We use Sophos MDR for DLP (Data Loss Prevention), NGIPS (Next-Generation Intrusion Prevention System), URL filtering, application control, and visibility.
Tecnical manager at Watronix Information Technology Ltd
Provides effective data loss prevention, but support could be improved
Pros and Cons
- "I like Sophos MDR's inbuilt feature for DLP (Data Loss Prevention)."
- "Sophos MDR's support and basic training of their devices could be improved."
What is our primary use case?
What is most valuable?
I like Sophos MDR's inbuilt feature for DLP (Data Loss Prevention). Just a subscription is enough to get a dedicated device for it.
What needs improvement?
Sophos MDR's support and basic training of their devices could be improved. The solution's curriculum does not give clear information about its certifications.
For how long have I used the solution?
I have been using Sophos MDR for six months.
Buyer's Guide
Sophos MDR
May 2025

Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
What do I think about the stability of the solution?
Sophos MDR is not quite stable.
I rate Sophos MDR a seven out of ten for stability.
What do I think about the scalability of the solution?
Sophos MDR is a scalable solution. However, its integration with other devices is not as good as Cisco's. Our clients for Sophos MDR are medium manufacturing businesses.
I rate Sophos MDR a six out of ten for scalability.
How was the initial setup?
Unlike Cisco, the initial setup of Sophos MDR is easy.
What's my experience with pricing, setup cost, and licensing?
Sophos MDR is a cheap solution. I rate Sophos MDR a five out of ten for pricing.
What other advice do I have?
Sophos MDR doesn't necessarily address the full-scale network requirements in terms of security. I recommend the solution for small to medium enterprises but not for large enterprises. With Sophos MDR, you get what you buy.
Overall, I rate Sophos MDR a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner

Network Engineer at a comms service provider with 10,001+ employees
Seamless integration, remote control access, high overall security protection
Pros and Cons
- "The most valuable aspect of this solution is the ability to interact with the firewall and workstations seamlessly to shut down the threats. Additionally, you are able to control the workstations remotely."
- "There is room for improvement in performance and upgrades."
What is our primary use case?
We are using this solution in conjunction with others. We usually put both endpoint detection solutions in some of our desktops and in others, we have the Sophos desktop solution combined with Sophos firewall switches.
What is most valuable?
The most valuable aspect of this solution is the ability to interact with the firewall and workstations seamlessly to shut down the threats. Additionally, you are able to control the workstations remotely. This most robust solution out in the industry today.
There is a high level of protection to prevent both ransomware and malicious software from the exterior of the network, down to the workstations. The workstations are analyzed to prevent threats that come in through network packets, such as in email. You need to keep email secure because a lot of these malicious threats are coming in from email.
Nowadays, a lot of social interactions are through the internet and if somebody giving out passwords or is not keeping up with security best practices they could be vulnerable to attacks.
What needs improvement?
There is room for improvement in performance and upgrades.
For how long have I used the solution?
I have been using the solution for approximately one year.
What do I think about the stability of the solution?
The solution is very stable.
What do I think about the scalability of the solution?
I have found the scalability to be good. We do not have plans to increase usage in the near future.
How are customer service and technical support?
The technical support has been good, we had no problems.
How was the initial setup?
The installation was straightforward and the implementation took approximately three months.
What about the implementation team?
We have a team of three people that do the deployment and maintenance of the solution.
What's my experience with pricing, setup cost, and licensing?
The cost of the solution is based on how many users use it.
What other advice do I have?
My advice to others thinking about implementing this solution is to negotiate for a lower price and it is a benefit to have someone who understands firewalls and their basic implementation.
I would recommend this solution to those who want to have complete security protection.
I rate Sophos Managed Threat Response a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Sophos MDR
May 2025

Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
Good antivirus and firewall capabilities, and the collaborative support is helpful
Pros and Cons
- "The most valuable feature is threat hunting."
- "One of the limitations that we have found is with communications and the languages in different countries."
What is most valuable?
The most valuable feature is threat hunting.
One of the big advantages is that we can collaborate with Sophos' support, and they will show us the problems.
What needs improvement?
One of the limitations that we have found is with communications and the languages in different countries. In Vietnam, we are okay and it is not a big problem because we have a vendor, who is a Sophos partner.
For how long have I used the solution?
My company has been using Sophos Managed Threat Response for more than two years. It was installed before I joined the company.
What do I think about the scalability of the solution?
We have more than 1,000 users.
How are customer service and technical support?
The technical support is quite good, although sometimes the response time is quite long. Then again, maybe I'm a difficult customer.
Which solution did I use previously and why did I switch?
Prior to this, we used Sophos EDR but after that, we upgraded to the Managed Threat Response. It has additional benefits that we were interested in.
What other advice do I have?
Overall, Sophos is working well in our organization and we plan to continue using it. It is a good product and I recommend it because it is centralized and in my opinion, it is one of the best security products available on the market. It has both antivirus and firewall support.
I would rate this solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Cyber Security Consultant at CompCiti Business Solutions
Provides reports, alerts and allows us to monitor the network
Pros and Cons
- "The automation feature in Sophos MDR provides reports and alerts."
- "Support could provide a faster response."
What is our primary use case?
The clients wanted to replace their existing antivirus solution, so we implemented Sophos MDR.
How has it helped my organization?
We obtain telemetry from all sources, including the firewall, and can integrate it with multiple other solutions. Unlike some solutions that only gather telemetry from endpoints, Sophos MDR collects data from various sources. If threats are identified automatically, the software can intervene, which is helpful outside regular working hours.
If a threat is identified during off hours, it will be handled by the support team before waiting for our intervention.
What is most valuable?
The automation feature in Sophos MDR provides reports and alerts. If something critical occurs, it sends alerts to our email. This allows us to monitor the network and determine what solutions or actions we can take.
What needs improvement?
The pricing is acceptable. Support could provide a faster response.
For how long have I used the solution?
I have been using Sophos MDR for three months. We implement Salesforce for some of our clients.
What do I think about the stability of the solution?
I rate the solution’s stability a seven out of ten.
What do I think about the scalability of the solution?
It supports integrations with multiple other platforms. We cater the solution to small businesses.
How are customer service and support?
Support could be more responsive.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup takes six to eight hours. Our company's technical team was involved in it.
I rate the initial setup an eight out of ten, where one is difficult and ten is easy.
What's my experience with pricing, setup cost, and licensing?
Pricing is reasonable when compared to other products.
What other advice do I have?
They are using various machine learning and AI techniques to detect threats.
Sophos MDR is a choice for those interested in moving to an endpoint protection system rather than traditional antivirus solutions. It is cost-effective compared to other products and offers benefits, such as collecting telemetry from multiple sources and providing alerts about various threats.
Overall, I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer:
Cyber Security Consultant at GBS IT Services
An easy-to-scale solution with efficient technical support services
Pros and Cons
- "The solution is stable."
- "The solution is expensive for customers."
What is most valuable?
The solution's licensing plans are very flexible. Also, it has good performance.
What needs improvement?
The solution is expensive for customers. Its pricing could be better.
For how long have I used the solution?
We have been using the solution for the last six months.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is easy to scale. We have an enterprise client base.
How are customer service and support?
The solution's technical support is excellent.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used Rapid7 earlier. In comparison, Sophos has a flexible licensing and assurance part. It has good references from all over the world in terms of deployment.
How was the initial setup?
The solution's deployment takes one or two months to complete.
What about the implementation team?
A team from Sophos itself does the solution's implementation.
What's my experience with pricing, setup cost, and licensing?
The solution has subscription-based pricing plans.
What other advice do I have?
I rate the solution an eight out of ten. If you want to outsource security operations, you can look for Sophos MDR.
Disclosure: My company has a business relationship with this vendor other than being a customer: MSP
Technical manager at Andalusia Hai Aljamea Hospital
Is stable and scalable but could be more secure
Pros and Cons
- "It is stable and scalable. It has good technical support."
- "It could be more secure."
What is most valuable?
It is stable and scalable. It has good technical support.
What needs improvement?
It could be more secure.
For how long have I used the solution?
I've been using this solution for one year. It's a cloud-based solution.
What do I think about the stability of the solution?
It is very stable.
What do I think about the scalability of the solution?
It is a scalable solution.
How are customer service and technical support?
Sophos has good technical support.
What other advice do I have?
I have recommended this solution and would rate it at five on a scale from one to ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Cyber Security Engineer, Pre-sales Engineer at Green Edge
Provides valuable data protection services and good scalability
Pros and Cons
- "The product’s most valuable feature is rapid response."
- "Sophos MDR’s pricing is the biggest factor that needs improvement per customers and technical professionals."
What is most valuable?
The product’s most valuable feature is rapid response. Most of the companies are targeted by ransomware attacks. Sophos MDR provides us with better data protection services than other providers.
What needs improvement?
Sophos MDR’s pricing is the biggest factor that needs improvement per customers and technical professionals. There could be a package or bundled subscription similar to Trend Micro. It will allow us to customize the package according to specific requirements.
For how long have I used the solution?
We have been using Sophos MDR for more than two years.
What do I think about the stability of the solution?
I rate the product’s stability an eight out of ten.
What do I think about the scalability of the solution?
The product is highly scalable. It is suitable for medium businesses. I rate its scalability an eight out of ten.
How was the initial setup?
The initial setup is easy. The deployment time depends on the availability of resources from the client's end. We can complete the process in a day if everything is set up properly.
What's my experience with pricing, setup cost, and licensing?
I rate Sophos MDR’s pricing a seven or eight out of ten. From a technical perspective, I understand that AI integration makes the product a little expensive. However, from customers’ perspective, it also needs to fit in their budgets.
What other advice do I have?
I rate Sophos MDR a ten out of ten. I advise others to go for it. With more experience working on it, they will understand why it is expensive.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:

Buyer's Guide
Download our free Sophos MDR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2025
Product Categories
Managed Detection and Response (MDR)Popular Comparisons
IBM Security QRadar
Huntress Managed EDR
Intercept X Endpoint
CrowdStrike Falcon Complete MDR
Arctic Wolf Managed Detection and Response
SentinelOne Vigilance
Secureworks Taegis Managed XDR / MDR
Red Canary
Blackpoint Cyber MDR
Field Effect MDR
Adlumin Cybersecurity
Bitdefender MDR
Rapid7 MDR
Fortra's Alert Logic MDR
Trend Micro Managed XDR
Buyer's Guide
Download our free Sophos MDR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- How do you estimate ROI of a Managed Detection and Response (MDR) solution?
- When evaluating Managed Detection and Response (MDR), what aspect do you think is the most important to look for?
- Which solution do you prefer: Optiv Managed Security Services or eSentire?
- Why is Managed Detection and Response (MDR) important for companies?