solutions for complete security. I recommend the product to others and rate it an eight out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
    PeerSpot user
    Buyer's Guide
    Download our free Sophos MDR Report and get advice and tips from experienced pros sharing their opinions.
    Updated: May 2025
    Buyer's Guide
    Download our free Sophos MDR Report and get advice and tips from experienced pros sharing their opinions.